|
3841
|
6.4 |
MEDIUM
Network
|
-
|
-
|
El plugin Ibtana – WordPress Website Builder para WordPress es vulnerable a cross-site scripting almacenado a través del shortcode 'ive' del plugin en todas las versiones hasta la 1.2.5.7, inclusive,…
|
CWE-80
Basic XSS
|
CVE-2026-1834
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3842
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The Auto Post Scheduler plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.84. This is due to missing nonce validation on the 'aps_options_page' …
|
CWE-79
Cross-site Scripting
|
CVE-2026-1877
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3843
|
6.1 |
MEDIUM
Network
|
-
|
-
|
El plugin Auto Post Scheduler para WordPress es vulnerable a la falsificación de petición en sitios cruzados en todas las versiones hasta e incluyendo la 1.84. Esto se debe a la falta de validación d…
|
CWE-79
Cross-site Scripting
|
CVE-2026-1877
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3844
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability was found in SourceCodester Teacher Record System 1.0. Impacted is an unknown function of the file Teacher Record System of the component Parameter Handler. Performing a manipulation …
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-5182
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3845
|
7.3 |
HIGH
Network
|
-
|
-
|
Se encontró una vulnerabilidad en SourceCodester Teacher Record System 1.0. Afecta a una función desconocida del archivo Teacher Record System del componente Gestor de Parámetros. Realizar una manipu…
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-5182
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3846
|
5.3 |
MEDIUM
Local
|
-
|
-
|
A security flaw has been discovered in Nothings stb_image up to 2.30. This affects the function stbi__gif_load_next of the file stb_image.h of the component Multi-frame GIF File Handler. The manipula…
|
CWE-119 CWE-122
Incorrect Access of Indexable Resource ('Range Error') Heap-based Buffer Overflow
|
CVE-2026-5185
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3847
|
5.3 |
MEDIUM
Local
|
-
|
-
|
Una falla de seguridad ha sido descubierta en stb_image de Nothings hasta 2.30. Esto afecta a la función stbi__gif_load_next del archivo stb_image.h del componente Gestor de Archivos GIF de Múltiples…
|
CWE-119 CWE-122
Incorrect Access of Indexable Resource ('Range Error') Heap-based Buffer Overflow
|
CVE-2026-5185
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3848
|
5.3 |
MEDIUM
Local
|
-
|
-
|
A weakness has been identified in Nothings stb up to 2.30. This impacts the function stbi__load_gif_main of the file stb_image.h of the component Multi-frame GIF File Handler. This manipulation cause…
|
CWE-119 CWE-415
Incorrect Access of Indexable Resource ('Range Error') Double Free
|
CVE-2026-5186
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3849
|
5.3 |
MEDIUM
Local
|
-
|
-
|
Se ha identificado una debilidad en Nothings stb hasta la versión 2.30. Esto afecta a la función stbi__load_gif_main del archivo stb_image.h del componente Gestor de archivos GIF de múltiples fotogra…
|
CWE-119 CWE-415
Incorrect Access of Indexable Resource ('Range Error') Double Free
|
CVE-2026-5186
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3850
|
7.3 |
HIGH
Network
|
-
|
-
|
A flaw has been found in code-projects Student Membership System 1.0. This issue affects some unknown processing of the component User Registration Handler. Executing a manipulation can lead to sql i…
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-5195
|
2026-04-25 03:11 |
2026-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|