Total CVEs

138,943

Critical Severity

3,617

High Severity

12,982

Last 7 Days

947
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 7,801 - 7,820 of 35,348 CVEs
CVE-2026-9469 HIGH - 7.3

A weakness has been identified in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. The impacted element is an unknown function of the file /success.php. This manipulation of the argument User causes sql injection. It is possible to initiate the attack remotely. The ...

Published: May 25, 2026
Source: NVD
CVE-2026-9468 MEDIUM - 6.3

A security flaw has been discovered in dazeb cline-mcp-memory-bank up to 55c81b9cf6c16700983c84dc4cdea3cafa19a75f. The affected element is the function handleInitializeMemoryBank of the file src/index.ts. The manipulation of the argument projectPath results in path traversal. The attack may be perfo...

Published: May 25, 2026
Source: NVD
CVE-2026-9467 MEDIUM - 4.3

A vulnerability was identified in debugmcp mcp-debugger up to 0.20.0. Impacted is the function handleGetSourceContext of the file src/server.ts. The manipulation leads to path traversal. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. The vendo...

Published: May 25, 2026
Source: NVD
CVE-2026-9466 MEDIUM - 5.3

A vulnerability was determined in Tiandy Easy7 Integrated Management Platform 7.17.0. This issue affects some unknown processing of the file /rest/user/updateUserPassword of the component API Endpoint. Executing a manipulation can lead to weak password recovery. The attack can be executed remotely. ...

Published: May 25, 2026
Source: NVD
CVE-2026-42797 MEDIUM - 4.9

Exposure of Sensitive Information Through Data Queries vulnerability in Apache Syncope. An administrator with adequate entitlements for Derived Schemas can create a malicious JEXL expression which allows any administrator with sufficient entitlements for User read to access User-related security-se...

Vendor: Apache Software Foundation
Product: Apache Syncope
Published: May 25, 2026
Source: NVD
CVE-2026-42782 HIGH - 7.2

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements for Implementations can create a malicious Groovy class containing untrusted code reaching a non-sandboxed execution path via the class static initializer. This issue affects Apa...

Vendor: Apache Software Foundation
Product: Apache Syncope
Published: May 25, 2026
Source: NVD
CVE-2026-9465 HIGH - 7.3

A vulnerability was found in Tiandy Easy7 Integrated Management Platform 7.17.0. This vulnerability affects unknown code of the file /Easy7/apps/WebService/GetDBDataEx.jsp. Performing a manipulation of the argument strTBName results in sql injection. Remote exploitation of the attack is possible. Th...

Published: May 25, 2026
Source: NVD
CVE-2026-9464 MEDIUM - 4.7

A vulnerability has been found in YunaiV yudao-cloud 2026.03. This affects the function IotDataSinkHttpConfig of the file /admin-api/iot/data-sink/create of the component Admin API Endpoint. Such manipulation leads to server-side request forgery. The attack may be launched remotely. The exploit has ...

Published: May 25, 2026
Source: NVD
CVE-2026-9463 HIGH - 8.8

A flaw has been found in Edimax EW-7438RPn 1.31. Affected by this issue is the function formLicence of the file /goform/formLicence. This manipulation of the argument submit-url causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been published and may be used. ...

Published: May 25, 2026
Source: NVD
CVE-2026-9462 HIGH - 8.8

A vulnerability was detected in Edimax EW-7438RPn 1.31. Affected by this vulnerability is the function formWpsProxyEnable of the file /goform/formWpsProxyEnable. The manipulation of the argument submit-url results in stack-based buffer overflow. The attack can be launched remotely. The exploit is no...

Published: May 25, 2026
Source: NVD
CVE-2026-9078 MEDIUM - 5.4

Firefox for iOS displayed specially crafted right-to-left (RTL) and internationalized domain names (IDNs) incorrectly in link preview UI surfaces. A crafted RTL hostname could visually reorder portions of the displayed domain, causing attacker-controlled sites to appear as trusted origins. This vuln...

Vendor: mozilla
Product: firefox
Published: May 25, 2026
Source: NVD
CVE-2026-47077 HIGH - 7.5

Allocation of Resources Without Limits or Throttling vulnerability in benoitc hackney allows Flooding. hackney_h3:await_response_loop/6 accumulates the HTTP/3 response body in memory without any size cap. The after Timeout clause is a per-message inactivity timer that resets on every received chunk,...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47076 MEDIUM - 6.5

Interpretation Conflict vulnerability in benoitc hackney allows Server Side Request Forgery. hackney_url:normalize/2 URL-decodes the host component after the URL has been parsed into a #hackney_url{} record. OTP's uri_string:parse/1 and inet:parse_address/1 do not decode percent-escapes in the ...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47075 HIGH - 7.5

Improper Neutralization of CRLF Sequences vulnerability in benoitc hackney allows HTTP Request Splitting. hackney does not percent-encode carriage return (\r) or line feed (\n) characters in the URL query component before constructing the HTTP/1.1 request target. Characters outside the grammar defin...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47073 HIGH - 7.5

Allocation of Resources Without Limits or Throttling vulnerability in benoitc hackney allows Flooding. The WebSocket client in src/hackney_ws.erl imposes no upper bound on memory consumption in three code paths. First, read_handshake_response/3 accumulates received bytes into a growing buffer with n...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47072 HIGH - 7.5

Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in benoitc hackney allows HTTP Request/Response Splitting. The WebSocket upgrade code in src/hackney_ws.erl copies the host, path, headers (ExtraHeaders), and protocols options from the caller-supplied opts map into...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47071 HIGH - 7.5

Uncontrolled Resource Consumption vulnerability in benoitc hackney allows Flooding. The SOCKS5 transport in src/hackney_socks5.erl correctly applies the caller-supplied timeout to the SOCKS5 negotiation phase, but then upgrades the connection to TLS using the two-argument form ssl:connect/2, which d...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47070 MEDIUM - 6.1

Sensitive Data Exposure vulnerability in benoitc hackney allows Retrieve Embedded Sensitive Data. The HTTP/3 redirect handler in src/hackney_h3.erl passes the original request headers unchanged to the redirect target without performing any cross-origin check. When a client issues an HTTP/3 request w...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47069 MEDIUM - 5.3

Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in benoitc hackney allows HTTP Response Splitting. The hackney_cookie:setcookie/3 function in src/hackney_cookie.erl validates the Name and Value arguments against CRLF and control characters, but concatenates the d...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD
CVE-2026-47067 HIGH - 7.5

Allocation of Resources Without Limits or Throttling vulnerability in benoitc hackney allows Flooding. The URL parser in src/hackney_url.erl converts every unrecognized URL scheme to a permanent BEAM atom via binary_to_atom/2. BEAM atoms are never garbage-collected and the atom table defaults to a h...

Vendor: benoitc
Product: hackney
Published: May 25, 2026
Source: NVD