Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.1 HIGH
CVE-2026-8796 — Sereal::Decoder versions before 5.005 for Perl allow heap out-of-bounds read via crafted …

Sereal::Decoder versions before 5.005 for Perl allow heap out-of-bounds read via crafted input. In Perl/Decoder/srl_decoder.c, srl_read_object() and srl_read_hash() process a COPY tag, a back-refere…

sereal\ | Remote | Memory Corruption
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
6.5 MEDIUM
CVE-2026-10194 — OFFIS DCMTK dcmqrscp dcmqrdbi.cc deleteOldestImages heap-based overflow

A weakness has been identified in OFFIS DCMTK 3.7.0. This affects the function DcmQueryRetrieveIndexDatabaseHandle::deleteOldestImages of the file dcmqrdb/libsrc/dcmqrdbi.cc of the component dcmqrscp…

dcmtk | Remote | Memory Corruption
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
6.5 MEDIUM
CVE-2026-10193 — OFCMS ComnController ComnController.java query sql injection

A security flaw has been discovered in OFCMS up to 1.1.3. The impacted element is the function Query of the file ofcms-admin\src\main\java\com\ofsoft\cms\admin\controller\ComnController.java of the c…

ofcms | Remote | Injection
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
9.0 HIGH
CVE-2026-10192 — Tenda W12 httpd set_local_time_0 stack-based overflow

A vulnerability was identified in Tenda W12 3.0.0.7(4763). The affected element is the function set_local_time_0 of the file /bin/httpd. Such manipulation of the argument Time leads to stack-based bu…

w12_firmware w12 | Remote | Memory Corruption
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
9.0 HIGH
CVE-2026-10191 — Tenda W12 httpd cgiWifiMacFilterSet stack-based overflow

A vulnerability was determined in Tenda W12 3.0.0.7(4763). Impacted is the function cgiWifiMacFilterSet of the file /bin/httpd. This manipulation of the argument wifiMacFilterSet.macList.mac causes s…

w12_firmware w12 | Remote | Memory Corruption
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
6.8 MEDIUM
CVE-2026-10190 — Tenda W12 Web Management httpd cgiSysWebTimeoutSet denial of service

A vulnerability was found in Tenda W12 3.0.0.7(4763). This issue affects the function cgiSysWebTimeoutSet of the file /bin/httpd of the component Web Management Interface. The manipulation of the arg…

w12_firmware w12 | Remote | Denial of Service
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
9.0 HIGH
CVE-2026-10189 — Tenda W12 httpd cgiSysTimeInfoSet stack-based overflow

A vulnerability has been found in Tenda W12 3.0.0.7(4763). This vulnerability affects the function cgiSysTimeInfoSet of the file /bin/httpd. The manipulation of the argument sec leads to stack-based …

w12_firmware w12 | Remote | Memory Corruption
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
9.0 HIGH
CVE-2026-10188 — Tenda W12 httpd cgistaKickOff stack-based overflow

A flaw has been found in Tenda W12 3.0.0.7(4763). This affects the function cgistaKickOff of the file /bin/httpd. Executing a manipulation of the argument staMac can lead to stack-based buffer overfl…

w12_firmware w12 | Remote | Memory Corruption
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
10.0 HIGH
CVE-2026-10187 — Totolink N300RH Web Management wireless.so setWiFiBasicConfig stack-based overflow

A vulnerability was detected in Totolink N300RH 6.1c.1353_B20190305. Affected by this issue is the function setWiFiBasicConfig of the file wireless.so of the component Web Management Interface. Perfo…

n300rh_firmware n300rh | Remote | Memory Corruption
May 31, 2026 Jun 01, 2026
May 31, 2026
Jun 01, 2026
Showing 20 of 7429 Results