8

CVSS3.1

CVE-2026-26731 - Stack-based Buffer Overflow in TOTOLINK A3002RU Router Firmware via Routernamer Parameter

TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the routernamer`parameter in the formDnsv6 function.

πŸ“… Published: Feb. 17, 2026, midnight πŸ”„ Last Modified: April 16, 2026, 7 a.m.

7.9

CVSS4.0

CVE-2025-32355 -

Rocket TRUfusion Enterprise through 7.10.4.0 uses a reverse proxy to handle incoming connections. However, the proxy is misconfigured in a way that allows specifying absolute URLs in the HTTP request line, causing the proxy to load the given resource.

πŸ“… Published: Feb. 17, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 11:34 a.m.

8.8

CVSS3.1

CVE-2026-26732 - Stack-based Buffer Overflow via VPN Parameters in TOTOLINK A3002RU Router

TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the vpnUser or vpnPassword` parameters in the formFilter function.

πŸ“… Published: Feb. 17, 2026, midnight πŸ”„ Last Modified: April 16, 2026, 7 a.m.

9.9

CVSS3.1

CVE-2025-70830 -

A Server-Side Template Injection (SSTI) vulnerability in the Freemarker template engine of Datart v1.0.0-rc.3 allows authenticated attackers to execute arbitrary code via injecting crafted Freemarker template syntax into the SQL script field.

πŸ“… Published: Feb. 17, 2026, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2025-70828 -

An issue in Datart v1.0.0-rc.3 allows attackers to execute arbitrary code via the url parameter in the JDBC configuration

πŸ“… Published: Feb. 17, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 11:33 a.m.

9.4

CVSS4.0

CVE-2025-59793 -

Rocket TRUfusion Enterprise through 7.10.5 exposes the endpoint at /axis2/services/WsPortalV6UpDwAxis2Impl to authenticated users to be able to upload files. However, the application doesn't properly sanitize the jobDirectory parameter, which allows path traversal sequences to be included. This all…

πŸ“… Published: Feb. 17, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 11:34 a.m.

8.8

CVSS3.1

CVE-2025-12062 - WP Maps <= 4.8.6 - Authenticated (Subscriber+) Limited Local File Inclusion

The WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.8.6 via the fc_load_template function. This makes it possible for authenticated attackers, with Subscriber-leve…

πŸ“… Published: Feb. 16, 2026, 11:22 p.m. πŸ”„ Last Modified: April 22, 2026, 12:15 p.m.

9.8

CVSS3.1

CVE-2026-2439 - Concierge::Sessions versions from 0.8.1 before 0.8.5 for Perl generate insecure session ids

Concierge::Sessions versions from 0.8.1 before 0.8.5 for Perl generate insecure session ids. The generate_session_id function in Concierge::Sessions::Base defaults to using the uuidgen command to generate a UUID, with a fallback to using Perl's built-in rand function. Neither of these methods are s…

πŸ“… Published: Feb. 16, 2026, 9:25 p.m. πŸ”„ Last Modified: April 17, 2026, 7 p.m.

9.8

CVSS3.1

CVE-2025-15578 - Maypole versions from 2.10 through 2.13 for Perl generates session ids insecurely

Maypole versions from 2.10 through 2.13 for Perl generates session ids insecurely. The session id is seeded with the system time (which is available from HTTP response headers), a call to the built-in rand() function, and the PID.

πŸ“… Published: Feb. 16, 2026, 9:18 p.m. πŸ”„ Last Modified: March 10, 2026, 3:07 p.m.

7.5

CVSS3.1

CVE-2026-2474 - Crypt::URandom versions from 0.41 before 0.55 for Perl is vulnerable to a heap buffer overflow in t…

Crypt::URandom versions from 0.41 before 0.55 for Perl is vulnerable to a heap buffer overflow in the XS function crypt_urandom_getrandom(). The function does not validate that the length parameter is non-negative. If a negative value (e.g. -1) is supplied, the expression length + 1u causes an int…

πŸ“… Published: Feb. 16, 2026, 8:54 p.m. πŸ”„ Last Modified: April 18, 2026, 6 p.m.
Total resulsts: 349182
Page 1615 of 34,919
Β« previous page Β» next page
Filters