Skip to content
COOEY
LIVE FEED
1767 events · 4 sources · newest first
2026-08-17 NVD CVE
A flaw was found in the managedcluster-import-controller. The Certificate Signing Request (CSR) auto-approval logic improperly validates incoming CSRs, specifically by not inspecting the signer name or decoding the...
administrative-credentialscertificates-signing-requestcsrcve-2026-66795hub-clustermaliciouses-csrmanagedcluster-import-controllernvd-cve
2026-08-17 NVD CVE
openssl_encrypt versions before 1.4.0 contain hardcoded database credentials in standalone server configuration files. Attackers on the same network can access PostgreSQL databases using well-known default...
attackercve-2026-74891data-breachesdatabase-credentialsdefault-credentialshardcoded-credentialnetwork-securitynvd-cve
2026-08-17 NVD CVE
openssl_encrypt versions before 1.4.0 use an in-memory rate limiter for TOTP brute-force protection that is not shared across workers and is lost on server restart. Attackers can distribute authentication attempts...
authenticationbrute-forcecve-2026-74878incident-responsenvd-cveopensslopenssl-encryptrate-limiter
2026-08-17 NVD CVE
openssl_encrypt versions before 1.4.0 contain an arbitrary code execution vulnerability in the Whirlpool hash implementation that uses broad glob patterns to load .so modules without integrity verification. Attackers...
arbitrary-code-executioncve-2026-74872glob-patternhash-implementationsintegrity-verificationmalicious-so-filesnative-code-executionnvd-cve
2026-08-17 NVD CVE
openssl_encrypt versions before 1.4.0 silently skip JSON schema validation when the jsonschema library is not installed, allowing malformed metadata to be accepted. Attackers can remove the jsonschema package or...
bypass-schema-checkscve-2026-74875json-schemas-validationsjsonschemalibrary-missingmalformed-metadatamalicious-datametadata-formats
2026-08-17 NVD CVE
openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in pqc.py where AES-GCM decryption failures trigger fallback to unauthenticated AES-CTR mode. Attackers can modify ciphertext in...
aes-ctraes-gcmauthentication-bypassbit-flipping-attackciphertext-modificationcve-2026-74901integrity-verificationnvd-cve
2026-08-17 NVD CVE
openssl_encrypt versions before 1.4.0 contain a plugin sandbox bypass vulnerability where the PluginImportGuard blocks a different set of modules than the AST analyzer's DANGEROUS_MODULES set. Attackers can bypass...
arbitrary-code-executionast-analyzercve-2026-74886dangerous-moduleencodingimportlibmultiprocessingnvd-cve
2026-08-17 NVD CVE
openssl_encrypt versions before 1.4.0 contain a vulnerability in PublicKeyBundle.from_dict() that creates key bundles from untrusted data without verifying signatures. Attackers can call from_dict() followed by...
attackers-controlled-keyscryptographycve-2026-74876data-leakencryptionfroms-dictskeys-bundlenvd-cve
2026-08-16 NVD CVE
A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow....
buffer-overflowcve-2026-19961edimaxew-7478apcnvd-cveremote-attackssecurities-disclosuresvendor-response
2026-08-16 NVD CVE
A security vulnerability has been detected in Tenda AC10 16.03.10.09_multi_TDE01. This vulnerability affects the function R7WebsSecurityHandler of the component httpd. The manipulation leads to improper...
ac10authentication-bypasscve-2026-19924cybersecurityexploithttpdimproper-authenticationnetwork-security
2026-08-16 NVD CVE
Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties without setter-visibility checks. Attackers can modify properties...
accesses-modifier-bypassclrcode-executioncve-2026-73061init-only-setterinternals-settersmass-assignmentnvd-cve
2026-08-16 NVD CVE
Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter changes, allowing reused TemplateContext instances to expose members that should be hidden. Attackers can access filtered...
access-controlbypasscve-2026-74790member-filternvd-cvesandbox-policyscribansecurity-research
2026-08-16 NVD CVE
The Contact Form, Survey, Quiz & Popup Form Builder – ARForms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.8.5 via deserialization of untrusted input from form...
