CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2026-24826

    Last Modified: 18 Apr 2026

    Out-of-bounds Write, Divide By Zero, NULL Pointer Dereference, Use of Uninitialized Resource, Out-of-bounds Read, Reachable Assertion vulnerability in cadaver turso3d.This issue affects .

    Published: 27 Jan 2026
    8.1
    High

    CVE-2026-21721

    Last Modified: 24 Apr 2026

    The dashboard permissions API does not verify the target dashboard scope and only checks the dashboards.permissions:* action. As a result, a user who has permission management rights on one dashboard can read and modify permissions on other dashboards. This is an organization‑internal privilege escalation.

    Published: 27 Jan 2026
    7.5
    High

    CVE-2026-21720

    Last Modified: 24 Apr 2026

    Every uncached /avatar/:hash request spawns a goroutine that refreshes the Gravatar image. If the refresh sits in the 10-slot worker queue longer than three seconds, the handler times out and stops listening for the result, so that goroutine blocks forever trying to send on an unbuffered channel. Sustained traffic with random hashes keeps tripping this timeout, so goroutine count grows linearly, eventually exhausting memory and causing Grafana to crash on some systems.

    Published: 27 Jan 2026
    7.3
    High

    CVE-2026-24344

    Last Modified: 18 Apr 2026

    Multiple Buffer Overflows in Admin UI of EZCast Pro II version 1.17478.146 allow attackers to cause a program crash and potential remote code execution

    Published: 27 Jan 2026
    6.9
    Medium

    CVE-2026-24825

    Last Modified: 18 Apr 2026

    Missing Release of Memory after Effective Lifetime vulnerability in ydb-platform ydb (contrib/libs/yajl modules). This vulnerability is associated with program files yail_tree.C. This issue affects ydb: through 24.4.4.2.

    Published: 27 Jan 2026
    6.9
    Medium

    CVE-2026-24824

    Last Modified: 18 Apr 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in yacy yacy_search_server (source/net/yacy/http/servlets modules). This vulnerability is associated with program files YaCyDefaultServlet.Java. This issue affects yacy_search_server.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24823

    Last Modified: 18 Apr 2026

    Out-of-bounds Write, Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in FASTSHIFT X-TRACK (Software/X-Track/USER/App/Utils/lv_img_png/PNGdec/src modules). This vulnerability is associated with program files inflate.C. This issue affects X-TRACK: through v2.7.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24822

    Last Modified: 18 Apr 2026

    Out-of-bounds Write, Heap-based Buffer Overflow vulnerability in ttttupup wxhelper (src modules). This vulnerability is associated with program files mongoose.C. This issue affects wxhelper: through 3.9.10.19-v1.

    Published: 27 Jan 2026
    9.3
    Critical

    CVE-2026-24821

    Last Modified: 18 Apr 2026

    Out-of-bounds Read vulnerability in turanszkij WickedEngine (WickedEngine/LUA modules). This vulnerability is associated with program files lparser.C. This issue affects WickedEngine: through 0.71.727.

    Published: 27 Jan 2026
    5.1
    Medium

    CVE-2026-24820

    Last Modified: 18 Apr 2026

    Out-of-bounds Read vulnerability in turanszkij WickedEngine (WickedEngine/LUA modules). This vulnerability is associated with program files ldebug.C. This issue affects WickedEngine: before 0.71.705.

    Published: 27 Jan 2026
    6.3
    Medium

    CVE-2026-24819

    Last Modified: 18 Apr 2026

    Improperly Controlled Sequential Memory Allocation vulnerability in foxinmy weixin4j (weixin4j-base/src/main/java/com/foxinmy/weixin4j/util modules). This vulnerability is associated with program files CharArrayBuffer.Java, ClassUtil.Java. This issue affects weixin4j.

    Published: 27 Jan 2026
    6.9
    Medium

    CVE-2026-24818

    Last Modified: 18 Apr 2026

    Out-of-bounds Read vulnerability in praydog UEVR (dependencies/lua/src modules). This vulnerability is associated with program files lparser.C. This issue affects UEVR: before 1.05.

    Published: 27 Jan 2026
    8.7
    High

    CVE-2026-24817

    Last Modified: 18 Apr 2026

    Out-of-bounds Write vulnerability in praydog UEVR (dependencies/lua/src modules). This vulnerability is associated with program files ldebug.C, lvm.C. This issue affects UEVR: before 1.05.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24816

    Last Modified: 18 Apr 2026

    Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in datavane tis (tis-console/src/main/java/com/qlangtech/tis/runtime/module/action modules). This vulnerability is associated with program files ChangeDomainAction.Java. This issue affects tis: before v4.3.0.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24815

    Last Modified: 18 Apr 2026

    Unrestricted Upload of File with Dangerous Type, Deserialization of Untrusted Data vulnerability in datavane tis (tis-plugin/src/main/java/com/qlangtech/tis/extension/impl modules). This vulnerability is associated with program files XmlFile.Java. This issue affects tis: before v4.3.0.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24814

    Last Modified: 18 Apr 2026

    Integer Overflow or Wraparound vulnerability in swoole swoole-src (thirdparty/hiredis modules). This vulnerability is associated with program files sds.C. This issue affects swoole-src: before 6.0.2.

