Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.1 MEDIUM
CVE-2025-61307 — GmbH Mecury docuForm Reflected Cross-Site Scripting (XSS)

A reflected cross-site scripted (XSS) vulnerability in the acc-menu_papers.php component of GmbH Mecury Managed Print Services (docuForm) v11.11c allows attackers to execute arbitrary Javascript in t…

Remote | Cross-Site Scripting
May 11, 2026 May 12, 2026
May 11, 2026
May 12, 2026
6.1 MEDIUM
CVE-2025-61306 — DocuForm GmbH Mecury Managed Print Services DocuForm XSS

A reflected cross-site scripted (XSS) vulnerability in the dfm-menu_coveragealerts.php component of GmbH Mecury Managed Print Services (docuForm) v11.11c allows attackers to execute arbitrary Javascr…

Remote | Cross-Site Scripting
May 11, 2026 May 12, 2026
May 11, 2026
May 12, 2026
6.1 MEDIUM
CVE-2025-61305 — "DocuForm GmbH Mecury Managed Print Services Reflected Cross-Site Scripting (XSS)"

A reflected cross-site scripted (XSS) vulnerability in the dfm-menu_firmware.php component of GmbH Mecury Managed Print Services (docuForm) v11.11c allows attackers to execute arbitrary Javascript in…

Remote | Cross-Site Scripting
May 11, 2026 May 12, 2026
May 11, 2026
May 12, 2026
6.5 MEDIUM
CVE-2026-8290 — Open5GS SMF nsmf-handler.c smf_nsmf_handle_update_data_in_vsmf denial of service

A security flaw has been discovered in Open5GS up to 2.7.7. This issue affects the function smf_nsmf_handle_update_data_in_vsmf of the file /src/smf/nsmf-handler.c of the component SMF. The manipulat…

open5gs | Remote | Denial of Service
May 11, 2026 May 13, 2026
May 11, 2026
May 13, 2026
6.5 MEDIUM
CVE-2026-8289 — Open5GS SMF nsmf-handler.c smf_nsmf_handle_update_data_in_vsmf denial of service

A vulnerability was identified in Open5GS up to 2.7.7. This vulnerability affects the function smf_nsmf_handle_update_data_in_vsmf of the file /src/smf/nsmf-handler.c of the component SMF. The manipu…

open5gs | Remote | Denial of Service
May 11, 2026 May 12, 2026
May 11, 2026
May 12, 2026
8.0 HIGH
CVE-2026-4802 — Cockpit: cockpit: arbitrary command execution via crafted links in system logs ui

A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links i…

enterprise_linux grub2 libefiboot | Remote | Injection
May 11, 2026 May 28, 2026
May 11, 2026
May 28, 2026
Showing 20 of 7526 Results