VYPR

CVEs

382,982 total · page 310 of 7,660

  • CVE-2026-19702HigAug 31, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute Pardus Boot Repair allows OS Command Injection. This issue affects Pardus Boot Repair: from 1.0.7 before 1.0.8.

  • CVE-2026-19616HigAug 31, 2026
    risk 0.49cvss 7.5epss 0.00

    Missing Authorization vulnerability in TBC Technology Inc. KitLogistic allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects KitLogistic: before v2.2.2.

  • CVE-2026-75762impAug 31, 2026
    risk 0.44cvss 6.8epss —

    multicluster-global-hub: multicluster-global-hub: Transport-layer MITM: TLS CA bundle pulled from unvalidated ConfigMap, `InsecureSkipVerify` fallback

  • CVE-2026-77849impAug 31, 2026
    risk 0.64cvss 9.8epss —

    grafana-global-hub: grafana-global-hub: Hardcoded Grafana admin credentials (admin / admin) in `pkg/specsyncer`

  • CVE-2026-80220impAug 31, 2026
    risk 0.35cvss 5.4epss —

    postgres-exporter: postgres-exporter: pprof profiling endpoints exposed on unauthenticated metrics listener

  • CVE-2026-80221impAug 31, 2026
    risk 0.29cvss 4.4epss —

    grafana-global-hub: grafana-global-hub: Direct database connection string with embedded credentials passed as environment variable

  • CVE-2026-82696MedAug 31, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/inv_searchfrm.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been…

  • CVE-2026-82695CriAug 31, 2026
    risk 0.65cvss 10.0epss 0.01

    A security flaw has been discovered in Tenda AC18 15.03.05.19. Impacted is an unknown function of the file /goform/telnet of the component Telnet Handler. The manipulation results in missing authentication. The attack can be launched remotely. The exploit has been released to…

  • CVE-2026-82694CriAug 31, 2026
    risk 0.65cvss 10.0epss 0.01

    A vulnerability was identified in Tenda AC1206 15.03.06.23. This issue affects the function R7WebsSecurityHandler of the file /goform/ate of the component Web UI. The manipulation leads to missing authentication. The attack can be initiated remotely. The exploit is publicly…

  • CVE-2026-82693CriAug 31, 2026
    risk 0.65cvss 10.0epss 0.01

    A vulnerability was determined in Tenda AC1206 15.03.06.23. This vulnerability affects the function TendaTelnet of the file /goform/telnet of the component Web UI. Executing a manipulation can lead to missing authentication. It is possible to launch the attack remotely. The…

  • CVE-2026-82692CriAug 31, 2026
    risk 0.64cvss 9.9epss 0.03

    A vulnerability was found in D-Link DNS-340L and DNS-345 up to 20260717. This affects an unknown part of the file /cgi-bin/iscsi_mgr.cgi. Performing a manipulation of the argument alias/username/password/volume_location results in os command injection. It is possible to initiate…

  • CVE-2026-74010MedAug 31, 2026
    risk 0.34cvss 5.3epss 0.00

    Missing Authorization vulnerability in John James Jacoby bbPress allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects bbPress: from n/a through 2.6.14.

  • CVE-2026-5956HigAug 31, 2026
    risk 0.57cvss 8.8epss 0.00

    Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Ankara Hosting Site Management Panel allows SQL Injection. This issue affects Site Management Panel: through 15062026.

  • CVE-2026-51667MedAug 31, 2026
    risk 0.28cvss 4.3epss 0.00

    Incorrect access control in the getWiFiIpMacTable function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to obtain Wi-Fi client MAC-to-IP mappings via sending a crafted POST request to /cgi-bin/cstecgi.cgi.

  • CVE-2026-51666MedAug 31, 2026
    risk 0.28cvss 4.3epss 0.00

    Incorrect access control in the setWizardCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to reconfigure WAN, Wi-Fi, and device initialization state via sending a crafted POST request to /cgi-bin/cstecgi.cgi.

