Sign in

CVE Alerts

@cve.skyfleet.blue
1.2K followers 6 following 38K posts

Unofficial account to notify You about new CVE id's CVE is a program that identifies, defines, and catalogs publicly disclosed cybersecurity vulnerabilities. check out @infosec.skyfleet.blue 🆘 @skyfleet.blue

PostsRepliesMedia
CVE Alerts @cve.skyfleet.blue · 47m
CVE-2026-97291 - WordPress Schema & Structured Data for WP & AMP plugin CVE ID : CVE-2026-97291 Published : Sept. 30, 2026, 6:18 p.m. | 20 minutes ago Description : Contributor PHP Object Injection in Schema & Structured Data for WP & AMP <= 1.66 versions. ...
cvefeed.io
CVE-2026-97291 - WordPress Schema & Structured Data for WP & AMP plugin <= 1.66 - PHP Object Injection vulnerability
Contributor PHP Object Injection in Schema & Structured Data for WP & AMP
000
CVE Alerts @cve.skyfleet.blue · 49m
CVE-2026-87004 - Tugtainer: OIDC id_token claims accepted without signature/audience/expiry verification CVE ID : CVE-2026-87004 Published : Sept. 30, 2026, 6:18 p.m. | 20 minutes ago Description : Tugtainer is a self-hosted app for automating updates of Docker container...
cvefeed.io
CVE-2026-87004 - Tugtainer: OIDC id_token claims accepted without signature/audience/expiry verification
Tugtainer is a self-hosted app for automating updates of Docker containers. Prior to version 1.31.3, when the OIDC login flow completes, backend/modules/auth/providers/auth_oidc_provider.py decodes the id_token returned by the identity provider's token endpoint using jose.jwt.get_unverified_claims() instead of jwt.decode(). This skips signature verification, audience (aud) validation, issuer (iss) validation, and expiry (exp) …
000
CVE Alerts @cve.skyfleet.blue · 55m
CVE-2026-55094 - Taskcluster: Unauthenticated remote code execution in `web-server` via GraphQL `filter` argument (sift `$where`) CVE ID : CVE-2026-55094 Published : Sept. 30, 2026, 6:18 p.m. | 20 minutes ago Description : Taskcluster is the task execution framework that...
cvefeed.io
CVE-2026-55094 - Taskcluster: Unauthenticated remote code execution in `web-server` via GraphQL `filter` argument (sift `$where`)
Taskcluster is the task execution framework that supports Mozilla's continuous integration and release processes. Prior to version 100.3.0, Taskcluster is vulnerable to unauthenticated RCE on Taskcluster deployments with an anonymous role that exposes the GraphQL endpoint and parses filter arguments using the sift library. This issue has been patched in …
000
CVE Alerts @cve.skyfleet.blue · 1h
CVE-2026-55107 - Kobako Vulnerable to Sandbox Escape: guest eval reaches host RCE via method_missing → public_send (any bound Service) CVE ID : CVE-2026-55107 Published : Sept. 30, 2026, 6:18 p.m. | 20 minutes ago Description : Kobako is a Ruby gem that embeds a Wasm-iso...
cvefeed.io
CVE-2026-55107 - Kobako Vulnerable to Sandbox Escape: guest eval reaches host RCE via method_missing → public_send (any bound Service)
Kobako is a Ruby gem that embeds a Wasm-isolated mruby interpreter inside applications, allowing execution of untrusted Ruby scripts (LLM-generated code, user formulas, student submissions, third-party plugins) in-process without giving them access to host memory, files, network, or credentials. From version 0.1.0 to before version 0.9.1, a guest mruby script …
000
CVE Alerts @cve.skyfleet.blue · 1h
CVE-2026-55224 - MineAdmin: Path Traversal via Unsanitized identifier in Plugin Install/Uninstall CVE ID : CVE-2026-55224 Published : Sept. 30, 2026, 6:18 p.m. | 20 minutes ago Description : MineAdmin is a ready-to-use backend management system suitable for quickly build...
cvefeed.io
CVE-2026-55224 - MineAdmin: Path Traversal via Unsanitized identifier in Plugin Install/Uninstall
MineAdmin is a ready-to-use backend management system suitable for quickly building website backends, operation platforms, permission centers, internal management systems, CMS, CRM, OA, ERP and other business applications. Prior to version 3.2.0-alpha.2, the app-store plugin service concatenates unsanitized user-supplied identifier values directly into file system paths. An attacker can use …
000
CVE Alerts @cve.skyfleet.blue · 2h
CVE-2026-103233 - AdithyaYelloju Restaurant-Management-System Admin Area admin authorization CVE ID : CVE-2026-103233 Published : Sept. 30, 2026, 4:30 p.m. | 29 minutes ago Description : A security vulnerability has been detected in AdithyaYelloju Restaurant-Management-S...
