Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.5 MEDIUM
CVE-2026-7392 — SourceCodester Pharmacy Sales and Inventory System ajax.php delete_supplier sql injection

A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts the function delete_supplier of the file /ajax.php?action=delete_supplier. Such manipulation of …

Remote | Injection
Apr 29, 2026 Apr 29, 2026
Apr 29, 2026
Apr 29, 2026
6.5 MEDIUM
CVE-2026-7391 — SourceCodester Pharmacy Sales and Inventory System ajax.php save_supplier sql injection

A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects the function save_supplier of the file /ajax.php?action=save_supplier. This manipulation of the argument …

Remote | Injection
Apr 29, 2026 Apr 29, 2026
Apr 29, 2026
Apr 29, 2026
6.3 MEDIUM
CVE-2026-6915 — Flaw in the updateUser Command May Allow Unauthorized Configuration Change

An authorization flaw in the user management command could allow an authenticated user to make limited changes to authentication-related data associated with another user account. This could affect h…

mongodb | Remote | Authorization
Apr 29, 2026 May 06, 2026
Apr 29, 2026
May 06, 2026
7.5 HIGH
CVE-2026-6914 — MD5 checksum creation may cause availability loss

Computing the MD5 checksum of a malformed BSON object under specific conditions may cause loss of availability in MongoDB server. This issue affects all MongoDB Server v8.2 versions, all MongoDB Serv…

mongodb | Remote | Denial of Service
Apr 29, 2026 May 06, 2026
Apr 29, 2026
May 06, 2026
4.9 MEDIUM
CVE-2026-0206 — SonicOS Stack-based Buffer Overflow Vulnerability

A post-authentication Stack-based Buffer Overflow vulnerabilities in SonicOS allows a remote attacker to crash a firewall.

sonicos nsa_2700 nsa_3700 nsa_4700 nsa_5700 nsa_6700 +58 more | Remote | Memory Corruption
Apr 29, 2026 May 05, 2026
Apr 29, 2026
May 05, 2026
6.8 MEDIUM
CVE-2026-0205 — SonicOS Path Traversal Vulnerability

A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services.

sonicos nsa_2700 nsa_3700 nsa_4700 nsa_5700 nsa_6700 +58 more | Path Traversal
Apr 29, 2026 May 05, 2026
Apr 29, 2026
May 05, 2026
8.0 HIGH
CVE-2026-0204 — SonicOS Unauthenticated Access Control Bypass

A vulnerability in the access control mechanism of SonicOS may allow certain management interface functions to be accessible under specific conditions.

sonicos nsa_2700 nsa_3700 nsa_4700 nsa_5700 nsa_6700 +58 more | Authorization
Apr 29, 2026 May 05, 2026
Apr 29, 2026
May 05, 2026
Showing 20 of 6987 Results