|
141
|
5.0 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was detected in volcengine OpenViking up to 0.3.21. This affects the function str_to_uint64 of the file openviking/storage/vectordb/utils/str_to_uint64.py of the component Local Vecto…
New
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2026-13507
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
142
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was identified in Databend up to 1.2.881 on HTTP. This affects the function ClientSessionManager::state_key of the file src/query/service/src/servers/http/v1/session/client_session_ma…
New
|
CWE-285 CWE-639
Improper Authorization Authorization Bypass Through User-Controlled Key
|
CVE-2026-13512
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
143
|
5.0 |
MEDIUM
Network
|
-
|
-
|
A security flaw has been discovered in MyScale MyScaleDB up to 1.8.0. This vulnerability affects the function SegmentId::getCacheKey in the library src/VectorIndex/Common/SegmentId.h. The manipulatio…
New
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2026-13513
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
144
|
8.8 |
HIGH
Network
|
-
|
-
|
A vulnerability has been found in Tenda JD12L 16.03.53.23. This affects the function fromAddressNat of the file /goform/addressNat. The manipulation of the argument page leads to stack-based buffer o…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-13518
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
145
|
8.8 |
HIGH
Network
|
-
|
-
|
A vulnerability was found in Tenda JD12L 16.03.53.23. This impacts the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation of the argument page results in stack-based…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-13519
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
146
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was detected in CodeAstro Human Resource Management System 1.0. This issue affects the function emselectByCode of the file application/models/Employee_model.php of the component Updat…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-13525
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
147
|
5.6 |
MEDIUM
Network
|
-
|
-
|
A security vulnerability has been detected in CherryHQ cherry-studio up to 1.9.6. This vulnerability affects unknown code of the file src/main/services/mcp/oauth/callback.ts of the component MCP OAut…
New
|
CWE-266 CWE-285
Incorrect Privilege Assignment Improper Authorization
|
CVE-2026-13524
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
148
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was identified in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /appointmentdetail.php of the component Appointment Handler. The manipulati…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-13530
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
149
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /department.php. The manipulation of the argument editid results in sql…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-13531
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
150
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability has been found in GotoHTTP up to 10.2. This issue affects some unknown processing of the file /reg.12x. The manipulation of the argument sn leads to cross site scripting. The attack m…
New
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2026-13536
|
2026-06-30 03:41 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|