8.4

CVSS4.0

CVE-2026-34589 - OpenEXR: DWA Lossy Decoder Heap Out-of-Bounds Write

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.2.0 to before 3.2.7, 3.3.9, and 3.4.9, the DWA lossy decoder constructs temporary per-component block pointers using signed 32-bit arithmetic. For …

📅 Published: April 6, 2026, 3:33 p.m. 🔄 Last Modified: April 8, 2026, 7:50 p.m.

8.6

CVSS4.0

CVE-2026-34588 - OpenEXR has a signed 32-bit Overflow in PIZ Decoder Leads to OOB Read/Write

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.1.0 to before 3.2.7, 3.3.9, and 3.4.9, internal_exr_undo_piz() advances the working wavelet pointer with signed 32-bit arithmetic. Because nx, ny, …

📅 Published: April 6, 2026, 3:31 p.m. 🔄 Last Modified: April 8, 2026, 7:50 p.m.

7.9

CVSS4.0

CVE-2026-34444 - Lupa has a Sandbox escape and RCE due to incomplete attribute_filter enforcement in getattr / setat…

Lupa integrates the runtimes of Lua or LuaJIT2 into CPython. In 2.6 and earlier, attribute_filter is not consistently applied when attributes are accessed through built-in functions like getattr and setattr. This allows an attacker to bypass the intended restrictions and eventually achieve arbitrar…

📅 Published: April 6, 2026, 3:30 p.m. 🔄 Last Modified: April 7, 2026, 1:20 p.m.

6.9

CVSS4.0

CVE-2026-5666 - code-projects Online FIR System SQL Database Backup File complaints.sql sensitive information

A vulnerability was detected in code-projects Online FIR System 1.0. Affected by this issue is some unknown functionality of the file /complaints.sql of the component SQL Database Backup File Handler. The manipulation results in insecure storage of sensitive information. The attack may be performed…

📅 Published: April 6, 2026, 3:30 p.m. 🔄 Last Modified: April 7, 2026, 9:39 a.m.

0.0

CVE-2026-34402 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-39330. Reason: This candidate is a duplicate of CVE-2026-39330. Notes: All CVE users should reference CVE-2026-39330 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accident…

📅 Published: April 6, 2026, 3:27 p.m. 🔄 Last Modified: April 9, 2026, 6:16 p.m.

3.1

CVSS3.1

CVE-2026-33405 - Pi-hole has a Stored HTML Injection in queries.js

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking application. From 6.0 to before 6.5, the formatInfo() function in queries.js renders data.upstream, data.client.ip, and data.ede.text into HTML without escaping when a user expands a qu…

📅 Published: April 6, 2026, 3:23 p.m. 🔄 Last Modified: April 10, 2026, 9:45 a.m.

5.9

CVSS3.1

CVE-2026-34380 - OpenEXR has a signed integer overflow (undefined behavior) in undo_pxr24_impl may allow bounds-chec…

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.2.0 to before 3.2.7, 3.3.9, and 3.4.9, a signed integer overflow exists in undo_pxr24_impl() in src/lib/OpenEXRCore/internal_pxr24.c at line 377. T…

📅 Published: April 6, 2026, 3:22 p.m. 🔄 Last Modified: April 8, 2026, 7:50 p.m.

7.1

CVSS3.1

CVE-2026-34379 - OpenEXR has a misaligned write in LossyDctDecoder_execute leading to undefined behavior (DWA/DWAB d…

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.2.0 to before 3.2.7, 3.3.9, and 3.4.9, a misaligned memory write vulnerability exists in LossyDctDecoder_execute() in src/lib/OpenEXRCore/internal_…

📅 Published: April 6, 2026, 3:21 p.m. 🔄 Last Modified: April 8, 2026, 7:50 p.m.

6.5

CVSS3.1

CVE-2026-34378 - OpenEXR has a signed integer overflow in generic_unpack() when parsing EXR files with crafted negat…

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.4.0 to before 3.4.9, a missing bounds check on the dataWindow attribute in EXR file headers allows an attacker to trigger a signed integer overflow…

📅 Published: April 6, 2026, 3:19 p.m. 🔄 Last Modified: April 8, 2026, 7:50 p.m.

8.2

CVSS3.1

CVE-2026-34982 - Vim modeline bypass via various options affects Vim < 9.2.0276

Vim is an open source, command line text editor. Prior to version 9.2.0276, a modeline sandbox bypass in Vim allows arbitrary OS command execution when a user opens a crafted file. The `complete`, `guitabtooltip` and `printheader` options are missing the `P_MLE` flag, allowing a modeline to be exec…

📅 Published: April 6, 2026, 3:16 p.m. 🔄 Last Modified: April 7, 2026, 1:20 p.m.
Total resulsts: 343942
Page 146 of 34,395
« previous page » next page
Filters