  • CVE-2026-12894HigAug 31, 2026
    risk 0.57cvss 8.8epss 0.00

    A flaw was found in the Qute template engine, which is used by Quarkus to generate dynamic content like HTML pages or emails. The issue exists in the component responsible for looking up data values (ReflectionValueResolver), which fails to properly block access to sensitive…

  • CVE-2026-82797MedAug 31, 2026
    risk 0.29cvss 5.5epss 0.00

    Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Serialized Data with Nested Payloads. This issue affects rlottie: before 8de0d9e6ca80ffef654965505981727b9fa06a51.

  • CVE-2026-82691CriAug 31, 2026
    risk 0.59cvss 9.1epss 0.04

    A vulnerability has been found in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected by this issue is some unknown functionality of the file /cgi-bin/usb_device.cgi of the component CGI Handler. Such manipulation of the argument f_ups_ip leads to os command…

  • CVE-2026-82690CriAug 31, 2026
    risk 0.59cvss 9.1epss 0.04

    A flaw has been found in D-Link DNS-327L and DNS-340L up to 20260717. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/ve_mgr.cgi. This manipulation of the argument f_dev causes os command injection. The attack is possible to be carried out…

  • CVE-2026-82689CriAug 31, 2026
    risk 0.64cvss 9.9epss 0.03

    A vulnerability was detected in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected is an unknown function of the file /cgi-bin/isomount_mgr.cgi of the component ISO Image Handler. The manipulation of the argument upIsoRootPath results in os command…

  • CVE-2026-76984MedAug 31, 2026
    risk 0.35cvss 5.4epss 0.01

    Improper neutralization of input during web page generation in Apache Wicket. org.apache.wicket.markup.head.MetaDataHeaderItem generates and header tags. It escaped the attribute names it wrote, but ran the attribute values through a replacement of " with \". A…

  • CVE-2026-76983MedAug 31, 2026
    risk 0.35cvss 5.4epss 0.01

    Improper neutralization of input during web page generation in Apache Wicket. The <wicket:label> tag is provided by org.apache.wicket.markup.html.form.AutoLabelTextResolver, which is registered by default in every WebApplication. The resolver writes the label it finds into the…

  • CVE-2026-76982MedAug 31, 2026
    risk 0.35cvss 5.4epss 0.01

    Improper neutralization of input during web page generation in Apache Wicket. org.apache.wicket.markup.html.form.Button clears the escape-model-strings flag in its constructor, so that the value attribute it writes is not encoded twice — ComponentTag already encodes attribute…

  • CVE-2026-75802MedAug 31, 2026
    risk 0.35cvss 5.4epss 0.01

    AjaxEditableChoiceLabel in wicket-extensions, when constructed with a non-null IChoiceRenderer, writes the display value obtained from that renderer into the label's markup without applying the HTML escaping Wicket performs by default for component model values. An attacker who…

  • CVE-2026-71378MedAug 31, 2026
    risk 0.23cvss 4.6epss 0.00

    ResourceIsolationRequestCycleListener protects a Wicket application against cross-site request forgery by rejecting requests that a resource isolation policy judges to come from another origin. Its default policy, FetchMetadataResourceIsolationPolicy, was derived from a…

  • CVE-2026-71257HigAug 31, 2026
    risk 0.49cvss 7.5epss 0.01

    Apache Wicket enforces the upload limits configured on a form or upload field while parsing a multipart request with Apache Commons FileUpload. If the request body has already been consumed by another component, Commons FileUpload returns no items and Wicket falls back to…

  • CVE-2026-70449MedAug 31, 2026
    risk 0.34cvss 5.3epss 0.01

    Improper validation of resource URL attributes in Apache Wicket allows an unauthenticated remote attacker to read files from the web application, including files under WEB-INF that the servlet container would not otherwise serve. The locale, style and variation attributes…