cvefeed.io
CVE-2026-103233 - AdithyaYelloju Restaurant-Management-System Admin Area admin authorization
A security vulnerability has been detected in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. This impacts an unknown function of the file /admin/ of the component Admin Area. Such manipulation of the argument ID leads to authorization bypass. The attack can be executed remotely. The exploit has been disclosed publicly and may …
000
CVE Alerts @cve.skyfleet.blue · 2h
CVE-2026-46711 - Soft Machine: Unauthenticated workspace API exposes arbitrary file read & directory exfiltration to any peer on the Fly private network CVE ID : CVE-2026-46711 Published : Sept. 30, 2026, 4:30 p.m. | 30 minutes ago Description : Soft Machine is a Virtual...
cvefeed.io
CVE-2026-46711 - Soft Machine: Unauthenticated workspace API exposes arbitrary file read & directory exfiltration to any peer on the Fly private network
Soft Machine is a Virtual Machine–based agentic development environment / Cloud OS. In versions 0.2.247 and prior, the workspace HTTP service that listens on 0.0.0.0:8080 inside each sm-ws-* Fly Machine exposes endpoints (/health, /file/ , /archive/ ) without any authentication or origin check. Any host that can reach TCP/8080 on a workspace …
000
CVE Alerts @cve.skyfleet.blue · 2h
CVE-2026-75969 - PTZOptics Missing Authentication in Firmware Upload CVE ID : CVE-2026-75969 Published : Sept. 30, 2026, 4:27 p.m. | 32 minutes ago Description : Missing authentication for critical function vulnerability for all PTZOptics cameras and the Firmware Upgrade...
cvefeed.io
CVE-2026-75969 - PTZOptics Missing Authentication in Firmware Upload
Missing authentication for critical function vulnerability for all PTZOptics cameras and the Firmware Upgrade Tool - Firmware Update modules. A missing authentication vulnerability in the firmware update mechanism of affected PTZOptics cameras allows an unauthenticated user to install modified firmware on the device without administrator credentials. This vulnerability allows attackers …
000
CVE Alerts @cve.skyfleet.blue · 2h
CVE-2026-47599 - NVIDIA GPU Display Driver Improper Memory Access Permission Handling CVE ID : CVE-2026-47599 Published : Sept. 30, 2026, 4:17 p.m. | 42 minutes ago Description : NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source kernel modul...
cvefeed.io
CVE-2026-47599 - NVIDIA GPU Display Driver Improper Memory Access Permission Handling
NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source kernel module where an unprivileged local user could cause improper preservation of memory access permissions during DMA mapping. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and …
000
CVE Alerts @cve.skyfleet.blue · 3h
CVE-2026-103444 - Stored XSS through system messages in WikiForum CVE ID : CVE-2026-103444 Published : Sept. 30, 2026, 4:23 p.m. | 36 minutes ago Description : Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in The Wikimedia Fo...
cvefeed.io
CVE-2026-103444 - Stored XSS through system messages in WikiForum
Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in The Wikimedia Foundation MediaWiki WikiForum extension allows Stored XSS. This issue affects MediaWiki WikiForum extension: master.
000
CVE Alerts @cve.skyfleet.blue · 4h
CVE-2026-93903 - LiteSpeed Web Server Open Redirect Vulnerability CVE ID : CVE-2026-93903 Published : 30. September 2026 14:17 | 20 Minuten ago Description : LiteSpeed Web Server (LSWS) before 6.3.7 build 1 mishandles internal redirect URL validation in a certain "corner...
cvefeed.io
CVE-2026-93903 - LiteSpeed Web Server Open Redirect Vulnerability
LiteSpeed Web Server (LSWS) before 6.3.7 build 1 mishandles internal redirect URL validation in a certain "corner case."
000
CVE Alerts @cve.skyfleet.blue · 4h
CVE-2026-82307 - Multiple Vulnerabilities in Dolusoft Software's SOPLOG CVE ID : CVE-2026-82307 Published : 30. September 2026 14:17 | 21 Minuten ago Description : Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Dolus...
cvefeed.io
CVE-2026-82307 - Multiple Vulnerabilities in Dolusoft Software's SOPLOG
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Dolusoft Software Technologies SOPLOG allows SQL Injection. This issue affects SOPLOG: before Soplog 2026.9.4.1.