arformcode-executioncve-2024-13784deserializationfile-deletionnvd-cvephp-object-injectionplugins-vulnerabilities
2026-08-16 NVD CVE
The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the proSol_fileDeleteProcess function in all versions up to, and including, 2.0.8....
arbitrary-file-deletioncve-2026-14524file-path-validationnoncenvd-cvepath-traversalpluginprosolution
2026-08-16 NVD CVE
The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.0.10 via the proSol_handleFileUpload function. This is due to missing validation of the...
arbitrary-files-uploadcontents-dispositioncve-2026-16098executablefile-validationfiles-uploadnonce-exposuresnvd-cve
2026-08-16 NVD CVE
The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.29.9. The vulnerability exists because `ActionUser::conditions_logic()` gates the...
administrator-privilegesauthorization-bypasscve-2026-18432dynamiappfrontend-adminsnvd-cvepassword-overwriteplugins-vulnerabilities
2026-08-16 NVD CVE
SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an...
apiapi-tokenauthenticationcaptchacve-2026-73056file-operationkernellockout-mechanism
2026-08-16 NVD CVE
A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer...
buffer-overflowcve-2026-19959edimaxew-7478apcnvd-cveremote-exploitationsecurities-disclosuresstack-based-buffer-overflow
2026-08-16 NVD CVE
The Solace Extra plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the import_zip() function in versions up to, and including, 1.6.0. The handler is...
authenticate-attackercapability-checkscve-2026-18316data-lossesdemo-content-importelementor-templateimport-zipnavigation-menus
2026-08-15 NVD CVE
The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via Authorization Bypass in all versions up to, and including, 3.3.9. The vulnerability exists because the...
administrator-privilegesauthorization-bypasscve-2026-19598nvd-cvephp-error-logplugins-vulnerabilitiespod-pluginprivileges-escalation
2026-08-15 NVD CVE
SiYuan versions before v3.7.4 fail to validate or escape table column width values, allowing stored cross-site scripting injection into style attributes. Attackers can inject malicious payloads through the...
api-injectionarbitrary-code-executioncross-site-scriptingcve-2026-73044electronevent-handlernode-integrationnvd-cve
2026-08-15 NVD CVE
SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middleware. The HTTP Basic Authentication branch, which guards nearly the entire /api/* surface, accepts the workspace...
access-controlapi-securityauthenticationbrute-forcecve-2026-73046http-basic-authenticationkernel-accessesmiddleware
2026-08-15 NVD CVE
SiYuan versions before v3.7.4 fail to validate or escape annotation fields written to disk by the setFileAnnotation endpoint. Attackers can inject malicious markup into annotation fields that execute as script in the...
code-injectioncve-2026-73041data-validationendpoint-securitymalicious-markupmalware-executionnodejnvd-cve
2026-08-15 NVD CVE
SiYuan before v3.7.4 stores attribute-view field names without HTML escaping and interpolates them directly into option elements via innerHTML in the sort menu. Attackers can inject markup by renaming a database...
attributes-viewcode-executioncve-2026-73052databases-fieldsdesktop-applicationsdesktop-clientfields-nameshtml-escaping
2026-08-15 NVD CVE
SiYuan before v3.7.4 fails to properly escape database menu metadata in HTML interpolation, allowing stored values to execute script when users open group, view, or field-edit menus. Attackers can inject markup...
code-executioncve-2026-73042electronhtml-injectionnodenvd-cvescript-executionsecurity-bulletin
2026-08-15 NVD CVE
The User Session Synchronizer plugin for WordPress is vulnerable to Authentication Bypass leading to Account Takeover in all versions up to, and including, 1.4.0. The `synchronize_session()` function, hooked on...
accounts-takeoverae-ivaes-256-cbcauthentication-bypasscapabilitycve-2026-15341encryptionmd5
2026-08-15 NVD CVE
SiYuan versions before v3.7.4 fail to validate or escape the color field in attribute-view select options, allowing stored cross-site scripting through eight unescaped render sites. Attackers can inject event-handler...
