CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
-
-
Sep 9, 2026
Aug 17, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mechanism of the Invoke script execution.
-
-
Sep 9, 2026
Aug 17, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components
-
-
Sep 9, 2026
Aug 17, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Directory Traversal vulnerability in hermes-studio v.0.6.26 allows a remote attacker to obtain sensitive information via the validatePath function in api/hermes/download endpoint
-
-
Sep 9, 2026
Aug 17, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
zuraCast versions up to and including 0.23.7 contain a SQL injection vulnerability in the backup restore functionality. The `azuracast:restore` command executes the `db.sql` file extracted from a backup archive without a...Show more
zuraCast versions up to and including 0.23.7 contain a SQL injection vulnerability in the backup restore functionality. The `azuracast:restore` command executes the `db.sql` file extracted from a backup archive without any content validation or sanitization. This allows a remote attacker to escalate privilegesShow less
-
-
Sep 9, 2026
Aug 17, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A heap-based out-of-bounds write vulnerability exists in S2OPC 1.7.3 in server-side EventFilter handling during CreateMonitoredItems processing. This allows a remote attacker to execute arbitrary code.
-
-
Sep 9, 2026
Aug 5, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
S2OPC 1.7.3 contains an out-of-bounds read in RepublishResponse handling. This allows a remote attacker to cause a denial of service
-
-
Sep 9, 2026
Aug 18, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Berkeley Out-of-Order Machine (BOOM) commit 5223e44cfeb26f41380057a2eb4d651197475f69 contains a potential incorrect privilege assignment issue in the v3 and v4 NBDTLB implementations. The raw mstatus.SUM value participat...Show more
Berkeley Out-of-Order Machine (BOOM) commit 5223e44cfeb26f41380057a2eb4d651197475f69 contains a potential incorrect privilege assignment issue in the v3 and v4 NBDTLB implementations. The raw mstatus.SUM value participates in the read and write permission logic without an explicit local satp.MODE validity check at the use siteShow less
-
-
Sep 9, 2026
Aug 3, 2026
N/A· v4
4.6 MEDIUM· v3
N/A· v2
A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is triggered when processing the edl fw_flash command, where the <filename> argument is copied to a 64...Show more
A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is triggered when processing the edl fw_flash command, where the <filename> argument is copied to a 64-byte stack buffer via memcpy without proper length validation. An attacker with physical access to the UART3 serial interface can exploit this vulnerability by sending a maliciously crafted command with an oversized filename parameter,Show less
-
-
Sep 9, 2026
Aug 26, 2026
N/A· v4
7.0 HIGH· v3
N/A· v2
On the Trusted Firmware-M (TF-M) 2 through 2.3.0 platform before 00d1b3e, mailbox initialization on PSOC64 and RP2350 accepts a non-secure, unvalidated, supplied pointer.
-
-
Sep 9, 2026
Aug 3, 2026
N/A· v4
8.1 HIGH· v3
N/A· v2
A SQL injection vulnerability in Z-BlogPHP 1.7.5 allows authenticated attackers to execute arbitrary SQL commands via the id parameter in the CommentBat feature.
-
-
Sep 9, 2026
Aug 18, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue in SJRC F11 SJ-GPS-PRO firmware build 2019-09-17 allows a remote attacker to obtain sensitive information via the tcp_actions() function
-
-
Sep 9, 2026
Aug 6, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Open Library Foundation VuFind v11.0.3 and v4.1 is vulnerable to toInorrect Access Control. The application fails to stop processing an incoming request in VuFind\Controller\AbstractBase::validateAccessPermission after i...Show more
Open Library Foundation VuFind v11.0.3 and v4.1 is vulnerable to toInorrect Access Control. The application fails to stop processing an incoming request in VuFind\Controller\AbstractBase::validateAccessPermission after it has found that controller level access permissions do not allow access to the requested function. The requester receives a response indicating that access was denied, but the actual function is executed regardless of that.Show less
-
-
Sep 9, 2026
Aug 4, 2026
N/A· v4
6.1 MEDIUM· v3
N/A· v2
A reflected cross-site scripting (XSS) vulnerability in the Forum posting function of O2OA v10 allows attackers to execute arbitrary Javascript in the context of the victim's browser via a crafted URL.
