|
501
|
7.5 |
HIGH
Network
|
-
|
-
|
Shenzhen Tenda Technology Co., Ltd Tenda US_W3V1.0BR v1.0.0.3 was discovered to contain a stack overflow in the Go parameter of the ask_to_reboot function. This vulnerability allows attackers to caus…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-36770
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
502
|
6.1 |
MEDIUM
Network
|
-
|
-
|
Ellucian Banner Self-Service before the April T2 release (2025-04-23) contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to execute arbitrary JavaScript in …
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-32856
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
503
|
7.8 |
HIGH
Local
|
-
|
-
|
SQLite before 3.53.2 contains a heap-based buffer overflow vulnerability in the FTS5 full-text search extension that allows attackers to cause a crash or execute arbitrary code by supplying a crafted…
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-11824
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
504
|
7.8 |
HIGH
Local
|
-
|
-
|
SQLite before 3.53.2 contains memory corruption vulnerabilities in the FTS5 full-text search extension that allow attackers to cause process crashes, memory exhaustion, or arbitrary code execution by…
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-11822
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
505
|
7.2 |
HIGH
Network
|
-
|
-
|
A flaw was found in Keycloak. A limited administrator can exploit an improper access control vulnerability in the POST /admin/realms/{realm}/partialImport endpoint. This allows them to bypass Fine-Gr…
New
|
CWE-863
Incorrect Authorization
|
CVE-2026-11577
|
2026-06-10 05:16 |
2026-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
506
|
9.8 |
CRITICAL
Network
|
-
|
-
|
Shenzhen Kangda Xin Intelligent Network Technology Company's router, model DR300, version 2.1.2.121, contains hardcoded login credentials and has telnet enabled by default on WAN and LAN interfaces. …
New
|
-
|
CVE-2026-10045
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
507
|
7.5 |
HIGH
Network
|
-
|
-
|
A NULL pointer dereference in the gf_odf_vvc_cfg_write_bs function (odf/descriptors.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.
New
|
CWE-476
NULL Pointer Dereference
|
CVE-2025-55657
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
508
|
7.5 |
HIGH
Network
|
-
|
-
|
A segmentation violaton in the gf_hevc_read_sps_bs_internal function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying crafted HEVC SPS …
New
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2025-52293
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
509
|
7.5 |
HIGH
Network
|
-
|
-
|
A stack buffer overflow in the filein_process function (in_file.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2025-52292
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
510
|
6.2 |
MEDIUM
Local
|
-
|
-
|
An issue was discovered in Malwarebytes 4.x and 5.x (and Nebula 2020-10-21 and later). A large number of Firefox preference files can cause the parser to ignore other browser configuration files, lea…
New
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2023-43686
|
2026-06-10 05:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|