4.4

CVSS3.1

CVE-2026-39864 - Kamailio Auth: Processing Vulnerability For Additional Authenticated User Identity Checks

Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.0.5 and 5.8.7, an out-of-bounds read in the auth module of Kamailio (formerly OpenSER and SER) allows remote attackers to cause a denial of service (process crash) via a specially crafted SIP packet if a successful user…

πŸ“… Published: April 8, 2026, 7:58 p.m. πŸ”„ Last Modified: April 8, 2026, 7:58 p.m.

7.5

CVSS3.1

CVE-2026-39863 - Kamailio Core: TCP Data Processing Vulnerability

Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.1.1, 6.0.6, and 5.8.8, an out-of-bounds access in the core of Kamailio (formerly OpenSER and SER) allows remote attackers to cause a denial of service (process crash) via a specially crafted data packet sent over TCP. T…

πŸ“… Published: April 8, 2026, 7:55 p.m. πŸ”„ Last Modified: April 8, 2026, 7:55 p.m.

6.3

CVSS4.0

CVE-2026-39862 - Tophat has a Command Injection Vulnerability When Accessing a Maliciously Crafted Tophat Link

Tophat is a mobile applications testing harness. Prior to 2.5.1, Tophat is affected by remote code execution via crafted tophat:// or http://localhost:29070 URLs. The arguments query parameter flows unsanitized from URL parsing through to /bin/bash -c execution, allowing an attacker to execute arbi…

πŸ“… Published: April 8, 2026, 7:50 p.m. πŸ”„ Last Modified: April 8, 2026, 7:50 p.m.

6.3

CVSS4.0

CVE-2026-39859 - LiquidJS has a renderFile() / parseFile() bypass configured root and allow arbitrary file read

LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. Prior to 10.25.3, liquidjs 10.25.0 documents root as constraining filenames passed to renderFile() and parseFile(), but top-level file loads do not enforce that boundary. A Liquid instance configured with an empty t…

πŸ“… Published: April 8, 2026, 7:45 p.m. πŸ”„ Last Modified: April 8, 2026, 7:45 p.m.

4.2

CVSS3.1

CVE-2026-39413 - LightRAG has a JWT Algorithm Confusion Vulnerability in LightRAG API

LightRAG provides simple and fast retrieval-augmented generation. Prior to 1.4.14, the LightRAG API is vulnerable to a JWT algorithm confusion attack where an attacker can forge tokens by specifying 'alg': 'none' in the JWT header. Since the jwt.decode() call does not explicitly deny the 'none' alg…

πŸ“… Published: April 8, 2026, 7:41 p.m. πŸ”„ Last Modified: April 8, 2026, 7:41 p.m.

5.3

CVSS3.1

CVE-2026-39412 - LiquidJS has an ownPropertyOnly bypass via sort_natural filter β€” prototype property information dis…

LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. Prior to 10.25.4, the sort_natural filter bypasses the ownPropertyOnly security option, allowing template authors to extract values of prototype-inherited properties through a sorting side-channel attack. Applicatio…

πŸ“… Published: April 8, 2026, 7:39 p.m. πŸ”„ Last Modified: April 8, 2026, 7:39 p.m.

5

CVSS3.1

CVE-2026-39411 - LobeHub has an unauthenticated authentication bypass on `webapi` routes via forgeable `X-lobe-chat-…

LobeHub is a work-and-lifestyle space to find, build, and collaborate with agent teammates that grow with you. Prior to 2.1.48, the webapi authentication layer trusts a client-controlled X-lobe-chat-auth header that is only XOR-obfuscated, not signed or otherwise authenticated. Because the XOR key …

πŸ“… Published: April 8, 2026, 7:37 p.m. πŸ”„ Last Modified: April 8, 2026, 7:37 p.m.

5.3

CVSS4.0

CVE-2026-39362 - InvenTree has SSRF via Remote Image Download β€” No IP/Hostname Validation on remote_image URLs

InvenTree is an Open Source Inventory Management System. Prior to 1.2.7 and 1.3.0, when INVENTREE_DOWNLOAD_FROM_URL is enabled (opt-in), authenticated users can supply remote_image URLs that are fetched server-side via requests.get() with only Django's URLValidator check. There is no validation aga…

πŸ“… Published: April 8, 2026, 7:32 p.m. πŸ”„ Last Modified: April 8, 2026, 7:32 p.m.

8.2

CVSS4.0

CVE-2026-35525 - LiquidJS has a root restriction bypass for partial and layout loading through symlinked templates

LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. Prior to 10.25.3, for {% include %}, {% render %}, and {% layout %}, LiquidJS checks whether the candidate path is inside the configured partials or layouts roots before reading it. That check is path-based, not rea…

πŸ“… Published: April 8, 2026, 7:30 p.m. πŸ”„ Last Modified: April 8, 2026, 7:30 p.m.

6.6

CVSS3.1

CVE-2026-35479 - InvenTree Plugin Installation - Insufficient Permissions

InvenTree is an Open Source Inventory Management System. Prior to 1.2.7 and 1.3.0, any users who have staff access permissions can install plugins via the API, without requiring "superuser" account access. This level of permission requirement is out of alignment with other plugin actions (such as u…

πŸ“… Published: April 8, 2026, 7:27 p.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.
Total resulsts: 343452
Page 18 of 34,346
Β« previous page Β» next page
Filters