5.4

CVSS3.1

CVE-2026-21691 - iccDEV has Type Confusion in CIccTag:IsTypeCompressed()

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have a Type Confusion vulnerability in `CIccTag:IsTypeCompressed()`. This vulnerability affects use…

πŸ“… Published: Jan. 7, 2026, 9:53 p.m. πŸ”„ Last Modified: April 18, 2026, 8 a.m.

6.3

CVSS3.1

CVE-2026-21690 - iccDEV has Type Confusion in CIccTagXmlTagData::ToXml()

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have a Type Confusion vulnerability in `CIccTagXmlTagData::ToXml()`. This vulnerability affects use…

πŸ“… Published: Jan. 7, 2026, 9:50 p.m. πŸ”„ Last Modified: April 18, 2026, 5 p.m.

6.5

CVSS3.1

CVE-2026-21689 - iccDEV has Type Confusion in CIccProfileXml::ParseBasic() at IccXML/IccLibXML/IccProfileXml.cpp

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have a Type Confusion vulnerability in `CIccProfileXml::ParseBasic()` at `IccXML/IccLibXML/IccProfi…

πŸ“… Published: Jan. 7, 2026, 9:46 p.m. πŸ”„ Last Modified: April 18, 2026, 5 p.m.

8.8

CVSS3.1

CVE-2026-21688 - iccDEV has Type Confusion in SIccCalcOp::ArgsPushed() at IccProfLib/IccMpeCalc.cpp

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have a Type Confusion vulnerability in `SIccCalcOp::ArgsPushed()` at `IccProfLib/IccMpeCalc.cpp`. T…

πŸ“… Published: Jan. 7, 2026, 9:43 p.m. πŸ”„ Last Modified: April 18, 2026, 8 a.m.

7.1

CVSS3.1

CVE-2026-21687 - iccDEV has Undefined Behavior in CIccTagCurve::CIccTagCurve()

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have Undefined Behavior in `CIccTagCurve::CIccTagCurve()`. This vulnerability affects users of the …

πŸ“… Published: Jan. 7, 2026, 9:32 p.m. πŸ”„ Last Modified: April 18, 2026, 8 a.m.

7.5

CVSS3.1

CVE-2025-69263 - pnpm Lockfile Integrity Bypass Allows Remote Dynamic Dependencies

pnpm is a package manager. Versions 10.26.2 and below store HTTP tarball dependencies (and git-hosted tarballs) in the lockfile without integrity hashes. This allows the remote server to serve different content on each install, even when a lockfile is committed. An attacker who publishes a package …

πŸ“… Published: Jan. 7, 2026, 9:31 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 3:04 p.m.

7.1

CVSS3.1

CVE-2026-21686 - iccDEV has Undefined Behavior in CIccTagLutAtoB::Validate()

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have Undefined Behavior in `CIccTagLutAtoB::Validate()`. This vulnerability affects users of the ic…

πŸ“… Published: Jan. 7, 2026, 9:25 p.m. πŸ”„ Last Modified: April 18, 2026, 8 a.m.

7.1

CVSS3.1

CVE-2026-21685 - iccDEV has Undefined Behavior in CIccTagLut16::Read()

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have Undefined Behavior in `CIccTagLut16::Read()`. This vulnerability affects users of the iccDEV l…

πŸ“… Published: Jan. 7, 2026, 9:23 p.m. πŸ”„ Last Modified: April 18, 2026, 7:30 p.m.

7.1

CVSS3.1

CVE-2026-21684 - iccDEV has Undefined Behavior in CIccTagSpectralViewingConditions()

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have Undefined Behavior in `CIccTagSpectralViewingConditions()`. This vulnerability affects users o…

πŸ“… Published: Jan. 7, 2026, 9:18 p.m. πŸ”„ Last Modified: April 18, 2026, 8 a.m.

9.1

CVSS3.1

CVE-2025-69222 - LibreChat is vulnerable to Server-Side Request Forgery due to missing restrictions

LibreChat is a ChatGPT clone with additional features. Version 0.8.1-rc2 is prone to a server-side request forgery (SSRF) vulnerability due to missing restrictions of the Actions feature in the default configuration. LibreChat enables users to configure agents with predefined instructions and actio…

πŸ“… Published: Jan. 7, 2026, 9:17 p.m. πŸ”„ Last Modified: Jan. 15, 2026, 9:36 p.m.
Total resulsts: 348202
Page 2145 of 34,821
Β« previous page Β» next page
Filters