9.8

CVSS3.0

CVE-2026-0759 - Katana Network Development Starter Kit executeCommand Command Injection Remote Code Execution Vulne…

Katana Network Development Starter Kit executeCommand Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Katana Network Development Starter Kit. Authentication is not required to exploit this vulne…

📅 Published: Jan. 23, 2026, 3:28 a.m. 🔄 Last Modified: April 18, 2026, 3:30 a.m.

7.8

CVSS3.0

CVE-2026-0758 - mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability

mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of mcp-server-siri-shortcuts. An attacker must first obtain the ability to execute low-privileged code on the targe…

📅 Published: Jan. 23, 2026, 3:28 a.m. 🔄 Last Modified: April 18, 2026, 3:30 a.m.

8.8

CVSS3.0

CVE-2026-0757 - MCP Manager for Claude Desktop execute-command Command Injection Sandbox Escape Vulnerability

MCP Manager for Claude Desktop execute-command Command Injection Sandbox Escape Vulnerability. This vulnerability allows remote attackers to bypass the sandbox on affected installations of MCP Manager for Claude Desktop. User interaction is required to exploit this vulnerability in that the target …

📅 Published: Jan. 23, 2026, 3:27 a.m. 🔄 Last Modified: April 18, 2026, 3:30 a.m.

9.8

CVSS3.0

CVE-2026-0756 - github-kanban-mcp-server execAsync Command Injection Remote Code Execution Vulnerability

github-kanban-mcp-server execAsync Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of github-kanban-mcp-server. Authentication is not required to exploit this vulnerability. The specific flaw exis…

📅 Published: Jan. 23, 2026, 3:26 a.m. 🔄 Last Modified: April 18, 2026, 3:30 a.m.

9.8

CVSS3.0

CVE-2026-0755 - gemini-mcp-tool execAsync Command Injection Remote Code Execution Vulnerability

gemini-mcp-tool execAsync Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of gemini-mcp-tool. Authentication is not required to exploit this vulnerability. The specific flaw exists within the impl…

📅 Published: Jan. 23, 2026, 3:26 a.m. 🔄 Last Modified: April 18, 2026, 3:30 a.m.

9.8

CVSS3.0

CVE-2025-15061 - Framelink Figma MCP Server fetchWithRetry Command Injection Remote Code Execution Vulnerability

Framelink Figma MCP Server fetchWithRetry Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Framelink Figma MCP Server. Authentication is not required to exploit this vulnerability. The specific …

📅 Published: Jan. 23, 2026, 3:20 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.0

CVE-2025-15062 - Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability

Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp. User interaction is required to exploit this vulnerability in that the target must visit a malici…

📅 Published: Jan. 23, 2026, 3:19 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2026-0795 - ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability

ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of ALGO 8180 IP Audio Alerter devices. Authentication is required to exploit this vulnerability. The specific flaw…

📅 Published: Jan. 23, 2026, 3:01 a.m. 🔄 Last Modified: April 18, 2026, 3:30 p.m.

9.8

CVSS3.1

CVE-2026-0794 - ALGO 8180 IP Audio Alerter SIP Use-After-Free Remote Code Execution Vulnerability

ALGO 8180 IP Audio Alerter SIP Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of ALGO 8180 IP Audio Alerter devices. Authentication is not required to exploit this vulnerability. The specific flaw e…

📅 Published: Jan. 23, 2026, 3:01 a.m. 🔄 Last Modified: April 18, 2026, 3:30 a.m.

9.8

CVSS3.1

CVE-2026-0793 - ALGO 8180 IP Audio Alerter InformaCast Heap-based Buffer Overflow Remote Code Execution Vulnerabili…

ALGO 8180 IP Audio Alerter InformaCast Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of ALGO 8180 IP Audio Alerter devices. Authentication is not required to exploit this vulnerability. …

📅 Published: Jan. 23, 2026, 3:01 a.m. 🔄 Last Modified: April 18, 2026, 8:15 p.m.
Total resulsts: 349182
Page 1981 of 34,919
« previous page » next page
Filters