3.7

CVSS3.1

CVE-2026-6276 - curl: libcurl: Information disclosure due to cookie leak when reusing connections with custom Host …

A flaw was found in libcurl. This vulnerability allows for information disclosure when a custom `Host:` header is used in an initial HTTP request, and a subsequent request reuses the same connection without specifying a new `Host:` header. This can lead to libcurl incorrectly sending cookies intend…

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, midnight

6.5

CVSS3.1

CVE-2026-6429 - curl: libcurl: Credential leak via reused proxy connection during HTTP redirects

A flaw was found in libcurl. When configured to use a .netrc file for credentials and follow HTTP redirects, libcurl can inadvertently send the password from the initial connection to the redirected host. This sensitive information disclosure occurs when both the original and redirect URLs use clea…

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, midnight

5.3

CVSS3.1

CVE-2026-6253 - curl: curl: Proxy credential disclosure via redirects to unauthenticated proxies

A flaw was found in curl. When curl is configured to use distinct proxies for different URL schemes, a redirect from a URL using an authenticated proxy to one using an unauthenticated proxy can inadvertently expose the initial proxy's credentials. This improper credential management (CWE-522) may a…

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, midnight

6.5

CVSS3.1

CVE-2026-5773 - curl: libcurl: Wrong file transfer due to incorrect SMB connection reuse

A flaw was found in libcurl. Due to a logical error in the connection reuse mechanism for SMB (Server Message Block) transfers, libcurl might reuse an existing SMB connection with a different share than intended. This vulnerability, categorized as CWE-488 (Exposure of Data Element to Wrong Session)…

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, midnight

0.0

CVE-2025-56537 -

A stored cross-site scripting (XSS) vulnerability in opennebula v6.10.0.1 and fixed in v.7.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the virtual network template parameter.

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, 3:47 p.m.

0.0

CVE-2026-38992 -

Cockpit v2.13.5 and earlier is vulnerable to arbitrary code execution via the filter parameter within multiple endpoints. This vulnerability allows an attacker to run system commands on the underlying infrastructure via the MongoLite $func operator.

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, 2:30 p.m.

0.0

CVE-2026-37555 -

An issue was discovered in libsndfile 1.2.2 IMA ADPCM codec. The AIFF code path (line 241) was fixed with (sf_count_t) cast, but the WAV code path (line 235) and close path (line 167) were not. When samplesperblock (int) * blocks (int) exceeds INT_MAX, the 32-bit multiplication overflows before bei…

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, 3:48 p.m.

0.0

CVE-2025-56534 -

A cross-site scripting (XSS) vulnerability in the custom authenticator driver of opennebula v6.10.0.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, 3:54 p.m.

0.0

CVE-2025-56536 -

A stored cross-site scripting (XSS) vulnerability in opennebula v6.10.0.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the user information parameter.

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, 3:50 p.m.

0.0

CVE-2026-38993 -

Cockpit 2.13.5 and earlier is vulnerable to directory traversal via the Buckets component. This vulnerability allows authenticated attackers to write files to arbitrary locations within the uploads directory or overwrite assets with malicious versions.

πŸ“… Published: April 29, 2026, midnight πŸ”„ Last Modified: April 29, 2026, 2:37 p.m.
Total resulsts: 347815
Page 74 of 34,782
Β« previous page Β» next page
Filters