8.8

CVSS3.1

CVE-2026-4680 - chromium-browser: Use after free in FedCM

Use after free in FedCM in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 3:55 a.m.

8.8

CVSS3.1

CVE-2026-4677 - chromium-browser: Out of bounds read in WebAudio

Inappropriate implementation in WebAudio in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 3:55 a.m.

4.3

CVSS3.1

CVE-2026-4628 - Keycloak: org.keycloak.authorization: keycloak: unauthorized resource modification due to improper …

A flaw was found in Keycloak. An improper Access Control vulnerability in Keycloak’s User-Managed Access (UMA) resource_set endpoint allows attackers with valid credentials to bypass the allowRemoteResourceManagement=false restriction. This occurs due to incomplete enforcement of access control che…

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 2:03 p.m.

4.8

CVSS3.1

CVE-2024-51225 -

A stored cross-site scripting (XSS) vulnerability in the component /admin/add-brand.php of Phpgurukul Vehicle Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the brandname parameter.

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 24, 2026, 6:11 p.m.

4.8

CVSS3.1

CVE-2024-51224 -

Multiple cross-site scripting (XSS) vulnerabilities in the component /admin/edit-vehicle.php of Phpgurukul Vehicle Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the vehiclename, modelnumber, regnumber, vehiclesubtype, ch…

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 24, 2026, 6:13 p.m.

4.8

CVSS3.1

CVE-2024-51223 -

A stored cross-site scripting (XSS) vulnerability in the component /admin/profile.php of Phpgurukul Vehicle Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Mobile Number parameter.

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 24, 2026, 6:13 p.m.

7.5

CVSS3.1

CVE-2026-26828 - Null Pointer Dereference in owntone-server Leads to DoS via Crafted DAAP Request

A NULL pointer dereference in the daap_reply_playlists function (src/httpd_daap.c) of owntone-server commit 3d1652d allows attackers to cause a Denial of Service (DoS) via sending a crafted DAAP request to the server

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 2:50 p.m.

6.1

CVSS3.1

CVE-2024-51226 -

A stored cross-site scripting (XSS) vulnerability in the component /admin/search-vehicle.php of Phpgurukul Vehicle Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Search parameter.

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 24, 2026, 6:10 p.m.

5.4

CVSS3.1

CVE-2024-46878 -

A Cross-Site Scripting (XSS) vulnerability exists in the page parameter of tiki-editpage.php in Tiki version 26.3 and earlier. This vulnerability allows attackers to execute arbitrary JavaScript code via a crafted payload, leading to potential access to sensitive information or unauthorized actions.

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 24, 2026, 4:16 p.m.

5.1

CVSS4.0

CVE-2026-4564 - yangzongzhuan RuoYi Quartz Job job code injection

A security vulnerability has been detected in yangzongzhuan RuoYi up to 4.8.2. This issue affects some unknown processing of the file /monitor/job/ of the component Quartz Job Handler. Such manipulation of the argument invokeTarget leads to code injection. It is possible to launch the attack remote…

πŸ“… Published: March 22, 2026, 11:51 p.m. πŸ”„ Last Modified: March 25, 2026, 2:50 p.m.
Total resulsts: 340094
Page 74 of 34,010
Β« previous page Β» next page
Filters