Mon, Aug 12 · 04:15 PM CDTCVE-2023-7249
9.8/10 · Must read/watchNVDvuln
Summary
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OpenText OpenText Directory Services allows Path Traversal.This issue affects OpenText Directory Services: from 16.4.2 before 24.1.
CVECVE-2023-7249
SeverityCRITICAL
TypeUPDATED
PublishedMon, Aug 12 · 04:15 PM CDT
ModifiedThu, Sep 03 · 02:15 AM CDT
Thu, Jun 19 · 12:15 AM CDTCVE-2025-24288
9.8/10 · Must read/watchNVDvuln
Summary
The Versa Director software exposes a number of services by default and allow attackers an easy foothold due to default credentials and multiple accounts (most with sudo access) that utilize the same default credentials. By default, Versa director exposes ssh and postgres to the internet, alongside a host of other serv
CVECVE-2025-24288
SeverityCRITICAL
TypeUPDATED
PublishedThu, Jun 19 · 12:15 AM CDT
ModifiedWed, Sep 02 · 05:35 PM CDT
Tue, May 05 · 10:16 PM CDTCVE-2026-28780
9.8/10 · Must read/watchNVDvuln
Summary
Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HT
CVECVE-2026-28780
SeverityCRITICAL
TypeUPDATED
PublishedTue, May 05 · 10:16 PM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Tue, Apr 07 · 04:16 PM CDTCVE-2026-33816
9.8/10 · Must read/watchNVDvuln
Summary
Memory-safety vulnerability in github.com/jackc/pgx/v5.
CVECVE-2026-33816
SeverityCRITICAL
TypeUPDATED
PublishedTue, Apr 07 · 04:16 PM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Sat, Apr 18 · 05:16 PM CDTCVE-2026-41242
9.8/10 · Must read/watchNVDvuln
Summary
protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the "type" fields of protobuf definitions, which will then execute during object decoding using that definition. Versions 8.0.1 and 7.5.5 patch the issue.
CVECVE-2026-41242
SeverityCRITICAL
TypeUPDATED
PublishedSat, Apr 18 · 05:16 PM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Wed, May 06 · 10:16 AM CDTCVE-2026-43114
9.4/10 · Must read/watchNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry New test case fails unexpectedly when avx2 matching functions are used. The test first loads a ranomly generated pipapo set with 'ipv4 . port' key, i.e. nft -f foo. This works. T
CVECVE-2026-43114
SeverityCRITICAL
TypeUPDATED
PublishedWed, May 06 · 10:16 AM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Fri, Feb 20 · 09:19 PM CSTCVE-2026-25896
9.3/10 · Must read/watchNVDvuln
Summary
fast-xml-parser allows users to validate XML, parse XML to JS object, or build XML from JS object without C/C++ based libraries and no callback. From 4.1.3to before 5.3.5, a dot (.) in a DOCTYPE entity name is treated as a regex wildcard during entity replacement, allowing an attacker to shadow built-in XML entities (&
CVECVE-2026-25896
SeverityCRITICAL
TypeUPDATED
PublishedFri, Feb 20 · 09:19 PM CST
ModifiedWed, Sep 02 · 01:17 PM CDT
Tue, Dec 02 · 10:16 AM CSTCVE-2025-13872
9.1/10 · Must read/watchNVDvuln
Summary
Blind Server-Side Request Forgery (SSRF) in the survey-import feature of ObjectPlanet Opinio 7.26 rev12562 on Web-based platforms allows an attacker to force the server to perform HTTP GET requests via crafted import requests to an arbitrary destination.
CVECVE-2025-13872
SeverityCRITICAL
TypeUPDATED
PublishedTue, Dec 02 · 10:16 AM CST
ModifiedThu, Sep 03 · 03:15 AM CDT
Fri, Mar 20 · 11:16 PM CDTCVE-2026-33186
9.1/10 · Must read/watchNVDvuln
Summary
gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an authorization bypass resulting from improper input validation of the HTTP/2 `:path` pseudo-header. The gRPC-Go server was too lenient in its routing logic, accepting requests where the `:path` omitted the mandatory leading slash (e.g.,
CVECVE-2026-33186
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 20 · 11:16 PM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Fri, May 22 · 04:16 AM CDTCVE-2026-39830
9.1/10 · Must read/watchNVDvuln
Summary
A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The blocked goroutine could not be released by calling Close(), resulting in a resource leak per connection. Unsolicited global responses are now discarded.
