|
351
|
7.5 |
HIGH
Network
|
postgresql
|
postgresql_jdbc_driver
|
pgjdbc is an open source postgresql JDBC Driver. From version 42.2.0 to before version 42.7.11, pgjdbc is vulnerable to a client-side denial of service during SCRAM-SHA-256 authentication. A maliciou…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-42198
|
2026-05-1 21:51 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
352
|
7.8 |
HIGH
Local
|
freebsd
|
freebsd
|
An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to overwrite adjacent execve(2) argument buffers.
The bug may be exploitable by…
New
|
CWE-783
Operator Precedence Logic Error
|
CVE-2026-7270
|
2026-05-1 21:47 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353
|
7.5 |
HIGH
Network
|
freebsd
|
freebsd
|
Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic.
Remote attackers can craft packets which cause affec…
New
|
CWE-674 CWE-791
Uncontrolled Recursion Incomplete Filtering of Special Elements
|
CVE-2026-7164
|
2026-05-1 21:46 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354
|
7.8 |
HIGH
Local
|
freebsd
|
freebsd
|
When exchanging data over a socket, libnv uses select(2) to wait for data to arrive. However, it does not verify whether the provided socket descriptor fits in select(2)'s file descriptor set size l…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-39457
|
2026-05-1 21:41 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
355
|
7.5 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Information disclosure due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 150.0.1, Firefox ESR 140.10.1, Firefox ESR 115.35.1, Thunderbird 150.…
New
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-7320
|
2026-05-1 21:32 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
356
|
7.3 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have…
New
|
CWE-119 CWE-416
Incorrect Access of Indexable Resource ('Range Error') Use After Free
|
CVE-2026-7322
|
2026-05-1 21:30 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
357
|
5.4 |
MEDIUM
Network
|
helpy.io
|
helpy
|
Helpy contains a stored cross-site scripting vulnerability in the knowledge base Doc rendering logic. An authenticated attacker with admin or agent editor privileges can persist arbitrary HTML or Jav…
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-40230
|
2026-05-1 21:26 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
358
|
5.4 |
MEDIUM
Network
|
helpy.io
|
helpy
|
Helpy contains a stored cross-site scripting vulnerability in the post author display logic. Any registered user can persist arbitrary HTML in their account name field and cause it to be rendered une…
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-40229
|
2026-05-1 21:25 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
359
|
4.7 |
MEDIUM
Network
|
-
|
-
|
Open redirect vulnerability exists in Multiple laser printers and MFPs which implement Ricoh Web Image Monitor. When accessing a specially crafted URL, the user may be redirected to an arbitrary webs…
New
|
CWE-601
Open Redirect
|
CVE-2026-41226
|
2026-05-1 17:16 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
360
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
New
|
-
|
CVE-2026-4178
|
2026-05-1 08:16 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|