Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
0.0 NA
CVE-2026-3715 — Wavlink WL-WN579X3-C firewall.cgi sub_40139C stack-based overflow

A vulnerability was found in Wavlink WL-WN579X3-C 231124. This affects the function sub_40139C of the file /cgi-bin/firewall.cgi. Performing a manipulation of the argument del_flag results in stack-b…

| Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
0.0 NA
CVE-2026-3714 — OpenCart Incomplete Fix CVE-2024-36694 template.php save special elements used in a templ…

A vulnerability has been found in OpenCart 4.0.2.3. Affected by this issue is the function Save of the file admin/controller/design/template.php of the component Incomplete Fix CVE-2024-36694. Such m…

| Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
5.3 MEDIUM
CVE-2026-3713 — pnggroup libpng pnm2png pnm2png.c do_pnm2png heap-based overflow

A flaw has been found in pnggroup libpng up to 1.6.55. Affected by this vulnerability is the function do_pnm2png of the file contrib/pngminus/pnm2png.c of the component pnm2png. This manipulation of …

| Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
5.8 MEDIUM
CVE-2026-3711 — code-projects Simple Flight Ticket Booking System Adminupdate.php sql injection

A vulnerability was detected in code-projects Simple Flight Ticket Booking System 1.0. Affected is an unknown function of the file /Adminupdate.php. The manipulation of the argument flightno/airplane…

Remote | Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
5.8 MEDIUM
CVE-2026-3710 — code-projects Simple Flight Ticket Booking System Adminadd.php sql injection

A security vulnerability has been detected in code-projects Simple Flight Ticket Booking System 1.0. This impacts an unknown function of the file /Adminadd.php. The manipulation of the argument fligh…

Remote | Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
7.5 HIGH
CVE-2026-3709 — code-projects Simple Flight Ticket Booking System register.php sql injection

A weakness has been identified in code-projects Simple Flight Ticket Booking System 1.0. This affects an unknown function of the file /register.php. Executing a manipulation of the argument Username …

Remote | Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
7.5 HIGH
CVE-2026-3708 — code-projects Simple Flight Ticket Booking System login.php sql injection

A security flaw has been discovered in code-projects Simple Flight Ticket Booking System 1.0. The impacted element is an unknown function of the file /login.php. Performing a manipulation of the argu…

Remote | Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
5.3 MEDIUM
CVE-2026-3707 — MrNanko webp4j gif_decoder.c DecodeGifFromMemory integer overflow

A vulnerability was identified in MrNanko webp4j up to 1.3.x. The affected element is the function DecodeGifFromMemory of the file src/main/c/gif_decoder.c. Such manipulation of the argument canvas_h…

| Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
6.3 MEDIUM
CVE-2026-3706 — mkj Dropbear S Range Check curve25519.c unpackneg signature verification

A vulnerability was determined in mkj Dropbear up to 2025.89. Impacted is the function unpackneg of the file src/curve25519.c of the component S Range Check. This manipulation causes improper verific…

Remote | Cryptography
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
7.5 HIGH
CVE-2026-3705 — code-projects Simple Flight Ticket Booking System Adminsearch.php sql injection

A vulnerability was found in code-projects Simple Flight Ticket Booking System 1.0. This issue affects some unknown processing of the file /Adminsearch.php. The manipulation of the argument flightno …

Remote | Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
10.0 HIGH
CVE-2026-3703 — Wavlink NU516U1 login.cgi sub_401A10 out-of-bounds write

A flaw has been found in Wavlink NU516U1 251208. This affects the function sub_401A10 of the file /cgi-bin/login.cgi. Executing a manipulation of the argument ipaddr can lead to out-of-bounds write. …

Remote | Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
5.3 MEDIUM
CVE-2026-3702 — SourceCodester Loan Management System index.php cross site scripting

A vulnerability was detected in SourceCodester Loan Management System 1.0. Affected by this issue is some unknown functionality of the file /index.php. Performing a manipulation of the argument page …

Remote | Cross-Site Scripting
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
9.0 HIGH
CVE-2026-3701 — H3C Magic B1 aspForm Edit_BasicSSID_5G buffer overflow

A security vulnerability has been detected in H3C Magic B1 up to 100R004. Affected by this vulnerability is the function Edit_BasicSSID_5G of the file /goform/aspForm. Such manipulation of the argume…

Remote | Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
5.8 MEDIUM
CVE-2026-3704 — Wavlink NU516U1 Incomplete Fix CVE-2025-10959 firewall.cgi sub_405B2C command injection

A vulnerability has been found in Wavlink NU516U1 251208. This vulnerability affects the function sub_405B2C of the file /cgi-bin/firewall.cgi of the component Incomplete Fix CVE-2025-10959. The mani…

Remote | Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
9.0 HIGH
CVE-2026-3700 — UTT HiPER 810G formConfigDnsFilterGlobal strcpy buffer overflow

A weakness has been identified in UTT HiPER 810G up to 1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigDnsFilterGlobal. This manipulation causes buffer overflow. Remote ex…

Remote | Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
9.0 HIGH
CVE-2026-3699 — UTT HiPER 810G formRemoteControl strcpy buffer overflow

A security flaw has been discovered in UTT HiPER 810G up to 1.7.7-171114. This impacts the function strcpy of the file /goform/formRemoteControl. The manipulation results in buffer overflow. The atta…

Remote | Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
9.0 HIGH
CVE-2026-3698 — UTT HiPER 810G NTP strcpy buffer overflow

A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. This affects the function strcpy of the file /goform/NTP. The manipulation leads to buffer overflow. The attack may be initiated r…

Remote | Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
6.5 MEDIUM
CVE-2026-3697 — Planet ICG-2510 Language Package Configuration httpd sub_40C8E4 stack-based overflow

A vulnerability was determined in Planet ICG-2510 1.0_20250811. The impacted element is the function sub_40C8E4 of the file /usr/sbin/httpd of the component Language Package Configuration Handler. Ex…

Remote | Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
0.0 NA
CVE-2026-30910 — Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows

Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows. Combined aead encryption, combined signature creation, and bin2hex functions do not check that output size will …

| Memory Corruption
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
7.5 HIGH
CVE-2026-3696 — Totolink N300RH CGI cstecgi.cgi setWiFiWpsConfig os command injection

A vulnerability was found in Totolink N300RH 6..1c.1353_B20190305. The affected element is the function setWiFiWpsConfig of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performing a ma…

n300rh_firmware | Remote | Injection
Mar 08, 2026 Mar 08, 2026
Mar 08, 2026
Mar 08, 2026
Showing 20 of 5087 Results