  • CVE-2026-82881MedAug 31, 2026
    risk 0.28cvss 5.4epss 0.00

    Aix-DB through 1.2.4 renders markdown with raw HTML enabled into v-html bindings without sanitization, allowing stored cross-site scripting attacks. Attackers can inject malicious HTML and JavaScript through markdown content in chat responses, skill descriptions, or knowledge…

  • CVE-2026-82880HigAug 31, 2026
    risk 0.42cvss 7.5epss 0.01

    YaCy Search Server through 1.941 contains an XML external entity injection vulnerability in SVG, FreeMind, and OpenSearch parsers that fail to disable external entity resolution. Attackers can publish malicious documents with DOCTYPE declarations containing SYSTEM entities…

  • CVE-2026-82879MedAug 31, 2026
    risk 0.34cvss 6.3epss 0.00

    DataEase before 2.10.26 contains multiple access control defects in the sharing link module. Tickets are not bound to the target share UUID, so a valid ticket issued for one share can be reused against another (ShareTicketManage.validateTicket / POST /de2api/share/proxyInfo).…

  • CVE-2026-82878MedAug 31, 2026
    risk 0.34cvss 6.3epss 0.00

    DataEase versions before 2.10.26 omit object-level authorization checks on geographic information, dashboard linkage, and chart detail REST endpoints, allowing authenticated users to access resources belonging to other users. Attackers can overwrite or delete map geometry,…

  • CVE-2026-82877MedAug 31, 2026
    risk 0.35cvss 6.5epss 0.01

    ILIAS before versions 9.22, 10.10, and 11.3 contains an arbitrary file read vulnerability in the SOAP addFile method that allows authenticated users to read server files by supplying crafted XML with COPY-mode imports. Attackers can construct absolute file paths through an…

  • CVE-2026-82876HigAug 31, 2026
    risk 0.53cvss 8.2epss 0.00

    Phison PS3111-S11 controller firmware verifies RSA signatures using a public modulus embedded within the firmware image itself rather than anchored in immutable storage. Attackers can generate arbitrary RSA key pairs, sign modified firmware with the private key, embed the…

  • CVE-2026-82688CriAug 31, 2026
    risk 0.59cvss 9.1epss 0.04

    A security vulnerability has been detected in D-Link DNS-340L and DNS-345 1.01B04/1.03B06/1.04.B02/1.05b04. This impacts an unknown function of the file /cgi-bin/virtual_vol.cgi of the component Virtual Volume Handler. The manipulation of the argument f_sharename/f_target/f_name…

  • CVE-2026-82680HigAug 31, 2026
    risk 0.57cvss 8.8epss 0.01

    A weakness has been identified in D-Link DSM-G600 1.01. This affects an unknown function of the file /load_file.cgi of the component Multipart Handler. Executing a manipulation can lead to out-of-bounds write. The attack may be launched remotely. The exploit has been made…

  • CVE-2026-82679MedAug 31, 2026
    risk 0.41cvss 6.3epss 0.00

    A security flaw has been discovered in diem-project diem up to 5.1.3. The impacted element is an unknown function of the file dmFrontPlugin/lib/dmWidget/media/dmWidgetContentBaseMediaForm.php of the component Widget Editor. Performing a manipulation results in unrestricted…

  • CVE-2026-82678MedAug 31, 2026
    risk 0.31cvss 4.7epss 0.02

    A vulnerability was identified in diem-project diem up to 5.1.3. The affected element is the function executeCommand of the file dmAdminPlugin/modules/dmConsole/actions/actions.class.php of the component Administrative Console. Such manipulation of the argument dm_command leads…

  • CVE-2026-82677LowAug 31, 2026
    risk 0.09cvss 2.4epss 0.01

    A vulnerability was determined in valkey-io valkey 9.1.0. Impacted is the function moduleTimerHandler of the file src/module.c of the component Module Timer Subsystem. This manipulation causes double free. The attack can be initiated remotely. The exploit has been publicly…

