9.8

CVSS3.1

CVE-2025-70149 -

CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID parameter.

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 23, 2026, 4:13 p.m.

8.8

CVSS3.1

CVE-2025-70151 -

code-projects Scholars Tracking System 1.0 allows an authenticated attacker to achieve remote code execution via unrestricted file upload. The endpoints update_profile_picture.php and upload_picture.php store uploaded files in a web-accessible uploads/ directory using the original, user-supplied fi…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 23, 2026, 5:53 p.m.

9.8

CVSS3.1

CVE-2025-70152 -

code-projects Community Project Scholars Tracking System 1.0 is vulnerable to SQL Injection in the admin user management endpoints /admin/save_user.php and /admin/update_user.php. These endpoints lack authentication checks and directly concatenate user-supplied POST parameters (firstname, lastname,…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 23, 2026, 5:54 p.m.

7.8

CVSS3.1

CVE-2026-23222 - crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly

In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly The existing allocation of scatterlists in omap_crypto_copy_sg_lists() was allocating an array of scatterlist pointers, not scatterlist objects, resulting in a…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: April 13, 2026, 6:02 a.m.

6.5

CVSS3.1

CVE-2025-70063 -

The 'Medical History' module in PHPGurukul Hospital Management System v4.0 contains an Insecure Direct Object Reference (IDOR) vulnerability. The application fails to verify that the requested 'viewid' parameter belongs to the currently authenticated patient. This allows a user to access the confid…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 26, 2026, 10:33 p.m.

0.0

CVE-2025-71228 - kernel: LoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 26, 2026, 11:07 p.m.

5.5

CVSS3.1

CVE-2025-71226 - kernel: wifi: iwlwifi: Implement settime64 as stub for MVM/MLD PTP

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 26, 2026, 11:08 p.m.

7.8

CVSS3.1

CVE-2026-23223 - xfs: fix UAF in xchk_btree_check_block_owner

In the Linux kernel, the following vulnerability has been resolved: xfs: fix UAF in xchk_btree_check_block_owner We cannot dereference bs->cur when trying to determine if bs->cur aliases bs->sc->sa.{bno,rmap}_cur after the latter has been freed. Fix this by sampling before type before any freeing…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: April 13, 2026, 6:02 a.m.

6.5

CVSS3.1

CVE-2025-70062 -

PHPGurukul Hospital Management System v4.0 contains a Cross-Site Request Forgery (CSRF) vulnerability in the 'Add Doctor' module. The application fails to enforce CSRF token validation on the add-doctor.php endpoint. This allows remote attackers to create arbitrary Doctor accounts (privileged users…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: Feb. 23, 2026, 9:03 p.m.

5.5

CVSS3.1

CVE-2026-23219 - mm/slab: Add alloc_tagging_slab_free_hook for memcg_alloc_abort_single

In the Linux kernel, the following vulnerability has been resolved: mm/slab: Add alloc_tagging_slab_free_hook for memcg_alloc_abort_single When CONFIG_MEM_ALLOC_PROFILING_DEBUG is enabled, the following warning may be noticed: [ 3959.023862] ------------[ cut here ]------------ [ 3959.023891] al…

πŸ“… Published: Feb. 18, 2026, midnight πŸ”„ Last Modified: March 18, 2026, 5:30 p.m.
Total resulsts: 344676
Page 1154 of 34,468
Β« previous page Β» next page
Filters