5.3

CVSS4.0

CVE-2026-1963 - WeKan Attachment Storage attachments.js MoveStorageBleed access control

A vulnerability was found in WeKan up to 8.20. This affects an unknown function of the file models/attachments.js of the component Attachment Storage. The manipulation results in improper access controls. The attack may be launched remotely. Upgrading to version 8.21 mitigates this issue. The patch…

📅 Published: Feb. 5, 2026, 9:02 p.m. 🔄 Last Modified: Feb. 5, 2026, 9:02 p.m.

5.3

CVSS4.0

CVE-2026-1962 - WeKan Attachment Migration attachmentMigration.js AttachmentMigrationBleed access control

A vulnerability has been found in WeKan up to 8.20. The impacted element is an unknown function of the file server/attachmentMigration.js of the component Attachment Migration. The manipulation leads to improper access controls. The attack may be initiated remotely. Upgrading to version 8.21 is suf…

📅 Published: Feb. 5, 2026, 8:32 p.m. 🔄 Last Modified: Feb. 5, 2026, 8:57 p.m.

9.3

CVSS3.1

CVE-2026-0106 -

In vpu_mmap of vpu_ioctl, there is a possible arbitrary address mmap due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

📅 Published: Feb. 5, 2026, 8:19 p.m. 🔄 Last Modified: Feb. 5, 2026, 8:43 p.m.

5.3

CVSS4.0

CVE-2025-12131 - Truncated 802.15.4 packet leads to denial of service

A truncated 802.15.4 packet can lead to an assert, resulting in a denial of service.

📅 Published: Feb. 5, 2026, 8:02 p.m. 🔄 Last Modified: Feb. 5, 2026, 8:47 p.m.

6.8

CVSS4.0

CVE-2026-1301 - Out-of-bounds Write in o6 Automation GmbH Open62541

In builds with PubSub and JSON enabled, a crafted JSON message can cause the decoder to write beyond a heap-allocated array before authentication, reliably crashing the process and corrupting memory.

📅 Published: Feb. 5, 2026, 7:09 p.m. 🔄 Last Modified: Feb. 5, 2026, 8:47 p.m.
Load More Vulnerability
avatar

Mehmet Ince

@mdisec

CVE stats coming here

avatar

Nuri Çilengir

@ncilengir

CVE stats coming here

avatar

@aydinnyunus

CVE stats coming here

avatar

Onurcan Genç

@onurcangnc

CVE stats coming here

avatar

Seyit Sigirci

@h3xecute

CVE stats coming here

avatar

Ali İltizar

@iltosec

CVE stats coming here

avatar

@b3rsec

CVE stats coming here

avatar

@furkank

CVE stats coming here

avatar

kutaysec

@kutaysec

CVE stats coming here