|
101
|
- |
|
-
|
-
|
The CSP report endpoint intended to limit logged CSP reports to 1 KB but incorrectly allowed reports up to 1 MB before truncation. On deployments where the endpoint is reachable by untrusted clients,…
New
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-9137
|
2026-05-22 01:04 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
102
|
- |
|
-
|
-
|
The affected product may expose credentials remotely between low privileged visualization users during concurrent login operations due to insufficient isolation of authentication data. The vulnerabil…
New
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2026-0393
|
2026-05-22 01:04 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
103
|
- |
|
-
|
-
|
Request Tracker is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the "Page" parameter in GET requests. An attacker can craft a URL that, when opened, results in arbitrary Jav…
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-6841
|
2026-05-22 01:04 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
104
|
4.8 |
MEDIUM
Network
|
-
|
-
|
Incorrect Behaviour of Views with TCP PROXY Requests
New
|
CWE-284
Improper Access Control
|
CVE-2026-41999
|
2026-05-22 00:27 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
105
|
6.8 |
MEDIUM
Network
|
-
|
-
|
Insufficient Validation of Names During AXFR
New
|
CWE-77
Command Injection
|
CVE-2026-42000
|
2026-05-22 00:27 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
106
|
7.5 |
HIGH
Network
|
-
|
-
|
Insufficient Validation of Autoprimary SOA Queries
New
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-42001
|
2026-05-22 00:27 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
107
|
5.9 |
MEDIUM
Network
|
-
|
-
|
Concurrency and locking defects in GSS-TSIG
New
|
CWE-364
Signal Handler Race Condition
|
CVE-2026-42002
|
2026-05-22 00:27 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
108
|
4.9 |
MEDIUM
Network
|
-
|
-
|
Insufficient Validation of Member Zone Data May Cause Catalog Zone Transfer to Fail
New
|
CWE-94
Code Injection
|
CVE-2026-42396
|
2026-05-22 00:27 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
109
|
8.2 |
HIGH
Network
|
-
|
-
|
NVIDIA TensorRT contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to data tampering.
New
|
CWE-787
Out-of-bounds Write
|
CVE-2026-24188
|
2026-05-22 00:26 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
110
|
7.8 |
HIGH
Local
|
-
|
-
|
NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of serv…
New
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2026-24216
|
2026-05-22 00:26 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|