    Published: 27 Jan 2026
    8.7
    High

    CVE-2026-24813

    Last Modified: 18 Apr 2026

    NULL Pointer Dereference vulnerability in abcz316 SKRoot-linuxKernelRoot (testRoot/jni/utils modules). This vulnerability is associated with program files cJSON.Cpp. This issue affects SKRoot-linuxKernelRoot.

    Published: 27 Jan 2026
    9.3
    Critical

    CVE-2026-24812

    Last Modified: 18 Apr 2026

    Vulnerability in root-project root (builtins/zlib modules). This vulnerability is associated with program files inftrees.C. This issue affects root: through 6.36.00-rc1.

    Published: 27 Jan 2026
    9.3
    Critical

    CVE-2026-24811

    Last Modified: 18 Apr 2026

    Vulnerability in root-project root (builtins/zlib modules). This vulnerability is associated with program files inffast.C. This issue affects root.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24810

    Last Modified: 18 Apr 2026

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in rethinkdb (src/cjson modules). This vulnerability is associated with program files cJSON.Cc. This issue affects rethinkdb: through v2.4.4.

    Published: 27 Jan 2026
    6.9
    Medium

    CVE-2026-24809

    Last Modified: 18 Apr 2026

    An issue from the component luaG_runerror in dependencies/lua/src/ldebug.c in praydog/REFramework version before 1.5.5 leads to a heap-buffer overflow when a recursive error occurs.

    Published: 27 Jan 2026
    8.3
    High

    CVE-2026-24808

    Last Modified: 18 Apr 2026

    Integer Overflow or Wraparound vulnerability in RawTherapee (rtengine modules). This vulnerability is associated with program files dcraw.Cc. This issue affects RawTherapee: through 5.11.

    Published: 27 Jan 2026
    5.3
    Medium

    CVE-2026-24807

    Last Modified: 6 May 2026

    Improper Verification of Cryptographic Signature vulnerability in liuyueyi quick-media (plugins/svg-plugin/batik-codec-fix/src/main/java/org/apache/batik/ext/awt/image/codec/util modules). This vulnerability is associated with program files SeekableOutputStream.Java. This issue affects quick-media: before v1.0.

    Published: 27 Jan 2026
    5.3
    Medium

    CVE-2026-24806

    Last Modified: 6 May 2026

    Improper Control of Generation of Code ('Code Injection') vulnerability in liuyueyi quick-media (plugins/svg-plugin/batik-codec-fix/src/main/java/org/apache/batik/ext/awt/image/codec/png modules). This vulnerability is associated with program files PNGImageEncoder.Java. This issue affects quick-media: before v1.0.

    Published: 27 Jan 2026
    6.7
    Medium

    CVE-2026-24805

    Last Modified: 18 Apr 2026

    NULL Pointer Dereference vulnerability in visualfc liteide (liteidex/src/3rdparty/libvterm/src modules). This vulnerability is associated with program files screen.C, state.C, vterm.C. This issue affects liteide: before x38.4.

    Published: 27 Jan 2026
    9.2
    Critical

    CVE-2026-24804

    Last Modified: 18 Apr 2026

    Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in coolsnowwolf lede (package/lean/mt/drivers/mt7603e/src/mt7603_wifi/common modules). This vulnerability is associated with program files bn_lib.C. This issue affects lede: through r25.10.1.

    Published: 27 Jan 2026
    9.2
    Critical

    CVE-2026-24803

    Last Modified: 18 Apr 2026

    Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in coolsnowwolf lede (package/lean/mt/drivers/mt7615d/src/mt_wifi/embedded/security modules). This vulnerability is associated with program files bn_lib.C. This issue affects lede: through r25.10.1.

    Published: 27 Jan 2026
    5.3
    Medium

    CVE-2026-24802

    Last Modified: 18 Apr 2026

    Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in briandilley jsonrpc4j (src/main/java/com/googlecode/jsonrpc4j modules). This vulnerability is associated with program files NoCloseOutputStream.Java. This issue affects jsonrpc4j: through 1.6.0.

