5.3

CVSS4.0

CVE-2026-7708 - Open5GS UDR subscription.c ogs_dbi_subscription_data denial of service

A vulnerability was determined in Open5GS up to 2.7.7. The affected element is the function ogs_dbi_subscription_data in the library /lib/dbi/subscription.c of the component UDR. This manipulation of the argument supi_id causes denial of service. The attack may be initiated remotely. The exploit ha…

πŸ“… Published: May 3, 2026, 10:45 p.m. πŸ”„ Last Modified: May 3, 2026, 10:45 p.m.

5.3

CVSS4.0

CVE-2026-7707 - Open5GS UDR nudr-handler.c udr_nudr_dr_handle_subscription_context denial of service

A vulnerability was found in Open5GS up to 2.7.7. Impacted is the function udr_nudr_dr_handle_subscription_context of the file /src/udr/nudr-handler.c of the component UDR. The manipulation of the argument pei results in denial of service. The attack can be launched remotely. The exploit has been m…

πŸ“… Published: May 3, 2026, 10:30 p.m. πŸ”„ Last Modified: May 3, 2026, 10:30 p.m.

5.3

CVSS4.0

CVE-2026-7706 - Open5GS AMF gmm-handler.c gmm_handle_service_request denial of service

A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function gmm_handle_service_request of the file /src/amf/gmm-handler.c of the component AMF. The manipulation leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public …

πŸ“… Published: May 3, 2026, 10:15 p.m. πŸ”„ Last Modified: May 5, 2026, 12:46 a.m.

5.3

CVSS4.0

CVE-2026-7705 - JD Cloud JDCOS Service jdcap set_iptv_info command injection

A flaw has been found in JD Cloud JDCOS 4.5.1.r4518. This vulnerability affects the function set_iptv_info of the file /jdcap of the component Service Interface. Executing a manipulation of the argument vid can lead to command injection. It is possible to launch the attack remotely. The exploit has…

πŸ“… Published: May 3, 2026, 10 p.m. πŸ”„ Last Modified: May 4, 2026, 4:06 p.m.

5.3

CVSS4.0

CVE-2026-7704 - AV Stumpfl Pixera Two Media Server Service Port 1338 path traversal

A vulnerability has been found in AV Stumpfl Pixera Two Media Server up to 25.1 R2. The affected element is an unknown function of the component Service Port 1338. Such manipulation leads to path traversal. The exploit has been disclosed to the public and may be used. Upgrading to version 25.2 R3 i…

πŸ“… Published: May 3, 2026, 4:45 p.m. πŸ”„ Last Modified: May 4, 2026, 4:06 p.m.

6.9

CVSS4.0

CVE-2026-7703 - AV Stumpfl Pixera Two Media Server Websocket API code injection

A flaw has been found in AV Stumpfl Pixera Two Media Server up to 25.2 R2. Impacted is an unknown function of the component Websocket API. This manipulation causes code injection. The attack can be initiated remotely. The exploit has been published and may be used. Upgrading to version 25.2 R3 is r…

πŸ“… Published: May 3, 2026, 4:15 p.m. πŸ”„ Last Modified: May 4, 2026, 4:06 p.m.

6.9

CVSS4.0

CVE-2026-7702 - toeverything AFFiNE Public Markdown Preview Endpoint :docId allowDocPreview authorization

A vulnerability was detected in toeverything AFFiNE up to 0.26.3. This issue affects the function allowDocPreview of the file /workspace/:workspaceId/:docId of the component Public Markdown Preview Endpoint. The manipulation results in authorization bypass. It is possible to launch the attack remot…

πŸ“… Published: May 3, 2026, 3:45 p.m. πŸ”„ Last Modified: May 3, 2026, 3:45 p.m.

5.3

CVSS4.0

CVE-2026-7701 - Telegram Desktop Bot API url_auth_box.cpp RequestButton null pointer dereference

A security vulnerability has been detected in Telegram Desktop up to 6.7.5. This vulnerability affects the function RequestButton of the file Telegram/SourceFiles/boxes/url_auth_box.cpp of the component Bot API. The manipulation of the argument login_url leads to null pointer dereference. It is pos…

πŸ“… Published: May 3, 2026, 3:30 p.m. πŸ”„ Last Modified: May 4, 2026, 4:06 p.m.

5.3

CVSS4.0

CVE-2026-7700 - langflow-ai langflow LambdaFilterComponent lambda_filter.p eval code injection

A weakness has been identified in langflow-ai langflow up to 1.8.4. This affects the function eval of the file src/lfx/src/lfx/components/llm_operations/lambda_filter.p of the component LambdaFilterComponent. Executing a manipulation can lead to code injection. The attack may be performed from remo…

πŸ“… Published: May 3, 2026, 2:15 p.m. πŸ”„ Last Modified: May 5, 2026, 12:43 a.m.

5.3

CVSS4.0

CVE-2026-7699 - Dromara MaxKey StrUtils.java StrUtils.checkSqlInjection sql injection

A security flaw has been discovered in Dromara MaxKey up to 3.5.13. Affected by this issue is the function StrUtils.checkSqlInjection of the file StrUtils.java. Performing a manipulation of the argument filtersfields results in sql injection. The attack is possible to be carried out remotely. The e…

πŸ“… Published: May 3, 2026, 2 p.m. πŸ”„ Last Modified: May 4, 2026, 1:21 p.m.
Total resulsts: 348389
Page 65 of 34,839
Β« previous page Β» next page
Filters