A vulnerability was found in Discourse up to 2026.1.2/2026.2.1. It has been rated as problematic. This impacts an unknown function. The manipulation leads to information disclosure.
This vulnerability is listed as CVE-2026-32620. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability categorized as problematic has been discovered in Discourse up to 2026.1.2/2026.2.1. Affected is an unknown function of the component Parameter Handler. The manipulation of the argument category_id results in information disclosure.
This vulnerability is cataloged as CVE-2026-32951. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability identified as critical has been detected in Discourse up to 2026.1.2/2026.2.1. Affected by this vulnerability is an unknown functionality. This manipulation causes improper privilege management.
This vulnerability is registered as CVE-2026-33074. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
A vulnerability classified as problematic was found in Discourse up to 2026.1.2/2026.2.1. Impacted is an unknown function. The manipulation results in information disclosure.
This vulnerability is known as CVE-2026-33300. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Discourse up to 2026.1.2/2026.2.1. The affected element is an unknown function of the component Endpoint. This manipulation causes server-side request forgery.
This vulnerability is handled as CVE-2026-33185. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability described as critical has been identified in Discourse up to 2026.1.2/2026.2.1. This vulnerability affects unknown code. Executing a manipulation can lead to improper access controls.
This vulnerability appears as CVE-2026-33415. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in Nokogiri up to 1.13.3 on Ruby. It has been declared as problematic. Affected by this issue is some unknown functionality of the component Regular Expression Handler. Executing a manipulation can lead to resource consumption.
This vulnerability is handled as CVE-2022-24836. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Action View Tag Helpers 5.2.0. It has been classified as problematic. Impacted is an unknown function. This manipulation causes cross site scripting.
This vulnerability is handled as CVE-2022-27777. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Oracle Middleware Common Libraries and Tools 12.2.1.4.0. It has been classified as critical. This vulnerability affects unknown code of the component Third Party Patch. Performing a manipulation results in path traversal.
This vulnerability is reported as CVE-2022-23457. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability classified as very critical has been found in Oracle Health Sciences Empirica Signal 9.1.0.52/9.2.0.52. This vulnerability affects unknown code of the component Core. This manipulation causes path traversal.
The identification of this vulnerability is CVE-2022-23457. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability, which was classified as very critical, was found in Oracle GoldenGate Studio 12.2.1.4.0. Affected by this issue is some unknown functionality of the component GoldenGate Studio. The manipulation results in path traversal.
This vulnerability is identified as CVE-2022-23457. The attack can be executed remotely. There is not any exploit available.
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.18.16/6.19.6/7.0-rc1. Affected is the function bq_enqueue of the component bpf. Executing a manipulation of the argument q[] can lead to null pointer dereference.
This vulnerability is registered as CVE-2026-23342. The attack needs to be launched locally. No exploit is available.
You should upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.18.16/6.19.6/7.0-rc1. It has been declared as critical. Affected by this vulnerability is the function ionic_create_cq of the component RDMA. The manipulation results in memory leak.
This vulnerability is known as CVE-2026-23384. Access to the local network is required for this attack. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Open-Xchange OX Dovecot Pro up to 2.3.0. This affects an unknown part. The manipulation results in path traversal.
This vulnerability is known as CVE-2026-0394. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.