    Published: 27 Jan 2026
    6.9
    Medium

    CVE-2026-24801

    Last Modified: 16 Apr 2026

    Vulnerability in Ralim IronOS (source/Core/BSP/Pinecilv2/bl_mcu_sdk/components/ble/ble_stack/common/tinycrypt/source modules). This vulnerability is associated with program files ecc_dsa.C. This issue affects IronOS: before v2.23-rc3.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24800

    Last Modified: 18 Apr 2026

    Out-of-bounds Write, Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in tildearrow furnace (extern/zlib modules). This vulnerability is associated with program files inflate.C.

    Published: 27 Jan 2026
    5.2
    Medium

    CVE-2026-24799

    Last Modified: 18 Apr 2026

    Out-of-bounds Write, Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in davisking dlib (dlib/external/zlib modules). This vulnerability is associated with program files inflate.C. This issue affects dlib: before v19.24.9.

    Published: 27 Jan 2026
    9.3
    Critical

    CVE-2026-24798

    Last Modified: 18 Apr 2026

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in GaijinEntertainment DagorEngine (prog/3rdPartyLibs/miniupnpc modules). This vulnerability is associated with program files upnpreplyparse.C. This issue affects DagorEngine: through dagor_2025_01_15.

    Published: 27 Jan 2026
    6.9
    Medium

    CVE-2026-24797

    Last Modified: 18 Apr 2026

    Out-of-bounds Write vulnerability in neka-nat cupoch (third_party/libjpeg-turbo/libjpeg-turbo modules). This vulnerability is associated with program files tjbench.C. This issue affects cupoch.

    Published: 27 Jan 2026
    5.1
    Medium

    CVE-2026-24795

    Last Modified: 18 Apr 2026

    Out-of-bounds Write vulnerability in CloverHackyColor CloverBootloader (MdeModulePkg/Universal/RegularExpressionDxe/Oniguruma modules). This vulnerability is associated with program files regcomp.C. This issue affects CloverBootloader: before 5162.

    Published: 27 Jan 2026
    6.9
    Medium

    CVE-2026-24796

    Last Modified: 18 Apr 2026

    Out-of-bounds Read vulnerability in CloverHackyColor CloverBootloader (MdeModulePkg/Universal/RegularExpressionDxe/Oniguruma modules). This vulnerability is associated with program files regparse.C. This issue affects CloverBootloader: before 5162.

    Published: 27 Jan 2026
    9.2
    Critical

    CVE-2026-24794

    Last Modified: 18 Apr 2026

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in CardboardPowered cardboard (src/main/java/org/cardboardpowered/impl/world modules). This vulnerability is associated with program files WorldImpl.Java. This issue affects cardboard: before 1.21.4.

    Published: 27 Jan 2026
    10
    Critical

    CVE-2026-24793

    Last Modified: 18 Apr 2026

    Out-of-bounds Write, Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in azerothcore azerothcore-wotlk (deps/zlib modules). This vulnerability is associated with program files inflate.C. This issue affects azerothcore-wotlk: through v4.0.0.

    Published: 27 Jan 2026
    4.6
    Medium

    CVE-2026-1464

    Last Modified: 18 Apr 2026

    Integer Overflow or Wraparound vulnerability in MuntashirAkon AppManager (app/src/main/java/org/apache/commons/compress/archivers/tar modules). This vulnerability is associated with program files TarUtils.Java. This issue affects AppManager: before 4.0.4.

    Published: 27 Jan 2026
    8.7
    High

    CVE-2026-1465

    Last Modified: 18 Apr 2026

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in anyrtcIO-Community anyRTC-RTMP-OpenSource (third_party/faad2-2.7/libfaad modules). This vulnerability is associated with program files bits.C, syntax.C. This issue affects anyRTC-RTMP-OpenSource: before 1.0.

    Published: 27 Jan 2026
    5.3
    Medium

    CVE-2025-14971

    Last Modified: 21 Apr 2026

    The Link Invoice Payment for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the createPartialPayment and cancelPartialPayment functions in all versions up to, and including, 2.8.0. This makes it possible for unauthenticated attackers to create partial payments on any order or cancel any existing partial payment via ID enumeration.

    Published: 27 Jan 2026
    5.4
    Medium

    CVE-2026-21408

    Last Modified: 18 Apr 2026

    beat-access for Windows version 3.0.3 and prior contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arbitrary code may be executed with SYSTEM privileges.

