5.5

CVSS3.1

CVE-2026-39103 -

Buffer Overflow vulnerability in GPAC before commit v391dc7f4d234988ea0bc3cc294eb725eddf8f702 allows an attacker to cause a denial of service via the src/scenegraph/svg_attributes.c, svg_parse_strings(), gf_svg_parse_attribute()

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 9:45 p.m.

9.1

CVSS3.1

CVE-2026-34408 -

An issue was discovered in Gambio 4.9.2.0 (patched in 2024-02 v1.0.0 for GX4 v4.0.0.0 to v4.9.2.0). The password reset function can be bypassed to set arbitrary passwords for arbitrary accounts if the ID is known.

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 9:45 p.m.

9.8

CVSS3.1

CVE-2026-38428 - Kestra v1.3.3 and Earlier Vulnerable to SQL Injection via Unsanitized GET Parameter

Kestra v1.3.3 and before is vulnerable to SQL Injection. The vulnerability occurs because user-controlled input from a GET parameter is directly concatenated into an SQL query without proper sanitization or parameterization. As a result, attackers can inject arbitrary SQL expressions into the datab…

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 9:30 p.m.

7.5

CVSS3.1

CVE-2025-66369 - DoS caused by 5G NR NAS Registration Accept Message Handling

An issue was discovered in MM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, W920, W930, W1000, Modem 5123, and Modem 5300. Incorrect handling of 5G NR NAS registration accept messages leads to a Denial of Service.

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 10:30 p.m.

5.5

CVSS3.1

CVE-2026-43069 - Bluetooth: hci_ll: Fix firmware leak on error path

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_ll: Fix firmware leak on error path Smatch reports: drivers/bluetooth/hci_ll.c:587 download_firmware() warn: 'fw' from request_firmware() not released on lines: 544. In download_firmware(), if request_firmware() …

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 5 p.m.

8.8

CVSS3.1

CVE-2026-31195 -

The ping diagnostic handler in /bin/httpd_clientside for ALTICE LABS / SFR France GR140DG and GR140IG fibre CPE/Router/Gateway, inserts unsanitized user input into a system() call, allowing authenticated remote attackers to execute arbitrary commands as root via crafted destAddr parameters using sh…

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 9:45 p.m.

7.0

CVSS3.1

CVE-2026-43059 - Bluetooth: MGMT: Fix list corruption and UAF in command complete handlers

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix list corruption and UAF in command complete handlers Commit 302a1f674c00 ("Bluetooth: MGMT: Fix possible UAFs") introduced mgmt_pending_valid(), which not only validates the pending command but also unlinks i…

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 5 p.m.

9.8

CVSS3.1

CVE-2026-38431 -

ERPNext v15.103.1 and before is vulnerable to Server-Side Template Injection (SSTI). An attacker with permission to create or edit email templates can inject template expressions that are executed on the server when the template is rendered.

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 6 p.m.

7.5

CVSS3.1

CVE-2024-52911 - Undisclosed Authorization Control Vulnerability in Bitcoin Core

Bitcoin Core through 28.x has a security issue, the details of which are not disclosed. The earliest affected version is 0.14.

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 11:30 p.m.

7.1

CVSS3.1

CVE-2026-43062 - Bluetooth: L2CAP: Fix type confusion in l2cap_ecred_reconf_rsp()

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix type confusion in l2cap_ecred_reconf_rsp() l2cap_ecred_reconf_rsp() casts the incoming data to struct l2cap_ecred_conn_rsp (the ECRED *connection* response, 8 bytes with result at offset 6) instead of struct…

πŸ“… Published: May 5, 2026, midnight πŸ”„ Last Modified: May 8, 2026, 12:40 p.m.
Total resulsts: 349182
Page 123 of 34,919
Β« previous page Β» next page
Filters