arbitrary-javascriptattributes-viewcolor-fieldcross-site-scriptingcve-2026-73050database-injectionevent-handler-attributejavascript-execution
2026-08-15 NVD CVE
SiYuan versions before v3.7.4 contain a cross-site scripting vulnerability in the unicode2Emoji function that fails to sanitize codepoint branch output. Attackers can craft document icons with hex-encoded markup that...
arbitrary-code-executioncode-executioncross-site-scriptingcve-2026-73053document-iconhex-encodingnodenvd-cve
2026-08-15 NVD CVE
The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via Type Confusion in versions up to, and including, 3.16.4. This is due to the wppb_log_in_user() function calling absint() on the...
absintadministrative-takeoverauthentication-bypasscve-2026-15826is-wp-errornoncenvd-cveregistration
2026-08-15 NVD CVE
SiYuan versions before v3.7.4 contain a remote code execution vulnerability in the Template calculation operator, which renders user-authored Go templates and stores output verbatim without sanitization. Attackers...
arbitrary-code-executioncve-2026-73043databases-vulnerabilitiesdesktop-clientgo-templatehtml-injectionjavascript-injectionmalicious-code
2026-08-15 NVD CVE
The Link Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the ll_delete_link_fields function in all versions up to, and including, 7.9.4 This makes it...
arbitrary-file-deletioncve-2026-18855file-path-validationlinks-librariesnvd-cvepluginremote-code-executionsecurity
2026-08-15 NVD CVE
The 6Storage Rentals plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.27.0. This is due to the six_storage_create_wp_user() AJAX handler being registered on...
6storage-rentalauthentication-bypasscve-2026-15303nvd-cvepluginsecurity-breachunauthenticated-attacksvulnerability
2026-08-15 NVD CVE
The TrueBooker plugin for WordPress is vulnerable to Account Takeover in all versions up to, and including, 1.2.6. This is due to the add_front_user_update() AJAX handler being registered for unauthenticated users...
accounts-takeoverajax-handlercve-2026-16142emails-impersonationnvd-cveplugins-vulnerabilitiessecurity-vulnerabilitytruebooker
2026-08-15 NVD CVE
The RapiSafe – Secure Multi File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the handleAjaxRemoveUpload function in all versions...
arbitrary-file-deletioncontact-form-7contact-form-7-pluginscve-2026-14484file-path-validationfiles-uploadnonce-exposuresnvd-cve
2026-08-14 NVD CVE
The getgrav/grav-plugin-api plugin before 1.0.13 fails to validate that the scopes of a newly created API key are a subset of the caller's scopes in createApiKey. The self-target path of requireApiKeyPermission()...
access-controlapi-keyapi-securityauthentication-bypassconfiguration-writecve-2026-72826grav-plugin-apigrav-plugins
2026-08-14 NVD CVE
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary CL commands due to improper neutralization of special elements in a command.
arbitrary-command-executioncl-commandcommand-injectioncve-2026-17186databases-vulnerabilitiesdb2i-seriesibm
2026-08-14 NVD CVE
Grav API plugin versions before 1.0.13 fail to enforce API key scope caps in ConfigController super-scope gates, allowing scoped keys to write scheduler configuration. Attackers with a scoped api.config.write key can...
api-keyapi-pluginapi-securitycommand-injectionconfigcontrollerconfiguration-managementcve-2026-72830grav
2026-08-14 NVD CVE
MindsDB Minds Platform version 26.1.0 and earlier contains an unauthenticated remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary OS commands by submitting crafted prompts...
apiarbitrary-code-executioncredentialcve-2026-73678endpointexecllmmind-platform
2026-08-14 NVD CVE
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary code due to external control of file name or path.
arbitrary-code-executioncve-2026-17184db2external-controlfile-path-traversalibmincident-responsenvd-cve
2026-08-14 NVD CVE
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to bypass authentication and obtain or alter sensitive information due to improper validation of request URI path segments.
authentication-bypasscve-2026-17182db2ibmimproper-validationnvd-cvepaths-segmentsremote-attackers
◀ PREV PAGE 06 / 45 NEXT ▶