7.5

CVSS3.1

CVE-2026-30364 - CentSDR Commit e40795 Stack Overflow in Thread1 Function

CentSDR commit e40795 was discovered to contain a stack overflow in the "Thread1" function.

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:09 p.m.

8.6

CVSS3.1

CVE-2026-30995 - SQL Injection via vereador_ver.php in Slah CMS

Slah CMS v1.5.0 and below was discovered to contain a SQL injection vulnerability via the id parameter in the vereador_ver.php endpoint.

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:37 p.m.

9.6

CVSS3.1

CVE-2026-6296 - chromium-browser: Heap buffer overflow in ANGLE

Heap buffer overflow in ANGLE in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:42 p.m.

7.5

CVSS3.1

CVE-2025-67841 - Algorithmic Complexity Flaw Causing Resource Exhaustion in Nordic Semiconductor IronSide SE

Nordic Semiconductor IronSide SE for nRF54H20 before 23.0.2+17 has an Algorithmic complexity issue.

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:09 p.m.

7.5

CVSS3.1

CVE-2026-30994 - Unauthenticated Access to Config File Exposes Session Credentials in Slah v1.5.0 and Earlier

Incorrect access control in the config.php component of Slah v1.5.0 and below allows unauthenticated attackers to access sensitive information, including active session credentials.

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:37 p.m.

8.8

CVSS3.1

CVE-2026-6318 - chromium-browser: Use after free in Codecs

Use after free in Codecs in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 7:08 p.m.

9.8

CVSS3.1

CVE-2026-30993 - Remote Code Execution via Session Function in Slah CMS

Slah CMS v1.5.0 and below was discovered to contain a remote code execution (RCE) vulnerability in the session() function at config.php. This vulnerability is exploitable via a crafted input.

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:37 p.m.

4.3

CVSS3.1

CVE-2026-6298 - chromium-browser: Heap buffer overflow in Skia

Heap buffer overflow in Skia in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Critical)

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:41 p.m.

8.3

CVSS3.1

CVE-2026-30461 - Authenticated Remote Code Execution in FuelCMS via Git Submodule Function

Daylight Studio FuelCMS v1.5.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the /controllers/Installer.php and the function add_git_submodule.

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 20, 2026, 8:16 p.m.

8.4

CVSS3.1

CVE-2024-53412 - Command Injection via Port Field in NietThijmen ShoppingCart Leading to Remote Code Execution

Command injection in the connect function in NietThijmen ShoppingCart 0.0.2 allows an attacker to execute arbitrary shell commands and achieve remote code execution via injection of malicious payloads into the Port field

๐Ÿ“… Published: April 15, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 3:09 p.m.
Total resulsts: 348640
Page 396 of 34,864
ยซ previous page ยป next page
Filters