Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.8 HIGH
CVE-2026-61463 — Shiori Authenticated Privilege Escalation via PATCH /api/v1/auth/account

Shiori contains a privilege escalation vulnerability in the account update endpoint that allows authenticated users to modify the owner field without authorization checks. Attackers can escalate to a…

shiori | Remote | Authorization
Jul 13, 2026 Jul 13, 2026
Jul 13, 2026
Jul 13, 2026
9.2 CRITICAL
CVE-2026-61462 — mcp-gitlab Path Traversal via job_id Parameter

mcp-gitlab contains a path traversal vulnerability in the job_id parameter of build/index.js that allows attackers to redirect GitLab API requests to arbitrary endpoints. Attackers can supply crafted…

Remote | Path Traversal
Jul 13, 2026 Jul 13, 2026
Jul 13, 2026
Jul 13, 2026
6.8 MEDIUM
CVE-2026-60103 — Blender 3.0.0 - 5.1.2 Out-of-Bounds Read via crafted .blend SDNA block

Blender 3.0.0 through 5.1.2 contains an out-of-bounds read vulnerability that allows attackers to trigger a crash or read adjacent heap memory by supplying a crafted .blend file with a malicious sign…

blender | Memory Corruption
Jul 13, 2026 Jul 15, 2026
Jul 13, 2026
Jul 15, 2026
5.5 MEDIUM
CVE-2026-53365 — vsock/virtio: fix zerocopy completion for multi-skb sends

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix zerocopy completion for multi-skb sends When a large message is fragmented into multiple skbs, the zerocopy uar…

linux_kernel | Memory Corruption
Jul 13, 2026 Jul 24, 2026
Jul 13, 2026
Jul 24, 2026
5.5 MEDIUM
CVE-2026-53364 — Bluetooth: hci_conn: Fix memory leak in hci_le_big_terminate()

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix memory leak in hci_le_big_terminate() hci_le_big_terminate() allocates iso_list_data via kzalloc_obj but…

linux_kernel | Memory Corruption
Jul 13, 2026 Aug 03, 2026
Jul 13, 2026
Aug 03, 2026
9.8 CRITICAL
CVE-2026-57433 — Storable versions before 3.41 for Perl have a signed integer overflow when deserializing …

Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK record. retrieve_hook_common reads a signed 32-bit item count from an SX_HOOK record and ca…

storable | Remote | Memory Corruption
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
8.4 HIGH
CVE-2026-57432 — Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an …

Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack and unpack. S_measure_struct adds each item's size times its repeat count to …

perl | Memory Corruption
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
9.1 CRITICAL
CVE-2026-13221 — Perl versions through 5.43.9 produce silently incorrect regular expression matches when a…

Perl versions through 5.43.9 produce silently incorrect regular expression matches when an alternation of more than 65535 fixed string branches is compiled into a trie in Perl_study_chunk. When such…

perl | Remote | Denial of Service
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
8.1 HIGH
CVE-2026-59245 — Apache Airflow FAB provider: FAB auth manager: a DAG named "DAGs" hijacks the global all-…

In the Apache Airflow FAB auth manager, a DAG whose `dag_id` is `DAGs` collided with the global all-DAGs permission resource name produced by `resource_name()`, so a user granted per-DAG `access_cont…

apache-airflow-providers-fab | Remote | Authorization
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
8.1 HIGH
CVE-2026-58065 — Apache Airflow Git provider: Git provider hook defaults to StrictHostKeyChecking=no, disa…

The Apache Airflow Git provider runs its git-over-SSH operations with `StrictHostKeyChecking=no` by default, disabling SSH host-key verification. An attacker who can intercept the network path betwee…

apache-airflow-providers-git | Remote | Misconfiguration
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
9.3 CRITICAL
CVE-2026-6847 — Unauthenticated Remote Code Execution in ThemisNETPanel

Remote Code Execution vulnerability exists in ThemisNETPanel due to missing authentication for a critical file upload function. The application exposes an endpoint that allows unauthenticated attacke…

Remote | Authentication
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
9.8 CRITICAL
CVE-2026-61498 — Vitec Flamingo 4.12.2 Unauthenticated OS Command Injection via gen_graphs.php

Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/gen_graphs.php endpoint that allows remote unauthenticated attackers to execute arbitrary comman…

flamingo | Remote | Injection
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
9.8 CRITICAL
CVE-2026-60121 — Vitec Flamingo 4.12.2 Unauthenticated OS Command Injection via ping.php

Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/ping.php endpoint that allows remote attackers to execute arbitrary commands by exploiting a dou…

flamingo | Remote | Injection
Jul 13, 2026 Jul 13, 2026
Jul 13, 2026
Jul 13, 2026
7.5 HIGH
CVE-2026-40553 — Stack-based buffer overflow in gawk

Buffer overflow vulnerability has been found in "extension/readdir.c" program file of gawk (ftype() routine). This issue could be used to crash the program and potentially to achieve code execution, …

gawk gawk | Remote | Memory Corruption
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
9.1 CRITICAL
CVE-2026-40469 — Heap buffer overflow in gawk

Integer overflow vulnerability has been found in "builtin.c" program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap metadata and objects causing the program to crash…

gawk gawk | Remote | Memory Corruption
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
9.1 CRITICAL
CVE-2026-40468 — Heap buffer overflow in gawk

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap me…

gawk gawk | Remote | Memory Corruption
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
7.5 HIGH
CVE-2026-40467 — Use after free in gawk

Use After Free vulnerability has been found in "io.c" program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.

gawk gawk | Remote | Memory Corruption
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
7.5 HIGH
CVE-2026-15584 — Redhatinsights/incluster-checks: incluster-checks: privileged host-chroot debug pods crea…

A privilege escalation vulnerability was found in the incluster-checks tool for OpenShift. The tool creates privileged debug pods with host filesystem access in the shared default namespace, where an…

Remote | Authorization
Jul 13, 2026 Jul 14, 2026
Jul 13, 2026
Jul 14, 2026
6.5 MEDIUM
CVE-2026-15559 — CodeAstro Simple Online Leave Management System POST accept.php sql injection

A vulnerability was detected in CodeAstro Simple Online Leave Management System 1.0. This affects an unknown part of the file /SimpleOnlineLeave/admin/accept.php of the component POST Handler. Perfor…

Jul 13, 2026 Jul 13, 2026
Jul 13, 2026
Jul 13, 2026
6.5 MEDIUM
CVE-2026-62147 — Tempo-operator: tempo operator: query rbac bypass

The Tempo Operator's gateway component failed to consistently apply namespace-scoped redaction on some query API response paths when query RBAC was enabled, allowing an authenticated user to read spa…

openshift_distributed_tracing | Remote | Authorization
Jul 13, 2026 Jul 13, 2026
Jul 13, 2026
Jul 13, 2026
Showing 20 of 10942 Results