8.2

CVSS4.0

CVE-2026-29078 - Integer Underflow in Lexbor ISO‑2022‑JP Encoder

Lexbor is a web browser engine library. Prior to 2.7.0, the ISO‑2022‑JP encoder in Lexbor fails to reset the temporary size variable between iterations. The statement ctx->buffer_used -= size with a stale size = 3 causes an integer underflow that wraps to SIZE_MAX. Afterwards, memcpy is called with…

📅 Published: March 13, 2026, 5:18 p.m. 🔄 Last Modified: March 13, 2026, 7:54 p.m.

9.8

CVSS3.1

CVE-2026-32746 -

telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does not check whether the buffer is full.

📅 Published: March 13, 2026, 5:15 p.m. 🔄 Last Modified: March 13, 2026, 9:04 p.m.

7.7

CVSS4.0

CVE-2026-1668 - Input Validation Vulnerability on Multiple Omada Switches

The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted requests. Under specific conditions, this flaw may result in unintended command execution.<br>An unauthenticated attacker with net…

📅 Published: March 13, 2026, 4:53 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

7.1

CVSS4.0

CVE-2026-23940 - Denial of Service via Oversized Package Upload

Uncontrolled Resource Consumption vulnerability in hexpm hexpm/hexpm allows Excessive Allocation. Publishing an oversized package can cause Hex.pm to run out of memory while extracting the uploaded package tarball. This can terminate the affected application instance and result in a denial of servi…

📅 Published: March 13, 2026, 4:07 p.m. 🔄 Last Modified: March 13, 2026, 7:54 p.m.

10

CVSS3.1

CVE-2026-26954 - SandboxJS has a Sandbox Escape

SandboxJS is a JavaScript sandboxing library. Prior to 0.8.34, it is possible to obtain arrays containing Function, which allows escaping the sandbox. Given an array containing Function, and Object.fromEntries, it is possible to construct {[p]: Function} where p is any constructible property. This …

📅 Published: March 13, 2026, 3:51 p.m. 🔄 Last Modified: March 13, 2026, 7:54 p.m.

6.3

CVSS3.1

CVE-2026-32745 -

In JetBrains Datalore before 2026.1 session hijacking was possible due to missing secure attribute for cookie settings

📅 Published: March 13, 2026, 3:50 p.m. 🔄 Last Modified: March 13, 2026, 7:55 p.m.

8.7

CVSS4.0

CVE-2026-4092 - Arbitrary File Write via Path Traversal in Google clasp leading to RCE

Path Traversal in Clasp impacting versions < 3.2.0 allows a remote attacker to perform remote code execution via a malicious Google Apps Script project containing specially crafted filenames with directory traversal sequences.

📅 Published: March 13, 2026, 3:44 p.m. 🔄 Last Modified: March 13, 2026, 7:55 p.m.

6.3

CVSS3.1

CVE-2025-60012 - Apache Livy: Restrict file access

Malicious configuration can lead to unauthorized file access in Apache Livy. This issue affects Apache Livy 0.7.0 and 0.8.0 when connecting to Apache Spark 3.1 or later. A request that includes a Spark configuration value supported from Apache Spark version 3.1 can lead to users gaining access to…

📅 Published: March 13, 2026, 3:23 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

6.3

CVSS3.1

CVE-2025-66249 - Apache Livy: Unauthorized directory access

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache Livy. This issue affects Apache Livy: from 0.3.0 before 0.9.0. The vulnerability can only be exploited with non-default Apache Livy Server settings. If the configuration value "livy.file.local-d…

📅 Published: March 13, 2026, 3:21 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

8.5

CVSS4.0

CVE-2026-0956 - Out-Of-Bounds Read in Digilent DASYLab

There is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted file in Digilent DASYLab.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted fil…

📅 Published: March 13, 2026, 3:11 p.m. 🔄 Last Modified: March 14, 2026, 3:55 a.m.
Total resulsts: 337984
Page 11 of 33,799
« previous page » next page
Filters