A vulnerability was found in QwikDev qwik up to 1.11.x. It has been declared as problematic. This vulnerability affects the function isContentType of the component Regular Expression Handler. Executing a manipulation can lead to cross-site request forgery.
This vulnerability is tracked as CVE-2026-25155. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability was found in CloudMe 1.11.2. It has been classified as critical. This affects an unknown part of the component Service Port 8888. Performing a manipulation results in buffer overflow.
This vulnerability is identified as CVE-2020-37070. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability was found in Kubernetes ingress-nginx up to 1.13.6/1.14.1 and classified as very critical. Affected by this issue is some unknown functionality. Such manipulation of the argument rules.http.paths.path leads to improper input validation.
This vulnerability is referenced as CVE-2026-24512. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability has been found in Kubernetes ingress-nginx up to 1.13.6/1.14.1 and classified as very critical. Affected by this vulnerability is an unknown functionality of the component Ingress Annotation Handler. This manipulation causes improper input validation.
The identification of this vulnerability is CVE-2026-1580. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.
A vulnerability, which was classified as problematic, was found in QwikDev qwik up to 1.18.x. Affected is an unknown function. The manipulation results in open redirect.
This vulnerability was named CVE-2026-25149. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Craft CMS 1.0.0. This impacts an unknown function. The manipulation leads to deserialization.
This vulnerability is uniquely identified as CVE-2020-37071. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability classified as problematic was found in Maian Media Maian Support Helpdesk 4.3. This affects an unknown function. Executing a manipulation can lead to cross-site request forgery.
This vulnerability is handled as CVE-2020-37091. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability classified as critical has been found in VictorAlagwu CMSsite 1.0. The impacted element is an unknown function of the file /img/. Performing a manipulation of the argument user_image results in unrestricted upload.
This vulnerability is known as CVE-2020-37073. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability described as problematic has been identified in IBM Engineering Lifecycle Management up to 7.0.3 IF017/7.1.0 IF004. The affected element is an unknown function of the component Configuration Handler. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-36033. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability marked as problematic has been reported in anthropics claude-code up to 1.0.110. Impacted is the function startsWith of the component WebFetch. This manipulation causes open redirect.
This vulnerability appears as CVE-2026-24052. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability labeled as critical has been found in VictorAlagwu CMSsite 1.0. This issue affects some unknown processing of the file post.php of the component UNION Handler. The manipulation of the argument post results in sql injection.
This vulnerability is reported as CVE-2020-37076. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability identified as problematic has been detected in IBM Cloud Pak for Business Automation up to 24.0.1 IF005/25.0.0 IF002. This vulnerability affects unknown code. The manipulation leads to improper validation of specified quantity in input.
This vulnerability is documented as CVE-2025-36094. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
A vulnerability was found in luiswang webTareas 2.0.p8. It has been rated as critical. Affected by this issue is some unknown functionality of the file print_layout.php of the component File Handler. Performing a manipulation of the argument atttmp1 results in file inclusion.
This vulnerability is cataloged as CVE-2020-37080. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in Twinkle Toes Booked Scheduler 2.7.7. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file manage_email_templates.php. Such manipulation of the argument tn leads to path traversal.
This vulnerability is listed as CVE-2020-37077. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability was found in OXID-eSales OXID eShop up to 6.3.3. It has been classified as critical. Affected is an unknown function. This manipulation of the argument sorting causes sql injection.
This vulnerability is tracked as CVE-2019-25260. The attack is possible to be carried out remotely. Moreover, an exploit is present.
Upgrading the affected component is recommended.
A vulnerability was found in ci4-cms-erp ci4ms and classified as critical. This impacts an unknown function of the component File Creation Handler. The manipulation results in unrestricted upload.
This vulnerability is identified as CVE-2026-25510. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability has been found in Google Chrome and classified as critical. This affects an unknown function of the component V8. The manipulation leads to type confusion.
This vulnerability is referenced as CVE-2026-1862. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.