Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.1 MEDIUM
CVE-2026-2153 — mwielgoszewski doorman views.py is_safe_url redirect

A vulnerability was determined in mwielgoszewski doorman up to 0.6. This issue affects the function is_safe_url of the file doorman/users/views.py. Executing a manipulation of the argument Next can l…

doorman | Remote | Server-Side Request Forgery
Feb 08, 2026 Mar 05, 2026
Feb 08, 2026
Mar 05, 2026
8.3 HIGH
CVE-2026-2152 — D-Link DIR-615 Web Configuration adv_routing.php os command injection

A vulnerability was found in D-Link DIR-615 4.10. This vulnerability affects unknown code of the file adv_routing.php of the component Web Configuration Interface. Performing a manipulation of the ar…

dir-615_firmware dir-615 | Remote | Injection
Feb 08, 2026 Feb 11, 2026
Feb 08, 2026
Feb 11, 2026
8.3 HIGH
CVE-2026-2151 — D-Link DIR-615 DMZ Host Feature adv_firewall.php os command injection

A vulnerability has been found in D-Link DIR-615 4.10. This affects an unknown part of the file adv_firewall.php of the component DMZ Host Feature. Such manipulation of the argument dmz_ipaddr  leads…

dir-615_firmware dir-615 | Remote | Injection
Feb 08, 2026 Feb 11, 2026
Feb 08, 2026
Feb 11, 2026
6.1 MEDIUM
CVE-2026-2150 — SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System checkin.php cr…

A flaw has been found in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System 1.0. Affected by this issue is some unknown functionality of the file /checkin.php. This manipulati…

patients_waiting_area_queue_management_system | Remote | Cross-Site Scripting
Feb 08, 2026 Feb 10, 2026
Feb 08, 2026
Feb 10, 2026
6.1 MEDIUM
CVE-2026-2149 — SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System appointments.p…

A vulnerability was detected in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /appointments.ph…

patients_waiting_area_queue_management_system | Remote | Cross-Site Scripting
Feb 08, 2026 Feb 10, 2026
Feb 08, 2026
Feb 10, 2026
7.5 HIGH
CVE-2026-2148 — Tenda AC21 Web Management DownloadFlash information disclosure

A security vulnerability has been detected in Tenda AC21 16.03.08.16. Affected is an unknown function of the file /cgi-bin/DownloadFlash of the component Web Management Interface. The manipulation le…

ac21_firmware ac21 | Remote | Information Disclosure
Feb 08, 2026 Feb 10, 2026
Feb 08, 2026
Feb 10, 2026
Showing 20 of 5066 Results