Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.4 MEDIUM
CVE-2026-75108 — Next Terminal Missing Per-Asset Authorization on Portal Endpoints

Next Terminal fails to enforce per-asset authorization checks on the portal ping and wake-on-LAN endpoints, allowing any authenticated user to probe and wake assets they are not granted access to. At…

Remote | Authorization
Aug 17, 2026 Aug 18, 2026
Aug 17, 2026
Aug 18, 2026
9.3 CRITICAL
CVE-2026-75106 — OpnForm Editable Submission Secret Derivation via Empty Hashids Salt

OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attacker…

Remote | Authentication
Aug 17, 2026 Aug 18, 2026
Aug 17, 2026
Aug 18, 2026
8.7 HIGH
CVE-2026-75105 — phpIPAM Temporary Subnet Share Information Disclosure via Address Parameter

phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the sh…

phpipam | Remote | Authorization
Aug 17, 2026 Aug 20, 2026
Aug 17, 2026
Aug 20, 2026
6.8 MEDIUM
CVE-2026-75104 — Hugging Face Transformers Path Traversal via Checkpoint Index

Hugging Face Transformers fails to validate shard filenames in checkpoint index files, allowing attackers to read arbitrary files outside the model directory. Attackers can supply malicious index fil…

transformers | Path Traversal
Aug 17, 2026 Aug 18, 2026
Aug 17, 2026
Aug 18, 2026
8.8 HIGH
CVE-2026-75103 — Crawlab Missing Authorization on Password Change Endpoint Allows Account Takeover

Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts t…

Remote | Authentication
Aug 17, 2026 Aug 18, 2026
Aug 17, 2026
Aug 18, 2026
6.5 MEDIUM
CVE-2026-73560 — vLLM: SSRF + arbitrary local file read in MiMoV2OmniMultiModalProcessor `_fetch_image` an…

vLLM is an inference and serving engine for large language models. Prior to 0.26.0, the MiMoV2OmniMultiModalProcessor in vllm/transformers_utils/processors/mimo_v2_omni.py passes attacker-controlled …

vllm vllm | Remote | Server-Side Request Forgery
Aug 17, 2026 Aug 18, 2026
Aug 17, 2026
Aug 18, 2026
8.5 HIGH
CVE-2026-73410 — Budibase: SSRF via DNS rebinding in the REST datasource integration

Budibase is an open-source low-code platform. Prior to 3.40.0, packages/backend-core/src/utils/outboundFetch.ts pinned a validated address through a Node agent, but the REST integration used getDispa…

budibase | Remote | Server-Side Request Forgery
Aug 17, 2026 Sep 08, 2026
Aug 17, 2026
Sep 08, 2026
8.7 HIGH
CVE-2026-71518 — Typemill < 2.26.0 Authorization Bypass via Media File Download Route

Typemill before 2.26.0 contains an authorization bypass vulnerability in the media file download route that allows unauthenticated attackers to access restricted files by submitting path-equivalent U…

typemill | Remote | Authorization
Aug 17, 2026 Aug 18, 2026
Aug 17, 2026
Aug 18, 2026
6.1 MEDIUM
CVE-2026-68765 — hashcat KeePass KDBX v4 Module Heap Buffer Overflow via Token Field

hashcat master branch builds after v7.1.2 contain a heap buffer overflow vulnerability in the KeePass AESKDF/KDBX v4 module (module 34301) that allows attackers to corrupt adjacent heap memory by sup…

hashcat | Memory Corruption
Aug 17, 2026 Aug 21, 2026
Aug 17, 2026
Aug 21, 2026
9.8 CRITICAL
CVE-2026-67967 — Tenda W20E Buffer Overflow Vulnerability

Buffer Overflow vulnerability in Tenda W20E V16.01.0.6(2782) allows an attacker to execute arbitrary code. This is an incomplete fix for CVE-2025-44867 and CVE-2026-36819

Remote | Memory Corruption
Aug 17, 2026 Sep 09, 2026
Aug 17, 2026
Sep 09, 2026
9.8 CRITICAL
CVE-2026-67966 — Tenda W20E Unauthenticated Remote Command Execution

Tenda W20E V16.01.0.6(2782) /goform/telnet endpoint allows unauthenticated remote attackers to activate the Telnet daemon and obtain root shell access.