CVECVE-2026-39830
SeverityCRITICAL
TypeUPDATED
PublishedFri, May 22 · 04:16 AM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Mon, May 04 · 05:16 PM CDTCVE-2026-40682
9.1/10 · Must read/watchNVDvuln
Summary
XML External Entity (XXE) via Unsanitized Dictionary Parsing in Apache OpenNLP DictionaryEntryPersistor Versions Affected: before 2.5.9, before 3.0.0-M3 Description: The DictionaryEntryPersistor class initializes a static SAXParserFactory at class-load time without enabling FEATURE_SECURE_PROCESSING or disabling DTD pr
CVECVE-2026-40682
SeverityCRITICAL
TypeUPDATED
PublishedMon, May 04 · 05:16 PM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Wed, May 06 · 10:16 AM CDTCVE-2026-43112
8.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath When cifs_sanitize_prepath is called with an empty string or a string containing only delimiters (e.g., "/"), the current logic attempts to check *(cursor2 - 1) before cursor2 has advanced.
CVECVE-2026-43112
SeverityHIGH
TypeUPDATED
PublishedWed, May 06 · 10:16 AM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Wed, Nov 12 · 11:15 AM CSTCVE-2025-40168
8.1/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). smc_clc_prfx_match() is called from smc_listen_work() and not under RCU nor RTNL. Using sk_dst_get(sk)->dev could trigger UAF. Let's use __sk_dst_get() and dst_dev_rcu(). Note that the
CVECVE-2025-40168
SeverityHIGH
TypeUPDATED
PublishedWed, Nov 12 · 11:15 AM CST
ModifiedWed, Sep 02 · 01:16 PM CDT
Fri, May 01 · 09:16 AM CDTCVE-2026-43003
8.0/10 · Worth your timeNVDvuln
Summary
An issue was discovered in OpenStack ironic-python-agent 1.0.0 through 11.5.0. Ironic Python Agent (IPA) sometimes executes grub-install from within a chroot of the deployed partition image, leading to code execution in the case of a malicious image.
CVECVE-2026-43003
SeverityHIGH
TypeUPDATED
PublishedFri, May 01 · 09:16 AM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Wed, May 06 · 12:16 PM CDTCVE-2026-43133
7.9/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation Commit cc3ed80ae69f ("KVM: nSVM: always use vmcb01 to for vmsave/vmload of guest state") made KVM always use vmcb01 for the fields controlled by VMSAVE/VMLOAD, but it missed updating the VMLOAD/VM
CVECVE-2026-43133
SeverityHIGH
TypeUPDATED
PublishedWed, May 06 · 12:16 PM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Fri, Jul 05 · 07:15 AM CDTCVE-2024-39478
7.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: crypto: starfive - Do not free stack buffer RSA text data uses variable length buffer allocated in software stack. Calling kfree on it causes undefined behaviour in subsequent operations.
