8.8

CVSS3.1

CVE-2026-4675 - chromium-browser: Heap buffer overflow in WebGL

Heap buffer overflow in WebGL in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 8:40 p.m.

8.8

CVSS3.1

CVE-2026-4673 - chromium-browser: Heap buffer overflow in WebAudio

Heap buffer overflow in WebAudio in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 8:40 p.m.

6.2

CVSS3.1

CVE-2026-30006 -

XnSoft NConvert 7.230 is vulnerable to Stack Buffer Overrun via a crafted .tiff file.

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 27, 2026, 9:21 a.m.

6.1

CVSS3.1

CVE-2025-52204 - Cross‑Site Scripting in Znuny::ITSM 6.5.x Customer Interface

A Cross-Site Scripting (XSS) vulnerability exists in Znuny::ITSM 6.5.x in the customer.pl endpoint via the OTRSCustomerInterface parameter

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 26, 2026, 4:16 p.m.

5.4

CVSS3.1

CVE-2024-46879 -

A Reflected Cross-Site Scripting (XSS) vulnerability exists in the POST request data zipPath of tiki-admin_system.php in Tiki version 21.2. This vulnerability allows attackers to execute arbitrary JavaScript code via a crafted payload, leading to potential access to sensitive information or unautho…

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 9:39 a.m.

4.3

CVSS3.1

CVE-2026-4628 - Keycloak: org.keycloak.authorization: keycloak: unauthorized resource modification due to improper …

A flaw was found in Keycloak. An improper Access Control vulnerability in Keycloak’s User-Managed Access (UMA) resource_set endpoint allows attackers with valid credentials to bypass the allowRemoteResourceManagement=false restriction. This occurs due to incomplete enforcement of access control che…

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: April 2, 2026, 7:59 a.m.

8.8

CVSS3.1

CVE-2026-24516 - Command Injection in DigitalOcean Droplet Agent Enables Remote Execution with Root Privileges

A command injection vulnerability exists in DigitalOcean Droplet Agent through 1.3.2. The troubleshooting actioner component (internal/troubleshooting/actioner/actioner.go) processes metadata from the metadata service endpoint and executes commands specified in the TroubleshootingAgent.Requesting a…

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 2:50 p.m.

7.5

CVSS3.1

CVE-2026-26828 - Null Pointer Dereference in owntone-server Leads to DoS via Crafted DAAP Request

A NULL pointer dereference in the daap_reply_playlists function (src/httpd_daap.c) of owntone-server commit 3d1652d allows attackers to cause a Denial of Service (DoS) via sending a crafted DAAP request to the server

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 2:50 p.m.

6.1

CVSS3.1

CVE-2024-51226 - Stored XSS in Vehicle Record Management System Search Feature

A stored cross-site scripting (XSS) vulnerability in the component /admin/search-vehicle.php of Phpgurukul Vehicle Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Search parameter.

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 2:50 p.m.

4.8

CVSS3.1

CVE-2024-51223 - Stored Cross‑Site Scripting in Admin Profile Mobile Number Field

A stored cross-site scripting (XSS) vulnerability in the component /admin/profile.php of Phpgurukul Vehicle Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Mobile Number parameter.

πŸ“… Published: March 23, 2026, midnight πŸ”„ Last Modified: March 25, 2026, 2:50 p.m.
Total resulsts: 349182
Page 978 of 34,919
Β« previous page Β» next page
Filters