Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.5 HIGH
CVE-2026-20434 — Huawei Modem Out-of-Bounds Write Privilege Escalation Vulnerability

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the att…

lr13 nr15 nr16 nr17 lr12a mt2735 +93 more | Memory Corruption
Mar 02, 2026 Mar 02, 2026
Mar 02, 2026
Mar 02, 2026
8.8 HIGH
CVE-2026-20430 — Linksys Wlan Ap Out-of-bounds Write Privilege Escalation Vulnerability

In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges …

openwrt mt6890 mt7915 mt7916 mt7986 mt7981 +1 more | Memory Corruption
Mar 02, 2026 Mar 02, 2026
Mar 02, 2026
Mar 02, 2026
4.4 MEDIUM
CVE-2026-20429 — Microsoft Windows Display Out-of-Bounds Read Vulnerability

In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User …

android mt6781 mt6789 mt6833 mt6835 mt6853 +24 more | Information Disclosure
Mar 02, 2026 Mar 02, 2026
Mar 02, 2026
Mar 02, 2026
6.7 MEDIUM
CVE-2026-20428 — Apple Display Out-of-Bounds Write Vulnerability

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. Use…

android mt6781 mt6789 mt6833 mt6835 mt6853 +24 more | Memory Corruption
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
6.7 MEDIUM
CVE-2026-20427 — Adobe Flash Local Privilege Escalation

In display, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege.…

android mt6781 mt6789 mt6833 mt6835 mt6853 +24 more | Memory Corruption
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
6.7 MEDIUM
CVE-2026-20426 — Apple Display Out-of-Bounds Write Vulnerability

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. Use…

android mt6781 mt6789 mt6833 mt6835 mt6853 +24 more | Memory Corruption
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
6.7 MEDIUM
CVE-2026-20425 — Oracle Solaris Out-of-Bounds Write Vulnerability

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. Use…

android mt6781 mt6789 mt6833 mt6835 mt6853 +24 more | Memory Corruption
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
4.4 MEDIUM
CVE-2026-20424 — Citrix Virtual Apps and Desktops Memory Corruption

In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User …

android mt8678 mt6991 mt8196 mt8793 mt6993 | Information Disclosure
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
7.8 HIGH
CVE-2026-20423 — Intel WCNCR WLAN STA Driver Out-of-Bounds Write Vulnerability

In wlan STA driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is …

nbiot_sdk mt7902 mt7921 mt7927 mt7920 mt7922 +1 more | Memory Corruption
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
7.2 HIGH
CVE-2026-20416 — AMD PCIe Out-of-Bounds Write Privilege Escalation Vulnerability

In pcie, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User i…

android mt8188 mt8678 mt6991 mt6993 | Remote | Memory Corruption
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
9.8 CRITICAL
CVE-2026-3422 — e-Excellence|U-Office Force - Insecure Deserialization

U-Office Force developed by e-Excellence has a Insecure Deserialization vulnerability, allowing unauthenticated remote attackers to execute arbitrary code on the server by sending maliciously crafted…

u-office_force | Remote | Injection
Mar 02, 2026 Mar 09, 2026
Mar 02, 2026
Mar 09, 2026
9.8 CRITICAL
CVE-2026-3413 — itsourcecode University Management System admin_single_student.php sql injection

A flaw has been found in itsourcecode University Management System 1.0. This vulnerability affects unknown code of the file /admin_single_student.php. This manipulation of the argument ID causes sql …

university_management_system | Remote | Injection
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
9.8 CRITICAL
CVE-2026-3000 — Changing|IDExpert Windows Logon Agent - Remote Code Execution

IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download arbitrary DLL files from a remo…

idexpert | Remote | Misconfiguration
Mar 02, 2026 Mar 09, 2026
Mar 02, 2026
Mar 09, 2026
9.8 CRITICAL
CVE-2026-2999 — Changing|IDExpert Windows Logon Agent - Remote Code Execution

IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download arbitrary executable files from…

idexpert | Remote | Authentication
Mar 02, 2026 Mar 09, 2026
Mar 02, 2026
Mar 09, 2026
6.5 MEDIUM
CVE-2025-15597 — Dataease SQLBot API Endpoint assistant.py access control

A vulnerability has been found in Dataease SQLBot up to 1.4.0. This affects an unknown function of the file backend/apps/system/api/assistant.py of the component API Endpoint. Such manipulation leads…

sqlbot | Remote | Authorization
Mar 02, 2026 Mar 05, 2026
Mar 02, 2026
Mar 05, 2026
6.1 MEDIUM
CVE-2026-3412 — itsourcecode University Management System att_single_view.php cross site scripting

A vulnerability was detected in itsourcecode University Management System 1.0. This affects an unknown part of the file /att_single_view.php. The manipulation of the argument dt results in cross site…

university_management_system | Remote | Cross-Site Scripting
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
9.8 CRITICAL
CVE-2026-3411 — itsourcecode University Management System admin_single_student_update.php sql injection

A security vulnerability has been detected in itsourcecode University Management System 1.0. Affected by this issue is some unknown functionality of the file /admin_single_student_update.php. The man…

university_management_system | Remote | Injection
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
9.8 CRITICAL
CVE-2026-3410 — itsourcecode Society Management System check_studid.php sql injection

A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/check_studid.php. Executing a manipulation …

society_management_system | Remote | Injection
Mar 02, 2026 Mar 03, 2026
Mar 02, 2026
Mar 03, 2026
7.5 HIGH
CVE-2026-3409 — eosphoros-ai db-gpt Flow Import Endpoint import importlib.machinery.SourceFileLoader.exec…

A security flaw has been discovered in eosphoros-ai db-gpt 0.7.5. Affected is the function importlib.machinery.SourceFileLoader.exec_module of the file /api/v1/serve/awel/flow/import of the component…

db-gpt | Remote | Injection
Mar 02, 2026 Mar 02, 2026
Mar 02, 2026
Mar 02, 2026
6.5 MEDIUM
CVE-2026-3408 — Open Babel CDXML File atom.cpp GetExplicitValence null pointer dereference

A vulnerability was identified in Open Babel up to 3.1.1. This impacts the function OBAtom::GetExplicitValence of the file isrc/atom.cpp of the component CDXML File Handler. Such manipulation leads t…

open_babel | Remote | Memory Corruption
Mar 02, 2026 Mar 04, 2026
Mar 02, 2026
Mar 04, 2026
Showing 20 of 5066 Results