Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.1 MEDIUM
CVE-2026-24924 — HP Print Module Privilege Escalation Vulnerability

Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

harmonyos | Authorization
Feb 06, 2026 Mar 05, 2026
Feb 06, 2026
Mar 05, 2026
6.2 MEDIUM
CVE-2026-24920 — Adobe Experience Manager (AEM) Permission Control Vulnerability - Availability

Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability.

emui harmonyos | Authorization
Feb 06, 2026 Feb 09, 2026
Feb 06, 2026
Feb 09, 2026
9.8 CRITICAL
CVE-2026-2012 — itsourcecode Student Management System index.php sql injection

A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /ramonsys/facultyloading/index.php. This manipulation of the argu…

Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
9.8 CRITICAL
CVE-2026-2011 — itsourcecode Student Management System controller.php sql injection

A vulnerability was found in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /ramonsys/enrollment/controller.php. The manipulation of the argument …

Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
5.9 MEDIUM
CVE-2026-24931 — Verifone Card Module Information Disclosure Vulnerability

Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

harmonyos | Authorization
Feb 06, 2026 Feb 09, 2026
Feb 06, 2026
Feb 09, 2026
8.4 HIGH
CVE-2026-24930 — Adobe Flash UAF Concurrency Vulnerability

UAF concurrency vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.

harmonyos | Memory Corruption
Feb 06, 2026 Feb 09, 2026
Feb 06, 2026
Feb 09, 2026
5.9 MEDIUM
CVE-2026-24929 — Adobe Flash Out-of-bounds Read Vulnerability

Out-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.

harmonyos | Memory Corruption
Feb 06, 2026 Feb 09, 2026
Feb 06, 2026
Feb 09, 2026
8.4 HIGH
CVE-2026-24926 — "Canon Camera Out-of-Bounds Write Vulnerability"

Out-of-bounds write vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability.

harmonyos | Memory Corruption
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
7.3 HIGH
CVE-2026-24925 — Apache Image Heap Buffer Overflow

Heap-based buffer overflow vulnerability in the image module. Impact: Successful exploitation of this vulnerability may affect availability.

harmonyos | Memory Corruption
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
6.3 MEDIUM
CVE-2026-24923 — "HPDC HDC Permission Control Vulnerability"

Permission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

harmonyos | Authorization
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
6.9 MEDIUM
CVE-2026-24922 — Cisco HDC Buffer Overflow Vulnerability

Buffer overflow vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect availability.

harmonyos | Memory Corruption
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
7.1 HIGH
CVE-2026-24921 — Cisco HDC Module Read Vulnerability

Address read vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

harmonyos | Information Disclosure
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
6.0 MEDIUM
CVE-2026-24919 — "Adobe DFX Out-of-Bounds Write Vulnerability"

Out-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect availability.

emui harmonyos | Memory Corruption
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
6.8 MEDIUM
CVE-2026-24918 — Apache Communication Module Read Vulnerability

Address read vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.

emui harmonyos | Denial of Service
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
6.5 MEDIUM
CVE-2026-24917 — Apache Security Module Use-After-Free Vulnerability

UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability.

emui harmonyos | Memory Corruption
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
5.9 MEDIUM
CVE-2026-24916 — Microsoft Windows Identity Authentication Bypass

Identity authentication bypass vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

harmonyos | Authentication
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
7.1 HIGH
CVE-2026-24915 — Cisco Media Out-of-Bounds Read Vulnerability

Out-of-bounds read issue in the media subsystem. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

harmonyos | Memory Corruption
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
5.5 MEDIUM
CVE-2026-24914 — "Canon Camera Type Confusion Vulnerability"

Type confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability.

harmonyos | Memory Corruption
Feb 06, 2026 Feb 10, 2026
Feb 06, 2026
Feb 10, 2026
9.8 CRITICAL
CVE-2026-21643 — Fortinet FortiClientEMS SQL Injection

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized co…

forticlientems | Remote | Injection
Feb 06, 2026 Feb 17, 2026
Feb 06, 2026
Feb 17, 2026
4.3 MEDIUM
CVE-2026-1785 — Code Snippets <= 3.9.4 - Cross-Site Request Forgery to Cloud Snippet Download/Update Acti…

The Code Snippets plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.9.4. This is due to missing nonce validation on the cloud snippet download a…

Remote | Cross-Site Request Forgery
Feb 06, 2026 Feb 06, 2026
Feb 06, 2026
Feb 06, 2026
Showing 20 of 5134 Results