Total CVEs

140,284

Critical Severity

3,711

High Severity

13,344

Last 7 Days

1,821
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 8,141 - 8,160 of 36,689 CVEs

Symfony's Cas2Handler Derives CAS service URL from Client Host Header โ†’ Cross-Service Ticket Replay

Vendor: composer
Product: symfony/security-http
Published: May 27, 2026
Source: GitHub

Symfony Vulnerable to SQL Injection in PdoAdapter::doClear() via Unsanitized $prefix

Vendor: composer
Product: symfony/cache
Published: May 27, 2026
Source: GitHub

Symfony Vulnerable to stored XSS in WebProfiler CodeExtension::fileExcerpt() โ€” Unescaped Non-PHP File Rendering

Vendor: composer
Product: symfony/symfony
Published: May 27, 2026
Source: GitHub

Symfony has XXE (Local File Disclosure) in DomCrawler::addXmlContent() via validateOnParse = true

Vendor: composer
Product: symfony/dom-crawler
Published: May 27, 2026
Source: GitHub

Symfony has Email Header Injection via Non-Token Characters in Mime Parameter Names

Vendor: composer
Product: symfony/mime
Published: May 27, 2026
Source: GitHub

Symfony's OidcTokenHandler Accepts JWTs Missing aud/iss/exp Claims

Vendor: composer
Product: symfony/security-http
Published: May 27, 2026
Source: GitHub

Symfony has an Argument Injection in SendmailTransport via Dash-Prefixed Recipient Address

Vendor: composer
Product: symfony/mailer
Published: May 27, 2026
Source: GitHub

Symfony has Email Header / SMTP Command Injection via CRLF in Symfony\Component\Mime\Address

Vendor: composer
Product: symfony/mime
Published: May 27, 2026
Source: GitHub
CVE-2026-9759 MEDIUM - 5.5

ROHC protocol dissector crash in Wireshark 4.6.0 to 4.6.5 and 4.4.0 to 4.4.15 allows denial of service

Vendor: wireshark
Product: wireshark
Published: May 27, 2026
Source: NVD
CVE-2026-8364 CRITICAL - 9.8

Gladinet Triofox Cloud Server Agent Access Service (GladServerAgentService.exe) listens on TCP port 7878 and processes remote HTTP messages with URL paths starting with /resources, /status, /sysinfo, /woshome, /Settings, /schedule, or /DavCache.

Published: May 27, 2026
Source: NVD
CVE-2026-8363 CRITICAL - 9.8

A stack-based buffer overflow condition exists in WOSDeviceDropFolder.dll when processing a long URL path starting with /resources:

Published: May 27, 2026
Source: NVD
CVE-2026-8362 CRITICAL - 9.8

A stack-based buffer overflow condition exists in WOSDefaultHttpModule.dll when processing a long URL path starting with /woshome

Published: May 27, 2026
Source: NVD
CVE-2026-8361 HIGH - 7.5

A path traversal vulnerability exists in WOSDefaultHttpModule.dll when processing a URL path starting with /woshome

Published: May 27, 2026
Source: NVD
CVE-2026-8360 HIGH - 7.5

Function calls to WOSCommonUtil.dll!WOSSysInfoGetDeviceInterface() in various DLLs (i.e., WOSProfileMgrModule.dll, WOSWebDavModule.dll) can return a NULL pointer (i.e., when no user is logged into the Triofox Server Agent Management Console). The returned NULL pointer is not checked before being de...

Published: May 27, 2026
Source: NVD
CVE-2026-8359 HIGH - 7.5

When processing a request with a URL path starting with /status or /sysinfo, WOSHttpStatusModule.dll is to be loaded to handle such URL patterns. The WOSBin_LoadHttpModule function in the dll would be called to set up a "module" object for that module. However, WOSHttpStatusModule.dll is n...

Published: May 27, 2026
Source: NVD

Northern.tech Mender Server v4.1.0, v4.0.1 and below, and fixed in v4.1.1 and v4.0.2 allows Directory Traversal.

Published: May 27, 2026
Source: NVD
CVE-2026-48792 MEDIUM - 4.4

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, src/evdev.c silently ignores EACCES errors when opening /dev/input/event* nodes, causing pusb_has_virtual_input_device() to return 0 (no virtual devices found) even when every open() call failed due to...

Vendor: mcdope
Product: pam_usb
Published: May 27, 2026
Source: NVD
CVE-2026-48066 MEDIUM - 5.7

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, src/log.c contains a process-wide static pointer that is written on every PAM invocation with the address of a stack-local variable. This violates the PAM re-entrancy requirement and creates a data rac...

Vendor: mcdope
Product: pam_usb
Published: May 27, 2026
Source: NVD
CVE-2026-48065 MEDIUM - 6.7

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, src/conf.c allocates heap memory proportional to n_devices, a count derived from libxml2 XPath evaluation of the config file, without first enforcing an upper bound. On 32-bit targets (armv7l, i686 -- ...

Vendor: mcdope
Product: pam_usb
Published: May 27, 2026
Source: NVD
CVE-2026-48064 HIGH - 8.1

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, when a PAM service is configured with deny_remote=false in pam_usb (commonly done for display managers such as gdm-password or lightdm to bypass process/TTY heuristics for local sessions), the PAM_RHOS...

Vendor: mcdope
Product: pam_usb
Published: May 27, 2026
Source: NVD