|
31
|
9.8 |
CRITICAL
Network
|
-
|
-
|
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to commit 45d48d1f2e8e0d73e80bc1fd5310cb57f4547302, the TGA codec's RLE de…
New
|
CWE-787
Out-of-bounds Write
|
CVE-2026-40494
|
2026-04-18 12:16 |
2026-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
32
|
9.8 |
CRITICAL
Network
|
-
|
-
|
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to commit c930284445ea3ff94451ccd7a57c999eca3bc979, the PSD codec computes…
New
|
CWE-787
Out-of-bounds Write
|
CVE-2026-40493
|
2026-04-18 12:16 |
2026-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
33
|
9.8 |
CRITICAL
Network
|
-
|
-
|
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to commit 36aa5c7ec8a2bb35f6fb867a1177a6f141156b02, the XWD codec resolves…
New
|
CWE-787
Out-of-bounds Write
|
CVE-2026-40492
|
2026-04-18 12:16 |
2026-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
34
|
6.5 |
MEDIUM
Network
|
-
|
-
|
gdown is a Google Drive public file/folder downloader. Versions prior to 5.2.2 are vulnerable to a Path Traversal attack within the extractall functionality. When extracting a maliciously crafted ZIP…
New
|
CWE-22
Path Traversal
|
CVE-2026-40491
|
2026-04-18 12:16 |
2026-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
35
|
7.2 |
HIGH
Network
|
-
|
-
|
SourceCodester Vehicle Parking Area Management System v1.0 is vulnerable to SQL Injection in the file /parking/manage_location.php.
New
|
CWE-89
SQL Injection
|
CVE-2026-37344
|
2026-04-18 12:16 |
2026-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
36
|
7.2 |
HIGH
Network
|
-
|
-
|
SourceCodester Vehicle Parking Area Management System v1.0 is vulnerable to SQL Injection in the file /parking/manage_user.php.
New
|
CWE-89
SQL Injection
|
CVE-2026-37343
|
2026-04-18 12:16 |
2026-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
37
|
7.2 |
HIGH
Network
|
-
|
-
|
SourceCodester Vehicle Parking Area Management System v1.0 is vulnerable to SQL Injection in the file /parking/view_parked_details.php.
New
|
CWE-89
SQL Injection
|
CVE-2026-37342
|
2026-04-18 12:16 |
2026-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
38
|
7.2 |
HIGH
Network
|
-
|
-
|
SourceCodester Vehicle Parking Area Management System v1.0 is vulnerable to SQL Injection in the file /parking/manage_category.php.
New
|
CWE-89
SQL Injection
|
CVE-2026-37341
|
2026-04-18 12:16 |
2026-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
39
|
9.8 |
CRITICAL
Network
|
-
|
-
|
SourceCodester Simple Music Cloud Community System v1.0 is vulnerable to SQL Injection in the file /music/edit_music.php.
New
|
CWE-89
SQL Injection
|
CVE-2026-37340
|
2026-04-18 12:16 |
2026-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
40
|
9.8 |
CRITICAL
Network
|
-
|
-
|
SourceCodester Simple Music Cloud Community System v1.0 is vulnerable to SQL Injection in the file /music/view_genre.php.
New
|
CWE-89
SQL Injection
|
CVE-2026-37339
|
2026-04-18 12:16 |
2026-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|