CVE Feed

    Dashboard / CVE

    5.2
    Medium

    CVE-2026-21003

    Last Modified: 17 Apr 2026

    Improper input validation in data related to network restrictions prior to SMR Apr-2026 Release 1 allows physical attackers to bypass the restrictions.

    Published: 13 Apr 2026
    6.9
    Medium

    CVE-2026-40446

    Last Modified: 2 Jun 2026

    Access of resource using incompatible type ('type confusion') vulnerability in Samsung Open Source Escargot allows Pointer Manipulation.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

    Published: 13 Apr 2026
    6.5
    Medium

    CVE-2026-25209

    Last Modified: 28 Apr 2026

    Out-of-bounds read vulnerability in Samsung Open Source Escargot allows Resource Leak Exposure.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

    Published: 13 Apr 2026
    8.1
    High

    CVE-2026-25208

    Last Modified: 28 Apr 2026

    Integer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

    Published: 13 Apr 2026
    7.4
    High

    CVE-2026-25207

    Last Modified: 28 Apr 2026

    Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6161

    Last Modified: 24 Apr 2026

    A vulnerability was determined in code-projects Simple ChatBox up to 1.0. This affects an unknown part of the file /chatbox/insert.php of the component Endpoint. Executing a manipulation of the argument msg can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.

    Published: 13 Apr 2026
    6.7
    Medium

    CVE-2026-25206

    Last Modified: 28 Apr 2026

    Out-of-bounds read vulnerability in Samsung Open Source Escargot allows Resource Leak Exposure.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

    Published: 13 Apr 2026
    7.4
    High

    CVE-2026-25205

    Last Modified: 28 Apr 2026

    Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows out-of-bounds write.This issue affects Escargot:commit hash  97e8115ab1110bc502b4b5e4a0c689a71520d335 .

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6160

    Last Modified: 24 Apr 2026

    A vulnerability was found in code-projects Simple ChatBox 1.0. Affected by this issue is the function SimpleChatbox_PHP of the file chatbox.sql of the component Endpoint. Performing a manipulation results in file and directory information exposure. It is possible to initiate the attack remotely. The exploit has been made public and could be used.

    Published: 13 Apr 2026
    2.1
    Low

    CVE-2026-6159

    Last Modified: 24 Apr 2026

    A vulnerability has been found in code-projects Simple ChatBox up to 1.0. Affected by this vulnerability is an unknown functionality of the file /chatbox/insert.php of the component Endpoint. Such manipulation of the argument msg leads to cross site scripting. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.

    Published: 13 Apr 2026
    6.8
    Medium

    CVE-2026-34864

    Last Modified: 15 Apr 2026

    Boundary-unlimited vulnerability in the application read module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    6.7
    Medium

    CVE-2026-34863

    Last Modified: 15 Apr 2026

    Out-of-bounds write vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    6.3
    Medium

    CVE-2026-34862

    Last Modified: 15 Apr 2026

    Race condition vulnerability in the power consumption statistics module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    6.3
    Medium

    CVE-2026-34861

    Last Modified: 15 Apr 2026

    Race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    5.9
    Medium

    CVE-2026-34859

    Last Modified: 15 Apr 2026

    UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

    Published: 13 Apr 2026
    4.1
    Medium

    CVE-2026-34858

    Last Modified: 15 Apr 2026

    UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    4.7
    Medium

    CVE-2026-34857

    Last Modified: 15 Apr 2026

    UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    8.4
    High

    CVE-2026-35553

    Last Modified: 13 Apr 2026

    Bluetooth ACPI Drivers provided by Dynabook Inc. contain a stack-based buffer overflow vulnerability. An attacker may execute arbitrary code by modifying certain registry values.

    Published: 13 Apr 2026
    5.7
    Medium

    CVE-2026-34855

    Last Modified: 17 Apr 2026

    Out-of-bounds write vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

    Published: 13 Apr 2026
    5.7
    Medium

    CVE-2026-34854

    Last Modified: 15 Apr 2026

    UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6158

    Last Modified: 19 Apr 2026

    A flaw has been found in Totolink N300RH 6.1c.1353_B20190305. Affected is the function setUpgradeUboot of the file upgrade.so. This manipulation of the argument FileName causes os command injection. The attack is possible to be carried out remotely. The exploit has been published and may be used.

