6.9

CVSS4.0

CVE-2026-3148 - SourceCodester Simple and Nice Shopping Cart Script signup.php sql injection

A vulnerability was determined in SourceCodester Simple and Nice Shopping Cart Script 1.0. This impacts an unknown function of the file /signup.php. This manipulation of the argument Username causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and mayโ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 4:02 a.m. ๐Ÿ”„ Last Modified: April 17, 2026, 3:30 p.m.

10

CVSS3.1

CVE-2026-27597 - @enclave-vm/core is vulnerable to Sandbox Escape

Enclave is a secure JavaScript sandbox designed for safe AI agent code execution. Prior to version 2.11.1, it is possible to escape the security boundraries set by `@enclave-vm/core`, which can be used to achieve remote code execution (RCE). The issue has been fixed in version 2.11.1.

๐Ÿ“… Published: Feb. 25, 2026, 3:56 a.m. ๐Ÿ”„ Last Modified: April 18, 2026, 11 a.m.

9.8

CVSS3.1

CVE-2026-27641 - Flask-Reuploaded vulnerable to Remote Code Execution via Server-Side Template Injection

Flask-Reuploaded provides file uploads for Flask. A critical path traversal and extension bypass vulnerability in versions prior to 1.5.0 allows remote attackers to achieve arbitrary file write and remote code execution through Server-Side Template Injection (SSTI). Flask-Reuploaded has been patcheโ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:54 a.m. ๐Ÿ”„ Last Modified: April 17, 2026, 3:30 p.m.

8.5

CVSS4.0

CVE-2026-27640 - tfplan2md has Sensitive Value Exposure in Generated Reports

tfplan2md is software for converting Terraform plan JSON files into human-readable Markdown reports. Prior to version 1.26.1, a bug in tfplan2md affected several distinct rendering paths: AzApi resource body properties, AzureDevOps variable groups, Scriban template context variables, and hierarchicโ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:52 a.m. ๐Ÿ”„ Last Modified: April 18, 2026, 5:45 p.m.

8.2

CVSS3.1

CVE-2026-27627 - Karakeep's Reddit plugin content bypasses DOMPurify sanitization, enabling stored XSS

Karakeep is a elf-hostable bookmark-everything app. In version 0.30.0, when the Reddit metascraper plugin returns `readableContentHtml`, the HTML parsing subprocess uses it directly without running it through DOMPurify. Every other content source in the crawler goes through Readability + DOMPurify,โ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:48 a.m. ๐Ÿ”„ Last Modified: April 17, 2026, 3:30 p.m.

8.5

CVSS4.0

CVE-2026-27639 - Mercator vulnerable to stored XSS via unescaped Blade directives in display templates

Mercator is an open source web application designed to enable mapping of information systems. A stored Cross-Site Scripting (XSS) vulnerability exists in Mercator prior to version 2026.02.22 due to the use of unescaped Blade directives (`{!! !!}`) in display templates. An authenticated user with thโ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:44 a.m. ๐Ÿ”„ Last Modified: April 17, 2026, 3:30 p.m.

8.8

CVSS3.1

CVE-2026-27636 - FreeScout: Missing .htaccess in Restricted File Extensions Allows Remote Code Execution on Apache

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.206, FreeScout's file upload restriction list in `app/Misc/Helper.php` does not include `.htaccess` or `.user.ini` files. On Apache servers with `AllowOverride All` (a common configuration), an aโ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:41 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:07 p.m.

9.8

CVSS3.1

CVE-2026-27637 - FreeScout's Predictable Authentication Token Enables Account Takeover

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.206, FreeScout's `TokenAuth` middleware uses a predictable authentication token computed as `MD5(user_id + created_at + APP_KEY)`. This token is static (never expires/rotates), and if an attackerโ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:41 a.m. ๐Ÿ”„ Last Modified: April 17, 2026, 3:30 p.m.

4.8

CVSS4.0

CVE-2026-3147 - libvips csvload.c vips_foreign_load_csv_build heap-based overflow

A vulnerability was found in libvips up to 8.18.0. This affects the function vips_foreign_load_csv_build of the file libvips/foreign/csvload.c. The manipulation results in heap-based buffer overflow. The attack requires a local approach. The exploit has been made public and could be used. The patchโ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:32 a.m. ๐Ÿ”„ Last Modified: April 18, 2026, 11 a.m.

9.3

CVSS4.0

CVE-2026-27743 - SPIP referer_spam <= 1.2.1 Unauthenticated SQL Injection

The SPIP referer_spam plugin versions prior toย 1.3.0 contain an unauthenticated SQL injection vulnerability in the referer_spam_ajouter and referer_spam_supprimer action handlers. The handlers read the url parameter from a GET request and interpolate it directly into SQL LIKE clauses without input โ€ฆ

๐Ÿ“… Published: Feb. 25, 2026, 3:08 a.m. ๐Ÿ”„ Last Modified: April 17, 2026, 3:30 p.m.
Total resulsts: 347773
Page 1310 of 34,778
ยซ previous page ยป next page
Filters