8.7

CVSS4.0

CVE-2026-39849 - Pi-hole FTL remote code execution via newline injection in dns.interface configuration

Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker. In versions before 6.6.1, the `dns.interface` configuration field in Pi-hole FTL accepted newline characters without validation, allowing an attacker to inject arbitrary directives into the generated dnsm…

πŸ“… Published: May 5, 2026, 8:50 p.m. πŸ”„ Last Modified: May 6, 2026, 12:22 p.m.

4.3

CVSS4.0

CVE-2026-39402 - lxc lxc-user-nic insufficient ownership validation allows cross-tenant OVS port deletion

lxc is a Linux container runtime. In the setuid helper lxc-user-nic, the delete path contains a logic flaw in the find_line() function that allows an unprivileged user to delete OVS-attached network interfaces belonging to other users. When lxc-user-nic delete scans its NIC database to authorize a …

πŸ“… Published: May 5, 2026, 8:45 p.m. πŸ”„ Last Modified: May 6, 2026, 2:57 p.m.

6.9

CVSS4.0

CVE-2026-39383 - Gotenberg unauthenticated blind SSRF via unfiltered webhook URL

Gotenberg is an API-based document conversion tool. In version 8.29.1, an unauthenticated attacker with network access can force the server to make outbound HTTP POST requests to arbitrary internal or external destinations by supplying a crafted URL in the Gotenberg-Webhook-Url request header. The …

πŸ“… Published: May 5, 2026, 8:39 p.m. πŸ”„ Last Modified: May 6, 2026, 3:32 p.m.

6

CVSS4.0

CVE-2026-41950 - Dify < 1.14.0 Authorization Bypass via File UUID

Dify before version 1.14.0 contains an authorization bypass vulnerability that allows authenticated users to read the full contents of files uploaded by other users within the same tenant by supplying an arbitrary file UUID in the files array of a chat-messages request. Attackers can exploit insuff…

πŸ“… Published: May 5, 2026, 8:35 p.m. πŸ”„ Last Modified: May 6, 2026, 12:52 p.m.

8.2

CVSS4.0

CVE-2026-35579 - CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports

CoreDNS is a DNS server written in Go. In versions prior to 1.14.3, the gRPC, QUIC, DoH, and DoH3 transport implementations incorrectly handle TSIG authentication. For gRPC and QUIC, the server checks whether the TSIG key name exists in the configuration but never calls dns.TsigVerify() to validate…

πŸ“… Published: May 5, 2026, 8:29 p.m. πŸ”„ Last Modified: May 8, 2026, 3:58 p.m.

0.0

CVE-2026-44365 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-34429. Reason: This candidate is a duplicate of CVE-2026-34429. Notes: All CVE users should reference CVE-2026-34429 instead of this candidate.

πŸ“… Published: May 5, 2026, 8:15 p.m. πŸ”„ Last Modified: May 7, 2026, 8:48 p.m.

5.3

CVSS4.0

CVE-2026-35527 - Incus blind SSRF via image import preflight HEAD request

Incus is an open source container and virtual machine manager. In versions prior to 7.0.0, the image import flow issues an outbound HEAD request to a user-supplied URL before validating the request against project restrictions such as restricted.images.servers. The imgPostURLInfo function construct…

πŸ“… Published: May 5, 2026, 7:56 p.m. πŸ”„ Last Modified: May 7, 2026, 5:06 p.m.

7.8

CVSS4.0

CVE-2026-40280 - Gotenberg SSRF via case-insensitive URL scheme bypass in webhook and downloadFrom deny-lists

Gotenberg is an API-based document conversion tool. In versions 8.30.1 and earlier, the default private-IP deny-lists for the --webhook-deny-list and --api-download-from-deny-list flags use a case-sensitive regular expression (^https?://) to match URL schemes. Because Go's net/url.Parse() normalize…

πŸ“… Published: May 5, 2026, 7:52 p.m. πŸ”„ Last Modified: May 6, 2026, 7:16 p.m.

9.3

CVSS4.0

CVE-2026-40331 - Masa CMS unauthenticated SQL injection via altTable parameter in JSON API

Masa CMS is an open source content management system. In versions 7.2.0 through 7.2.9, 7.3.0 through 7.3.14, 7.4.0 through 7.4.9, and 7.5.0 through 7.5.2, the unauthenticated JSON API accepts an altTable parameter that is stored via the setAltTable() method without validation or sanitization. This …

πŸ“… Published: May 5, 2026, 7:48 p.m. πŸ”„ Last Modified: May 5, 2026, 11 p.m.

9.3

CVSS4.0

CVE-2026-40330 - Masa CMS SQL injection via sortDirection parameter in beanFeed

Masa CMS is an open source content management system. In versions 7.2.0 through 7.2.9, 7.3.0 through 7.3.14, 7.4.0 through 7.4.9, and 7.5.0 through 7.5.2, a SQL injection vulnerability exists in the beanFeed.cfc component within the getQuery function's handling of the sortDirection parameter. The p…

πŸ“… Published: May 5, 2026, 7:46 p.m. πŸ”„ Last Modified: May 5, 2026, 10 p.m.
Total resulsts: 349182
Page 106 of 34,919
Β« previous page Β» next page
Filters