|
631
|
9.1 |
CRITICAL
Network
|
-
|
-
|
The GoAhead web server on MeiG Smart FORGE_SLT711 devices (firmware MDM9607.LE.1.0-00110-STD.PROD-1) allows unauthenticated OS command injection via the /action/SetRemoteAccessCfg endpoint.
New
|
CWE-78 CWE-306
OS Command Missing Authentication for Critical Function
|
CVE-2026-36356
|
2026-05-6 03:16 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
632
|
7.7 |
HIGH
Local
|
-
|
-
|
The rtl8192cd Wi-Fi kernel driver in the Realtek rtl819x Jungle SDK (all known versions through v3.4.14B) does not perform any access control checks on the write_mem (ioctl 0x89F5) and read_mem (ioct…
New
|
CWE-200 CWE-782 CWE-787
Information Exposure Exposed IOCTL with Insufficient Access Control Out-of-bounds Write
|
CVE-2026-36355
|
2026-05-6 03:16 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
633
|
9.8 |
CRITICAL
Network
|
synway
|
smg_gateway_management_software
|
Synway SMG Gateway Management Software contains an OS command injection vulnerability in the RADIUS configuration endpoint at /en/9-2radius.php where the radius_address POST parameter is split and in…
Update
|
CWE-78
OS Command
|
CVE-2025-71284
|
2026-05-6 03:09 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
634
|
8.0 |
HIGH
Network
|
jenkins
|
html_publisher
|
Jenkins HTML Publisher Plugin 427 and earlier does not escape job name and URL in the legacy wrapper file, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with…
Update
|
CWE-79
Cross-site Scripting
|
CVE-2026-42524
|
2026-05-6 03:06 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
635
|
9.0 |
CRITICAL
Network
|
jenkins
|
github
|
Jenkins GitHub Plugin 1.46.0 and earlier improperly processes the current job URL as part of JavaScript implementing validation of the feature "GitHub hook trigger for GITScm polling", resulting in a…
Update
|
CWE-79
Cross-site Scripting
|
CVE-2026-42523
|
2026-05-6 03:06 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
636
|
5.9 |
MEDIUM
Network
|
elastic
|
elastic_package_registry
|
Improper Verification of Cryptographic Signature (CWE-347) in Elastic Package Registry could allow an attacker positioned to intercept network traffic, or to otherwise influence the contents served t…
Update
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2026-33467
|
2026-05-6 02:55 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
637
|
4.4 |
MEDIUM
Local
|
oracle
|
linux
|
An unprivileged attacker can craft a user-space process with a malicious ELF binary containing an out-of-range sh_link field. When root-level dtrace attaches to -- or instruments -- that process (via…
Update
|
CWE-125
Out-of-bounds Read
|
CVE-2026-35233
|
2026-05-6 02:46 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
638
|
5.5 |
MEDIUM
Local
|
oracle
|
linux
|
An unprivileged attacker can reliably trigger a crash of the dtrace process with a malicious ELF binary due to an integer Divide-by-Zero in Pbuild_file_symtab()
Update
|
CWE-369
Divide By Zero
|
CVE-2026-21996
|
2026-05-6 02:45 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
639
|
7.3 |
HIGH
Network
|
gnu
|
glibc
|
The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write w…
Update
|
CWE-787
Out-of-bounds Write
|
CVE-2026-5435
|
2026-05-6 02:38 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
640
|
7.8 |
HIGH
Local
|
kde
|
kcoreaddons
|
In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a shell command. This parsing does not adequately handle metacharacters, leading …
Update
|
CWE-150
Improper Neutralization of Escape, Meta, or Control Sequences
|
CVE-2026-41526
|
2026-05-6 02:25 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|