Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
9.9 CRITICAL
CVE-2026-34038 — Coolify authenticated remote command injection leading to RCE and secret exfiltration

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.469, an authenticated remote command injection vulnerability in application dep…

coolify coolify | Remote | Injection
Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
6.9 MEDIUM
CVE-2026-33734 — FOSSBilling has improper SQL neutralization in `Massmailer` recipient filters

FOSSBilling is a free, open-source billing and client management system. Versions 0.6.0 through 0.7.2 have a SQL injection vulnerability in the `Massmailer` module filter functionality. An authentica…

fossbilling | Remote | Injection
Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
7.8 HIGH
CVE-2026-25271 — Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service

Memory Corruption when processing asynchronous input parameters due to improper handling of modified values between check and use.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
8.8 HIGH
CVE-2026-25268 — Stack-based Buffer Overflow in WLAN Host

Memory Corruption when processing invalid HT40 channel layouts during dynamic channel switching operations.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
5.3 MEDIUM
CVE-2026-21384 — Out-of-bounds Write in Camera Driver

Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
7.1 HIGH
CVE-2026-21383 — Reusing a Nonce, Key Pair in Encryption in HLOS

Cryptographic Issue when using a static initialization vector for AES-GCM key wrapping, which requires a unique value for each call to ensure security.

Jul 06, 2026 Jul 08, 2026
Jul 06, 2026
Jul 08, 2026
7.8 HIGH
CVE-2026-21379 — Buffer Over-read in Windows Compute

Memory Corruption when allocating memory with sizes that exceed the maximum allowed value.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
5.3 MEDIUM
CVE-2026-21370 — Out-of-bounds Write in Camera Driver

Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
5.3 MEDIUM
CVE-2026-21369 — Out-of-bounds Write in Camera Driver

Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
5.3 MEDIUM
CVE-2026-21368 — Out-of-bounds Write in Camera Driver

Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
8.6 HIGH
CVE-2026-14471 — Authenticated SQL injection in the metrics-service retention policy subsystem of mcp-gate…

Improper Neutralization of Special Elements in the metrics-service retention policy management component in Amazon mcp-gateway-registry before 1.0.13 might allow an authenticated remote user to execu…

mcp_gateway_registry | Remote | Injection
Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
7.7 HIGH
CVE-2026-14468 — Path traversal allows arbitrary file read in Terraform Enterprise container

HashiCorp Terraform Enterprise contained an issue in its version control system (VCS) ingestion of registry modules that did not correctly enforce the intended boundary on packaged module content. Th…

terraform_enterprise | Path Traversal
Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
7.3 HIGH
CVE-2025-59617 — Use After Free in Computer Vision

Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
7.8 HIGH
CVE-2025-59616 — Use After Free in Computer Vision

Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input due to accessing already freed memory.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
7.8 HIGH
CVE-2025-59615 — Use After Free in Computer Vision

Memory Corruption when invoking device input/output control operations for mapping and unmapping persistent memory buffers due to improper synchronization.

Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
5.5 MEDIUM
CVE-2026-59089 — Gimp: gimp: denial of service via integer overflow in playstation tim loader

A flaw was found in GIMP. The PlayStation TIM loader, responsible for handling PlayStation image files, incorrectly calculates the size of the Color Look-Up Table (CLUT) due to an integer overflow. T…

enterprise_linux gimp enterprise_linux | Memory Corruption
Jul 06, 2026 Jul 10, 2026
Jul 06, 2026
Jul 10, 2026
6.8 MEDIUM
CVE-2026-58404 — Hugo security.http.urls deny rules bypassed by alternate IPv4 encodings

Hugo is a static site generator. From v0.162.0 through v0.163.0, the default security.http.urls policy denies requests to loopback, internal, and cloud-metadata IPv4 literals, but the deny rule only …

hugo | Remote | Server-Side Request Forgery
Jul 06, 2026 Jul 08, 2026
Jul 06, 2026
Jul 08, 2026
6.5 MEDIUM
CVE-2026-58403 — Hugo symlink confinement bypass in os.ReadFile

Hugo is a static site generator. From v0.123.0 through v0.163.0, Hugo's virtual filesystem is designed so that files under a mount cannot reach outside the mount tree, but a regression caused RootMap…

hugo | Remote | Path Traversal
Jul 06, 2026 Jul 08, 2026
Jul 06, 2026
Jul 08, 2026
5.4 MEDIUM
CVE-2026-58402 — Hugo default code block renderer XSS via unescaped code-fence language

Hugo is a static site generator. From 0.60.0 until 0.163.3, Hugo's default code-block renderer wrote the Markdown code-fence language or info-string into the code class="language-…" data-lang="…" wra…

hugo | Remote | Cross-Site Scripting
Jul 06, 2026 Jul 08, 2026
Jul 06, 2026
Jul 08, 2026
6.5 MEDIUM
CVE-2026-55646 — vLLM speech-to-text endpoints allocate full upload before enforcing the audio file-size l…

vLLM is an inference and serving engine for large language models. From 0.22.0 to 0.23.0, the /v1/audio/transcriptions and /v1/audio/translations routes call request.file.read() to fully materialize …

vllm vllm | Remote | Denial of Service
Jul 06, 2026 Jul 07, 2026
Jul 06, 2026
Jul 07, 2026
Showing 20 of 9346 Results