5.5

CVSS3.1

CVE-2026-23398 - icmp: fix NULL pointer dereference in icmp_tag_validation()

In the Linux kernel, the following vulnerability has been resolved: icmp: fix NULL pointer dereference in icmp_tag_validation() icmp_tag_validation() unconditionally dereferences the result of rcu_dereference(inet_protos[proto]) without checking for NULL. The inet_protos[] array is sparse -- only…

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 3:17 p.m.

6.1

CVSS3.1

CVE-2026-29933 - YZMCMS v7.4 Reflected XSS via Modified Referrer Header

A reflected cross-site scripting (XSS) vulnerability in the /index/login.html component of YZMCMS v7.4 allows attackers to execute arbitrary Javascript in the context of the user's browser via modifying the referrer value in the request header.

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: April 2, 2026, 7:59 a.m.

6.1

CVSS3.1

CVE-2026-30162 -

Cross Site Scripting (xss) vulnerability in Timo 2.0.3 via crafted links in the title field.

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: April 2, 2026, 7:59 a.m.

6.1

CVSS3.1

CVE-2026-29969 -

A cross-site scripting (XSS) vulnerability in the wff_cols_pref.css.aspx endpoint of staffwiki v7.0.1.19219 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted HTTP request.

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: May 7, 2026, 6:57 p.m.

5.5

CVSS3.1

CVE-2026-23396 - wifi: mac80211: fix NULL deref in mesh_matches_local()

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix NULL deref in mesh_matches_local() mesh_matches_local() unconditionally dereferences ie->mesh_config to compare mesh configuration parameters. When called from mesh_rx_csa_frame(), the parsed action-frame elem…

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 3:18 p.m.

6.5

CVSS3.1

CVE-2026-29905 -

Kirby CMS through 5.1.4 allows an authenticated user with 'Editor' permissions to cause a persistent Denial of Service (DoS) via a malformed image upload. The application fails to properly validate the return value of the PHP getimagesize() function. When the system attempts to process this file fo…

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 9:39 a.m.

6.1

CVSS3.1

CVE-2026-29934 -

A reflected cross-site scripting (XSS) vulnerability in the /admin/menus component of Lightcms v2.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via modifying the referer value in the request header.

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 9:39 a.m.

6.2

CVSS3.1

CVE-2026-29976 - hcxpcapngtool: hcxtools: ZerBea hcxpcapngtool: Information disclosure via buffer overflow in getrad…

Buffer Overflow vulnerability in ZerBea hcxpcapngtool v. 7.0.1-43-g2ee308e allows a local attacker to obtain sensitive information via the getradiotapfield() function

πŸ“… Published: March 26, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 9:39 a.m.

0

CVSS3.1

CVE-2026-30892 - Crun incorrectly parses `crun exec` option `-u`, leading to privilege escalation

crun is an open source OCI Container Runtime fully written in C. In versions 1.19 through 1.26, the `crun exec` option `-u` (`--user`) is incorrectly parsed. The value `1` is interpreted as UID 0 and GID 0 when it should have been UID 1 and GID 0. The process thus runs with higher privileges than…

πŸ“… Published: March 25, 2026, 11:57 p.m. πŸ”„ Last Modified: March 27, 2026, 8:29 p.m.

7.7

CVSS3.1

CVE-2026-34056 - OpenEMR has a Privilege Escalation that Allows a Low-Level User to View Admin-Only Data

OpenEMR is a free and open source electronic health records and medical practice management application. A Broken Access Control vulnerability in OpenEMR up to and including version 8.0.0.3 allows low-privilege users to view and download Ensora eRx error logs without proper authorization checks. Th…

πŸ“… Published: March 25, 2026, 11:53 p.m. πŸ”„ Last Modified: March 28, 2026, 1:53 a.m.
Total resulsts: 349182
Page 870 of 34,919
Β« previous page Β» next page
Filters