000
CVE Alerts @cve.skyfleet.blue · 4h
CVE-2026-18782 - SQL Injection in Trex Digital Manufacturing's Trex MES CVE ID : CVE-2026-18782 Published : 30. September 2026 14:15 | 23 Minuten ago Description : Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Trex ...
cvefeed.io
CVE-2026-18782 - SQL Injection in Trex Digital Manufacturing's Trex MES
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Command Line Execution through SQL Injection. This issue affects Trex MES: through 2026-09-29.
000
CVE Alerts @cve.skyfleet.blue · 5h
CVE-2026-18783 - Missing Server-Side Authentication on REST API Endpoint in Trex Digital Manufacturing's Trex MES CVE ID : CVE-2026-18783 Published : 30. September 2026 14:12 | 26 Minuten ago Description : Missing authentication for critical function vulnerability in Tre...
cvefeed.io
CVE-2026-18783 - Missing Server-Side Authentication on REST API Endpoint in Trex Digital Manufacturing's Trex MES
Missing authentication for critical function vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Authentication Bypass. This issue affects Trex MES: through 2026-09-29.
000
CVE Alerts @cve.skyfleet.blue · 5h
CVE-2026-97293 - WordPress Media LIbrary Assistant plugin CVE ID : CVE-2026-97293 Published : 30. September 2026 13:17 | 1 Stunde, 20 Minuten ago Description : Contributor SQL Injection in Media LIbrary Assistant &lt;= 3.41 versions. Severity: 8.5 | HIGH Visit the ...
cvefeed.io
CVE-2026-97293 - WordPress Media LIbrary Assistant plugin <= 3.41 - SQL Injection vulnerability
Contributor SQL Injection in Media LIbrary Assistant
000
CVE Alerts @cve.skyfleet.blue · 6h
CVE-2026-95616 - Apache WSS4J: Unauthenticated denial of service via integer overflow in DER parsing of X.509 certificate extensions CVE ID : CVE-2026-95616 Published : Sept. 30, 2026, 12:25 p.m. | 34 minutes ago Description : An integer overflow in WSS4J's DER bounds ch...
cvefeed.io
CVE-2026-95616 - Apache WSS4J: Unauthenticated denial of service via integer overflow in DER parsing of X.509 certificate extensions
An integer overflow in WSS4J's DER bounds check lets an oversized allocation pass validation. An unauthenticated attacker can send a SOAP message carrying an X.509 certificate whose SubjectKeyIdentifier extension declares a length of 0x7FFFFFFF; WSS4J decodes this while resolving the signature's key reference, before the message is authenticated, so an …
000
CVE Alerts @cve.skyfleet.blue · 6h
CVE-2026-103321 - MISP Stored Cross-Site Scripting (XSS) via Unvalidated Event Graph Preview Image CVE ID : CVE-2026-103321 Published : Sept. 30, 2026, 12:19 p.m. | 41 minutes ago Description : MISP contains a stored cross-site script (XSS) vulnerability in the event gra...
cvefeed.io
CVE-2026-103321 - MISP Stored Cross-Site Scripting (XSS) via Unvalidated Event Graph Preview Image
MISP contains a stored cross-site script (XSS) vulnerability in the event graph preview feature. The event graph preview image field was accepted and stored without server-side validation. On the client side, the stored value was rendered into an HTML img element's src attribute via string concatenation, allowing a crafted value …
000
CVE Alerts @cve.skyfleet.blue · 6h
CVE-2026-87830 - Apache WSS4J: Streaming WS-SecurityPolicy validation may skip element-protection checks. CVE ID : CVE-2026-87830 Published : Sept. 30, 2026, 12:17 p.m. | 42 minutes ago Description : In the StAX streaming WS-SecurityPolicy validator, certain relative or ...
cvefeed.io
CVE-2026-87830 - Apache WSS4J: Streaming WS-SecurityPolicy validation may skip element-protection checks.
In the StAX streaming WS-SecurityPolicy validator, certain relative or unsupported XPath expressions can be converted into paths that never match the actual XML element path. A remote SOAP peer may therefore send a required element without the expected signature or encryption. Users are recommended to upgrade to versions 4.0.2 or …
000
CVE Alerts @cve.skyfleet.blue · 6h
CVE-2026-88920 - Apache WSS4J: SAML Sender-Vouches Authentication Bypass CVE ID : CVE-2026-88920 Published : Sept. 30, 2026, 12:17 p.m. | 42 minutes ago Description : An authentication bypass in the DOM security processor in Apache WSS4J allows unauthenticated remote att...
cvefeed.io
CVE-2026-88920 - Apache WSS4J: SAML Sender-Vouches Authentication Bypass
An authentication bypass in the DOM security processor in Apache WSS4J allows unauthenticated remote attackers to forge authenticated SOAP messages via a crafted unsigned SAML sender-vouches assertion containing an attacker-controlled key. Users are recommended to upgrade to versions 4.0.2 or 3.0.6 or 2.4.4, which fix this issue.
