|
1011
|
4.3 |
MEDIUM
Network
|
bitwarden
|
server
|
Bitwarden Server before 2026.5.0 contains a broken access control vulnerability that allows any authenticated user to access arbitrary organization billing data by supplying an arbitrary organization…
Update
|
CWE-862
Missing Authorization
|
CVE-2026-57521
|
2026-06-28 05:40 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1012
|
5.0 |
MEDIUM
Network
|
bitwarden
|
server
|
Bitwarden Server before 2026.5.0 contains a JSON injection vulnerability in IntegrationTemplateProcessor.ReplaceTokens(), which substitutes user-controlled values into event-integration templates wit…
Update
|
CWE-74
Injection
|
CVE-2026-57522
|
2026-06-28 05:39 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1013
|
5.3 |
MEDIUM
Network
|
wolfssl
|
wolfssl
|
Integer underflow in wc_PKCS7_DecryptOri when handling crafted Other Recipient Info, leading to incorrect length handling during decryption.
Update
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2026-6678
|
2026-06-28 05:37 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1014
|
7.5 |
HIGH
Network
|
wolfssl
|
wolfssl
|
A heap buffer overflow could occur in the DTLS 1.3 ACK serialization path before the connecting peer is authenticated. The buffer overflow was due to an integer truncation when computing the length o…
Update
|
CWE-190 CWE-197 CWE-787
Integer Overflow or Wraparound Numeric Truncation Error Out-of-bounds Write
|
CVE-2026-6679
|
2026-06-28 05:26 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1015
|
7.1 |
HIGH
Local
|
docling
|
docling
|
Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.45.0 until 2.91.0, the METS-GBS backend's XML parsing and the inp…
Update
|
CWE-409 CWE-611 CWE-776
Improper Handling of Highly Compressed Data (Data Amplification) XXE XML Entity Expansion
|
CVE-2026-44018
|
2026-06-28 05:25 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1016
|
6.5 |
MEDIUM
Network
|
envoyproxy
|
envoy
|
Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.34.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, Envoy crashes if an ext_proc server sends a single gRPC m…
Update
|
CWE-416
Use After Free
|
CVE-2026-47207
|
2026-06-28 05:20 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1017
|
7.5 |
HIGH
Network
|
envoyproxy
|
envoy
|
Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.18.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, the router filter contains a null pointer dereference vul…
Update
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-47221
|
2026-06-28 05:17 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1018
|
4.3 |
MEDIUM
Adjacent
|
envoyproxy
|
envoy
|
Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.34.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, PROXY Protocol v2 header generator emits TLVs beyond the …
Update
|
CWE-130
Improper Handling of Length Parameter Inconsistency
|
CVE-2026-47692
|
2026-06-28 05:09 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1019
|
5.3 |
MEDIUM
Network
|
wolfssl
|
wolfssl
|
The PKCS#7 decode path ignores the caller-supplied output buffer size (outputSz), allowing decoded content to be written past the bounds of the provided buffer. This affects wolfSSL 5.9.0 and earlier…
Update
|
CWE-120 CWE-787
Classic Buffer Overflow Out-of-bounds Write
|
CVE-2026-6681
|
2026-06-28 05:02 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1020
|
7.5 |
HIGH
Network
|
wolfssl
|
wolfssl
|
X.509 name constraint bypass via the Subject Common Name when treated as a DNS-type name. A certificate whose Subject CN violates an issuing CA's DNS name constraints could be accepted.
Update
|
CWE-295
Improper Certificate Validation
|
CVE-2026-6731
|
2026-06-28 05:02 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|