2.7

CVSS3.1

CVE-2026-36922 - SQL Injection Vulnerability in Sourcecodester Cab Management System 1.0

Sourcecodester Cab Management System v1.0 is vulnerable to SQL injection in the file /cms/admin/categories/view_category.php.

πŸ“… Published: April 13, 2026, midnight πŸ”„ Last Modified: April 15, 2026, 3:45 p.m.

0.0

CVE-2026-31420 - bridge: mrp: reject zero test interval to avoid OOM panic

In the Linux kernel, the following vulnerability has been resolved: bridge: mrp: reject zero test interval to avoid OOM panic br_mrp_start_test() and br_mrp_start_in_test() accept the user-supplied interval value from netlink without validation. When interval is 0, usecs_to_jiffies(0) yields 0, c…

πŸ“… Published: April 13, 2026, midnight πŸ”„ Last Modified: April 14, 2026, 4:34 p.m.

6.2

CVSS3.1

CVE-2026-29628 - Stack Overflow in tinyobjloader Causing DoS via Crafted MTL File

A stack overflow in the experimental/tinyobj_loader_opt.h file of tinyobjloader commit d56555b allows attackers to cause a Denial of Service (DoS) via supplying a crafted .mtl file.

πŸ“… Published: April 13, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 3:34 p.m.

5.8

CVSS3.1

CVE-2026-31426 - ACPI: EC: clean up handlers on probe failure in acpi_ec_setup()

In the Linux kernel, the following vulnerability has been resolved: ACPI: EC: clean up handlers on probe failure in acpi_ec_setup() When ec_install_handlers() returns -EPROBE_DEFER on reduced-hardware platforms, it has already started the EC and installed the address space handler with the struct…

πŸ“… Published: April 13, 2026, midnight πŸ”„ Last Modified: April 14, 2026, 4:34 p.m.

8.7

CVSS4.0

CVE-2026-6137 - Tenda F451 AdvSetWan fromAdvSetWan stack-based overflow

A vulnerability was detected in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function fromAdvSetWan of the file /goform/AdvSetWan. The manipulation of the argument wanmode/PPPOEPassword results in stack-based buffer overflow. It is possible to launch the attack remotely. The exploit i…

πŸ“… Published: April 12, 2026, 11:45 p.m. πŸ”„ Last Modified: April 13, 2026, 5:52 p.m.

8.7

CVSS4.0

CVE-2026-6136 - Tenda F451 L7Im frmL7ImForm stack-based overflow

A security vulnerability has been detected in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publ…

πŸ“… Published: April 12, 2026, 11:30 p.m. πŸ”„ Last Modified: April 14, 2026, 4:32 p.m.

8.7

CVSS4.0

CVE-2026-6135 - Tenda F451 SetIpBind fromSetIpBind stack-based overflow

A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made ava…

πŸ“… Published: April 12, 2026, 11:15 p.m. πŸ”„ Last Modified: April 13, 2026, 3:21 p.m.

8.7

CVSS4.0

CVE-2026-6134 - Tenda F451 qossetting fromqossetting stack-based overflow

A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the function fromqossetting of the file /goform/qossetting. Performing a manipulation of the argument qos results in stack-based buffer overflow. The attack is possible to be carried out remotely. The e…

πŸ“… Published: April 12, 2026, 11 p.m. πŸ”„ Last Modified: April 15, 2026, 3:26 p.m.

8.7

CVSS4.0

CVE-2026-6133 - Tenda F451 SafeUrlFilter fromSafeUrlFilter stack-based overflow

A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. This affects the function fromSafeUrlFilter of the file /goform/SafeUrlFilter. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and mig…

πŸ“… Published: April 12, 2026, 10:45 p.m. πŸ”„ Last Modified: April 13, 2026, 3:01 p.m.

9.3

CVSS4.0

CVE-2026-6132 - Totolink A7100RU CGI cstecgi.cgi setLedCfg os command injection

A vulnerability was determined in Totolink A7100RU 7.4cu.2313_b20191024. Affected by this issue is the function setLedCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This manipulation of the argument enable causes os command injection. Remote exploitation of the attack is possibl…

πŸ“… Published: April 12, 2026, 10:30 p.m. πŸ”„ Last Modified: April 13, 2026, 5:55 p.m.
Total resulsts: 346285
Page 228 of 34,629
Β« previous page Β» next page
Filters