    Published: 13 Apr 2026
    2.5
    Low

    CVE-2026-34849

    Last Modified: 15 Apr 2026

    UAF vulnerability in the screen management module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    7.3
    High

    CVE-2026-34856

    Last Modified: 16 Apr 2026

    UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    7.7
    High

    CVE-2026-34853

    Last Modified: 16 Apr 2026

    Permission bypass vulnerability in the LBS module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    6.9
    Medium

    CVE-2026-28553

    Last Modified: 14 Apr 2026

    Vulnerability of improper permission control in the theme setting module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 13 Apr 2026
    5.6
    Medium

    CVE-2026-34867

    Last Modified: 17 Apr 2026

    Double free vulnerability in the multi-mode input system. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    4.1
    Medium

    CVE-2026-34860

    Last Modified: 16 Apr 2026

    Access control vulnerability in the memo module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

    Published: 13 Apr 2026
    6.1
    Medium

    CVE-2026-34852

    Last Modified: 16 Apr 2026

    Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    7.4
    High

    CVE-2026-6157

    Last Modified: 13 Apr 2026

    A vulnerability was detected in Totolink A800R 4.1.2cu.5137_B20200730. This impacts the function setAppEasyWizardConfig in the library /lib/cste_modules/app.so. The manipulation of the argument apcliSsid results in buffer overflow. The attack can be executed remotely. The exploit is now public and may be used.

    Published: 13 Apr 2026
    2.2
    Low

    CVE-2026-34851

    Last Modified: 16 Apr 2026

    Race condition vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    1.9
    Low

    CVE-2026-34850

    Last Modified: 16 Apr 2026

    Race condition vulnerability in the notification service. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 13 Apr 2026
    8.9
    High

    CVE-2026-6156

    Last Modified: 13 Apr 2026

    A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setIpQosRules of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument Comment leads to os command injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.

    Published: 13 Apr 2026
    8.9
    High

    CVE-2026-6155

    Last Modified: 14 Apr 2026

    A weakness has been identified in Totolink A7100RU 7.4cu.2313. The impacted element is the function setWanCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Executing a manipulation of the argument pppoeServiceName can lead to os command injection. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks.

    Published: 13 Apr 2026
    8.9
    High

    CVE-2026-6154

    Last Modified: 13 Apr 2026

    A security flaw has been discovered in Totolink A7100RU 7.4cu.2313_b20191024. The affected element is the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performing a manipulation of the argument wizard results in os command injection. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks.

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6153

    Last Modified: 24 Apr 2026

    A vulnerability was identified in code-projects Vehicle Showroom Management System 1.0. Impacted is an unknown function of the file /util/StaffDetailsFunction.php. Such manipulation of the argument STAFF_ID leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6152

    Last Modified: 24 Apr 2026

    A vulnerability was determined in code-projects Vehicle Showroom Management System 1.0. This issue affects some unknown processing of the file /util/StaffAddingFunction.php. This manipulation of the argument STAFF_ID causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.

    Published: 13 Apr 2026
    6.3
    Medium

    CVE-2026-6179

    Last Modified: 13 Apr 2026

    Stored Cross Site Scripting in NightWolf Penetration Testing Platform allows attack trigger and run malicious script in user's browser

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6151

    Last Modified: 24 Apr 2026

    A vulnerability was found in code-projects Vehicle Showroom Management System 1.0. This vulnerability affects unknown code of the file /util/PaymentStatusFunction.php. The manipulation of the argument CUSTOMER_ID results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.

    Published: 13 Apr 2026
    2.1
    Low

    CVE-2026-6150

    Last Modified: 24 Apr 2026

    A vulnerability has been found in code-projects Simple Laundry System 1.0. This affects an unknown part of the file /checkupdatestatus.php. The manipulation of the argument serviceId leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6149

    Last Modified: 24 Apr 2026

    A flaw has been found in code-projects Vehicle Showroom Management System 1.0. Affected by this issue is some unknown functionality of the file /util/BookVehicleFunction.php. Executing a manipulation of the argument BRANCH_ID can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used.

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6148

    Last Modified: 24 Apr 2026

    A vulnerability was detected in code-projects Vehicle Showroom Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /util/MonthTotalReportUpdateFunction.php. Performing a manipulation of the argument BRANCH_ID results in sql injection. The attack is possible to be carried out remotely. The exploit is now public and may be used.

    Published: 13 Apr 2026
    2.1
    Low

    CVE-2026-6143

    Last Modified: 24 Apr 2026

    A security flaw has been discovered in farion1231 cc-switch up to 3.12.3. Affected by this issue is some unknown functionality of the file src-tauri/src/proxy/server.rs of the component ProxyServer. The manipulation results in permissive cross-domain policy with untrusted domains. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.

    Published: 13 Apr 2026
    Unknown

    CVE-2026-6175

    Last Modified: 24 Apr 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 13 Apr 2026
    5.5
    Medium

    CVE-2026-6142

    Last Modified: 24 Apr 2026

    A vulnerability was identified in tushar-2223 Hotel Management System up to bb1f3b3666124b888f1e4bcf51b6fba9fbb01d15. Affected by this vulnerability is an unknown functionality of the file /admin/roomdelete.php. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. The project was informed of the problem early through an issue report but has not responded yet.