    Published: 27 Jan 2026
    7.8
    High

    CVE-2026-1361

    Last Modified: 18 Apr 2026

    ASDA-Soft Stack-based Buffer Overflow Vulnerability

    Published: 27 Jan 2026
    4.7
    Medium

    CVE-2026-24686

    Last Modified: 18 Apr 2026

    go-tuf is a Go implementation of The Update Framework (TUF). go-tuf's TAP 4 Multirepo Client uses the map file repository name string (`repoName`) as a filesystem path component when selecting the local metadata cache directory. Starting in version 2.0.0 and prior to version 2.4.1, if an application accepts a map file from an untrusted source, an attacker can supply a `repoName` containing traversal (e.g., `../escaped-repo`) and cause go-tuf to create directories and write the root metadata file outside the intended `LocalMetadataDir` cache base, within the running process's filesystem permissions. Version 2.4.1 contains a patch.

    Published: 27 Jan 2026
    9.3
    Critical

    CVE-2026-24479

    Last Modified: 18 Apr 2026

    HUSTOF is an open source online judge based on PHP/C++/MySQL/Linux for ACM/ICPC and NOIP training. Prior to version 26.01.24, the problem_import_qduoj.php and problem_import_hoj.php modules fail to properly sanitize filenames within uploaded ZIP archives. Attackers can craft a malicious ZIP file containing files with path traversal sequences (e.g., ../../shell.php). When extracted by the server, this allows writing files to arbitrary locations in the web root, leading to Remote Code Execution (RCE). Version 26.01.24 contains a fix for the issue.

    Published: 27 Jan 2026
    8.1
    High

    CVE-2026-24490

    Last Modified: 18 Apr 2026

    MobSF is a mobile application security testing tool used. Prior to version 4.4.5, a Stored Cross-site Scripting (XSS) vulnerability in MobSF's Android manifest analysis allows an attacker to execute arbitrary JavaScript in the context of a victim's browser session by uploading a malicious APK. The `android:host` attribute from `<data android:scheme="android_secret_code">` elements is rendered in HTML reports without sanitization, enabling session hijacking and account takeover. Version 4.4.5 fixes the issue.

    Published: 27 Jan 2026
    5.3
    Medium

    CVE-2026-24489

    Last Modified: 18 Apr 2026

    Gakido is a Python HTTP client focused on browser impersonation and anti-bot evasion. A vulnerability was discovered in Gakido prior to version 0.1.1 that allowed HTTP header injection through CRLF (Carriage Return Line Feed) sequences in user-supplied header values and names. When making HTTP requests with user-controlled header values containing `\r\n` (CRLF), `\n` (LF), or `\x00` (null byte) characters, an attacker could inject arbitrary HTTP headers into the request. The fix in version 0.1.1 adds a `_sanitize_header()` function that strips `\r`, `\n`, and `\x00` characters from both header names and values before they are included in HTTP requests.

    Published: 27 Jan 2026
    8.6
    High

    CVE-2026-24486

    Last Modified: 18 Apr 2026

    Python-Multipart is a streaming multipart parser for Python. Prior to version 0.0.22, a Path Traversal vulnerability exists when using non-default configuration options `UPLOAD_DIR` and `UPLOAD_KEEP_FILENAME=True`. An attacker can write uploaded files to arbitrary locations on the filesystem by crafting a malicious filename. Users should upgrade to version 0.0.22 to receive a patch or, as a workaround, avoid using `UPLOAD_KEEP_FILENAME=True` in project configurations.

    Published: 27 Jan 2026
    8.7
    High

    CVE-2026-24480

    Last Modified: 18 Apr 2026

    QGIS is a free, open source, cross platform geographical information system (GIS) The repository contains a GitHub Actions workflow called "pre-commit checks" that, before commit 76a693cd91650f9b4e83edac525e5e4f90d954e9, was vulnerable to remote code execution and repository compromise because it used the `pull_request_target` trigger and then checked out and executed untrusted pull request code in a privileged context. Workflows triggered by `pull_request_target` ran with the base repository's credentials and access to secrets. If these workflows then checked out and executed code from the head of an external pull request (which could have been attacker controlled), the attacker could have executed arbitrary commands with elevated privileges. This insecure pattern has been documented as a security risk by GitHub and security researchers. Commit 76a693cd91650f9b4e83edac525e5e4f90d954e9 removed the vulnerable code.

    Published: 27 Jan 2026
    4.3
    Medium

    CVE-2026-23683

    Last Modified: 18 Apr 2026

    SAP Fiori App Intercompany Balance Reconciliation does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This has low impact on confidentiality, integrity and availability are not impacted.

    Published: 27 Jan 2026
    5.4
    Medium

    CVE-2026-1489

    Last Modified: 2 Jun 2026

    A flaw was found in GLib. An integer overflow vulnerability in its Unicode case conversion implementation can lead to memory corruption. By processing specially crafted and extremely large Unicode strings, an attacker could trigger an undersized memory allocation, resulting in out-of-bounds writes. This could cause applications utilizing GLib for string conversion to crash or become unstable.

    Published: 27 Jan 2026