9.8

CVSS3.1

CVE-2026-30643 -

An issue was discovered in DedeCMS 5.7.118 allowing attackers to execute code via crafted setup tag values in a module upload.

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 7, 2026, 8:07 a.m.

8.4

CVSS3.1

CVE-2026-30289 -

An arbitrary file overwrite vulnerability in Tinybeans Private Family Album App v5.9.5-prod allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 9:19 a.m.

3.3

CVSS3.1

CVE-2026-35094 - Libinput: libinput: information disclosure via dangling pointer in lua plugin handling

A flaw was found in libinput. An attacker capable of deploying a Lua plugin file in specific system directories can exploit a dangling pointer vulnerability. This occurs when a garbage collection cleanup function is called, leaving a pointer that can then be printed to system logs. This could poten…

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 8, 2026, 7:57 p.m.

5.9

CVSS3.1

CVE-2025-67805 - Unauthenticated Access to Database Monitor Diagnostic Endpoints in Sage DPW 2025_06_004

A non-default configuration in Sage DPW 2025_06_004 allows unauthenticated access to diagnostic endpoints within the Database Monitor feature, exposing sensitive information such as hashes and table names. This feature is disabled by default in all installations and never available in Sage DPW Clou…

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 9, 2026, 8:29 a.m.

7.8

CVSS3.1

CVE-2026-23406 - apparmor: fix side-effect bug in match_char() macro usage

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix side-effect bug in match_char() macro usage The match_char() macro evaluates its character parameter multiple times when traversing differential encoding chains. When invoked with *str++, the string pointer advances…

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 6:40 p.m.

5.5

CVSS3.1

CVE-2026-23404 - apparmor: replace recursive profile removal with iterative approach

In the Linux kernel, the following vulnerability has been resolved: apparmor: replace recursive profile removal with iterative approach The profile removal code uses recursion when removing nested profiles, which can lead to kernel stack exhaustion and system crashes. Reproducer: $ pf='a'; for…

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 6:40 p.m.

9.1

CVSS3.1

CVE-2026-34873 - mbedtls: Mbed TLS: Client impersonation during TLS 1.3 session resumption

An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session.

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 8, 2026, 7:59 p.m.

6.5

CVSS3.1

CVE-2026-30522 - Negative Overdue Penalty Allows Unauthorized Financial Gain

A Business Logic vulnerability exists in SourceCodester Loan Management System v1.0 due to improper server-side validation. The application allows administrators to create "Loan Plans" with specific penalty rates for overdue payments. While the frontend interface prevents users from entering negati…

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 2, 2026, 8:09 p.m.

8.4

CVSS3.1

CVE-2026-30287 -

An arbitrary file overwrite vulnerability in Deep Thought Industries ACE Scanner PDF Scanner v1.4.5 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 9:19 a.m.

5.5

CVSS3.1

CVE-2026-23403 - apparmor: fix memory leak in verify_header

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix memory leak in verify_header The function sets `*ns = NULL` on every call, leaking the namespace string allocated in previous iterations when multiple profiles are unpacked. This also breaks namespace consistency ch…

πŸ“… Published: April 1, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 6:39 p.m.
Total resulsts: 349182
Page 761 of 34,919
Β« previous page Β» next page
Filters