10

CVSS4.0

CVE-2026-1633 - Synectix LAN 232 TRIO Missing Authentication for Critical Function

The Synectix LAN 232 TRIO 3-Port serial to ethernet adapter exposes its web management interface without requiring authentication, allowing unauthenticated users to modify critical device settings or factory reset the device.

📅 Published: Feb. 3, 2026, 11:02 p.m. 🔄 Last Modified: Feb. 3, 2026, 11:02 p.m.

9.3

CVSS4.0

CVE-2026-1632 - RISS SRL MOMA Seismic Station Missing Authentication for Critical Function

MOMA Seismic Station Version v2.4.2520 and prior exposes its web management interface without requiring authentication, which could allow an unauthenticated attacker to modify configuration settings, acquire device data or remotely reset the device.

📅 Published: Feb. 3, 2026, 10:59 p.m. 🔄 Last Modified: Feb. 3, 2026, 10:59 p.m.

5.3

CVSS4.0

CVE-2026-1812 - bolo-blog bolo-solo Filename BackupService.java importFromCnblogs path traversal

A vulnerability has been found in bolo-blog bolo-solo up to 2.6.4. This impacts the function importFromCnblogs of the file src/main/java/org/b3log/solo/bolo/prop/BackupService.java of the component Filename Handler. The manipulation of the argument File leads to path traversal. It is possible to in…

📅 Published: Feb. 3, 2026, 10:32 p.m. 🔄 Last Modified: Feb. 3, 2026, 10:32 p.m.

6.4

CVSS3.1

CVE-2026-1755 - Menu Icons by ThemeIsle <= 0.13.20 - Authenticated (Author+) Stored Cross-Site Scripting

The Menu Icons by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘_wp_attachment_image_alt’ post meta in all versions up to, and including, 0.13.20 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, wi…

📅 Published: Feb. 3, 2026, 10:22 p.m. 🔄 Last Modified: Feb. 3, 2026, 10:22 p.m.

6.5

CVSS3.1

CVE-2026-24514 - ingress-nginx Admission Controller denial of service

A security issue was discovered in ingress-nginx where the validating admission controller feature is subject to a denial of service condition. By sending large requests to the validating admission controller, an attacker can cause memory consumption, which may result in the ingress-nginx controlle…

📅 Published: Feb. 3, 2026, 10:17 p.m. 🔄 Last Modified: Feb. 3, 2026, 10:17 p.m.
Load More Vulnerability
avatar

Mehmet Ince

@mdisec

CVE stats coming here

avatar

Nuri Çilengir

@ncilengir

CVE stats coming here

avatar

@aydinnyunus

CVE stats coming here

avatar

Onurcan Genç

@onurcangnc

CVE stats coming here

avatar

Seyit Sigirci

@h3xecute

CVE stats coming here

avatar

Ali İltizar

@iltosec

CVE stats coming here

avatar

@b3rsec

CVE stats coming here

avatar

@furkank

CVE stats coming here

avatar

kutaysec

@kutaysec

CVE stats coming here