A vulnerability identified as critical has been detected in NetBox up to 4.5.4. This impacts the function RenderTemplateMixin.get_environment_params. This manipulation of the argument finalize causes permissive list of allowed inputs.
This vulnerability is registered as CVE-2026-29514. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability was found in vda-linux busybox_mirror. It has been classified as critical. Affected by this vulnerability is the function option_to_env of the file networking/udhcp/d6_dhcpc.c. This manipulation causes heap-based buffer overflow.
The identification of this vulnerability is CVE-2026-29004. The attack needs to be done within the local network. There is no exploit available.
It is suggested to install a patch to address this issue.
A Latvian national extradited to the United States was sentenced to 8.5 years in prison for his "cold case" negotiator role in the Russian Karakurt ransomware group. [...]
A vulnerability, which was classified as critical, was found in CodeCanyon Perfex CRM up to 3.4.1. This affects the function Clients::project of the file application/controllers/Clients.php of the component Tenant Handler. The manipulation of the argument ID results in authorization bypass.
This vulnerability was named CVE-2026-7782. The attack may be performed from remote. In addition, an exploit is available.
A new version of the CloudZ remote access tool (RAT) is deploying a previously unseen malicious plugin called Pheno that hijacks the Microsoft Phone Link connection to steal sensitive codes from mobile devices. [...]
A vulnerability classified as problematic was found in Dell SupportAssist for Business PCs and SupportAssist for Home PCs. This issue affects some unknown processing. Such manipulation leads to use of hard-coded cryptographic key
.
This vulnerability is listed as CVE-2022-34386. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Dell SupportAssist Client Consumer and SupportAssist Client Commercial. The impacted element is an unknown function. Performing a manipulation results in uncontrolled search path.
This vulnerability is known as CVE-2022-29092. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability has been found in CodeCanyon Perfex CRM up to 3.4.1 and classified as critical. This vulnerability affects the function AbstractKanban::applySortQuery of the file application/services/AbstractKanban.php of the component Admin Kanban Endpoint. This manipulation of the argument this causes sql injection.
The identification of this vulnerability is CVE-2026-7783. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as problematic was found in Videolabs libmicrodns up to 0.1.0. The impacted element is an unknown function. Executing a manipulation can lead to resource consumption.
This vulnerability is handled as CVE-2020-6079. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability identified as problematic has been detected in Videolabs libmicrodns 0.1.0. This affects an unknown part. The manipulation leads to uncontrolled recursion.
This vulnerability is documented as CVE-2020-6071. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
A vulnerability classified as problematic has been found in Videolabs libmicrodns 0.1.0. The affected element is the function mdns_read_header. Performing a manipulation as part of Return Value results in null pointer dereference.
This vulnerability is known as CVE-2020-6078. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability labeled as critical has been found in Videolabs libmicrodns 0.1.0. This vulnerability affects the function rr_decode of the component mDNS Message Handler. The manipulation as part of Return Value results in double free.
This vulnerability is reported as CVE-2020-6072. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.