|
441
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was determined in 8421bit MiniClaw up to 43905b934cf76489ab28e4d17da28ee97970f91f. Affected by this vulnerability is the function isPathInside of the file src/kernel.ts of the compone…
New
|
CWE-22
Path Traversal
|
CVE-2026-8113
|
2026-05-9 00:39 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
442
|
- |
|
-
|
-
|
A vulnerability in Legion of the Bouncy Castle Inc. BC-FJA BC-FIPS on Linux, X86_64, AVX, AVX-512f.
This vulnerability is associated with program files gcm128w, gcm512w.
This issue affects BC-FJ…
New
|
CWE-1068
Inconsistency Between Implementation and Documented Design
|
CVE-2026-8149
|
2026-05-9 00:38 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
443
|
- |
|
-
|
-
|
The VerySecureApp made by DIVD using Mendix Studio Pro 11.8.0 Beta allows unintended data exposure due to authorization misconfiguration. The VerySecureApp allows anonymous users of the MyFirstModule…
New
|
CWE-277
Insecure Inherited Permissions
|
CVE-2026-7891
|
2026-05-9 00:37 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
444
|
3.3 |
LOW
Local
|
-
|
-
|
Dell PowerScale OneFS versions 9.5.0.0 through 9.5.1.6, 9.6.0.0 through 9.7.1.13, 9.8.0.0 through 9.10.1.5 and 9.11.0.0 through 9.12.0.1 contains an Insufficient Logging vulnerability. A low privileg…
New
|
CWE-778
Insufficient Logging
|
CVE-2026-32803
|
2026-05-9 00:36 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
445
|
- |
|
-
|
-
|
An Out-of-bounds Read vulnerability in the IOCTL handler in ASUS System Control Interface allows a local user to cause system crash (BSOD) via a read size that exceeds the buffer size.Refer to the '
…
New
|
CWE-125
Out-of-bounds Read
|
CVE-2026-3508
|
2026-05-9 00:34 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
446
|
- |
|
-
|
-
|
An Exposed IOCTL with Insufficient Access Control vulnerability in AsusPTPFilter allows a local user to bypass driver security mechanisms and obtain restricted touchpad information or render the touc…
New
|
CWE-782
Exposed IOCTL with Insufficient Access Control
|
CVE-2026-6737
|
2026-05-9 00:34 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
447
|
- |
|
-
|
-
|
PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. …
New
|
CWE-22 CWE-269 CWE-284 CWE-732
Path Traversal Improper Privilege Management Improper Access Control Incorrect Permission Assignment for Critical Resource
|
CVE-2026-8069
|
2026-05-9 00:34 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
448
|
8.1 |
HIGH
Network
|
-
|
-
|
Memory safety bugs present in Thunderbird 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitr…
New
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-8093
|
2026-05-9 00:17 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
449
|
8.1 |
HIGH
Network
|
-
|
-
|
Memory safety bugs present in Thunderbird ESR 140.10.1 and Thunderbird 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have…
New
|
CWE-125 CWE-416 CWE-787
Out-of-bounds Read Use After Free Out-of-bounds Write
|
CVE-2026-8092
|
2026-05-9 00:17 |
2026-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
450
|
- |
|
-
|
-
|
Daptin is a GraphQL/JSON-API headless CMS. Prior to version 0.11.5, processFuzzySearch in server/resource/resource_findallpaginated.go:1484 splits the user-supplied column parameter by comma and inte…
New
|
CWE-89
SQL Injection
|
CVE-2026-44349
|
2026-05-9 00:17 |
2026-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|