9.8

CVSS3.1

CVE-2026-24770 - RAGFlow Affected by Zip Slip Remote Code Execution (RCE) in MinerUParser

RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine. In version 0.23.1 and possibly earlier versions, the MinerU parser contains a "Zip Slip" vulnerability, allowing an attacker to overwrite arbitrary files on the server (leading to Remote Code Execution) via a malicious ZIP archi…

📅 Published: Jan. 27, 2026, 9:51 p.m. 🔄 Last Modified: April 18, 2026, 2:45 p.m.

7.8

CVSS3.1

CVE-2026-24765 - PHPUnit Vulnerable to Unsafe Deserialization in PHPT Code Coverage Handling

PHPUnit is a testing framework for PHP. A vulnerability has been discovered in versions prior to 12.5.8, 11.5.50, 10.5.62, 9.6.33, and 8.5.52 involving unsafe deserialization of code coverage data in PHPT test execution. The vulnerability exists in the `cleanupForCoverage()` method, which deseriali…

📅 Published: Jan. 27, 2026, 9:35 p.m. 🔄 Last Modified: April 18, 2026, 2 a.m.

6.9

CVSS4.0

CVE-2026-24748 - Kargo's `GetConfig()` and `RefreshResource()` API endpoints allow unauthenticated access

Kargo manages and automates the promotion of software artifacts. Prior to versions 1.8.7, 1.7.7, and 1.6.3, a bug was found with authentication checks on the `GetConfig()` API endpoint. This allowed unauthenticated users to access this endpoint by specifying an `Authorization` header with any non-e…

📅 Published: Jan. 27, 2026, 9:23 p.m. 🔄 Last Modified: April 18, 2026, 7 p.m.

8.8

CVSS3.1

CVE-2026-24747 - PyTorch Vulnerable to Remote Code Execution via Untrusted Checkpoint Files

PyTorch is a Python package that provides tensor computation. Prior to version 2.10.0, a vulnerability in PyTorch's `weights_only` unpickler allows an attacker to craft a malicious checkpoint file (`.pth`) that, when loaded with `torch.load(..., weights_only=True)`, can corrupt memory and potential…

📅 Published: Jan. 27, 2026, 9:13 p.m. 🔄 Last Modified: April 18, 2026, 8 p.m.

8.1

CVSS3.1

CVE-2026-24741 - ConvertX Vulnerable to Arbitrary File Deletion via Path Traversal in `POST /delete`

ConvertXis a self-hosted online file converter. In versions prior to 0.17.0, the `POST /delete` endpoint uses a user-controlled `filename` value to construct a filesystem path and deletes it via `unlink` without sufficient validation. By supplying path traversal sequences (e.g., `../`), an attacker…

📅 Published: Jan. 27, 2026, 9:11 p.m. 🔄 Last Modified: April 18, 2026, 2 a.m.

5.9

CVSS4.0

CVE-2026-24738 - gmrtd ReadFile Vulnerable to Denial of Service via Excessive TLV Length Values

gmrtd is a Go library for reading Machine Readable Travel Documents (MRTDs). Prior to version 0.17.2, ReadFile accepts TLVs with lengths that can range up to 4GB, which can cause unconstrained resource consumption in both memory and cpu cycles. ReadFile can consume an extended TLV with lengths well…

📅 Published: Jan. 27, 2026, 9:08 p.m. 🔄 Last Modified: April 18, 2026, 2 a.m.

8.7

CVSS4.0

CVE-2026-24740 - Dozzle Agent Label-Based Access Control Bypass Allows Unauthorized Container Shell Access

Dozzle is a realtime log viewer for docker containers. Prior to version 9.0.3, a flaw in Dozzle’s agent-backed shell endpoints allows a user restricted by label filters (for example, `label=env=dev`) to obtain an interactive root shell in out‑of‑scope containers (for example, `env=prod`) on the sam…

📅 Published: Jan. 27, 2026, 8:59 p.m. 🔄 Last Modified: April 18, 2026, 2 a.m.

9.1

CVSS3.1

CVE-2026-24736 - Squidex has Server-Side Request Forgery (SSRF) Issue in Webhook Configuration

Squidex is an open source headless content management system and content management hub. Versions of the application up to and including 7.21.0 allow users to define "Webhooks" as actions within the Rules engine. The url parameter in the webhook configuration does not appear to validate or restrict…

📅 Published: Jan. 27, 2026, 8:54 p.m. 🔄 Last Modified: April 18, 2026, 2 a.m.

9.3

CVSS4.0

CVE-2025-21589 - Session Smart Router, Session Smart Conductor, WAN Assurance Router: API Authentication Bypass vuln…

An Authentication Bypass Using an Alternate Path or Channel vulnerability in Juniper Networks Session Smart Router may allows a network-based attacker to bypass authentication and take administrative control of the device. This issue affects Session Smart Router:  * from 5.6.7 before 5.6.17,…

📅 Published: Jan. 27, 2026, 8:32 p.m. 🔄 Last Modified: April 15, 2026, 2:34 p.m.

10

CVSS4.0

CVE-2025-14988 - Incorrect Permission Assignment for Critical Resource vulnerability in iba Systems ibaPDA

A security issue has been identified in ibaPDA that could allow unauthorized actions on the file system under certain conditions. This may impact the confidentiality, integrity, or availability of the system.

📅 Published: Jan. 27, 2026, 8:08 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 1923 of 34,919
« previous page » next page
Filters