000
CVE Alerts @cve.skyfleet.blue · 6h
CVE-2026-85532 - Apache WSS4J: Insufficient Validation of Derived-Key Parameters CVE ID : CVE-2026-85532 Published : Sept. 30, 2026, 12:17 p.m. | 42 minutes ago Description : Apache WSS4J accepted attacker-controlled derived-key lengths and offsets without adequate bound...
cvefeed.io
CVE-2026-85532 - Apache WSS4J: Insufficient Validation of Derived-Key Parameters
Apache WSS4J accepted attacker-controlled derived-key lengths and offsets without adequate bounds. This could permit cryptographically weak keys or excessive CPU and memory consumption when processing crafted WS-Security messages. The fixes enforce a minimum key length of 16 bytes, a maximum length of 512 bytes, and a maximum offset of 4096 …
000
CVE Alerts @cve.skyfleet.blue · 8h
CVE-2026-94052 - Apache MINA SSHD: LDAP password authentication ineffective CVE ID : CVE-2026-94052 Published : Sept. 30, 2026, 10:17 a.m. | 20 minutes ago Description : A missing check in LdapPasswordAuthenticator in component sshd-ldap in Apache MINA SSHD versions 1.2....
cvefeed.io
CVE-2026-94052 - Apache MINA SSHD: LDAP password authentication ineffective
A missing check in LdapPasswordAuthenticator in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 or 3.0.0-M1 to 3.0.0-M5 bypassed authentication checks. Apache MINA SSHD is a Java library for client-side and server-side SSH. The optional sshd-ldap component provides support for integrating password and publickey authentication on the server …
000
CVE Alerts @cve.skyfleet.blue · 8h
CVE-2026-94053 - Apache MINA SSHD: LDAP injection in sshd-ldap CVE ID : CVE-2026-94053 Published : Sept. 30, 2026, 10:17 a.m. | 20 minutes ago Description : Authentication bypass via LDAP injection in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 and 3...
cvefeed.io
CVE-2026-94053 - Apache MINA SSHD: LDAP injection in sshd-ldap
Authentication bypass via LDAP injection in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5. Apache MINA SSHD is a Java library for client-side and server-side SSH. The optional sshd-ldap component provides support for integrating password and publickey authentication on the server side with an …
000
CVE Alerts @cve.skyfleet.blue · 8h
CVE-2026-77185 - Apache MINA SSHD: Asynchronous authentication can bypass signature verification CVE ID : CVE-2026-77185 Published : Sept. 30, 2026, 10:17 a.m. | 20 minutes ago Description : Authentication bypass in sshd-core in Apache MINA SSHD versions 2.0.0 to 2.19.0 ...
cvefeed.io
CVE-2026-77185 - Apache MINA SSHD: Asynchronous authentication can bypass signature verification
Authentication bypass in sshd-core in Apache MINA SSHD versions 2.0.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5 for a certain (presumed rare) way to implement an SSH server. Apache MINA SSHD is a Java library for client- and server-side SSH. In the server part of the library, a mechanism to perform …
000
CVE Alerts @cve.skyfleet.blue · 8h
CVE-2026-79625 - Improper Synchronization in Monitoring in CODESYS Control Runtime CVE ID : CVE-2026-79625 Published : Sept. 30, 2026, 10:17 a.m. | 20 minutes ago Description : Affected products do not properly synchronize access to their monitoring functionality. When m...
cvefeed.io
CVE-2026-79625 - Improper Synchronization in Monitoring in CODESYS Control Runtime
Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated remote attacker with monitoring access can exploit this issue to cause incorrect data processing or a …
000
CVE Alerts @cve.skyfleet.blue · 8h
CVE-2026-93994 - Apache MINA SSHD: Repeated-publickey policy bypass on server CVE ID : CVE-2026-93994 Published : Sept. 30, 2026, 10:17 a.m. | 20 minutes ago Description : Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH servers can be configur...
