A vulnerability was found in Linux Kernel up to 5.10.180/5.15.112/6.1.29/6.3.3. It has been rated as critical. Affected by this vulnerability is the function ext4_get_group_info. This manipulation causes denial of service.
This vulnerability is tracked as CVE-2023-53503. The attack is only possible within the local network. No exploit exists.
Upgrading the affected component is advised.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.15/6.2.2. This vulnerability affects the function mnt_get_count of the file /dev/vdc of the component io_uring. Executing a manipulation can lead to buffer overflow.
This vulnerability is registered as CVE-2023-53511. The attack requires access to the local network. No exploit is available.
The affected component should be upgraded.
A vulnerability was found in Linux Kernel up to 6.4.7. It has been classified as problematic. This vulnerability affects the function nla_policy of the file drivers/net/macvlan.c. This manipulation causes out-of-bounds write.
This vulnerability is tracked as CVE-2023-53516. The attack is only possible within the local network. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability marked as critical has been reported in Linux Kernel up to 5.15.112/6.1.29/6.3.3. This issue affects the function __block_write_full_page of the file fs/buffer.c. The manipulation leads to integer overflow.
This vulnerability is documented as CVE-2023-53513. The attack requires being on the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.4.11 and classified as critical. Affected by this issue is the function vm_dev. Such manipulation leads to use after free.
This vulnerability is traded as CVE-2023-53515. Access to the local network is required for this attack to succeed. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability categorized as problematic has been discovered in Juniper Security Director 24.4.1. This affects an unknown function. The manipulation results in missing authorization.
This vulnerability is known as CVE-2025-52950. It is possible to launch the attack remotely. No exploit is available.
A vulnerability was found in Juniper Junos OS up to 22.2R3-S0/22.4R1 on MX. It has been classified as critical. This affects an unknown part of the component Connectivity Fault Management. This manipulation causes out-of-bounds write.
This vulnerability appears as CVE-2025-52952. The attacker needs to be present on the local network. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in parcel up to 2.0.0-alpha. It has been classified as problematic. The impacted element is an unknown function of the component XMLHttpRequest Handler. The manipulation leads to origin validation error.
This vulnerability is traded as CVE-2025-56648. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Linux Kernel up to 6.1.146/6.6.99/6.12.39/6.15.7. It has been declared as critical. This issue affects the function hid_hw_raw_request of the component Low Level Transport Driver. The manipulation results in buffer overflow.
This vulnerability is cataloged as CVE-2025-38494. The attack must originate from the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability categorized as critical has been discovered in Link Invoice Payment for WooCommerce Plugin up to 2.8.0 on WordPress. This affects an unknown part. Such manipulation leads to missing authorization.
This vulnerability is listed as CVE-2025-14971. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in MobSF Mobile-Security-Framework-MobSF up to 4.4.4. It has been rated as problematic. Affected by this issue is some unknown functionality of the component APK Handler. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2026-24490. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.
A vulnerability was found in theupdateframework go-tuf up to 2.4.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /escaped-repo of the component Cache Directory Handler. The manipulation results in path traversal.
This vulnerability is identified as CVE-2026-24686. The attack is only possible with local access. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in QGIS. It has been classified as critical. Affected is the function pull_request_target. The manipulation leads to incorrect authorization.
This vulnerability is referenced as CVE-2026-24480. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Kludex python-multipart up to 0.0.21 and classified as critical. This impacts an unknown function of the component Filename Handler. Executing a manipulation can lead to path traversal.
The identification of this vulnerability is CVE-2026-24486. The attack may be launched remotely. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability has been found in HappyHackingSpace gakido up to 0.1.0 and classified as problematic. This affects an unknown function of the component HTTP Request Handler. Performing a manipulation results in crlf injection.
This vulnerability was named CVE-2026-24489. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.