6.9

CVSS4.0

CVE-2026-4014 - itsourcecode Cafe Reservation System Registration signup.php sql injection

A security flaw has been discovered in itsourcecode Cafe Reservation System 1.0. This impacts an unknown function of the file /curvus2/signup.php of the component Registration. Performing a manipulation of the argument Username results in sql injection. Remote exploitation of the attack is possible…

📅 Published: March 12, 2026, 8:02 a.m. 🔄 Last Modified: March 12, 2026, 8:02 a.m.

5.3

CVSS4.0

CVE-2026-4013 - SourceCodester Web-based Pharmacy Product Management System add_admin.php improper authorization

A vulnerability was identified in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown function of the file add_admin.php. Such manipulation leads to improper authorization. The attack may be launched remotely.

📅 Published: March 12, 2026, 8:02 a.m. 🔄 Last Modified: March 12, 2026, 8:02 a.m.

4.8

CVSS4.0

CVE-2026-4012 - rxi fe fe.c read_ out-of-bounds

A vulnerability was determined in rxi fe up to ed4cda96bd582cbb08520964ba627efb40f3dd91. The impacted element is the function read_ of the file src/fe.c. This manipulation with the input 1 causes out-of-bounds read. The attack requires local access. The exploit has been publicly disclosed and may b…

📅 Published: March 12, 2026, 7:32 a.m. 🔄 Last Modified: March 12, 2026, 7:32 a.m.

4.8

CVSS4.0

CVE-2026-4010 - ThakeeNathees pocketlang pkByteBufferAddString memory corruption

A vulnerability was found in ThakeeNathees pocketlang up to cc73ca61b113d48ee130d837a7a8b145e41de5ce. The affected element is the function pkByteBufferAddString. The manipulation of the argument length with the input 4294967290 results in memory corruption. The attack requires a local approach. The…

📅 Published: March 12, 2026, 7:32 a.m. 🔄 Last Modified: March 12, 2026, 7:32 a.m.

4.8

CVSS4.0

CVE-2026-4009 - jarikomppa soloud WAV File dr_wav.h drwav_read_pcm_frames_s16__msadpcm out-of-bounds

A vulnerability has been found in jarikomppa soloud up to 20200207. Impacted is the function drwav_read_pcm_frames_s16__msadpcm in the library src/audiosource/wav/dr_wav.h of the component WAV File Parser. The manipulation leads to out-of-bounds read. The attack needs to be performed locally. The e…

📅 Published: March 12, 2026, 7:02 a.m. 🔄 Last Modified: March 12, 2026, 7:02 a.m.
Load More Vulnerability
avatar

Mehmet Ince

@mdisec

CVE stats coming here

avatar

Nuri Çilengir

@ncilengir

CVE stats coming here

avatar

@aydinnyunus

CVE stats coming here

avatar

Onurcan Genç

@onurcangnc

CVE stats coming here

avatar

Seyit Sigirci

@h3xecute

CVE stats coming here

avatar

Ali İltizar

@iltosec

CVE stats coming here

avatar

@b3rsec

CVE stats coming here

avatar

@furkank

CVE stats coming here

avatar

kutaysec

@kutaysec

CVE stats coming here