5.3

CVSS4.0

CVE-2026-4780 - SourceCodester Sales and Inventory System HTTP GET Parameter update_out_standing.php sql injection

A vulnerability was detected in SourceCodester Sales and Inventory System 1.0. Impacted is an unknown function of the file update_out_standing.php of the component HTTP GET Parameter Handler. Performing a manipulation of the argument sid results in sql injection. The attack is possible to be carrie…

📅 Published: March 24, 2026, 11:11 p.m. 🔄 Last Modified: April 8, 2026, 8:01 p.m.

5.3

CVSS4.0

CVE-2026-4779 - SourceCodester Sales and Inventory System HTTP GET Parameter update_customer_details.php sql inject…

A security vulnerability has been detected in SourceCodester Sales and Inventory System 1.0. This issue affects some unknown processing of the file update_customer_details.php of the component HTTP GET Parameter Handler. Such manipulation of the argument sid leads to sql injection. The attack can b…

📅 Published: March 24, 2026, 10:22 p.m. 🔄 Last Modified: April 8, 2026, 8:01 p.m.

5.3

CVSS4.0

CVE-2026-4778 - SourceCodester Sales and Inventory System HTTP GET Parameter update_category.php sql injection

A weakness has been identified in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file update_category.php of the component HTTP GET Parameter Handler. This manipulation of the argument sid causes sql injection. Remote exploitation of the attack is poss…

📅 Published: March 24, 2026, 10:22 p.m. 🔄 Last Modified: April 8, 2026, 8:04 p.m.

5.3

CVSS4.0

CVE-2026-4777 - SourceCodester Sales and Inventory System POST Parameter view_supplier.php sql injection

A security flaw has been discovered in SourceCodester Sales and Inventory System 1.0. This affects an unknown part of the file view_supplier.php of the component POST Parameter Handler. The manipulation of the argument searchtxt results in sql injection. The attack may be launched remotely. The exp…

📅 Published: March 24, 2026, 9:42 p.m. 🔄 Last Modified: April 9, 2026, 8:29 a.m.

6.5

CVSS3.1

CVE-2026-33215 - NATS is vulnerable to MQTT hijacking via Client ID

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server provides an MQTT client interface. Prior to versions 2.11.15 and 2.12.5, Sessions and Messages can by hijacked via MQTT Client ID malfeasance. Versions 2.11.15 and 2.12.5 patch the issue.…

📅 Published: March 24, 2026, 8:55 p.m. 🔄 Last Modified: March 31, 2026, 8:09 p.m.

8.7

CVSS4.0

CVE-2026-3912 - TIBCO ActiveMatrix BusinessWorks Injection Vulnerability

Injection vulnerabilities due to validation/sanitisation of user-supplied input in ActiveMatrix BusinessWorks and Enterprise Administrator allows information disclosure, including exposure of accessible local files and host system details, and may allow manipulation of application behaviour.

📅 Published: March 24, 2026, 8:44 p.m. 🔄 Last Modified: March 25, 2026, 8:57 p.m.

7.8

CVSS3.1

CVE-2026-24159 -

NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.

📅 Published: March 24, 2026, 8:27 p.m. 🔄 Last Modified: March 31, 2026, 8:09 p.m.

7.8

CVSS3.1

CVE-2026-24157 -

NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.

📅 Published: March 24, 2026, 8:27 p.m. 🔄 Last Modified: March 31, 2026, 8:09 p.m.

7.4

CVSS3.1

CVE-2026-4371 - Out of bounds read in IMAP parsing

A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside the buffer. If a mail server or connection to a mail server were compromised, an attacker could cause the parser to malfunction, potentially crashing Thunderbird or leaking sensitiv…

📅 Published: March 24, 2026, 8:27 p.m. 🔄 Last Modified: April 14, 2026, 4:42 p.m.

6.5

CVSS3.1

CVE-2026-3889 - Spoofing issue in Thunderbird

Spoofing issue in Thunderbird. This vulnerability was fixed in Thunderbird 149 and Thunderbird 140.9.

📅 Published: March 24, 2026, 8:27 p.m. 🔄 Last Modified: April 14, 2026, 4:42 p.m.
Total resulsts: 349182
Page 933 of 34,919
« previous page » next page
Filters