7.5

CVSS3.1

CVE-2026-1526 - undici is vulnerable to Unbounded Memory Consumption in undici WebSocket permessage-deflate Decompr…

The undici WebSocket client is vulnerable to a denial-of-service attack via unbounded memory consumption during permessage-deflate decompression. When a WebSocket connection negotiates the permessage-deflate extension, the client decompresses incoming compressed frames without enforcing any limit o…

📅 Published: March 12, 2026, 8:08 p.m. 🔄 Last Modified: March 23, 2026, 12:05 p.m.

10

CVSS4.0

CVE-2026-3611 - Honeywell IQ4x BMS Controller Missing authentication for critical function

The Honeywell IQ4x building management controller, exposes its full web-based HMI without authentication in its factory-default configuration. With no user module configured, security is disabled by design and the system operates under a System Guest (level 100) context, granting read/write privile…

📅 Published: March 12, 2026, 8:06 p.m. 🔄 Last Modified: March 30, 2026, 3:26 p.m.

6.5

CVSS3.1

CVE-2026-1525 - undici is vulnerable to Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggl…

Undici allows duplicate HTTP Content-Length headers when they are provided in an array with case-variant names (e.g., Content-Length and content-length). This produces malformed HTTP/1.1 requests with multiple conflicting Content-Length values on the wire. Who is impacted: * Applications using…

📅 Published: March 12, 2026, 7:56 p.m. 🔄 Last Modified: March 23, 2026, 12:05 p.m.

8.7

CVSS4.0

CVE-2026-32274 - Black: Arbitrary file writes from unsanitized user input in cache file name

Black is the uncompromising Python code formatter. Prior to 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename without sanitization, which allowed an attacker who controls the valu…

📅 Published: March 12, 2026, 7:47 p.m. 🔄 Last Modified: March 23, 2026, 9:54 a.m.

6.3

CVSS4.0

CVE-2026-32269 - Parse Server OAuth2 adapter app ID validation sends wrong token to introspection endpoint

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.6.0-alpha.13 and 8.6.39, the OAuth2 authentication adapter does not correctly validate app IDs when appidField and appIds are configured. During app ID validation, a malformed value is…

📅 Published: March 12, 2026, 7:43 p.m. 🔄 Last Modified: March 23, 2026, 9:54 a.m.

8.1

CVSS3.1

CVE-2026-32260 - Command Injection via incomplete shell metacharacter blocklist in node:child_process (bypass of CVE…

Deno is a JavaScript, TypeScript, and WebAssembly runtime. From 2.7.0 to 2.7.1, A command injection vulnerability exists in Deno's node:child_process polyfill (shell: true mode) that bypasses the fix for CVE-2026-27190. The two-stage argument sanitization in transformDenoShellCommand (ext/node/pol…

📅 Published: March 12, 2026, 7:41 p.m. 🔄 Last Modified: March 23, 2026, 9:54 a.m.

6.7

CVSS3.1

CVE-2026-32259 - ImageMagick has a possible stack buffer overflow in sixel encoder

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, when a memory allocation fails in the sixel encoder it would be possible to write past the end of a buffer on the stack. This vulnerability is fixed in 7.1.2-16 and 6.9.13…

📅 Published: March 12, 2026, 7:38 p.m. 🔄 Last Modified: March 23, 2026, 9:54 a.m.

6.3

CVSS4.0

CVE-2026-32240 - Cap'n Proto: Integer overflow in KJ-HTTP chunk size

Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, when using Transfer-Encoding: chunked, if a chunk's size parsed to a value of 2^64 or larger, it would be truncated to a 64-bit integer. In theory, this bug could enable HTTP request/response smuggling. This v…

📅 Published: March 12, 2026, 7:35 p.m. 🔄 Last Modified: March 23, 2026, 9:54 a.m.

6.3

CVSS4.0

CVE-2026-32239 - Cap'n Proto has an integer overflow in KJ-HTTP

Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, a negative Content-Length value was converted to unsigned, treating it as an impossibly large length instead. In theory, this bug could enable HTTP request/response smuggling. This vulnerability is fixed in 1.…

📅 Published: March 12, 2026, 7:33 p.m. 🔄 Last Modified: March 23, 2026, 9:54 a.m.

9.3

CVSS4.0

CVE-2026-32251 - Tolgee has an XXE Injection in Translation Import

Tolgee is an open-source localization platform. Prior to 3.166.3, the XML parsers used for importing Android XML resources (.xml) and .resx files don't disable external entity processing. An authenticated user who can import translation files into a project can exploit this to read arbitrary files …

📅 Published: March 12, 2026, 7:21 p.m. 🔄 Last Modified: March 23, 2026, 9:54 a.m.
Total resulsts: 347725
Page 1002 of 34,773
« previous page » next page
Filters