|
381
|
5.5 |
MEDIUM
Local
|
x.org redhat
|
x_server xwayland enterprise_linux
|
A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-after-free read after changing window attributes and forcing the screen saver, le…
Update
|
CWE-416
Use After Free
|
CVE-2026-50263
|
2026-06-12 04:46 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
382
|
7.1 |
HIGH
Local
|
samsung
|
assistant
|
Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attacker to execute arbitrary script.
Update
|
NVD-CWE-noinfo
|
CVE-2026-21033
|
2026-06-12 04:43 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
383
|
7.1 |
HIGH
Local
|
samsung
|
assistant
|
Improper export of android application components in SmartHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attacker to execute arbitrary script.
Update
|
NVD-CWE-noinfo
|
CVE-2026-21032
|
2026-06-12 04:42 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
384
|
6.5 |
MEDIUM
Network
|
erlang
|
erlang\/inets erlang\/otp ftp
|
Server-Side Request Forgery (SSRF) vulnerability in Erlang/OTP ftp (ftp_internal module) allows FTP bounce attacks and SSRF via an unvalidated PASV response IP address.
The ftp_internal:handle_ctrl_…
New
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-48858
|
2026-06-12 04:27 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
385
|
6.5 |
MEDIUM
Network
|
microsoft
|
windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2019 windows_server_2022 windows_server_2025
|
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information locally.
New
|
CWE-200
Information Exposure
|
CVE-2026-42907
|
2026-06-12 04:23 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
386
|
8.6 |
HIGH
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result in arbitrary code execution in the context of the curren…
New
|
NVD-CWE-noinfo
|
CVE-2026-47906
|
2026-06-12 04:22 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
387
|
6.3 |
MEDIUM
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to a…
New
|
CWE-284 NVD-CWE-noinfo
Improper Access Control
|
CVE-2026-47907
|
2026-06-12 04:21 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
388
|
7.8 |
HIGH
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploi…
New
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2026-47908
|
2026-06-12 04:20 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
389
|
6.3 |
MEDIUM
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to…
New
|
CWE-20 NVD-CWE-noinfo
Improper Input Validation
|
CVE-2026-47909
|
2026-06-12 04:18 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
390
|
6.3 |
MEDIUM
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Incorrect Authorization vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to a…
New
|
CWE-863
Incorrect Authorization
|
CVE-2026-47910
|
2026-06-12 04:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|