|
431
|
5.1 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when performing a polynomial distortion an out of bounds over-…
New
|
CWE-125 CWE-129
Out-of-bounds Read Improper Validation of Array Index
|
CVE-2026-45624
|
2026-06-12 03:41 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
432
|
5.7 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-22, an invalid connected-components:keep-top value could result in…
New
|
CWE-125 CWE-129
Out-of-bounds Read Improper Validation of Array Index
|
CVE-2026-45359
|
2026-06-12 03:41 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
433
|
5.3 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, an off by one in the meta encoder could result in an out of bo…
New
|
CWE-125 CWE-193
Out-of-bounds Read Off-by-one Error
|
CVE-2026-45358
|
2026-06-12 03:41 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
434
|
6.1 |
MEDIUM
Network
|
svelte
|
svelte
|
Svelte is a performance oriented web framework. Prior to version 5.55.7, when using spread syntax to render attributes from untrusted data, event handler properties are included in the rendered HTML …
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-42599
|
2026-06-12 03:41 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
435
|
5.3 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, due to a missing check in the PSD decoder it would be possible…
New
|
CWE-400 CWE-770
Uncontrolled Resource Consumption Allocation of Resources Without Limits or Throttling
|
CVE-2026-45031
|
2026-06-12 03:41 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
436
|
5.1 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when writing an IPTC output file a malicious input file could …
New
|
CWE-125 CWE-191
Out-of-bounds Read Integer Underflow (Wrap or Wraparound)
|
CVE-2026-42326
|
2026-06-12 03:41 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
437
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2025
|
Out-of-bounds read in Windows Application Identity (AppID) Subsystem allows an authorized attacker to disclose information locally.
New
|
CWE-125
Out-of-bounds Read
|
CVE-2026-45604
|
2026-06-12 03:40 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
438
|
8.4 |
HIGH
Local
|
microsoft
|
365_apps microsoft_365 office_2016 office_2019 office_2021 office_2024 sharepoint_server
|
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
New
|
CWE-843
Type Confusion
|
CVE-2026-45456
|
2026-06-12 03:40 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
439
|
7.8 |
HIGH
Local
|
microsoft
|
365_apps microsoft_365 office_2016 office_2019 office_2021 office_2024 sharepoint_server
|
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-44824
|
2026-06-12 03:40 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
440
|
5.5 |
MEDIUM
Local
|
microsoft
|
365_apps microsoft_365 office_2016 office_2019 office_2021 office_2024 sharepoint_server
|
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
New
|
CWE-125
Out-of-bounds Read
|
CVE-2026-44821
|
2026-06-12 03:40 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|