    Published: 13 Apr 2026
    6.2
    Medium

    CVE-2026-25204

    Last Modified: 2 Jun 2026

    Deserialization of untrusted data vulnerability in Samsung Open Source Escargot Java Script allows denial of service condition via process abort. This issue affects escarogt prior to commit hash 97e8115ab1110bc502b4b5e4a0c689a71520d335

    Published: 13 Apr 2026
    2.1
    Low

    CVE-2026-6141

    Last Modified: 24 Apr 2026

    A vulnerability was determined in danielmiessler Personal_AI_Infrastructure up to 2.3.0. Affected is an unknown function of the file Skills/Parser/Tools/parse_url.ts. Executing a manipulation can lead to os command injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. This patch is called 14322e87e58bf585cf3c7b9295578a6eb7dc4945. It is advisable to implement a patch to correct this issue. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.

    Published: 13 Apr 2026
    8.9
    High

    CVE-2026-6140

    Last Modified: 13 Apr 2026

    A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024. This impacts the function UploadFirmwareFile of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performing a manipulation of the argument FileName results in os command injection. The attack may be initiated remotely. The exploit has been made public and could be used.

    Published: 13 Apr 2026
    8.9
    High

    CVE-2026-6139

    Last Modified: 14 Apr 2026

    A vulnerability has been found in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function UploadOpenVpnCert of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument FileName leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

    Published: 13 Apr 2026
    8.9
    High

    CVE-2026-6138

    Last Modified: 13 Apr 2026

    A flaw has been found in Totolink A7100RU 7.4cu.2313_b20191024. The impacted element is the function setAccessDeviceCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This manipulation of the argument mac causes os command injection. The attack can be initiated remotely. The exploit has been published and may be used.

    Published: 13 Apr 2026
    7.8
    High

    CVE-2026-31419

    Last Modified: 23 Aug 2026

    In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix use-after-free in bond_xmit_broadcast() bond_xmit_broadcast() reuses the original skb for the last slave (determined by bond_is_last_slave()) and clones it for others. Concurrent slave enslave/release can mutate the slave list during RCU-protected iteration, changing which slave is "last" mid-loop. This causes the original skb to be double-consumed (double-freed). Replace the racy bond_is_last_slave() check with a simple index comparison (i + 1 == slaves_count) against the pre-snapshot slave count taken via READ_ONCE() before the loop. This preserves the zero-copy optimization for the last slave while making the "last" determination stable against concurrent list mutations. The UAF can trigger the following crash: ================================================================== BUG: KASAN: slab-use-after-free in skb_clone Read of size 8 at addr ffff888100ef8d40 by task exploit/147 CPU: 1 UID: 0 PID: 147 Comm: exploit Not tainted 7.0.0-rc3+ #4 PREEMPTLAZY Call Trace: <TASK> dump_stack_lvl (lib/dump_stack.c:123) print_report (mm/kasan/report.c:379 mm/kasan/report.c:482) kasan_report (mm/kasan/report.c:597) skb_clone (include/linux/skbuff.h:1724 include/linux/skbuff.h:1792 include/linux/skbuff.h:3396 net/core/skbuff.c:2108) bond_xmit_broadcast (drivers/net/bonding/bond_main.c:5334) bond_start_xmit (drivers/net/bonding/bond_main.c:5567 drivers/net/bonding/bond_main.c:5593) dev_hard_start_xmit (include/linux/netdevice.h:5325 include/linux/netdevice.h:5334 net/core/dev.c:3871 net/core/dev.c:3887) __dev_queue_xmit (include/linux/netdevice.h:3601 net/core/dev.c:4838) ip6_finish_output2 (include/net/neighbour.h:540 include/net/neighbour.h:554 net/ipv6/ip6_output.c:136) ip6_finish_output (net/ipv6/ip6_output.c:208 net/ipv6/ip6_output.c:219) ip6_output (net/ipv6/ip6_output.c:250) ip6_send_skb (net/ipv6/ip6_output.c:1985) udp_v6_send_skb (net/ipv6/udp.c:1442) udpv6_sendmsg (net/ipv6/udp.c:1733) __sys_sendto (net/socket.c:730 net/socket.c:742 net/socket.c:2206) __x64_sys_sendto (net/socket.c:2209) do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) </TASK> Allocated by task 147: Freed by task 147: The buggy address belongs to the object at ffff888100ef8c80 which belongs to the cache skbuff_head_cache of size 224 The buggy address is located 192 bytes inside of freed 224-byte region [ffff888100ef8c80, ffff888100ef8d60) Memory state around the buggy address: ffff888100ef8c00: fb fb fb fb fc fc fc fc fc fc fc fc fc fc fc fc ffff888100ef8c80: fa fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb >ffff888100ef8d00: fb fb fb fb fb fb fb fb fb fb fb fb fc fc fc fc ^ ffff888100ef8d80: fc fc fc fc fc fc fc fc fa fb fb fb fb fb fb fb ffff888100ef8e00: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb ==================================================================

    Published: 13 Apr 2026