|
81
|
4.5 |
MEDIUM
Local
|
-
|
-
|
A flaw has been found in antlr ANTLR4 up to 4.13.2. This affects the function ObjectInputStream.readObject of the file antlr4-maven-plugin/src/main/java/org/antlr/mojo/antlr4/GrammarDependencies.java…
New
|
CWE-362 CWE-367
Race Condition Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2026-13502
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
82
|
5.5 |
MEDIUM
Network
|
-
|
-
|
A flaw has been found in khoj-ai khoj up to 2.0.0-beta.28. This impacts an unknown function of the file src/khoj/routers/api_chat.py of the component Conversation Sharing Handler. This manipulation o…
New
|
CWE-285 CWE-863
Improper Authorization Incorrect Authorization
|
CVE-2026-13508
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
83
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability has been found in RAGapp up to 0.1.5. Affected is the function FileHandler.upload_file/FileHandler.remove_file of the file src/ragapp/backend/controllers/files.py of the component Kno…
New
|
CWE-22
Path Traversal
|
CVE-2026-13509
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
84
|
8.8 |
HIGH
Network
|
-
|
-
|
A security vulnerability has been detected in Tenda JD12L 16.03.53.23. Impacted is the function formSetPPTPServer of the file /goform/SetPptpServerCfg. Such manipulation of the argument startIp leads…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-13515
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
85
|
8.8 |
HIGH
Network
|
-
|
-
|
A vulnerability was detected in Tenda JD12L 16.03.53.23. The affected element is the function fromSetWifiGusetBasic of the file /goform/WifiGuestSet. Performing a manipulation of the argument shareSp…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-13516
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
86
|
8.8 |
HIGH
Network
|
-
|
-
|
A flaw has been found in Tenda JD12L 16.03.53.23. The impacted element is the function formWifiBasicSet of the file /goform/WifiBasicSet. Executing a manipulation of the argument security_5g can lead…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-13517
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
87
|
3.7 |
LOW
Network
|
-
|
-
|
A vulnerability was found in SimStudioAI sim up to 0.6.92. Affected by this vulnerability is an unknown functionality in the library apps/sim/lib/core/security/deployment.ts of the component Password…
New
|
CWE-327 CWE-328
Use of a Broken or Risky Cryptographic Algorithm Use of Weak Hash
|
CVE-2026-13510
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
88
|
3.1 |
LOW
Network
|
-
|
-
|
A vulnerability was determined in VoltAgent up to 2.1.17. Affected by this issue is the function handleGetMemoryConversation of the file packages/server-core/src/handlers/memory.handlers.ts of the co…
New
|
CWE-266 CWE-285
Incorrect Privilege Assignment Improper Authorization
|
CVE-2026-13511
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
89
|
2.4 |
LOW
Physics
|
-
|
-
|
A weakness has been identified in Chess Play and Learn App up to 4.9.42 on Android. This issue affects some unknown processing of the file AndroidManifest.xml of the component com.chess. This manipul…
New
|
CWE-285 CWE-530
Improper Authorization Exposure of Backup File to an Unauthorized Control Sphere
|
CVE-2026-13514
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
90
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was determined in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /appointmentapproval.php of the component Appointment Handler. This manipula…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-13520
|
2026-06-30 03:46 |
2026-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|