7.1

CVSS3.1

CVE-2026-35412 - Directus has a TUS Upload Authorization Bypass Allows Arbitrary File Overwrite

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 11.16.1, Directus' TUS resumable upload endpoint (/files/tus) allows any authenticated user with basic file upload permissions to overwrite arbitrary existing files by UUID. The TUS controller performs only coโ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:33 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 1:20 p.m.

4.3

CVSS3.1

CVE-2026-35411 - Directus is an Open Redirect in Admin 2FA Setup Page

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 11.16.1, Directus is vulnerable to an open redirect via the redirect query parameter on the /admin/tfa-setup page. When an administrator who has not yet configured Two-Factor Authentication (2FA) visits a crafโ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:33 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 1:37 p.m.

6.1

CVSS3.1

CVE-2026-35410 - Directus has an Open Redirect via Parser Bypass in OAuth2/SAML Authentication Flow

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 11.16.1, an open redirect vulnerability exists in the login redirection logic. The isLoginRedirectAllowed function fails to correctly identify certain malformed URLs as external, allowing attackers to bypass rโ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:32 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 2:47 p.m.

7.7

CVSS4.0

CVE-2026-5709 - AWS Research and Engineering Studio (RES) FileBrowser Command Injection

Unsanitized input in the FileBrowser API in AWS Research and Engineering Studio (RES) version 2024.10 through 2025.12.01 might allow a remote authenticated actor to execute arbitrary commands on the cluster-manager EC2 instance via crafted input when using the FileBrowser functionality. To remediaโ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:32 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 8:03 p.m.

7.7

CVSS3.1

CVE-2026-35409 - Directus has a SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses in File Import

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 11.16.0, a Server-Side Request Forgery (SSRF) protection bypass has been identified and fixed in Directus. The IP address validation mechanism used to block requests to local and private networks could be circโ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:31 p.m. ๐Ÿ”„ Last Modified: April 8, 2026, 2:05 p.m.

8.7

CVSS3.1

CVE-2026-35408 - Directus is Missing Cross-Origin Opener Policy

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 11.17.0, Directus's Single Sign-On (SSO) login pages lacked a Cross-Origin-Opener-Policy (COOP) HTTP response header. Without this header, a malicious cross-origin window that opens the Directus login page retโ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:30 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 1:20 p.m.

8.7

CVSS4.0

CVE-2026-5685 - Tenda CX12L addressNat fromAddressNat stack-based overflow

A vulnerability was identified in Tenda CX12L 16.03.53.12. This affects the function fromAddressNat of the file /goform/addressNat. The manipulation of the argument page leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit is publicly available and might be used.

๐Ÿ“… Published: April 6, 2026, 9:30 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 6:53 a.m.

8.7

CVSS4.0

CVE-2026-5708 - Improper Control of User-Modifiable Attributes in RES CreateSession API

Unsanitized control of user-modifiable attributes in the session creation component in AWS Research and Engineering Studio (RES) prior to version 2026.03 could allow an authenticated remote user to escalate privileges, assume the virtual desktop host instance profile permissions, and interact with โ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:28 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 8:08 p.m.

8.7

CVSS4.0

CVE-2026-5707 - Command Injection via Virtual Desktop Session Name in AWS Research and Engineering Studio (RES)

Unsanitized input in an OS command in the virtual desktop session name handling in AWS Research and Engineering Studio (RES)ย version 2025.03 through 2025.12.01ย might allow a remote authenticated actor to execute arbitrary commands as root on the virtual desktop host via a crafted session name. To โ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:25 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 8:16 p.m.

4.7

CVSS3.1

CVE-2026-35404 - Open edX Platform has an Open Redirect in Survey Views via Unvalidated redirect_url Parameter

Open edX Platform enables the authoring and delivery of online learning at any scale. he view_survey endpoint accepts a redirect_url GET parameter that is passed directly to HttpResponseRedirect() without any URL validation. When a non-existent survey name is provided, the server issues an immediatโ€ฆ

๐Ÿ“… Published: April 6, 2026, 9:22 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 1:20 p.m.
Total resulsts: 343887
Page 128 of 34,389
ยซ previous page ยป next page
Filters