|
1991
|
5.5 |
MEDIUM
Local
|
ibm
|
db2
|
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes DB2 Connect Server) stores potentially sensitive information in log files that could be read by a local …
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2025-13755
|
2026-05-27 22:49 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1992
|
9.8 |
CRITICAL
Network
|
nvidia
|
isaac_launchable
|
NVIDIA Isaac Launchable for Linux contains a vulnerability where sensitive information is transmitted in clear text. A successful exploit of this vulnerability might lead to code execution, escalatio…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2026-24212
|
2026-05-27 22:48 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1993
|
6.1 |
MEDIUM
Network
|
joomla
|
joomla\!
|
Lack of output escaping leads to a XSS vector in the feed modules.
|
CWE-79
Cross-site Scripting
|
CVE-2026-25900
|
2026-05-27 22:41 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1994
|
6.1 |
MEDIUM
Network
|
joomla
|
joomla\!
|
Lack of output escaping leads to a XSS vector in the multilingual associations component.
|
CWE-79
Cross-site Scripting
|
CVE-2026-25901
|
2026-05-27 22:40 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1995
|
6.1 |
MEDIUM
Network
|
joomla
|
joomla\!
|
Lack of output escaping leads to a XSS vector in the content history component.
|
CWE-79
Cross-site Scripting
|
CVE-2026-30894
|
2026-05-27 22:29 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1996
|
6.1 |
MEDIUM
Network
|
joomla
|
joomla\!
|
Lack of output escaping leads to a XSS vector in the readmore links for com_content.
|
CWE-79
Cross-site Scripting
|
CVE-2026-30895
|
2026-05-27 22:28 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1997
|
4.3 |
MEDIUM
Network
|
joomla
|
joomla\!
|
Lack of CSRF token validation lead to a CSRF attack vector in the admin activation endpoint of com_users.
|
CWE-352
Origin Validation Error
|
CVE-2026-35220
|
2026-05-27 22:18 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1998
|
9.8 |
CRITICAL
Network
|
joomla
|
joomla\!
|
Improperly built filter clauses lead to a SQL injection vulnerability in the search query for com_finder.
|
CWE-89
SQL Injection
|
CVE-2026-35221
|
2026-05-27 22:05 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1999
|
9.8 |
CRITICAL
Network
|
joomla
|
joomla\!
|
Improperly validated order clauses lead to a SQL injection vulnerability in com_tags.
|
CWE-89
SQL Injection
|
CVE-2026-35222
|
2026-05-27 21:28 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2000
|
9.8 |
CRITICAL
Network
|
joomla
|
joomla\!
|
An improper validation of user-supplied input leads to a local file inclusion vulnerability.
|
CWE-22
Path Traversal
|
CVE-2026-40383
|
2026-05-27 21:24 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|