  • CVE-2026-82671LowAug 31, 2026
    risk 0.22cvss 3.4epss 0.00

    A vulnerability has been found in IObit Unlocker 1.3.0.12. This vulnerability affects the function ZwTerminateProcess in the library IObitUnlocker.sys of the component IRP_MJ_DEVICE_CONTROL Handler. The manipulation leads to improper privilege management. An attack has to be…

  • CVE-2026-82670MedAug 31, 2026
    risk 0.29cvss 4.4epss 0.00

    A flaw has been found in IObit Uninstaller 15.5.0.11. This affects the function IRP_MJ_DEVICE_CONTROL in the library IUForceDelete.sys of the component IOCTL Handler. Executing a manipulation can lead to improper privilege management. The attack requires local access. The vendor…

  • CVE-2026-82669MedAug 31, 2026
    risk 0.27cvss 5.3epss 0.01

    A vulnerability was detected in klaussilveira GitList 2.0.0. Affected by this issue is the function SimpleXMLElement of the file src/SCM/System/Git/CommandLine.php of the component XML Parsing. Performing a manipulation results in denial of service. The attack is possible to be…

  • CVE-2026-49003CriAug 31, 2026
    risk 0.63cvss 9.6epss 0.02

    Attackers can exploit command injection vulnerabilities to delete core system runtime files, causing the monitoring module to crash and become paralyzed; simultaneously, they can obtain root privileges to steal configuration passwords such as SNMP, thereby tampering with…

  • CVE-2026-19873HigAug 31, 2026
    risk 0.49cvss 7.5epss 0.01

    HTML::FormFu versions through 2.08 for Perl allow resource exhaustion via an unbounded repeat count from the query string in Repeatable elements. When a Repeatable element has counter_name set, its process method reads the repeat count from the named query string parameter,…

  • CVE-2026-82875MedAug 31, 2026
    risk 0.36cvss 5.5epss 0.00

    ToolJet before v3.16.208 contains an authorization bypass vulnerability in TooljetDB controller endpoints that accept organizationId from URL path without verifying it matches the authenticated user's workspace. Authenticated users can enumerate, create, rename, and delete…

  • CVE-2026-82874CriAug 31, 2026
    risk 0.64cvss 9.9epss 0.00

    ToolJet before v3.16.208 fails to validate that authenticated users belong to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and delete tables across tenant boundaries. Attackers can extract…

  • CVE-2026-82873MedAug 31, 2026
    risk 0.33cvss 5.0epss 0.00

    ToolJet through 3.0.0-ee-beta.2 contains authorization bypass vulnerabilities in the POST /api/v2/resources/export endpoint that allow authenticated users to disclose TooljetDB table schemas across workspace boundaries and export app definitions across granular permission…

  • CVE-2026-82872CriAug 31, 2026
    risk 0.52cvss 9.1epss 0.01

    ToolJet before v3.16.208 fails to validate that the path organizationId matches the authenticated user's workspace before performing ToolJet DB table operations. A workspace admin can create, view, and delete database tables in another workspace by replacing the organizationId…

  • CVE-2026-82871HigAug 31, 2026
    risk 0.50cvss 7.7epss 0.00

    ToolJet before v3.16.208 fails to validate organization membership in database read routes, allowing any authenticated user to access other organizations' table schemas and row data. Attackers can supply arbitrary organization IDs in URL parameters to list tables, retrieve…

  • CVE-2026-82870CriAug 31, 2026
    risk 0.62cvss 9.6epss 0.00

    ToolJet before v3.16.208 fails to validate organizationId ownership in database write and destroy routes, allowing any builder-role user to create, alter, or drop tables in other organizations' databases. Attackers can exploit missing organization-resolving guards to permanently…

  • CVE-2026-82869HigAug 31, 2026
    risk 0.50cvss 7.7epss 0.00

    ToolJet Database versions before v3.16.44 contain a privilege escalation vulnerability in the join_tables endpoint that grants JOIN_TABLES ability to all authenticated users without role or workspace membership validation. Attackers can read arbitrary ToolJet Database tables…