Total CVEs

138,728

Critical Severity

3,597

High Severity

12,893

Last 7 Days

1,758
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 1,701 - 1,720 of 13,055 CVEs
CVE-2026-36613 MEDIUM - 4.3

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 returns 128 bytes of uninitialized internal buffer contents when receiving HTTP POST requests to undefined paths, exposing server state to unauthenticated adjacent network attackers.

Published: Jun 03, 2026
Source: NVD
CVE-2026-36612 MEDIUM - 6.4

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 enables WPS 2.0 by default with a weak lockout policy (60-second lockout after 10 attempts).

Published: Jun 03, 2026
Source: NVD
CVE-2026-36610 MEDIUM - 5.9

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 transmits DDNS credentials over plaintext HTTP with only Base64 encoding. The firmware contains no TLS implementation, allowing man-in-the-middle interception of DDNS service credentials.

Published: Jun 03, 2026
Source: NVD
CVE-2026-36605 MEDIUM - 6.5

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 is vulnerable to a HTTP denial of service via a low number of crafted incomplete HTTP requests, causing a persistent crash that requires physical power cycling to recover.

Published: Jun 03, 2026
Source: NVD
CVE-2026-36604 MEDIUM - 6.5

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 does not validate the HTTP Host header, enabling DNS rebinding attacks. An external attacker can rebind a domain to the router's internal IP address, extending the CORS wildcard vulnerability (Access-Control-Allow-Origin: *) to int...

Published: Jun 03, 2026
Source: NVD
CVE-2026-36602 MEDIUM - 4.3

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 discloses kernel memory layout via the UPnP GetStatusInfo action. An unauthenticated attacker on the adjacent network can obtain a raw MIPS KSEG0 kernel pointer, revealing kernel memory layout and aiding further exploitation.

Published: Jun 03, 2026
Source: NVD
CVE-2026-36460 MEDIUM - 4.8

Dovestones Softwares ADPhonebook before v4.0.1.1 is vulnerable to a Cross Site Scripting vulnerability. The /Admin/Save API allows an authenticated admin user to store malicious JavaScript payloads in multiple configuration sections without proper input validation or output encoding.

Published: Jun 03, 2026
Source: NVD
CVE-2026-20233 MEDIUM - 6.1

A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. Cisco has addressed this vulnerability in the Webex Meetings service, and no customer action is needed. This vulnerability...

Vendor: Cisco
Product: Cisco Webex Meetings
Published: Jun 03, 2026
Source: NVD
CVE-2026-20175 MEDIUM - 6.1

A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user session on an affected device, possibly leading to browser-based attacks. This vulnerability is due to insufficient validation of user-supplied input ...

Vendor: Cisco
Product: Cisco Finesse
Published: Jun 03, 2026
Source: NVD
CVE-2025-71314 MEDIUM - 5.5

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Recover from panthor_gpu_flush_caches() failures We have seen a few cases where the whole memory subsystem is blocked and flush operations never complete. When that happens, we want to: - schedule a reset, so we can ...

Vendor: Linux
Product: Linux
Published: Jun 03, 2026
Source: NVD
CVE-2025-71313 MEDIUM - 5.5

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Add missing NULL check for alloc_workqueue() alloc_workqueue() can return NULL on memory allocation failure. Without proper error checking, this may lead to a NULL pointer dereference when queue_work() is later call...

Vendor: Linux
Product: Linux
Published: Jun 03, 2026
Source: NVD
CVE-2019-25720 MEDIUM - 6.5

Dräger SC Monitoring devices (SC 6002XL, SC 6802XL, SC 7000, SC 8000, SC 9000 XL) contain a denial-of-service vulnerability in all software versions that allows unauthenticated attackers to reboot the monitor by sending a malformed network packet. Attackers can repeatedly send such malformed packets...

Vendor: Dräger
Product: SC 6002XL, SC6802XL, SC 7000, SC8000, SC90000 XL
Published: Jun 03, 2026
Source: NVD
CVE-2026-6657 MEDIUM - 6.1

A vulnerability in jupyter-server versions 1.12.0 through 2.17.0 allows an attacker to bypass CORS origin validation when the `allow_origin_pat` configuration is used. The issue arises from the use of `re.match()` for validating the `Origin` header, which only anchors at the start of the string. Thi...

Published: Jun 03, 2026
Source: NVD

backpack/crud provides Create, Read, Update & Delete (CRUD) functions for Backpack, a collection of Laravel packages that help users build custom administration panels. Versions prior to 5.0.13, 4.1.69, and 4.0.63 are vulnerable to cross-site scripting. An attacker could conduct a targeted phish...

Vendor: Laravel-Backpack
Product: CRUD
Published: Jun 03, 2026
Source: NVD
CVE-2026-44545 MEDIUM - 5.3

daphne before 4.2.2 did not pass maxFramePayloadSize or maxMessagePayloadSize to Autobahn's WebSocketServerFactory. Because Autobahn defaults both values to 0 (unlimited), an unauthenticated remote attacker could send arbitrarily large WebSocket messages or frames, causing excessive memory cons...

Vendor: djangoproject
Product: daphne
Published: Jun 03, 2026
Source: NVD
CVE-2025-70101 MEDIUM - 6.5

An out-of-bounds read in the ext4_ext_binsearch_idx function in src/ext4_extent.c of the lwext4 1.0.0 library allows attackers to cause a denial of service by supplying a specially crafted ext4 filesystem image. The vulnerability occurs due to insufficient validation of extent header fields before p...

Vendor: gkostka
Product: lwext4
Published: Jun 03, 2026
Source: NVD
CVE-2025-70100 MEDIUM - 5.5

A divide-by-zero vulnerability in the ext4_block_set_lb_size function in src/ext4_blockdev.c of the lwext4 1.0.0 library allows attackers to cause a denial of service by providing a malformed ext4 filesystem image that results in a zero logical block size. The vulnerability is triggered during mount...

Vendor: gkostka
Product: lwext4
Published: Jun 03, 2026
Source: NVD
CVE-2025-60477 MEDIUM - 5.0

A NULL pointer dereference in the gf_filter_pid_resolve_file_template_ex function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted file.

Published: Jun 03, 2026
Source: NVD
CVE-2024-47273 MEDIUM - 4.3

An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in Backup Task functionality in Synology Hyper Backup before 4.1.2-4036 allows remote authenticated users to write specific files via unspecified vectors.

Vendor: Synology
Product: Hyper Backup
Published: Jun 03, 2026
Source: NVD
CVE-2024-47263 MEDIUM - 4.1

An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in Backup.Repository webapi component in Synology Hyper Backup before 4.1.2-4036 allows remote authenticated users with administrator privileges to write specific files containing non-sensitive ...

Vendor: Synology
Product: Hyper Backup
Published: Jun 03, 2026
Source: NVD