cvefeed.io
CVE-2026-93994 - Apache MINA SSHD: Repeated-publickey policy bypass on server
Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH servers can be configured to require multi-authentication schemes, for instance two different public keys, not just one. In OpenSSH, this would be done by setting in sshd_config AuthenticationMethods "publickey,publickey". Apache MINA SSHD provides an equivalent configuration mechanism. …
000
CVE Alerts @cve.skyfleet.blue · 10h
CVE-2026-102456 - DigiWin|EasyFlow - SQL Injection CVE ID : CVE-2026-102456 Published : Sept. 30, 2026, 8:30 a.m. | 29 minutes ago Description : EasyFlow .NET developed by Digiwin has an SQL Injection vulnerability. Authenticated remote attackers can inject arbitrary SQL...
cvefeed.io
CVE-2026-102456 - DigiWin|EasyFlow - SQL Injection
EasyFlow .NET developed by Digiwin has an SQL Injection vulnerability. Authenticated remote attackers can inject arbitrary SQL commands to read database contents.
000
CVE Alerts @cve.skyfleet.blue · 10h
CVE-2026-102455 - DigiWin|EasyFlow - Insecure Deserialization CVE ID : CVE-2026-102455 Published : Sept. 30, 2026, 8:29 a.m. | 30 minutes ago Description : EasyFlow .NET developed by Digiwin has a Insecure Deserialization vulnerability. Unauthenticated remote attackers c...
cvefeed.io
CVE-2026-102455 - DigiWin|EasyFlow - Insecure Deserialization
EasyFlow .NET developed by Digiwin has a Insecure Deserialization vulnerability. Unauthenticated remote attackers can execute arbitrary code on the server by sending maliciously crafted serialized content.
000
CVE Alerts @cve.skyfleet.blue · 10h
CVE-2025-14564 - Viable URL Media Uploader CVE ID : CVE-2025-14564 Published : Sept. 30, 2026, 8:28 a.m. | 32 minutes ago Description : The Viable URL Media Uploader plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up...
cvefeed.io
CVE-2025-14564 - Viable URL Media Uploader <= 1.0.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload
The Viable URL Media Uploader plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web …
000
CVE Alerts @cve.skyfleet.blue · 10h
CVE-2026-75098 - Product Designer App CVE ID : CVE-2026-75098 Published : Sept. 30, 2026, 8:28 a.m. | 32 minutes ago Description : The Product Designer App plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1.3 via the 'svg'...
cvefeed.io
CVE-2026-75098 - Product Designer App <= 1.1.3 - Unauthenticated Arbitrary File Read via 'svg' Parameter in pdapp-render-design
The Product Designer App plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1.3 via the 'svg' parameter parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information. The endpoint's only …
000
CVE Alerts @cve.skyfleet.blue · 10h
CVE-2026-92712 - ReactPress CVE ID : CVE-2026-92712 Published : Sept. 30, 2026, 8:28 a.m. | 31 minutes ago Description : The ReactPress – Create React App for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'permalink' parameter in all...
cvefeed.io
CVE-2026-92712 - ReactPress <= 3.4.0 - Authenticated (Subscriber+) Stored Cross-Site Scripting via 'permalink' Parameter
The ReactPress – Create React App for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'permalink' parameter in all versions up to, and including, 3.4.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber-level access and above, to …
000
CVE Alerts @cve.skyfleet.blue · 14h
CVE-2026-86134 - Fireware OS Pre-Authentication NULL Pointer Dereference Allows Remote Denial of Service CVE ID : CVE-2026-86134 Published : Sept. 30, 2026, 4:18 a.m. | 41 minutes ago Description : A NULL pointer dereference vulnerability in the WatchGuard Fireware OS au...
cvefeed.io
CVE-2026-86134 - Fireware OS Pre-Authentication NULL Pointer Dereference Allows Remote Denial of Service
A NULL pointer dereference vulnerability in the WatchGuard Fireware OS authentication process allows a remote, unauthenticated attacker to crash the management daemon by sending a specially request to the login interface, resulting in a denial of service.
