|
601
|
7.5 |
HIGH
Network
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: correctly handle tunneled traffic on IPV6_CSUM GSO fallback
NETIF_F_IPV6_CSUM only advertises support for checksum offload o…
Update
|
NVD-CWE-noinfo
|
CVE-2026-43057
|
2026-05-7 03:48 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
602
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix use-after-free of sbi in f2fs_compress_write_end_io()
In f2fs_compress_write_end_io(), dec_page_count(sbi, type) can br…
Update
|
CWE-416
Use After Free
|
CVE-2026-31702
|
2026-05-7 03:44 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
603
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
writeback: Fix use after free in inode_switch_wbs_work_fn()
inode_switch_wbs_work_fn() has a loop like:
wb_get(new_wb);
whil…
Update
|
CWE-416
Use After Free
|
CVE-2026-31703
|
2026-05-7 03:42 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
604
|
7.3 |
HIGH
Network
|
apache
|
http_server
|
Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's mod_md via OCSP response data.
This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66.
Users a…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-29168
|
2026-05-7 03:39 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
605
|
9.1 |
CRITICAL
Network
|
-
|
-
|
An issue was discovered in Gambio 4.9.2.0 (patched in 2024-02 v1.0.0 for GX4 v4.0.0.0 to v4.9.2.0). The password reset function can be bypassed to set arbitrary passwords for arbitrary accounts if th…
New
|
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2026-34408
|
2026-05-7 03:16 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
606
|
7.5 |
HIGH
Network
|
-
|
-
|
An issue was discovered in MM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000, Modem 5123, Mod…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2025-66369
|
2026-05-7 03:16 |
2026-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
607
|
8.1 |
HIGH
Network
|
dlink
|
m60_firmware
|
A vulnerability was determined in D-Link M60 up to 1.20B02. Affected by this issue is some unknown functionality of the file /usr/bin/httpd. This manipulation causes weak password recovery. The attac…
Update
|
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2026-7554
|
2026-05-7 03:10 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
608
|
7.5 |
HIGH
Network
|
apache
|
opennlp
|
OOM Denial of Service via Unbounded Array Allocation in Apache OpenNLP AbstractModelReader
Versions Affected:
before 2.5.9
before 3.0.0-M3
Description:
The AbstractModelReader methods getOut…
New
|
CWE-789
Memory Allocation with Excessive Size Value
|
CVE-2026-42440
|
2026-05-7 03:09 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
609
|
7.5 |
HIGH
Network
|
n8n
|
n8n
|
n8n is an open source workflow automation platform. Prior to versions 1.123.33 and 2.17.5, the dynamic-node-parameters endpoints did not verify whether the authenticated caller was authorized to use …
New
|
CWE-862
Missing Authorization
|
CVE-2026-42226
|
2026-05-7 03:09 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
610
|
6.5 |
MEDIUM
Network
|
n8n
|
n8n
|
n8n is an open source workflow automation platform. Prior to versions 1.123.32, 2.17.4, and 2.18.1, an authenticated user with a valid API key scoped to variable:list could read variables from projec…
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-42227
|
2026-05-7 03:08 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|