9.3

CVSS4.0

CVE-2026-7546 - Totolink NR1800X lighttpd find_host_ip stack-based overflow

A security vulnerability has been detected in Totolink NR1800X 9.1.0u.6279_B20210910. The impacted element is the function find_host_ip of the component lighttpd. Such manipulation of the argument Host leads to stack-based buffer overflow. The attack can be executed remotely. The exploit has been d…

πŸ“… Published: May 1, 2026, 2:15 a.m. πŸ”„ Last Modified: May 1, 2026, 9:28 p.m.

6.9

CVSS4.0

CVE-2026-7545 - SourceCodester Advanced School Management System checkEmail Endpoint commonController.php sql injec…

A weakness has been identified in SourceCodester Advanced School Management System 1.0. The affected element is an unknown function of the file commonController.php of the component checkEmail Endpoint. This manipulation causes sql injection. Remote exploitation of the attack is possible. The explo…

πŸ“… Published: May 1, 2026, 1:45 a.m. πŸ”„ Last Modified: May 4, 2026, 4:53 p.m.

9.3

CVSS4.0

CVE-2026-7538 - Totolink A8000RU CGI cstecgi.cgi vulnerability os command injection

A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function Vulnerability of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument proto leads to os command injection. The attack may be initiated remotely. The exploi…

πŸ“… Published: May 1, 2026, 1:30 a.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

6.9

CVSS4.0

CVE-2026-7536 - Open5GS BSF pcfBindings bsf_sess_add_by_ip_address denial of service

A vulnerability was determined in Open5GS up to 2.7.7. This vulnerability affects the function bsf_sess_add_by_ip_address of the file /nbsf-management/v1/pcfBindings of the component BSF. Executing a manipulation of the argument ipv4Addr can lead to denial of service. The attack can be launched rem…

πŸ“… Published: May 1, 2026, 1:15 a.m. πŸ”„ Last Modified: May 1, 2026, 7:30 p.m.

5.3

CVSS4.0

CVE-2026-7535 - Open5GS transfer-update denial of service

A vulnerability was found in Open5GS up to 2.7.7. This affects the function amf_namf_comm_handle_registration_status_update_request in the library /lib/app/ogs-init.c of the file /namf-comm/v1/ue-contexts/{ueContextId}/transfer-update. Performing a manipulation of the argument ueContextId results i…

πŸ“… Published: May 1, 2026, 1 a.m. πŸ”„ Last Modified: May 4, 2026, 1:27 p.m.

6.9

CVSS4.0

CVE-2026-7519 - Fujian Apex LiveBOS Endpoint UploadImage.do path traversal

A vulnerability has been found in Fujian Apex LiveBOS up to 2.0. Impacted is an unknown function of the file /feed/UploadImage.do of the component Endpoint. Such manipulation of the argument filename leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the…

πŸ“… Published: May 1, 2026, 12:45 a.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

5.3

CVSS4.0

CVE-2026-7518 - Open5GS AMF SBI Endpoint sdmsubscription-notify amf_namf_callback_handle_sdm_data_change_notify den…

A flaw has been found in Open5GS up to 2.7.7. This issue affects the function amf_namf_callback_handle_sdm_data_change_notify of the file /namf-callback/v1/{id}/sdmsubscription-notify of the component AMF SBI Endpoint. This manipulation of the argument changeItem.newValue causes denial of service. …

πŸ“… Published: May 1, 2026, 12:30 a.m. πŸ”„ Last Modified: May 1, 2026, 9:25 p.m.

9.8

CVSS3.1

CVE-2026-43039 - net: ti: icssg-prueth: fix missing data copy and wrong recycle in ZC RX dispatch

In the Linux kernel, the following vulnerability has been resolved: net: ti: icssg-prueth: fix missing data copy and wrong recycle in ZC RX dispatch emac_dispatch_skb_zc() allocates a new skb via napi_alloc_skb() but never copies the packet data from the XDP buffer into it. The skb is passed up t…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 3, 2026, 5:46 a.m.

5.5

CVSS3.1

CVE-2026-43034 - bnxt_en: set backing store type from query type

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: set backing store type from query type bnxt_hwrm_func_backing_store_qcaps_v2() stores resp->type from the firmware response in ctxm->type and later uses that value to index fixed backing-store metadata arrays such as ctx…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 1, 2026, 11:15 p.m.

0.0

CVE-2026-43032 - NFC: pn533: bound the UART receive buffer

In the Linux kernel, the following vulnerability has been resolved: NFC: pn533: bound the UART receive buffer pn532_receive_buf() appends every incoming byte to dev->recv_skb and only resets the buffer after pn532_uart_rx_is_frame() recognizes a complete frame. A continuous stream of bytes withou…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 1, 2026, 11:15 p.m.
Total resulsts: 349182
Page 161 of 34,919
Β« previous page Β» next page
Filters