8.8

CVSS4.0

CVE-2026-27654 - NGINX ngx_http_dav_module vulnerability

NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_dav_module module that might allow an attacker to trigger a buffer overflow to the NGINX worker process; this vulnerability may result in termination of the NGINX worker process or modification of source or destination file names…

πŸ“… Published: March 24, 2026, 2:13 p.m. πŸ”„ Last Modified: March 27, 2026, 9:21 a.m.

5.3

CVSS4.0

CVE-2026-28755 - NGINX ngx_stream_ssl_module vulnerability

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the cert…

πŸ“… Published: March 24, 2026, 2:13 p.m. πŸ”„ Last Modified: March 27, 2026, 9:21 a.m.

6.3

CVSS4.0

CVE-2026-28753 - NGINX ngx_mail_proxy_module vulnerability

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_mail_smtp_module module due to the improper handling of CRLF sequences in DNS responses. This allows an attacker-controlled DNS server to inject arbitrary headers into SMTP upstream requests, leading to potential request manipulation.…

πŸ“… Published: March 24, 2026, 2:13 p.m. πŸ”„ Last Modified: March 27, 2026, 9:21 a.m.

8.5

CVSS4.0

CVE-2026-32647 - NGINX ngx_http_mp4_module vulnerability

NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module module, which might allow an attacker to trigger a buffer over-read or over-write to the NGINX worker memory resulting in its termination or possibly code execution, using a specially crafted MP4 file. This issue affec…

πŸ“… Published: March 24, 2026, 2:13 p.m. πŸ”„ Last Modified: March 27, 2026, 9:21 a.m.

8.5

CVSS4.0

CVE-2026-27784 - NGINX ngx_http_mp4_module vulnerability

The 32-bit implementation of NGINX Open Source has a vulnerability in the ngx_http_mp4_module module, which might allow an attacker to over-read or over-write NGINX worker memory resulting in its termination, using a specially crafted MP4 file. The issue only affects 32-bit NGINX Open Source if it …

πŸ“… Published: March 24, 2026, 2:13 p.m. πŸ”„ Last Modified: March 30, 2026, 8:58 p.m.

7.5

CVSS3.1

CVE-2026-33418 - @dicebear/converter ensureSize() Vulnerable to SVG Dimension Capping Bypass via XML Comment Injecti…

DiceBear is an avatar library for designers and developers. Prior to version 9.4.2, the `ensureSize()` function in `@dicebear/converter` used a regex-based approach to rewrite SVG `width`/`height` attributes, capping them at 2048px to prevent denial of service. This size capping could be bypassed b…

πŸ“… Published: March 24, 2026, 1:25 p.m. πŸ”„ Last Modified: March 25, 2026, 8:50 p.m.

4.7

CVSS3.1

CVE-2026-33311 - @dicebear/core and @dicebear/initials Vulnerable to SVG Injection via Unsanitized Options

DiceBear is an avatar library for designers and developers. Starting in version 5.0.0 and prior to versions 5.4.4, 6.1.4, 7.1.4, 8.0.3, and 9.4.1, SVG attribute values derived from user-supplied options (`backgroundColor`, `fontFamily`, `textColor`) were not XML-escaped before interpolation into SV…

πŸ“… Published: March 24, 2026, 1:23 p.m. πŸ”„ Last Modified: March 26, 2026, 1:06 p.m.

8.8

CVSS3.1

CVE-2026-33310 - Intake has a Command Injection via shell() Expansion in Parameter Defaults

Intake is a package for finding, investigating, loading and disseminating data. Prior to version 2.0.9, the shell() syntax within parameter default values appears to be automatically expanded during the catalog parsing process. If a catalog contains a parameter default such as shell(<command>), the…

πŸ“… Published: March 24, 2026, 1:17 p.m. πŸ”„ Last Modified: March 26, 2026, 12:19 p.m.

8.7

CVSS4.0

CVE-2026-33497 - Langflow: /profile_pictures/{folder_name}/{file_name} endpoint file reading

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.7.1, in the download_profile_picture function of the /profile_pictures/{folder_name}/{file_name} endpoint, the folder_name and file_name parameters are not strictly filtered, which allows the secret_ke…

πŸ“… Published: March 24, 2026, 1:14 p.m. πŸ”„ Last Modified: March 25, 2026, 8:50 p.m.

7.5

CVSS3.1

CVE-2026-33484 - Langflow has Unauthenticated IDOR on Image Downloads

Langflow is a tool for building and deploying AI-powered agents and workflows. In versions 1.0.0 through 1.8.1, the `/api/v1/files/images/{flow_id}/{file_name}` endpoint serves image files without any authentication or ownership check. Any unauthenticated request with a known flow_id and file_name …

πŸ“… Published: March 24, 2026, 12:57 p.m. πŸ”„ Last Modified: March 25, 2026, 8:50 p.m.
Total resulsts: 349182
Page 943 of 34,919
Β« previous page Β» next page
Filters