|
1891
|
8.2 |
HIGH
Network
|
-
|
-
|
Joomla! Component Price Alert 3.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the product_id p…
|
CWE-89
SQL Injection
|
CVE-2017-20260
|
2026-06-23 05:16 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1892
|
8.2 |
HIGH
Network
|
-
|
-
|
Joomla! Component User Bench 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the userid paramete…
|
CWE-89
SQL Injection
|
CVE-2017-20254
|
2026-06-23 05:16 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1893
|
- |
|
-
|
-
|
Impact
A security issue has been identified in Chef 360 that could allow unauthorized access to protected API endpoints under specific conditions. This issue is due to improper handling of URL-encod…
|
CWE-23
Relative Path Traversal
|
CVE-2026-8100
|
2026-06-23 04:49 |
2026-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1894
|
- |
|
-
|
-
|
A static credential embedded in Chef 360 prior to v1.7.0 permitted unauthenticated access to internal message queues. Queue messages contained tenant-specific identifiers. The credential has been r…
|
CWE-523
Unprotected Transport of Credentials
|
CVE-2026-8668
|
2026-06-23 04:49 |
2026-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1895
|
- |
|
-
|
-
|
Integer Overflow or Wraparound vulnerability in the EtherNet/IP function of Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP module FX5-EIP versions 1.000 and prior allows a remote attacker…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-8805
|
2026-06-23 04:49 |
2026-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1896
|
- |
|
-
|
-
|
Expected Behavior Violation vulnerability in Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial-of-service (DoS) co…
|
CWE-440
Expected Behavior Violation
|
CVE-2026-8806
|
2026-06-23 04:49 |
2026-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1897
|
8.6 |
HIGH
Network
|
-
|
-
|
DoS Vulnerability in 10G iSCSI Interface of Hitachi Virtual Storage Platform.
This issue affects Hitachi Virtual Storage Platform E990, E1090, E1090H: before DKCMAIN Ver.93-07-21-80/00-05, CHB(iSC…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2025-7737
|
2026-06-23 04:49 |
2026-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1898
|
9.8 |
CRITICAL
Network
|
-
|
-
|
In Tenda AC7 v15.03.06.44, the wanSpeed parameter of the route /goform/AdvSetMacMtuWan has a stack buffer overflow vulnerability that can lead to remote arbitrary code execution.
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-51846
|
2026-06-23 04:49 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1899
|
7.5 |
HIGH
Network
|
-
|
-
|
urllib3 version 2.6.3 is vulnerable to a decompression bomb bypass in its streaming API (`preload_content=False`) when using Brotli support. The issue arises due to three independent code paths in `r…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-9375
|
2026-06-23 04:49 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1900
|
9.4 |
CRITICAL
Network
|
-
|
-
|
Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that allows attackers to bypass email verification by modifying server responses. Attackers can intercept OT…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2026-56073
|
2026-06-23 04:49 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|