000
CVE Alerts @cve.skyfleet.blue · 14h
CVE-2026-102911 - zosmaai pi-llm-wiki wiki_capture_source MCP tool index.ts os command injection CVE ID : CVE-2026-102911 Published : Sept. 30, 2026, 4:18 a.m. | 41 minutes ago Description : A flaw has been found in zosmaai pi-llm-wiki up to 0.11.7. Affected is an unknow...
cvefeed.io
CVE-2026-102911 - zosmaai pi-llm-wiki wiki_capture_source MCP tool index.ts os command injection
A flaw has been found in zosmaai pi-llm-wiki up to 0.11.7. Affected is an unknown function of the file mcp/index.ts of the component wiki_capture_source MCP tool. Executing a manipulation of the argument url can lead to os command injection. The attack can be executed remotely. The exploit has been published …
000
CVE Alerts @cve.skyfleet.blue · 14h
CVE-2026-102912 - SourceCodester Online Leave Management System page reports sql injection CVE ID : CVE-2026-102912 Published : Sept. 30, 2026, 4:18 a.m. | 41 minutes ago Description : A vulnerability was identified in SourceCodester Online Leave Management System 1.0. T...
cvefeed.io
CVE-2026-102912 - SourceCodester Online Leave Management System page reports sql injection
A vulnerability was identified in SourceCodester Online Leave Management System 1.0. This issue affects some unknown processing of the file /admin/?page=reports. The manipulation of the argument date_start/date_end leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.
000
CVE Alerts @cve.skyfleet.blue · 14h
CVE-2026-102910 - SourceCodester Online Reviewer Management System exam-delete.php sql injection CVE ID : CVE-2026-102910 Published : Sept. 30, 2026, 4:18 a.m. | 41 minutes ago Description : A security flaw has been discovered in SourceCodester Online Reviewer Management...
cvefeed.io
CVE-2026-102910 - SourceCodester Online Reviewer Management System exam-delete.php sql injection
A security flaw has been discovered in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown function of the file /reviewer_0/admins/assessments/examproper/exam-delete.php. The manipulation of the argument test_id results in sql injection. The attack can be launched remotely. The exploit has been released to the public and may …
010
CVE Alerts @cve.skyfleet.blue · 14h
CVE-2026-102913 - SourceCodester Car Driving School Management System Master.php save_enrollment sql injection CVE ID : CVE-2026-102913 Published : Sept. 30, 2026, 4:15 a.m. | 44 minutes ago Description : A security flaw has been discovered in SourceCodester Car Driving ...
cvefeed.io
CVE-2026-102913 - SourceCodester Car Driving School Management System Master.php save_enrollment sql injection
A security flaw has been discovered in SourceCodester Car Driving School Management System 1.0. Impacted is an unknown function of the file /classes/Master.php?f=save_enrollment. The manipulation results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
010
CVE Alerts @cve.skyfleet.blue · 15h
CVE-2026-103101 - Pexip Infinity Improper Input Validation Vulnerability CVE ID : CVE-2026-103101 Published : Sept. 30, 2026, 3:16 a.m. | 37 minutes ago Description : Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input validation in the web server ...
cvefeed.io
CVE-2026-103101 - Pexip Infinity Improper Input Validation Vulnerability
Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input validation in the web server that allows a malicious attacker to render a Pexip Infinity node inaccessible.
000
CVE Alerts @cve.skyfleet.blue · 15h
CVE-2026-103102 - Pexip Infinity Signaling Implementation Denial of Service Vulnerability CVE ID : CVE-2026-103102 Published : Sept. 30, 2026, 3:16 a.m. | 37 minutes ago Description : Pexip Infinity before 41.0 is affected by improper input validation in the signaling im...
cvefeed.io
CVE-2026-103102 - Pexip Infinity Signaling Implementation Denial of Service Vulnerability
Pexip Infinity before 41.0 is affected by improper input validation in the signaling implementation which allows a remote attacker to trigger a software abort resulting in a denial of service. Exploitation of this issue requires accessing a gateway call from a WebRTC/API client.
000
CVE Alerts @cve.skyfleet.blue · 15h
CVE-2026-103105 - Pexip Infinity Improper Access Control Vulnerability CVE ID : CVE-2026-103105 Published : Sept. 30, 2026, 3:16 a.m. | 37 minutes ago Description : Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-...
cvefeed.io
CVE-2026-103105 - Pexip Infinity Improper Access Control Vulnerability
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-internal API which allows an attacker with local access to a node within a Pexip Infinity installation to execute arbitrary code as an unprivileged user on another Pexip Infinity node.
000
CVE Alerts @cve.skyfleet.blue · 15h
CVE-2026-103110 - Pexip Infinity Remote Code Execution Vulnerability CVE ID : CVE-2026-103110 Published : Sept. 30, 2026, 3:03 a.m. | 51 minutes ago Description : Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation that allows a...
cvefeed.io
CVE-2026-103110 - Pexip Infinity Remote Code Execution Vulnerability
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation that allows a remote attacker to execute code remotely as an unprivileged user on a Pexip Infinity Conferencing Node.
