8.7

CVSS4.0

CVE-2026-34121 - Authentication Bypass in DS Configuration Service via HTTP Request Parsing Differential of TP-Link …

An authentication bypass vulnerability within the HTTP handling of the DS configuration service in TP-Link Tapo C520WS v2.6 was identified, due to inconsistent parsing and authorization logic in JSON requests during authentication check. An unauthenticated attacker can append an authentication-exe…

📅 Published: April 2, 2026, 5:20 p.m. 🔄 Last Modified: April 7, 2026, 7:55 a.m.

7.1

CVSS4.0

CVE-2026-34120 - Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520WS

A heap-based buffer overflow vulnerability was identified in TP-Link Tapo C520WS v2.6 within the asynchronous parsing of local video stream content due to insufficient alignment and validation of buffer boundaries when processing streaming inputs.An attacker on the same network segment could trigge…

📅 Published: April 2, 2026, 5:19 p.m. 🔄 Last Modified: April 7, 2026, 7:55 a.m.

7.1

CVSS4.0

CVE-2026-34119 - Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520WS

A heap-based buffer overflow vulnerability was identified in TP-Link Tapo C520WS v2.6 within the HTTP parsing loop when appending segmented request bodies without continuous write‑boundary verification, due to insufficient boundary validation when handling externally supplied HTTP input.  An attack…

📅 Published: April 2, 2026, 5:19 p.m. 🔄 Last Modified: April 7, 2026, 7:55 a.m.

7.1

CVSS4.0

CVE-2026-34118 - Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520WS

A heap-based buffer overflow vulnerability was identified in TP-Link Tapo C520WS v2.6 in the HTTP POST body parsing logic due to missing validation of remaining buffer capacity after dynamic allocation, due to insufficient boundary validation when handling externally supplied HTTP input.  An attack…

📅 Published: April 2, 2026, 5:19 p.m. 🔄 Last Modified: April 7, 2026, 7:55 a.m.

5

CVSS3.1

CVE-2026-34526 - SillyTavern: Incomplete IP validation in /api/search/visit allows SSRF via localhost and IPv6

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to version 1.17.0, in src/endpoints/search.js, the hostname is checked against /^\d+\.\d+\.\d+\.\d+$/. This on…

📅 Published: April 2, 2026, 5:16 p.m. 🔄 Last Modified: April 3, 2026, 4:10 p.m.

8.3

CVSS3.1

CVE-2026-34524 - SillyTavern: Path traversal in `/api/chats/export` and `/api/chats/delete` allows arbitrary file re…

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to version 1.17.0, a path traversal vulnerability in chat endpoints allows an authenticated attacker to read a…

📅 Published: April 2, 2026, 5:15 p.m. 🔄 Last Modified: April 3, 2026, 7:17 p.m.

6.9

CVSS4.0

CVE-2026-5368 - projectworlds Car Rental Project Parameter login.php sql injection

A vulnerability was determined in projectworlds Car Rental Project 1.0. The affected element is an unknown function of the file /login.php of the component Parameter Handler. This manipulation of the argument uname causes sql injection. Remote exploitation of the attack is possible. The exploit has…

📅 Published: April 2, 2026, 5:15 p.m. 🔄 Last Modified: April 3, 2026, 4:10 p.m.

5.3

CVSS3.1

CVE-2026-34523 - SillyTavern: Path traversal allows file existence oracle

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to version 1.17.0, a path traversal vulnerability in the static file route handler allows any unauthenticated …

📅 Published: April 2, 2026, 5:14 p.m. 🔄 Last Modified: April 3, 2026, 4:10 p.m.

8.1

CVSS3.1

CVE-2026-34522 - SillyTavern: Path traversal in `/api/chats/import` allows arbitrary file write outside intended cha…

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to version 1.17.0, a path traversal vulnerability in /api/chats/import allows an authenticated attacker to wri…

📅 Published: April 2, 2026, 5:13 p.m. 🔄 Last Modified: April 3, 2026, 4:10 p.m.

4.8

CVSS3.1

CVE-2026-26962 - Rack: Header injection in multipart requests

Rack is a modular Ruby web server interface. From version 3.2.0 to before version 3.2.6, Rack::Multipart::Parser unfolds folded multipart part headers incorrectly. When a multipart header contains an obs-fold sequence, Rack preserves the embedded CRLF in parsed parameter values such as filename or …

📅 Published: April 2, 2026, 5:10 p.m. 🔄 Last Modified: April 3, 2026, 6:13 p.m.
Total resulsts: 343883
Page 199 of 34,389
« previous page » next page
Filters