Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.5 MEDIUM
CVE-2026-31176 — ToToLink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stun_user parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
9.8 CRITICAL
CVE-2026-31175 — ToToLink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunEnable parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-31174 — ToToLink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the informEnable parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-31172 — ToToLink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the user parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-31171 — ToToLink A3300R Command Injection

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the url parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-31165 — Totolink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the pppoeServiceName parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-31164 — ToToLink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the pppoeMtu parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-31160 — ToToLink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the provider parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-31159 — ToToLink A3300R Command Injection Vulnerability

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the password parameter to /cgi-bin/cstecgi.cgi.

a3300r_firmware a3300r | Remote | Injection
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
6.1 MEDIUM
CVE-2026-41240 — DOMPurify: FORBID_TAGS bypassed by function-based ADD_TAGS predicate (asymmetry with FORB…

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Versions prior to 3.4.0 have an inconsistency between FORBID_TAGS and FORBID_ATTR handling when function-based ADD_TA…

dompurify | Remote | Cross-Site Scripting
Apr 23, 2026 Apr 29, 2026
Apr 23, 2026
Apr 29, 2026
6.8 MEDIUM
CVE-2026-41239 — DOMPurify has a SAFE_FOR_TEMPLATES bypass in RETURN_DOM mode

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Starting in version 1.0.10 and prior to version 3.4.0, `SAFE_FOR_TEMPLATES` strips `{{...}}` expressions from untrust…

dompurify | Remote | Cross-Site Scripting
Apr 23, 2026 Apr 23, 2026
Apr 23, 2026
Apr 23, 2026
6.9 MEDIUM
CVE-2026-41238 — DOMPurify: Prototype Pollution to XSS Bypass via CUSTOM_ELEMENT_HANDLING Fallback

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Versions 3.0.1 through 3.3.3 are vulnerable to a prototype pollution-based XSS bypass. When an application uses `DOMP…

dompurify | Remote | Cross-Site Scripting
Apr 23, 2026 Apr 23, 2026
Apr 23, 2026
Apr 23, 2026
9.9 CRITICAL
CVE-2026-40472 — Hackage package metadata stored XSS vulnerability

In hackage-server, user-controlled metadata from .cabal files are rendered into HTML href attributes without proper sanitization, enabling stored Cross-Site Scripting (XSS) attacks.

Remote | Cross-Site Scripting
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
9.6 CRITICAL
CVE-2026-40471 — Hackage CSRF vulnerability

hackage-server lacked Cross-Site Request Forgery (CSRF) protection across its endpoints. Scripts on foreign sites could trigger requests to hackage server, possibly abusing latent credentials to uplo…

Remote | Cross-Site Request Forgery
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
9.9 CRITICAL
CVE-2026-40470 — Hackage package and doc upload stored XSS vulnerability

A critical XSS vulnerability affected hackage-server and hackage.haskell.org. HTML and JavaScript files provided in source packages or via the documentation upload facility were served as-is on the …

Remote | Cross-Site Scripting
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
9.8 CRITICAL
CVE-2026-39087 — Ntfy Arbitrary Code Execution Vulnerability

ntfy before 2.22.0 allows SSRF because of an unanchored regular expression.

Remote | Injection
Apr 23, 2026 May 04, 2026
Apr 23, 2026
May 04, 2026
7.8 HIGH
CVE-2026-34003 — Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bou…

A flaw was found in the X.Org X server's XKB key types request validation. A local attacker could send a specially crafted request to the X server, leading to an out-of-bounds memory access vulnerabi…

Apr 23, 2026 May 04, 2026
Apr 23, 2026
May 04, 2026
7.8 HIGH
CVE-2026-34001 — Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and po…

A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to…

Apr 23, 2026 May 04, 2026
Apr 23, 2026
May 04, 2026
7.8 HIGH
CVE-2026-33999 — Xorg: xwayland: x.org x server: denial of service via integer underflow in xkb compatibil…

A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB compatibility map handling, allows an attacker with local or remote X11 server access to trigger …

Apr 23, 2026 May 04, 2026
Apr 23, 2026
May 04, 2026
9.8 CRITICAL
CVE-2026-23751 — Kofax Capture 6.0.0.0 Unauthenticated File Read/Write & SMB Coercion via .NET Remoting

Kofax Capture, now referred to as Tungsten Capture, version 6.0.0.0 (other versions may be affected) exposes a deprecated .NET Remoting HTTP channel on port 2424 via the Ascent Capture Service that i…

Remote | Information Disclosure
Apr 23, 2026 Apr 24, 2026
Apr 23, 2026
Apr 24, 2026
Showing 20 of 6375 Results