|
11
|
7.3 |
HIGH
Network
|
-
|
-
|
A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. This impacts an unknown function of the file /classes/Users.php?f=delete. The manipulation of th…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-10184
|
2026-05-31 23:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
12
|
8.8 |
HIGH
Network
|
-
|
-
|
A vulnerability was identified in TRENDnet TEW-432BRP 3.10B20. This affects the function formWlanSetup of the file /goform/formWlanSetup. The manipulation of the argument enrollee leads to stack-base…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-10183
|
2026-05-31 23:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
13
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was determined in TRENDnet TEW-432BRP 3.10B20. The impacted element is the function formWlanSetup of the file /goform/formWlanSetup. Executing a manipulation of the argument enrollee …
New
|
CWE-74 CWE-77
Injection Command Injection
|
CVE-2026-10182
|
2026-05-31 23:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
14
|
8.1 |
HIGH
Network
|
-
|
-
|
OpenCATS from version 0.9.1a contains an SQL injection vulnerability in DataGrid filter handling that allows authenticated attackers to inject SQL through crafted filters targeting the non-filterable…
New
|
CWE-89
SQL Injection
|
CVE-2026-49490
|
2026-05-31 22:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
15
|
8.5 |
HIGH
Network
|
-
|
-
|
OpenCATS through 0.9.7.4 contains a sql injection vulnerability in the sortDirection parameter of the DataGrid component that allows authenticated users to extract database contents. Attackers can in…
New
|
CWE-89
SQL Injection
|
CVE-2026-49489
|
2026-05-31 22:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
16
|
8.8 |
HIGH
Network
|
-
|
-
|
A vulnerability was found in TRENDnet TEW-432BRP 3.10B20. The affected element is the function formSysCmd of the file /goform/formSysCmd. Performing a manipulation of the argument submit-url results …
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-10181
|
2026-05-31 22:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
17
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability has been found in TRENDnet TEW-432BRP 3.10B20. Impacted is the function formSysCmd of the file /goform/formSysCmd. Such manipulation of the argument sysCmd leads to command injection.…
New
|
CWE-74 CWE-77
Injection Command Injection
|
CVE-2026-10180
|
2026-05-31 21:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
18
|
8.8 |
HIGH
Network
|
-
|
-
|
A flaw has been found in TRENDnet TEW-432BRP 3.10B20. This issue affects the function formSetWlanEncrypt of the file /goform/formSetWlanEncrypt. This manipulation of the argument webpage causes stack…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-10179
|
2026-05-31 20:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
19
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability was detected in code-projects Online Music Site 1.0. This vulnerability affects unknown code of the file /Administrator/PHP/AdminEditAlbum.php. The manipulation of the argument ID res…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-10178
|
2026-05-31 20:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
20
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A security vulnerability has been detected in Aider-AI Aider 0.86.3. This affects the function requests.get of the file api_docs.py of the component AWS EC2 Metadata Endpoint. The manipulation leads …
New
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-10177
|
2026-05-31 20:16 |
2026-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|