A vulnerability was found in nic Knot Resolver up to 6.4.0. It has been declared as critical. Affected by this issue is some unknown functionality of the component DNS-over-QUIC. Executing a manipulation can lead to buffer overflow.
This vulnerability is tracked as CVE-2026-66374. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability was found in Redis up to 8.7.x. It has been classified as critical. Affected by this vulnerability is an unknown functionality. Performing a manipulation results in double free.
This vulnerability is identified as CVE-2026-66373. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in OpenClaw up to 2026.3.7. Affected is an unknown function of the file team/channel of the component Microsoft Teams Plugin. The manipulation of the argument groupAllowFrom leads to incorrect authorization.
This vulnerability is listed as CVE-2026-34506. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.
A vulnerability described as problematic has been identified in OpenClaw up to 2026.3.11. Affected by this issue is some unknown functionality. The manipulation results in improper restriction of excessive authentication attempts.
This vulnerability is identified as CVE-2026-34505. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as critical has been found in NocoBase up to 2.0.27. Impacted is an unknown function. Performing a manipulation results in dynamically-managed code resources.
This vulnerability is identified as CVE-2026-34156. The attack can be initiated remotely. Additionally, an exploit exists.
It is recommended to upgrade the affected component.
A vulnerability categorized as critical has been discovered in Giskard-AI giskard-oss up to 0.3.3/1.0.2. This vulnerability affects the function ChatWorkflow.chat of the component Name Message Handler. The manipulation results in improper neutralization of special elements used in a template engine.
This vulnerability is known as CVE-2026-34172. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.