|
261
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability was determined in kodcloud KodExplorer up to 4.52. This affects the function share.class.php::initShareOld of the file /app/controller/share.class.php of the component Public Share Ha…
New
|
CWE-22
Path Traversal
|
CVE-2026-6568
|
2026-04-19 19:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
262
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in EMQ EMQX Enterprise up to 6.1.0. The impacted element is an unknown function of the component Session Handling. The manipulation results in improper authorization. It is …
New
|
CWE-266 CWE-285
Incorrect Privilege Assignment Improper Authorization
|
CVE-2026-6564
|
2026-04-19 19:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
263
|
8.8 |
HIGH
Network
|
-
|
-
|
A vulnerability has been found in H3C Magic B1 up to 100R004. The affected element is the function SetAPWifiorLedInfoById of the file /goform/aspForm. The manipulation of the argument param leads to …
New
|
CWE-119 CWE-120
Incorrect Access of Indexable Resource ('Range Error') Classic Buffer Overflow
|
CVE-2026-6563
|
2026-04-19 18:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264
|
7.3 |
HIGH
Network
|
-
|
-
|
A flaw has been found in dameng100 muucmf 1.9.5.20260309. Impacted is the function getListByPage of the file /index/Search/index.html. Executing a manipulation of the argument keyword can lead to sql…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-6562
|
2026-04-19 18:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265
|
4.7 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was detected in EyouCMS up to 1.7.1. This issue affects the function edit_adminlogo of the file application/admin/controller/Index.php. Performing a manipulation of the argument filen…
New
|
CWE-284 CWE-434
Improper Access Control Unrestricted Upload of File with Dangerous Type
|
CVE-2026-6561
|
2026-04-19 17:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266
|
8.8 |
HIGH
Network
|
-
|
-
|
A security vulnerability has been detected in H3C Magic B0 up to 100R002. This vulnerability affects the function Edit_BasicSSID of the file /goform/aspForm. Such manipulation of the argument param l…
New
|
CWE-119 CWE-120
Incorrect Access of Indexable Resource ('Range Error') Classic Buffer Overflow
|
CVE-2026-6560
|
2026-04-19 16:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A weakness has been identified in Wavlink WL-WN579A3 220323. This affects the function sub_401F80 of the file /cgi-bin/login.cgi. This manipulation of the argument Hostname causes cross site scriptin…
New
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2026-6559
|
2026-04-19 15:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The EMC – Easily Embed Calendly Scheduling Features plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's calendly shortcode in all versions up to, and including, 4.4 due…
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-0868
|
2026-04-19 13:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
New
|
-
|
CVE-2026-6056
|
2026-04-19 08:16 |
2026-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270
|
8.1 |
HIGH
Network
|
-
|
-
|
sagredo qmail before 2026.04.07 allows tls_quit remote code execution because of popen in notlshosts_auto in qmail-remote.c.
New
|
CWE-78
OS Command
|
CVE-2026-41113
|
2026-04-19 06:16 |
2026-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|