9.8

CVSS3.1

CVE-2024-40489 -

There is an injection vulnerability in jeecg boot versions 3.0.0 to 3.5.3 due to lax character filtering, which allows attackers to execute arbitrary code on components through specially crafted HTTP requests.

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 7, 2026, 8:07 a.m.

8.4

CVSS3.1

CVE-2026-30292 -

An arbitrary file overwrite vulnerability in Docudepot PDF Reader: PDF Viewer APP v1.0.34 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 3, 2026, 4:11 p.m.

7.5

CVSS3.1

CVE-2026-25833 - Buffer Overflow in mbed TLS IPv6 Parsing Function

Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 7, 2026, 8:07 a.m.

9.8

CVSS3.1

CVE-2024-43028 -

A command injection vulnerability in the component /jmreport/show of jeecg boot v3.0.0 to v3.5.3 allows attackers to execute arbitrary code via a crafted HTTP request.

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 7, 2026, 8:07 a.m.

7.7

CVSS3.1

CVE-2026-25835 -

Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG).

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 7, 2026, 8:07 a.m.

7.5

CVSS3.1

CVE-2026-34874 -

An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0.

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 7, 2026, 8:07 a.m.

6.5

CVSS3.1

CVE-2026-30523 -

A Business Logic vulnerability exists in SourceCodester Loan Management System v1.0 due to the lack of proper input validation. The application allows administrators to define "Loan Plans" which determine the duration of a loan (in months). However, the backend fails to validate that the duration mโ€ฆ

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 8, 2026, 8 p.m.

7.8

CVSS3.1

CVE-2026-23410 - apparmor: fix race on rawdata dereference

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix race on rawdata dereference There is a race condition that leads to a use-after-free situation: because the rawdata inodes are not refcounted, an attacker can start open()ing one of the rawdata files, and at the samโ€ฆ

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:23 p.m.

6.5

CVSS3.1

CVE-2026-25834 - mbedtls: Mbed TLS: Algorithm downgrade vulnerability

Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade.

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 7, 2026, 8:07 a.m.

7.8

CVSS3.1

CVE-2026-23407 - apparmor: fix missing bounds check on DEFAULT table in verify_dfa()

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix missing bounds check on DEFAULT table in verify_dfa() The verify_dfa() function only checks DEFAULT_TABLE bounds when the state is not differentially encoded. When the verification loop traverses the differential eโ€ฆ

๐Ÿ“… Published: April 1, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 4:38 p.m.
Total resulsts: 349182
Page 763 of 34,919
ยซ previous page ยป next page
Filters