-
-
Sep 9, 2026
Sep 8, 2026
N/A· v4
N/A· v3
N/A· v2
An authenticated stored cross-site scripting (XSS) vulnerability in the Column Management component of ClassCMS 1CMS v5.6 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the...Show more
An authenticated stored cross-site scripting (XSS) vulnerability in the Column Management component of ClassCMS 1CMS v5.6 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the title field.Show less
-
-
Sep 9, 2026
Aug 26, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A zero-click remote code execution (RCE) vulnerability in the /Terminal/Notification.hs component of SimpleX Chat before v6.5 allows attackers to execute arbitrary commands in the context of the application without user...Show more
A zero-click remote code execution (RCE) vulnerability in the /Terminal/Notification.hs component of SimpleX Chat before v6.5 allows attackers to execute arbitrary commands in the context of the application without user interaction via sending a crafted payload in a text message.Show less
-
-
Sep 9, 2026
Aug 3, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An OS command injection vulnerability in the openmediavault-md plugin of OpenMediaVault v8.0.4-1 allows attackers to execute arbitrary commands as root via injecting shell metacharacters.
-
-
Sep 9, 2026
Aug 3, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
SQL injection vulnerability in Fastadmin v.1.6.1.20250430 allows an attacker to exectue arbitrary code via the application/common/controller/Backend.php component
-
-
Sep 9, 2026
Aug 19, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to obtain sensitive information via the api_vedo/chat endpoint and the utente_chat parameter
-
-
Sep 9, 2026
Aug 19, 2026
N/A· v4
9.9 CRITICAL· v3
N/A· v2
SQL Injection vulnerability in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to execute arbitrary code via the api_vedo/chat endpoint and the utente_chat parameter
-
-
Sep 9, 2026
Aug 17, 2026
N/A· v4
9.1 CRITICAL· v3
N/A· v2
SQL Injection vulnerability in StudIP 6.0.x before 6.0.3 and 5.4.x before 5.4.12 allows a remote attacker to execute arbitrary code and obtain sensitive information via the store() functions.
-
-
Sep 9, 2026
Aug 3, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The "s init" command in Serverless-Devs @serverless-devs/s <= 3.1.11 passes unsanitized user input to child_process.spawn() with shell: true. A URL ending in ".git" bypasses the only input check, allowing OS command inje...Show more
The "s init" command in Serverless-Devs @serverless-devs/s <= 3.1.11 passes unsanitized user input to child_process.spawn() with shell: true. A URL ending in ".git" bypasses the only input check, allowing OS command injection when a user runs "s init" with an attacker-controlled argument.Show less
-
-
Sep 9, 2026
Aug 26, 2026
N/A· v4
9.3 CRITICAL· v3
N/A· v2
An issue in TokTok qTox v1.18.4 allows a local attacker to cause a denial of service via the src/persistence/serialize.cpp component
-
-
Sep 9, 2026
Aug 28, 2026
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Cross-Site Scripting (XSS) vulnerability in the DNS lookup/management component of oPanel before v1.20.25 allows remote attackers to execute arbitrary JavaScript and perform session hijacking via a crafted DNS TXT record
-
-
Sep 9, 2026
Aug 28, 2026
N/A· v4
8.1 HIGH· v3
N/A· v2
A command injection vulnerability in the 'advanced/curl' component of Osbil Technology oPanel v1.19.50 and earlier allows authenticated attackers to execute arbitrary shell commands via the 'url' parameter
-
-
Sep 9, 2026
Aug 17, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Directory Traversal vulnerability in Pronis Loisirs Billetterie CSE - < 04/2026 allows a remote attacker to obtain sensitive information and execute arbitrary code.