|
71
|
- |
|
-
|
-
|
AGL agl-service-can-low-level thru 17.1.12 contains a stack buffer overflow in the uds-c library. The send_diagnostic_request function in uds.c allocates a 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD…
New
|
-
|
CVE-2026-37530
|
2026-05-2 02:16 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
72
|
7.8 |
HIGH
Local
|
-
|
-
|
AGL app-framework-binder (afb-daemon) through v19.90.0 allows any local process to execute privileged supervision commands (Exit, Do, Sclose, Config, Trace, Debug, Token, slist) without authenticatio…
New
|
-
|
CVE-2026-37526
|
2026-05-2 02:16 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
73
|
7.8 |
HIGH
Local
|
-
|
-
|
AGL app-framework-binder (afb-daemon) through v19.90.0 contains a privilege escalation vulnerability in the supervision Do command. The on_supervision_call function in src/afb-supervision.c explicitl…
New
|
-
|
CVE-2026-37525
|
2026-05-2 02:16 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
74
|
6.5 |
MEDIUM
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5, when mod_proxy65 is enabled. Because mod_proxy65 mishandles access control in the activation scenario, relayin…
New
|
CWE-420
Unprotected Alternate Channel
|
CVE-2026-43505
|
2026-05-2 02:15 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
75
|
6.5 |
MEDIUM
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5, when mod_proxy65 is enabled. Because mod_proxy65 mishandles access control in a paused scenario, relaying of u…
New
|
CWE-863
Incorrect Authorization
|
CVE-2026-43504
|
2026-05-2 02:15 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
76
|
7.5 |
HIGH
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by memory leaks from unauthenticated connections.
New
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2026-43506
|
2026-05-2 02:09 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
77
|
7.5 |
HIGH
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by XML parsing resource amplification from unauthen…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-43507
|
2026-05-2 02:09 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
78
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-5653
|
2026-05-2 02:04 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
79
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
AMR-NB codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-5654
|
2026-05-2 02:02 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
80
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
SDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 allows denial of service
New
|
CWE-416
Use After Free
|
CVE-2026-5655
|
2026-05-2 01:49 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|