Posts of last few hours
A vulnerability, which was classified as critical, has been found in xmlsoft libxml2 up to 2.15.3. Affected is the function xmlURIEscapeStr of the file uri.c of the component URI Escape. This manipulation causes integer overflow.
This vulnerability is handled as CVE-2026-86139. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/399212
A vulnerability described as critical has been identified in itsourcecode Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/inv_del.php. Executing a manipulation of the argument ID can lead to sql injection.
This vulnerability is handled as CVE-2026-85383. The attack can be executed remotely. Additionally, an exploit exists.
https://vuldb.com/vuln/398537
A vulnerability was found in Samsung Escargot. It has been declared as critical. Impacted is an unknown function. Executing a manipulation can lead to out-of-bounds read.
This vulnerability is handled as CVE-2026-49509. The attack can be executed remotely. There is not any exploit available.
Applying a patch is advised to resolve this issue.
https://vuldb.com/vuln/398657
A vulnerability categorized as critical has been discovered in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This affects the function ChapterModel::searchChapter of the file App/Home/Controller/ChapterController.class.php of the component Query Builder. The manipulation of the argument content results in sql injection.
This vulnerability is reported as CVE-2026-85379. The attack can be launched remotely. Moreover, an exploit is present.
This product does not use versioning. This is why information about affected and unaffected releases are unavailable.
The project was informed of the problem early through an issue report but has not responded yet.
https://vuldb.com/vuln/398533
A vulnerability, which was classified as critical, has been found in Lightstar SmartIT Desktop Manager up to 10. This vulnerability affects unknown code. This manipulation causes hard-coded credentials.
This vulnerability is registered as CVE-2026-85147. Remote exploitation of the attack is possible. No exploit is available.
https://vuldb.com/vuln/398666
A vulnerability has been found in Lightstar SmartIT Desktop Manager up to 10 and classified as critical. Impacted is an unknown function. Performing a manipulation results in hard-coded credentials.
This vulnerability is reported as CVE-2026-85148. The attack is possible to be carried out remotely. No exploit exists.
https://vuldb.com/vuln/398668
A vulnerability marked as problematic has been reported in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. Impacted is the function htmlspecialchars_decode of the file App/Home/View/Default/Chapter/oneChapter.tpl of the component Chapter Content Output. Performing a manipulation of the argument content results in cross site scripting.
This vulnerability is known as CVE-2026-85382. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided.
The project was informed of the problem early through an issue report but has not responded yet.
https://vuldb.com/vuln/398536
A vulnerability, which was classified as critical, has been found in code-projects Hospital Information System 1.0. This impacts the function findBySearch of the file addReq.php. This manipulation of the argument Search causes sql injection.
The identification of this vulnerability is CVE-2026-85397. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
https://vuldb.com/vuln/398540
A vulnerability identified as problematic has been detected in Red Hat Advanced Cluster Management for Kubernetes. The impacted element is an unknown function of the component multicloud-operators-subscription. The manipulation of the argument Channel.Spec.SecretRef.Namespace leads to information disclosure.
This vulnerability is documented as CVE-2026-66878. The attack can be initiated remotely. There is not any exploit available.
https://vuldb.com/vuln/388902
A vulnerability labeled as very critical has been found in Red Hat Advanced Cluster Management for Kubernetes. This affects an unknown function of the component multicloud-integrations. The manipulation results in improper privilege management.
This vulnerability is reported as CVE-2026-70398. The attack can be launched remotely. No exploit exists.
https://vuldb.com/vuln/388903
A vulnerability marked as very critical has been reported in Red Hat Advanced Cluster Management for Kubernetes. This issue affects some unknown processing of the component multicloud-operators-subscription. This manipulation causes improper privilege management.
The identification of this vulnerability is CVE-2026-67567. It is possible to initiate the attack remotely. There is no exploit available.
https://vuldb.com/vuln/393860
A vulnerability marked as very critical has been reported in Red Hat Advanced Cluster Management for Kubernetes. This issue affects some unknown processing of the component search-v2-operator. Performing a manipulation results in permission issues.
This vulnerability is known as CVE-2026-70495. Remote exploitation of the attack is possible. No exploit is available.
https://vuldb.com/vuln/391396
A vulnerability, which was classified as problematic, was found in Tcpdump Group libpcap up to 1.10.6. This affects an unknown function of the component BPF Interpreter. Executing a manipulation can lead to out-of-bounds read.
This vulnerability is tracked as CVE-2026-0799. The attack is restricted to local execution. No exploit exists.
You should upgrade the affected component.
https://vuldb.com/vuln/399353
A vulnerability was found in Tcpdump Group libpcap up to 1.10.6. It has been rated as critical. This affects the function abort of the component BPF Interpreter. Performing a manipulation results in improper input validation.
This vulnerability is reported as CVE-2026-31911. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.
https://vuldb.com/vuln/399358
A vulnerability categorized as problematic has been discovered in Tcpdump Group libpcap up to 1.10.6. This vulnerability affects unknown code of the component BPF Interpreter. Executing a manipulation can lead to buffer overflow.
This vulnerability appears as CVE-2026-31912. The attack requires local access. There is no available exploit.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/399359
A vulnerability, which was classified as problematic, has been found in Tcpdump Group libpcap up to 1.10.6. The impacted element is an unknown function of the component BPF Interpreter. Performing a manipulation results in infinite loop.
This vulnerability is identified as CVE-2026-6554. The attack is only possible with local access. There is not any exploit available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/399352
A vulnerability was found in Tcpdump Group libpcap up to 1.9.x/1.10.6. It has been declared as critical. Affected by this issue is some unknown functionality. Such manipulation leads to memory leak.
This vulnerability is documented as CVE-2026-18313. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/399357
A vulnerability identified as problematic has been detected in Tcpdump Group libpcap up to 1.10.6. This issue affects some unknown processing of the component BPF Interpreter. The manipulation leads to divide by zero.
This vulnerability is traded as CVE-2026-6244. An attack has to be approached locally. There is no exploit available.
You should upgrade the affected component.
https://vuldb.com/vuln/399360
A vulnerability was found in Tcpdump Group libpcap up to 1.8.x/1.9.x/1.10.6. It has been classified as problematic. Affected by this vulnerability is an unknown functionality of the component Packet Message Handler. This manipulation causes out-of-bounds read.
This vulnerability is registered as CVE-2026-18238. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.
https://vuldb.com/vuln/399356
A vulnerability labeled as very critical has been found in N-able N-central up to 2026.3.1.7. Impacted is an unknown function. The manipulation results in improper authentication.
This vulnerability is known as CVE-2026-86207. Attacking locally is a requirement. No exploit is available.
The affected component should be upgraded.
https://vuldb.com/vuln/399361
Latest Blog Posts
- 1 week 6 days ago
- 2 months 2 weeks ago
- 2 months 2 weeks ago
- 2 months 2 weeks ago
- 2 months 2 weeks ago
- 7 months 1 week ago
- 1 year ago
- 1 year ago
- 1 year 1 month ago
- 1 year 5 months ago