10

CVSS3.1

CVE-2025-69770 -

A zip slip vulnerability in the /DesignTools/SkinList.aspx endpoint of MojoPortal CMS v2.9.0.1 allows attackers to execute arbitrary commands via uploading a crafted zip file.

๐Ÿ“… Published: Feb. 13, 2026, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2026-2441 - chromium-browser: Use after free in CSS

Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

๐Ÿ“… Published: Feb. 13, 2026, midnight ๐Ÿ”„ Last Modified: April 18, 2026, 12:30 p.m.

6

CVSS4.0

CVE-2024-21961 -

Improper restriction of operations within the bounds of a memory buffer in PCIeยฎ Link could allow an attacker with access to a guest virtual machine to potentially perform a denial of service attack against the host resulting in loss of availability.

๐Ÿ“… Published: Feb. 12, 2026, 11:45 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2025-40905 - WWW::OAuth 1.000 and earlier for Perl uses insecure rand() function for cryptographic functions

WWW::OAuth 1.000 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions.

๐Ÿ“… Published: Feb. 12, 2026, 11:39 p.m. ๐Ÿ”„ Last Modified: March 10, 2026, 5:07 p.m.

5.1

CVSS4.0

CVE-2026-26188 - Solspace Freeform plugin affected by Stored Cross-Site Scripting (XSS) in Freeform Craft Plugin CP โ€ฆ

Solspace Freeform plugin for Craft CMS 5.x is a super flexible form-building tool. An authenticated, low-privilege user (able to create/edit forms) can inject arbitrary HTML/JS into the Craft Control Panel (CP) builder and integrations views. User-controlled form labels and integration metadata areโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:55 p.m. ๐Ÿ”„ Last Modified: April 17, 2026, 8 p.m.

8.8

CVSS4.0

CVE-2019-25335 - PRO-7070 Hazฤฑr Profesyonel Web Sitesi 1.0 - Authentication Bypass

PRO-7070 Hazฤฑr Profesyonel Web Sitesi version 1.0 contains an authentication bypass vulnerability in the administration panel login page. Attackers can bypass authentication by using '=' 'or' as both username and password to gain unauthorized access to the administrative interface.

๐Ÿ“… Published: Feb. 12, 2026, 10:49 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS4.0

CVE-2020-37167 - ClamAV ClamBC < 0.103.0-rc - 'ClamBC' Executable Regular Expression Error

ClamAV versions prior to 0.103.0-rc contain a vulnerability in function name processing through theย ClamBC bytecode interpreter that allows attackers to manipulate bytecode function names. Attackers can exploit the weak input validation in function name encoding to potentially execute malicious bytโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS4.0

CVE-2019-25342 - Centova Cast 3.2.12 - Denial of Service

Centova Cast 3.2.12 contains a denial of service vulnerability that allows attackers to overwhelm the system by repeatedly calling the database export API endpoint. Attackers can trigger 100% CPU load by sending multiple concurrent requests to the /api.php endpoint with crafted parameters.

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.7

CVSS4.0

CVE-2019-25341 - iNetTools for iOS 8.20 - 'Whois' Denial of Service

iNetTools for iOS 8.20 contains a denial of service vulnerability in the Whois feature that allows attackers to crash the application by manipulating input. Attackers can paste a specially crafted 98-character buffer into the Domain Name field to trigger an application crash.

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.7

CVSS4.0

CVE-2019-25340 - SpotAuditor 5.3.2 - 'Base64' Denial Of Service

SpotAuditor 5.3.2 contains a denial of service vulnerability in its Base64 decryption feature that allows attackers to crash the application by supplying an oversized buffer. Attackers can generate a malformed input file with 2000 repeated characters to trigger an application crash when pasted intoโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:26 a.m.
Total resulsts: 348389
Page 1572 of 34,839
ยซ previous page ยป next page
Filters