|
1071
|
6.5 |
MEDIUM
Network
|
-
|
-
|
The Gravity Forms Booking plugin for WordPress is vulnerable to time-based SQL Injection via the ‘staff_id’ parameter in all versions up to, and including, 2.7.1 due to insufficient escaping on the u…
|
CWE-89
SQL Injection
|
CVE-2026-2508
|
2026-06-25 22:26 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1072
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.185.0, a cross-tenant authorization flaw in Daytona's notification WebSocket gat…
|
CWE-639 CWE-863
Authorization Bypass Through User-Controlled Key Incorrect Authorization
|
CVE-2026-54324
|
2026-06-25 22:16 |
2026-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1073
|
7.0 |
HIGH
Network
|
-
|
-
|
Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. From 0.101.0 until 0.184.0, sandbox previews that were switched from public to private coul…
|
CWE-613 CWE-863
Insufficient Session Expiration Incorrect Authorization
|
CVE-2026-54321
|
2026-06-25 22:16 |
2026-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1074
|
4.2 |
MEDIUM
Network
|
-
|
-
|
Caddy is an extensible server platform that uses TLS by default. Prior to 2.11.4, Caddy’s stripHTML template function cannot reliably remove all HTML tags from input strings. Certain malformed HTML, …
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2026-52846
|
2026-06-25 22:16 |
2026-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1075
|
7.6 |
HIGH
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI patched SVG XSS in user profile images and webhook profile images but for…
|
CWE-79 CWE-116 CWE-693
Cross-site Scripting Improper Encoding or Escaping of Output Protection Mechanism Failure
|
CVE-2026-54013
|
2026-06-25 22:06 |
2026-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1076
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation
walk_s1() and kvm_walk_nested_s2() expect…
|
-
|
CVE-2026-53277
|
2026-06-25 18:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1077
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: ISO: Fix a use-after-free of the hci_conn pointer
In iso_sock_rebind_bc(), the bis pointer is cached, then the socket …
|
-
|
CVE-2026-53276
|
2026-06-25 18:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1078
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
ipv6: mcast: Fix use-after-free when processing MLD queries
When processing an MLD query, a pointer to the multicast group addres…
|
-
|
CVE-2026-53275
|
2026-06-25 18:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1079
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS
A logic flaw in __smc_setsockopt() allows a local unprivil…
|
-
|
CVE-2026-53274
|
2026-06-25 18:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1080
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
tee: optee: prevent use-after-free when the client exits before the supplicant
Commit 70b0d6b0a199 ("tee: optee: Fix supplicant w…
|
-
|
CVE-2026-53273
|
2026-06-25 18:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|