Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.7 MEDIUM
CVE-2026-34855 — Apache Kernel Out-of-Bounds Write Vulnerability

Out-of-bounds write vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
5.7 MEDIUM
CVE-2026-34854 — Apache Kernel Uninitialized Free Vulnerability

UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
2.5 LOW
CVE-2026-34849 — "Apache Screen Management Use-After-Free Vulnerability"

UAF vulnerability in the screen management module. Impact: Successful exploitation of this vulnerability may affect availability.

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
6.5 MEDIUM
CVE-2026-25209 — Samsung Open Source Escargot OOB Read Vulnerability

Out-of-bounds read vulnerability in Samsung Open Source Escargot allows Resource Leak Exposure.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

Remote | Information Disclosure
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
8.1 HIGH
CVE-2026-25208 — Samsung Open Source Escargot Integer Overflow Buffer Overflow

Integer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

Remote | Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
7.4 HIGH
CVE-2026-25207 — Samsung Open Source Escargot OOB Write Buffer Overflow

Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
6.7 MEDIUM
CVE-2026-25206 — Samsung Open Source Escargot Out-of-bounds Read Resource Leak Exposure

Out-of-bounds read vulnerability in Samsung Open Source Escargot allows Resource Leak Exposure.This issue affects Escargot: 97e8115ab1110bc502b4b5e4a0c689a71520d335.

| Information Disclosure
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
8.1 HIGH
CVE-2026-25205 — Samsung Open Source Escargot Heap-based Buffer Overflow

Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows out-of-bounds write.This issue affects Escargot:commit hash  97e8115ab1110bc502b4b5e4a0c689a71520d335 .

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
5.2 MEDIUM
CVE-2026-21003 — Fortinet FortiOS Input Validation Bypass

Improper input validation in data related to network restrictions prior to SMR Apr-2026 Release 1 allows physical attackers to bypass the restrictions.

| Authorization
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
9.0 HIGH
CVE-2026-6157 — Totolink A800R app.so setAppEasyWizardConfig buffer overflow

A vulnerability was detected in Totolink A800R 4.1.2cu.5137_B20200730. This impacts the function setAppEasyWizardConfig in the library /lib/cste_modules/app.so. The manipulation of the argument apcli…

Remote | Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
10.0 HIGH
CVE-2026-6156 — Totolink A7100RU CGI cstecgi.cgi setIpQosRules os command injection

A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setIpQosRules of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipul…

Remote | Injection
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
10.0 HIGH
CVE-2026-6155 — Totolink A7100RU CGI cstecgi.cgi setWanCfg os command injection

A weakness has been identified in Totolink A7100RU 7.4cu.2313. The impacted element is the function setWanCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Executing a manipulation o…

Remote | Injection
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
10.0 HIGH
CVE-2026-6154 — Totolink A7100RU CGI cstecgi.cgi setWizardCfg os command injection

A security flaw has been discovered in Totolink A7100RU 7.4cu.2313_b20191024. The affected element is the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performi…

Remote | Injection
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
7.5 HIGH
CVE-2026-6153 — code-projects Vehicle Showroom Management System StaffDetailsFunction.php sql injection

A vulnerability was identified in code-projects Vehicle Showroom Management System 1.0. Impacted is an unknown function of the file /util/StaffDetailsFunction.php. Such manipulation of the argument S…

Remote | Injection
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
5.6 MEDIUM
CVE-2026-34867 — Apache Multi-Mode Input System Double Free Vulnerability

Double free vulnerability in the multi-mode input system. Impact: Successful exploitation of this vulnerability may affect availability.

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
4.1 MEDIUM
CVE-2026-34860 — Oracle Memo Access Control Bypass Vulnerability

Access control vulnerability in the memo module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

| Authorization
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
7.3 HIGH
CVE-2026-34856 — Citrix Communication Module Use-After-Free Vulnerability

UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
7.7 HIGH
CVE-2026-34853 — "Qualcomm LBS Module Permission Bypass Vulnerability"

Permission bypass vulnerability in the LBS module. Impact: Successful exploitation of this vulnerability may affect availability.

| Authorization
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
6.1 MEDIUM
CVE-2026-34852 — Media Platform Stack Overflow Vulnerability

Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability.

| Memory Corruption
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
2.2 LOW
CVE-2026-34851 — Apache Event Notification Module Race Condition Attack

Race condition vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect availability.

| Race Condition
Apr 13, 2026 Apr 13, 2026
Apr 13, 2026
Apr 13, 2026
Showing 20 of 6103 Results