5.1

CVSS4.0

CVE-2026-24795 - An Out-of-bounds Write in CloverHackyColor/CloverBootloader

Out-of-bounds Write vulnerability in CloverHackyColor CloverBootloader (MdeModulePkg/Universal/RegularExpressionDxe/Oniguruma modules). This vulnerability is associated with program files regcomp.C. This issue affects CloverBootloader: before 5162.

πŸ“… Published: Jan. 27, 2026, 8:23 a.m. πŸ”„ Last Modified: April 18, 2026, 3 p.m.

6.9

CVSS4.0

CVE-2026-24796 - A Out-of-bounds Read vulnerability in CloverHackyColor/CloverBootloader

Out-of-bounds Read vulnerability in CloverHackyColor CloverBootloader (MdeModulePkg/Universal/RegularExpressionDxe/Oniguruma modules). This vulnerability is associated with program files regparse.C. This issue affects CloverBootloader: before 5162.

πŸ“… Published: Jan. 27, 2026, 8:22 a.m. πŸ”„ Last Modified: April 18, 2026, 7 p.m.

9.2

CVSS4.0

CVE-2026-24794 - Chunk Unloading Security Vulnerability in CardboardPowered/cardboard

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in CardboardPowered cardboard (src/main/java/org/cardboardpowered/impl/world modules). This vulnerability is associated with program files WorldImpl.Java. This issue affects cardboard: before 1.21.4.

πŸ“… Published: Jan. 27, 2026, 8:21 a.m. πŸ”„ Last Modified: April 18, 2026, 3 p.m.

10

CVSS4.0

CVE-2026-24793 - A heap-based buffer over-read or buffer overflow vulnerability in azerothcore/azerothcore-wotlk

Out-of-bounds Write, Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in azerothcore azerothcore-wotlk (deps/zlib modules). This vulnerability is associated with program files inflate.C. This issue affects azerothcore-wotlk: through v4.0.0.

πŸ“… Published: Jan. 27, 2026, 8:19 a.m. πŸ”„ Last Modified: April 18, 2026, 2:30 a.m.

4.6

CVSS4.0

CVE-2026-1464 - A possible integer overflow vulnerability in RawTherapee/RawTherapee

Integer Overflow or Wraparound vulnerability in MuntashirAkon AppManager (app/src/main/java/org/apache/commons/compress/archivers/tar modules). This vulnerability is associated with program files TarUtils.Java. This issue affects AppManager: before 4.0.4.

πŸ“… Published: Jan. 27, 2026, 8:18 a.m. πŸ”„ Last Modified: April 18, 2026, 7 p.m.

8.7

CVSS4.0

CVE-2026-1465 - A heap-based buffer over-read or buffer overflow in tildearrow/furnace

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in anyrtcIO-Community anyRTC-RTMP-OpenSource (third_party/faad2-2.7/libfaad modules). This vulnerability is associated with program files bits.C, syntax.C. This issue affects anyRTC-RTMP-OpenSource: before 1.0.

πŸ“… Published: Jan. 27, 2026, 8:15 a.m. πŸ”„ Last Modified: April 18, 2026, 7 p.m.

5.3

CVSS3.1

CVE-2025-14971 - Link Invoice Payment for WooCommerce <= 2.8.0 - Missing Authorization to Unauthenticated Arbitrary …

The Link Invoice Payment for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the createPartialPayment and cancelPartialPayment functions in all versions up to, and including, 2.8.0. This makes it possible for unauthenticated a…

πŸ“… Published: Jan. 27, 2026, 6:44 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS4.0

CVE-2026-21408 - DLL Search Path Vulnerability Allowing Arbitrary Code Execution with SYSTEM Privileges

beat-access for Windows version 3.0.3 and prior contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arbitrary code may be executed with SYSTEM privileges.

πŸ“… Published: Jan. 27, 2026, 5:08 a.m. πŸ”„ Last Modified: April 18, 2026, 2:30 a.m.

7.8

CVSS3.1

CVE-2026-1361 - ASDA-Soft Stack-based Buffer Overflow Vulnerability

ASDA-Soft Stack-based Buffer Overflow Vulnerability

πŸ“… Published: Jan. 27, 2026, 3:11 a.m. πŸ”„ Last Modified: April 18, 2026, 3 p.m.

4.7

CVSS3.1

CVE-2026-24686 - go-tuf Path Traversal in TAP 4 Multirepo Client Allows Arbitrary File Write via Malicious Repositor…

go-tuf is a Go implementation of The Update Framework (TUF). go-tuf's TAP 4 Multirepo Client uses the map file repository name string (`repoName`) as a filesystem path component when selecting the local metadata cache directory. Starting in version 2.0.0 and prior to version 2.4.1, if an applicatio…

πŸ“… Published: Jan. 27, 2026, 12:45 a.m. πŸ”„ Last Modified: April 18, 2026, 2:45 a.m.
Total resulsts: 349182
Page 1938 of 34,919
Β« previous page Β» next page
Filters