000
CVE Alerts @cve.skyfleet.blue · 18h
CVE-2026-102842 - gedelumbung HospitalManagement KCFinder File Manager app_user_login_model.php cekUserLogin unrestricted upload CVE ID : CVE-2026-102842 Published : Sept. 30, 2026, 12:30 a.m. | 25 minutes ago Description : A vulnerability was identified in gedelumbung H...
cvefeed.io
CVE-2026-102842 - gedelumbung HospitalManagement KCFinder File Manager app_user_login_model.php cekUserLogin unrestricted upload
A vulnerability was identified in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. Affected by this issue is the function app_user_login_model.php::cekUserLogin of the file application/models/app_user_login_model.php of the component KCFinder File Manager. Such manipulation of the argument ADMIN_RS_KCFINDER leads to unrestricted upload. It is possible to launch the attack remotely. The exploit is publicly …
000
CVE Alerts @cve.skyfleet.blue · 18h
CVE-2026-51936 - Zetetic SQLCipher SQL Injection Vulnerability CVE ID : CVE-2026-51936 Published : Sept. 30, 2026, 12:19 a.m. | 36 minutes ago Description : Zetetic SQLCipher before 4.15.0 allows SQL injection. The sqlcipher_export convenience function can be used to cop...
cvefeed.io
CVE-2026-51936 - Zetetic SQLCipher SQL Injection Vulnerability
Zetetic SQLCipher before 4.15.0 allows SQL injection. The sqlcipher_export convenience function can be used to copy the contents of one attached database into another. It is most often used to convert between plaintext and encrypted databases. It needs to do dynamic schema manipulation, and thus the function temporarily clears defensive …
000
CVE Alerts @cve.skyfleet.blue · 18h
CVE-2026-103057 - AiSOC 5.1.0 before 12.0.0 Missing Authentication on Realtime Service Internal Endpoints CVE ID : CVE-2026-103057 Published : Sept. 30, 2026, 12:19 a.m. | 36 minutes ago Description : AiSOC versions 5.1.0 before 12.0.0 contain an authentication bypass vu...
cvefeed.io
CVE-2026-103057 - AiSOC 5.1.0 before 12.0.0 Missing Authentication on Realtime Service Internal Endpoints
AiSOC versions 5.1.0 before 12.0.0 contain an authentication bypass vulnerability in the realtime service internal endpoints POST /internal/agent-event and POST /internal/push. Attackers can post arbitrary events with spoofed tenant identifiers to broadcast malicious content over WebSocket and Redis SSE channels or send unauthorized notifications to registered devices.
000
CVE Alerts @cve.skyfleet.blue · 18h
CVE-2026-103055 - AiSOC 7.5.0 before 12.0.0 Authentication Bypass via Hard-coded JWT Secret CVE ID : CVE-2026-103055 Published : Sept. 30, 2026, 12:19 a.m. | 36 minutes ago Description : AiSOC versions 7.5.0 before 12.0.0 use a hard-coded constant for JWT verification in...
cvefeed.io
CVE-2026-103055 - AiSOC 7.5.0 before 12.0.0 Authentication Bypass via Hard-coded JWT Secret
AiSOC versions 7.5.0 before 12.0.0 use a hard-coded constant for JWT verification in the realtime WebSocket and SSE service when the AISOC_REALTIME_JWT_SECRET environment variable is not set. Unauthenticated attackers can forge subscription tickets with arbitrary tenant identifiers to access cross-tenant live alerts, cases, agent events and graph updates through the …
000
CVE Alerts @cve.skyfleet.blue · 18h
CVE-2026-103056 - AiSOC 7.2.0 before 12.0.0 Command Injection via CrowdStrike RTR CVE ID : CVE-2026-103056 Published : Sept. 30, 2026, 12:19 a.m. | 36 minutes ago Description : AiSOC versions 7.2.0 before 12.0.0 contain a command injection vulnerability in the actions se...
cvefeed.io
CVE-2026-103056 - AiSOC 7.2.0 before 12.0.0 Command Injection via CrowdStrike RTR
AiSOC versions 7.2.0 before 12.0.0 contain a command injection vulnerability in the actions service that builds CrowdStrike Real Time Response command strings by interpolating unescaped action parameters in crowdstrike_rtr.py and endpoint.py. Authenticated users can inject single quotes into file_path, path, script_name, or script_args parameters to break out of quoted arguments …
000
CVE Alerts @cve.skyfleet.blue · 18h
CVE-2026-103040 - LightLLM through 1.2.0 Unauthenticated Remote Code Execution via Router Profiler RPyC Service CVE ID : CVE-2026-103040 Published : 29 septembre 2026 23:17 | 37 minutes ago Description : LightLLM through 1.2.0 contains a remote code execution vulnerabili...
cvefeed.io
CVE-2026-103040 - LightLLM through 1.2.0 Unauthenticated Remote Code Execution via Router Profiler RPyC Service
LightLLM through 1.2.0 contains a remote code execution vulnerability in the router profiler service when started with --enable_profiling flag. The service exposes an unauthenticated RPyC server with pickle deserialization enabled, allowing attackers to execute arbitrary code by sending crafted serialized objects to the profiler command queue.
