8.2

CVSS4.0

CVE-2026-35579 - CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports

CoreDNS is a DNS server written in Go. In versions prior to 1.14.3, the gRPC, QUIC, DoH, and DoH3 transport implementations incorrectly handle TSIG authentication. For gRPC and QUIC, the server checks whether the TSIG key name exists in the configuration but never calls dns.TsigVerify() to validate…

📅 Published: May 5, 2026, 8:29 p.m. 🔄 Last Modified: May 5, 2026, 8:29 p.m.

5.3

CVSS4.0

CVE-2026-35527 - Incus blind SSRF via image import preflight HEAD request

Incus is an open source container and virtual machine manager. In versions prior to 7.0.0, the image import flow issues an outbound HEAD request to a user-supplied URL before validating the request against project restrictions such as restricted.images.servers. The imgPostURLInfo function construct…

📅 Published: May 5, 2026, 7:56 p.m. 🔄 Last Modified: May 5, 2026, 9:30 p.m.

7.8

CVSS4.0

CVE-2026-40280 - Gotenberg SSRF via case-insensitive URL scheme bypass in webhook and downloadFrom deny-lists

Gotenberg is an API-based document conversion tool. In versions 8.30.1 and earlier, the default private-IP deny-lists for the --webhook-deny-list and --api-download-from-deny-list flags use a case-sensitive regular expression (^https?://) to match URL schemes. Because Go's net/url.Parse() normalize…

📅 Published: May 5, 2026, 7:52 p.m. 🔄 Last Modified: May 5, 2026, 11 p.m.

9.3

CVSS4.0

CVE-2026-40331 - Masa CMS unauthenticated SQL injection via altTable parameter in JSON API

Masa CMS is an open source content management system. In versions 7.2.0 through 7.2.9, 7.3.0 through 7.3.14, 7.4.0 through 7.4.9, and 7.5.0 through 7.5.2, the unauthenticated JSON API accepts an altTable parameter that is stored via the setAltTable() method without validation or sanitization. This …

📅 Published: May 5, 2026, 7:48 p.m. 🔄 Last Modified: May 5, 2026, 11 p.m.

9.3

CVSS4.0

CVE-2026-40330 - Masa CMS SQL injection via sortDirection parameter in beanFeed

Masa CMS is an open source content management system. In versions 7.2.0 through 7.2.9, 7.3.0 through 7.3.14, 7.4.0 through 7.4.9, and 7.5.0 through 7.5.2, a SQL injection vulnerability exists in the beanFeed.cfc component within the getQuery function's handling of the sortDirection parameter. The p…

📅 Published: May 5, 2026, 7:46 p.m. 🔄 Last Modified: May 5, 2026, 10 p.m.

9.3

CVSS4.0

CVE-2026-40329 - SQL Injection vulnerability via sortBy in beanFeed

Masa CMS is an open source content management system. In versions 7.5.2 and earlier, a SQL injection vulnerability exists in the beanFeed.cfc component within the getQuery function's processing of the sortBy parameter. The application fails to properly sanitize or parameterize this input before inc…

📅 Published: May 5, 2026, 7:44 p.m. 🔄 Last Modified: May 5, 2026, 10:30 p.m.

4.8

CVSS4.0

CVE-2026-35453 - PhpSpreadsheet XSS via number format text substitution in HTML Writer

PhpSpreadsheet is a library for reading and writing spreadsheet files. In versions 1.30.3 and earlier, 2.0.0 through 2.1.15, 2.2.0 through 2.4.4, 3.3.0 through 3.10.4, and 4.0.0 through 5.6.0, the HTML Writer skips htmlspecialchars() output escaping when a cell uses a custom number format containin…

📅 Published: May 5, 2026, 7:39 p.m. 🔄 Last Modified: May 5, 2026, 10 p.m.

7.6

CVSS4.0

CVE-2026-35397 - jupyter-server path traversal allows access to sibling directories sharing root_dir name prefix

Jupyter Server is the backend for Jupyter web applications. In versions 2.17.0 and earlier, a path traversal vulnerability in the REST API allows an authenticated user to escape the configured root_dir and access sibling directories whose names begin with the same prefix as the root_dir. For exampl…

📅 Published: May 5, 2026, 7:37 p.m. 🔄 Last Modified: May 5, 2026, 9:30 p.m.

5.4

CVSS4.0

CVE-2026-34596 - Sandboxie-Plus local privilege escalation via TOCTOU race condition in UpdUtil addon installation

Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, a Time-of-Check-to-Time-of-Use (TOCTOU) race condition exists during addon installation. When a user installs an addon through the SandMan interface, UpdUtil.exe is spawned as SYSTEM by Sb…

📅 Published: May 5, 2026, 7:34 p.m. 🔄 Last Modified: May 5, 2026, 9:30 p.m.

2

CVSS4.0

CVE-2026-34527 - Sandboxie-Plus EditPassword hash entropy reduced from 160 bits to 80 bits due to incorrect nibble e…

Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, SbieIniServer::HashPassword converts a SHA-1 digest to hexadecimal incorrectly. The high nibble of each byte is shifted right by 8 instead of 4, which always produces zero for an 8-bit val…

📅 Published: May 5, 2026, 7:33 p.m. 🔄 Last Modified: May 5, 2026, 9:30 p.m.
Total resulsts: 348123
Page 2 of 34,813
« previous page » next page
Filters