3.6

CVSS3.1

CVE-2026-32722 - Memray-generated HTML reports vulnerable to Stored XSS via unescaped command-line metadata

Memray is a memory profiler for Python. Prior to Memray 1.19.2, Memray rendered the command line of the tracked process directly into generated HTML reports without escaping. Because there was no escaping, attacker-controlled command line arguments were inserted as raw HTML into the generated repor…

πŸ“… Published: March 18, 2026, 9:25 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

9.1

CVSS3.1

CVE-2026-32703 - OpenProject's repository files are served with the MIME type allowing them to be used to bypass Con…

OpenProject is an open-source, web-based project management software. In versions prior to 16.6.9, 17.0.6, 17.1.3, and 17.2.1, the Repositories module did not properly escape filenames displayed from repositories. This allowed an attacker with push access into the repository to create commits with …

πŸ“… Published: March 18, 2026, 9:04 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

9.1

CVSS3.1

CVE-2026-32698 - OpenProject has a SQL Injection via Custom Field Name that can be chained to Remote Code Execution

OpenProject is an open-source, web-based project management software. Versions prior to 16.6.9, 17.0.6, 17.1.3, and 17.2.1 are vulnerable to an SQL injection attack via a custom field's name. When that custom field was used in a Cost Report, the custom field's name was injected into the SQL query w…

πŸ“… Published: March 18, 2026, 9:01 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

6

CVSS4.0

CVE-2026-32700 - Devise has a confirmable "change email" race condition that permits user to confirm email they have…

Devise is an authentication solution for Rails based on Warden. Prior to version 5.0.3, a race condition in Devise's Confirmable module allows an attacker to confirm an email address they do not own. This affects any Devise application using the `reconfirmable` option (the default when using Confir…

πŸ“… Published: March 18, 2026, 8:55 p.m. πŸ”„ Last Modified: March 27, 2026, 8:41 a.m.

9.3

CVSS4.0

CVE-2026-25873 - OmniGen2-RL Reward Server Unsafe Deserialization RCE

OmniGen2-RL contains an unauthenticated remote code execution vulnerability in the reward server component that allows remote attackers to execute arbitrary commands by sending malicious HTTP POST requests. Attackers can exploit insecure pickle deserialization of request bodies to achieve code exec…

πŸ“… Published: March 18, 2026, 8:47 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

2.7

CVSS3.1

CVE-2026-32638 - StudioCMS REST getUsers Exposes Owner Account Records to Admin Tokens

StudioCMS is a server-side-rendered, Astro native, headless content management system. Prior to 0.4.4, the REST API `getUsers` endpoint in StudioCMS uses the attacker-controlled `rank` query parameter to decide whether owner accounts should be filtered from the result set. As a result, an admin tok…

πŸ“… Published: March 18, 2026, 8:41 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

5.3

CVSS3.1

CVE-2026-32636 - ImageMagick has a heap-buffer-overflow in NewXMLTree which could result in crash

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-17 and 6.9.13-42, the NewXMLTree method contains a bug that could result in a crash due to an out of write bounds of a single zero byte. Versions 7.1.2-17 and 6.9.13-42 fix the issue.

πŸ“… Published: March 18, 2026, 8:39 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

8.8

CVSS3.1

CVE-2026-32321 - ClipBucket v5 has time-based Blind SQL Injection in ajax.php that leads to Data Exfiltration

ClipBucket v5 is an open source video sharing platform. An authenticated time-based blind SQL injection vulnerability exists in ClipBucket prior to 5.5.3 #80 within the `actions/ajax.php` endpoint. Due to insufficient input sanitization of the `userid` parameter, an authenticated attacker can execu…

πŸ“… Published: March 18, 2026, 8:37 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

6.9

CVSS4.0

CVE-2026-31973 - NULL pointer dereference in samtools cram-size

SAMtools is a program for reading, manipulating and writing bioinformatics file formats. Starting in version 1.17, in the cram-size command, used to write information about how well CRAM files are compressed, a check to see if the `cram_decode_compression_header()` was missing. If the function retu…

πŸ“… Published: March 18, 2026, 8:34 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.

6.9

CVSS4.0

CVE-2026-31972 - samtools mpileup has use-after-free leading to an invalid read

SAMtools is a program for reading, manipulating and writing bioinformatics file formats. The `mpileup` command outputs DNA sequences that have been aligned against a known reference. On each output line it writes the reference position, optionally the reference DNA base at that position (obtained f…

πŸ“… Published: March 18, 2026, 8:32 p.m. πŸ”„ Last Modified: March 25, 2026, 11:52 a.m.
Total resulsts: 349182
Page 1059 of 34,919
Β« previous page Β» next page
Filters