000
CVE Alerts @cve.skyfleet.blue · 19h
CVE-2026-103041 - LightLLM through 1.2.0 Unauthenticated Remote Code Execution via Embed Cache RPyC Service CVE ID : CVE-2026-103041 Published : 29 septembre 2026 23:17 | 37 minutes ago Description : LightLLM through 1.2.0 multimodal deployments expose an unauthenticated...
cvefeed.io
CVE-2026-103041 - LightLLM through 1.2.0 Unauthenticated Remote Code Execution via Embed Cache RPyC Service
LightLLM through 1.2.0 multimodal deployments expose an unauthenticated RPyC cache service with pickle deserialization enabled on all interfaces. Attackers can send crafted serialized objects to exposed cache methods to execute arbitrary code with service privileges.
000
CVE Alerts @cve.skyfleet.blue · 19h
CVE-2026-103042 - LightLLM through 1.2.0 Unauthenticated Memory Exhaustion via NCCL Control Channel set_value CVE ID : CVE-2026-103042 Published : 29 septembre 2026 23:17 | 37 minutes ago Description : LightLLM through 1.2.0 contains a memory exhaustion vulnerability in ...
cvefeed.io
CVE-2026-103042 - LightLLM through 1.2.0 Unauthenticated Memory Exhaustion via NCCL Control Channel set_value
LightLLM through 1.2.0 contains a memory exhaustion vulnerability in the NCCL control channel when started with --pd_trans_mode nccl, allowing unauthenticated attackers to exhaust KV-transfer worker memory. Attackers can call the exposed_set_value method to store unbounded key-value pairs without size limits, causing the worker process to crash and triggering node failure.
000
CVE Alerts @cve.skyfleet.blue · 22h
CVE-2026-81841 - Paused shared dashboard access tokens still expose data source configuration CVE ID : CVE-2026-81841 Published : Sept. 29, 2026, 8:35 p.m. | 19 minutes ago Description : Pausing a shared (public) dashboard did not revoke its access token for the endpoint...
cvefeed.io
CVE-2026-81841 - Paused shared dashboard access tokens still expose data source configuration
Pausing a shared (public) dashboard did not revoke its access token for the endpoints that serve frontend bootstrap data. Anyone holding the link to a paused shared dashboard could still retrieve, without authenticating, the configuration of the dashboard's data sources, including stored credentials for data sources using browser access (missing …
000
CVE Alerts @cve.skyfleet.blue · 22h
CVE-2026-102620 - Freedesktop Poppler FoFiTrueType.cc cvtSfnts integer overflow CVE ID : CVE-2026-102620 Published : Sept. 29, 2026, 8:30 p.m. | 25 minutes ago Description : A vulnerability was determined in Freedesktop Poppler 26.06.0/26.07.0/26.08.0. This impacts the f...
cvefeed.io
CVE-2026-102620 - Freedesktop Poppler FoFiTrueType.cc cvtSfnts integer overflow
A vulnerability was determined in Freedesktop Poppler 26.06.0/26.07.0/26.08.0. This impacts the function FoFiTrueType::cvtSfnts of the file fofi/FoFiTrueType.cc. This manipulation causes integer overflow. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized. Patch name: 245d3c6823377755f2c1d5fdddd010279c6ed94d. It is suggested to install a patch to …
000
CVE Alerts @cve.skyfleet.blue · 22h
CVE-2026-96274 - Uncaught exception in Baicells Nova 430H CVE ID : CVE-2026-96274 Published : Sept. 29, 2026, 8:17 p.m. | 14 minutes ago Description : In Baicells Nova 430H, an unauthenticated device within radio range can send a malformed uplink message during connectio...
cvefeed.io
CVE-2026-96274 - Uncaught exception in Baicells Nova 430H
In Baicells Nova 430H, an unauthenticated device within radio range can send a malformed uplink message during connection setup that contains an invalid NAS payload. Because the eNodeB does not properly validate this payload, it forwards the message to the core network, which can trigger a shutdown of the signaling …
010