Remote | Authentication
Aug 17, 2026 Aug 31, 2026
Aug 17, 2026
Aug 31, 2026
9.8 CRITICAL
CVE-2026-67965 — Tneda W20E Remote Code Execution

An issue in Tneda W20E v.16.01.0.6(2782) allows a remote attacker to execute arbitrary code via the url_need_login function

Remote | Authentication
Aug 17, 2026 Aug 31, 2026
Aug 17, 2026
Aug 31, 2026
9.8 CRITICAL
CVE-2026-67926 — JeecgBoot AI Chat Module Remote Code Execution

An issue in JeecgBoot v.3.9.2 allows a remote attacker to execute arbitrary code via the files Parameter in JeecgBoot AI Chat Module

Remote | Injection
Aug 17, 2026 Aug 31, 2026
Aug 17, 2026
Aug 31, 2026
6.1 MEDIUM
CVE-2026-67925 — JeecgBoot Cross-Site Scripting Vulnerability

Cross Site Scripting vulnerability in JeecgBoot v.3.9.2 allows a remote attacker to execute arbitrary code via the endpoint /airag/chat/upload

Remote | Cross-Site Scripting
Aug 17, 2026 Aug 31, 2026
Aug 17, 2026
Aug 31, 2026
9.8 CRITICAL
CVE-2026-67917 — AzuraCast SQL Injection Vulnerability

zuraCast versions up to and including 0.23.7 contain a SQL injection vulnerability in the backup restore functionality. The `azuracast:restore` command executes the `db.sql` file extracted from a bac…

Remote | Injection
Aug 17, 2026 Sep 09, 2026
Aug 17, 2026
Sep 09, 2026
9.9 CRITICAL
CVE-2026-66795 — Managedcluster-import-controller: csr auto-approver does not validate certificate subject…

A flaw was found in the managedcluster-import-controller. The Certificate Signing Request (CSR) auto-approval logic improperly validates incoming CSRs, specifically by not inspecting the signer name …

Aug 17, 2026 Sep 08, 2026
Aug 17, 2026
Sep 08, 2026
6.5 MEDIUM
CVE-2026-65976 — Deskflow: Clipboard receiver can accumulate data beyond Deskflow's configured clipboard s…

Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.300, a connected peer can send repeated DCLP DataChunk messages to ClipboardChunk::assemble() in src/lib/deskfl…

deskflow | Remote | Denial of Service
Aug 17, 2026 Sep 09, 2026
Aug 17, 2026
Sep 09, 2026
9.9 CRITICAL
CVE-2026-65974 — ERPNext: Server-Side Template Injection leading to Remote Code Execution

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0, limited authenticated users can cross a permission boundary in Frappe safe execution because frappe…

erpnext | Remote | Injection
Aug 17, 2026 Sep 09, 2026
Aug 17, 2026
Sep 09, 2026
8.2 HIGH
CVE-2026-65832 — Deskflow - Unauthenticated server-controlled out-of-bounds read in ServerProxy::setOption…

Deskflow is a keyboard and mouse sharing app. Prior to continuous build 1.26.0.299, a remote unauthenticated Deskflow server can send kMsgDSetOptions (DSOP) values to ServerProxy::setOptions() in src…

deskflow | Remote | Memory Corruption
Aug 17, 2026 Sep 09, 2026
Aug 17, 2026
Sep 09, 2026
7.6 HIGH
CVE-2026-65822 — ERPNext: SQL Injection in "Inactive Customers" report via unvalidated `doctype` filter

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.116.0 and 16.23.0, erpnext/selling/report/inactive_customers/inactive_customers.py accepts an unvalidated doctype filt…

erpnext | Remote | Injection
Aug 17, 2026 Sep 09, 2026
Aug 17, 2026
Sep 09, 2026
Showing 20 of 14634 Results