7

CVSS4.0

CVE-2026-6966 - Signature Threshold Bypass in awslabs/tough Delegated Roles

Improper verification of cryptographic signature uniqueness in delegated role validation in awslabs/tough before tough-v0.22.0 allows remote authenticated users to bypass the TUF signature threshold requirement by duplicating a valid signature, causing the client to accept forged delegated role met…

πŸ“… Published: April 24, 2026, 7:38 p.m. πŸ”„ Last Modified: April 24, 2026, 7:48 p.m.

8.4

CVSS3.1

CVE-2026-41433 - OpenTelemetry eBPF Instrumentation: Privileged Java agent injection allows arbitrary host file over…

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From 0.4.0 to before 0.8.0, a flaw in the Java agent injection path allows a local attacker controlling a Java workload to overwrite arbitrary host files when Java injection is enabled and OBI is r…

πŸ“… Published: April 24, 2026, 7:26 p.m. πŸ”„ Last Modified: April 24, 2026, 7:26 p.m.

7.1

CVSS4.0

CVE-2026-41427 - Better Auth OAuth 2.1 Provider: Unprivileged users can register OAuth clients

Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.5, the clientPrivileges option documents a create action, but the OAuth client creation endpoints did not invoke the hook before persisting new clients. Deployments that configured clientPrivileges to restrict c…

πŸ“… Published: April 24, 2026, 7:23 p.m. πŸ”„ Last Modified: April 24, 2026, 7:23 p.m.

8.8

CVSS3.1

CVE-2026-41429 - Improper validation of NBNS name_len in arduino-esp32 NetBIOS leads to memory corruption

arduino-esp32 is an Arduino core for the ESP32, ESP32-S2, ESP32-S3, ESP32-C3, ESP32-C6 and ESP32-H2 microcontrollers. Prior to 3.3.8, there is a remotely reachable memory corruption issue in the NBNS packet handling path. When NetBIOS is enabled by calling NBNS.begin(...), the device listens on UDP…

πŸ“… Published: April 24, 2026, 7:19 p.m. πŸ”„ Last Modified: April 24, 2026, 7:19 p.m.

9.1

CVSS3.1

CVE-2026-41428 - Budibase: Authentication Bypass via Unanchored Regex in Public Endpoint Matcher β€” Unauthenticated A…

Budibase is an open-source low-code platform. Prior to 3.35.4, the authenticated middleware uses unanchored regular expressions to match public (no-auth) endpoint patterns against ctx.request.url. Since ctx.request.url in Koa includes the query string, an attacker can access any protected endpoint …

πŸ“… Published: April 24, 2026, 7:17 p.m. πŸ”„ Last Modified: April 24, 2026, 7:17 p.m.

6.1

CVSS3.1

CVE-2026-41426 - pretalx: Email injection via unescaped user-controlled placeholders in pretalx mail templates

pretalx is a conference planning tool. Prior to 2026.1.0, an unauthenticated attacker can send arbitrary HTML-rendered emails from a pretalx instance's configured sender address by embedding malformed HTML or markdown link syntax in a user-controlled template placeholder such as the account display…

πŸ“… Published: April 24, 2026, 7:15 p.m. πŸ”„ Last Modified: April 24, 2026, 7:15 p.m.

5.4

CVSS3.1

CVE-2026-41425 - Authlib: Cross-site request forging when using cache

Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to 1.6.11, there is no CSRF protection on the cache feature in authlib.integrations.starlette_client.OAuth. This vulnerability is fixed in 1.6.11.

πŸ“… Published: April 24, 2026, 7:14 p.m. πŸ”„ Last Modified: April 24, 2026, 7:14 p.m.

4.7

CVSS3.1

CVE-2026-41244 - Mojic: Observable Timing Discrepancy in HMAC Verification

Mojic is a CLI tool to transform readable C code into an unrecognizable chaotic stream of emojis. Prior to 2.1.4, the CipherEngine uses a standard equality operator (!==) to verify the HMAC-SHA256 integrity seal during the decryption phase. This creates an Observable Timing Discrepancy (CWE-208), a…

πŸ“… Published: April 24, 2026, 7:11 p.m. πŸ”„ Last Modified: April 24, 2026, 7:11 p.m.

7.1

CVSS4.0

CVE-2026-41894 - SiYuan: Incomplete Fix Bypass for CVE-2026-30869: Path Traversal via Double URL Encoding in `/expor…

SiYuan is an open-source personal knowledge management system. Prior to 3.6.5, the fix for CVE-2026-30869 only added a denylist check (IsSensitivePath) but did not address the root cause β€” a redundant url.PathUnescape() call in serveExport(). An authenticated attacker can use double URL encoding (%…

πŸ“… Published: April 24, 2026, 6:56 p.m. πŸ”„ Last Modified: April 24, 2026, 6:56 p.m.

8.8

CVSS3.1

CVE-2026-41421 - SiYuan Desktop Notification XSS Leads to Electron RCE

SiYuan is an open-source personal knowledge management system. Prior to 3.6.5, SiYuan desktop renders notification messages as raw HTML inside an Electron renderer. The notification route POST /api/notification/pushMsg accepts a user-controlled msg value, forwards it through the backend broadcast l…

πŸ“… Published: April 24, 2026, 6:53 p.m. πŸ”„ Last Modified: April 24, 2026, 6:53 p.m.
Total resulsts: 347806
Page 130 of 34,781
Β« previous page Β» next page
Filters