Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.2 HIGH
CVE-2026-41521 — xrdp: lib_framebuffer_update Has Integer Overflow Heap Info Leak & ASLR Bypass

xrdp is an open source RDP server. Versions 0.10.6 and prior contain an integer overflow vulnerability when processing screen update messages within the vnc-any connection mode. A malicious remote VN…

xrdp | Remote | Memory Corruption
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
9.8 CRITICAL
CVE-2026-41252 — xrdp: lib_palette_update Heap Buffer Overflow & RCE

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a missing bounds check in xrdp, which allows a heap-based buffer overflow when operating in vnc-any mode. The issue occurs during …

xrdp | Remote | Memory Corruption
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
8.6 HIGH
CVE-2026-40187 — Authenticated RCE via Malicious eTemplate Upload in EGroupware

In egroupware version 26.0 and earlier, an authenticated administrator can achieve OS-level Remote Code Execution (RCE) by uploading a malicious eTemplate XML file (`.xet`) to the VFS `/etemplates` m…

egroupware | Remote | Injection
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
7.1 HIGH
CVE-2026-39879 — SQL injection in syslog-ng SQL destionation driver

Due to a missing sanitization call in [`afsql_dd_run_query`](https://github.com/syslog-ng/syslog-ng/blob/649e6e18e3459fb4467000a88dfb12fa97f9719c/modules/afsql/afsql.c#L219), syslog-ng before 4.12 ar…

| Injection
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
7.1 HIGH
CVE-2026-39385 — Frappe LMS enrollment bypass in paid courses via unrelated batch

Frappe LMS is an open source learning management system. In version 2.51.0 and earlier, a user could bypass payment validation for courses by using unrelated batch. This has been patched in 2.52.0 wi…

learning | Remote | Authorization
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
7.0 HIGH
CVE-2026-35591 — Possible heap-based buffer overflow when decoding TIFF image containing well-crafted tile

libvips is a fast image processing library with low memory needs. The `tiffload` operation in libvips versions before and including 8.18.1 could incorrectly determine the number of channels in a JPEG…

libvips | Memory Corruption
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
6.8 MEDIUM
CVE-2026-35590 — Possible out-of-bounds read leading to crash when decoding well-crafted EXIF metadata

libvips is a fast image processing library with low memory needs. The EXIF decoder within libvips versions before and including 8.18.1 was not verifying the range of EXIF tag groups before passing da…

libvips | Memory Corruption
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
6.5 MEDIUM
CVE-2026-35217 — NanoMQ Incorrectly Accepts a Malformed SUBSCRIBE and Can Be Driven into an ASAN-Detectabl…

NanoMQ contains a protocol-semantics flaw in its MQTT v5 `SUBSCRIBE` handling: if a subscription entry is missing the final 1-byte `Subscription Options` field, the broker may still accept the malfor…

nanomq | Remote | Injection
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
9.8 CRITICAL
CVE-2026-35048 — Piwigo RCE via PHP Code Injection into Config File in Installer

The Piwigo installer in versions 16.3.0 and earlier accepts POST parameters for database configuration and writes them directly into a PHP configuration file without proper sanitization. On PHP 8+, t…

piwigo | Remote | Injection
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
6.8 MEDIUM
CVE-2026-33328 — Possible integer overflow on 32-bit systems when reading GIF images

libvips is a fast image processing library with low memory needs. On 32-bit systems in versions before and including 8.18.0, the `gifload` operation could incorrectly determine dimensions leading to …

libvips | Memory Corruption
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
7.0 HIGH
CVE-2026-33327 — Possible integer overflow leading to potential heap-based buffer overflow

libvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly determine image dimensions leading to an integer o…

libvips | Memory Corruption
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
7.3 HIGH
CVE-2026-32825 — dataCycle No Brute-Force Protection On Web And API Login Endpoints

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…

Remote | Authentication
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
7.3 HIGH
CVE-2026-32824 — dataCycle User API Password Reset And Confirmation Flows Trust Attacker- Controlled Redir…

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…

Remote | Server-Side Request Forgery
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
4.3 MEDIUM
CVE-2026-32823 — dataCycle State-Changing GET Endpoints Enable CSRF

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…

Remote | Cross-Site Request Forgery
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
8.1 HIGH
CVE-2026-32821 — API Collection Impersonation Via user_email And Missing Object- Level Authorization

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…

Remote | Authorization
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
7.5 HIGH
CVE-2026-32820 — dataCycle Public Markdown Path Traversal Via /docs/*path

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…

Remote | Path Traversal
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
4.3 MEDIUM
CVE-2026-32819 — dataCycle User Directory Enumeration Via /users/search

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…

Remote | Information Disclosure
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
7.5 HIGH
CVE-2026-32806 — dataCycle Authorization Bypass Via /remote_render

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…

Remote | Authorization
Jul 20, 2026 Jul 21, 2026
Jul 20, 2026
Jul 21, 2026
5.4 MEDIUM
CVE-2026-6793 — Stored XSS in Bifra Engineering's Q-smart NexT Poll

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Bifra Engineering Consulting Ltd. Q-smart NexT Poll allows Stored XSS. This issue affects Q-smar…

Remote | Cross-Site Scripting
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
8.6 HIGH
CVE-2026-63429 — HeyForm has unauthenticated /api/upload endpoint that accepts arbitrary files with no aut…

HeyForm is an open-source form builder. Prior to version 3.0.0-rc.9, `POST /api/upload` has no authentication guard, no global guard, no form-context validation, no `openToken` requirement, and no se…

Remote | Authentication
Jul 20, 2026 Jul 20, 2026
Jul 20, 2026
Jul 20, 2026
Showing 20 of 8476 Results