CVECVE-2024-39478
SeverityHIGH
TypeUPDATED
PublishedFri, Jul 05 · 07:15 AM CDT
ModifiedWed, Sep 02 · 01:16 PM CDT
Wed, Sep 18 · 08:15 AM CDTCVE-2024-46754
7.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: bpf: Remove tst_run from lwt_seg6local_prog_ops. The syzbot reported that the lwt_seg6 related BPF ops can be invoked via bpf_test_run() without without entering input_action_end_bpf() first. Martin KaFai Lau said that self test for BPF_PROG_TYPE_LWT_S
CVECVE-2024-46754
SeverityHIGH
TypeUPDATED
PublishedWed, Sep 18 · 08:15 AM CDT
ModifiedWed, Sep 02 · 01:16 PM CDT
Wed, Apr 16 · 03:15 PM CDTCVE-2024-58094
7.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: jfs: add check read-only before truncation in jfs_truncate_nolock() Added a check for "read-only" mode in the `jfs_truncate_nolock` function to avoid errors related to writing to a read-only filesystem. Call stack: block_write_begin() { jfs_write_faile
CVECVE-2024-58094
SeverityHIGH
TypeUPDATED
PublishedWed, Apr 16 · 03:15 PM CDT
ModifiedWed, Sep 02 · 01:16 PM CDT
Thu, Jan 15 · 07:16 PM CSTCVE-2025-13845
7.8/10 · Worth your timeNVDvuln
Summary
CWE-416: Use After Free vulnerability that could cause remote code execution when the end user imports the malicious project file (SSD file) into Rapsody.
CVECVE-2025-13845
SeverityHIGH
TypeUPDATED
PublishedThu, Jan 15 · 07:16 PM CST
ModifiedThu, Sep 03 · 03:15 AM CDT
Fri, Jul 04 · 02:15 PM CDTCVE-2025-38206
7.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: exfat: fix double free in delayed_free The double free could happen in the following path. exfat_create_upcase_table() exfat_create_upcase_table() : return error exfat_free_upcase_table() : free ->vol_utbl exfat_load_default_upcase_table : return error
CVECVE-2025-38206
SeverityHIGH
TypeUPDATED
PublishedFri, Jul 04 · 02:15 PM CDT
ModifiedWed, Sep 02 · 01:16 PM CDT
Tue, Oct 28 · 12:15 PM CDTCVE-2025-40064
7.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: smc: Fix use-after-free in __pnet_find_base_ndev(). syzbot reported use-after-free of net_device in __pnet_find_base_ndev(), which was called during connect(). [0] smc_pnet_find_ism_resource() fetches sk_dst_get(sk)->dev and passes down to pnet_find_ba
CVECVE-2025-40064
SeverityHIGH
TypeUPDATED
PublishedTue, Oct 28 · 12:15 PM CDT
ModifiedWed, Sep 02 · 01:16 PM CDT
Wed, Nov 12 · 11:15 AM CSTCVE-2025-40139
7.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: smc: Use __sk_dst_get() and dst_dev_rcu() in in smc_clc_prfx_set(). smc_clc_prfx_set() is called during connect() and not under RCU nor RTNL. Using sk_dst_get(sk)->dev could trigger UAF. Let's use __sk_dst_get() and dev_dst_rcu() under rcu_read_lock()
CVECVE-2025-40139
SeverityHIGH
TypeUPDATED
PublishedWed, Nov 12 · 11:15 AM CST
ModifiedWed, Sep 02 · 01:16 PM CDT
Fri, May 08 · 03:16 PM CDTCVE-2026-43437
7.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() In the drain loop, the local variable 'runtime' is reassigned to a linked stream's runtime (runtime = s->runtime at line 2157). After releasing the stream lock at line 2169, the
CVECVE-2026-43437
SeverityHIGH
TypeUPDATED
PublishedFri, May 08 · 03:16 PM CDT
ModifiedWed, Sep 02 · 01:17 PM CDT
Tue, Jul 12 · 10:15 AM CDTCVE-2022-34821
7.6/10 · Worth your timeNVDvuln
Summary
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00
CVECVE-2022-34821
SeverityHIGH
TypeUPDATED
PublishedTue, Jul 12 · 10:15 AM CDT
ModifiedThu, Sep 03 · 01:15 AM CDT
Thu, Aug 22 · 09:15 PM CDTCVE-2023-7260
7.5/10 · Worth your timeNVDvuln
Summary
Path Traversal vulnerability discovered in OpenText™ CX-E Voice, affecting all version through 22.4. The vulnerability could allow arbitrarily access files on the system.
CVECVE-2023-7260
SeverityHIGH
TypeUPDATED
PublishedThu, Aug 22 · 09:15 PM CDT
ModifiedThu, Sep 03 · 02:15 AM CDT