Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
3.1 LOW
CVE-2026-59215 — Open WebUI: Private channel messages can be disclosed through cross-channel thread parent…

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, channel thread parent and reply handling did not bind parent_id to the channel in the URL, allow…

open_webui | Remote | Information Disclosure
Jul 09, 2026 Jul 13, 2026
Jul 09, 2026
Jul 13, 2026
9.0 CRITICAL
CVE-2026-59214 — Open WebUI: Stored web worker XSS via Pyodide

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, Open WebUI runs client-side Python with Pyodide in a same-origin web worker, allowing stored cha…

open_webui | Remote | Server-Side Request Forgery
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
5.0 MEDIUM
CVE-2026-59213 — Open WebUI: Cross-user model-list exposure via static cache key in get_all_models (aiocac…

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.27 before 0.10.0, get_all_models handlers in routers/openai.py and routers/ollama.py passed a lambda to …

open_webui | Remote | Information Disclosure
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
5.4 MEDIUM
CVE-2026-59212 — Open WebUI: Model meta.knowledge read-only file access can be upgraded to file write/dele…

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 before 0.10.0, _verify_knowledge_file_access only checked read access while file write and delete rout…

open_webui | Remote | Authorization
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
7.1 HIGH
CVE-2026-59209 — n8n: Shared Credential Header Leak via HTTP Request Pagination Expression

n8n is an open source workflow automation platform. Prior to 1.123.61, 2.27.4, and, 2.28.1, an authenticated member with use-only editor access to a shared workflow could read credential-populated he…

n8n | Remote | Information Disclosure
Jul 09, 2026 Jul 13, 2026
Jul 09, 2026
Jul 13, 2026
9.6 CRITICAL
CVE-2026-58459 — gpsd gpsprof Command Injection via gnuplot plot title subtype field

gpsd through release-3.27.5, fixed at commit 4c06658, contains a command injection vulnerability in gpsprof that allows attackers who control the GPS device subtype value to execute arbitrary shell c…

gpsd | Remote | Injection
Jul 09, 2026 Jul 14, 2026
Jul 09, 2026
Jul 14, 2026
7.3 HIGH
CVE-2026-53987 — GLPI 11 before 2.14.4 Tag Plugin Stored Cross-Site Scripting in Kanban Badge Rendering

The Tag plugin for GLPI 11 before 2.14.4 stores the tag name without HTML sanitization and renders it into the Kanban badge markup via PluginTagTag::preKanbanContent() without output escaping, result…

Remote | Cross-Site Scripting
Jul 09, 2026 Jul 20, 2026
Jul 09, 2026
Jul 20, 2026
7.5 HIGH
CVE-2026-51606 — Tenda CP3 RTSP Service Improper Input Handling Denial of Service Vulnerability

An improper input handling vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) causes the device to abruptly terminate the TCP connection with a RST packet when a request contai…

Remote | Denial of Service
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
7.5 HIGH
CVE-2026-51605 — Tenda CP3 RTSP Stack-Based Buffer Overflow

A stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.991) allows an unauthenticated remote attacker to cause a denial of service via a crafted TEARDOWN …

Remote | Denial of Service
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
7.5 HIGH
CVE-2026-51604 — Tenda CP3 RTSP Stack-Based Buffer Overflow

A stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attacker to cause a denial of service via a crafted PLAY reque…

Remote | Memory Corruption
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
7.5 HIGH
CVE-2026-51603 — Tenda CP3 RTSP Service Stack-Based Buffer Overflow

A stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attacker to cause a denial of service via a crafted second SET…

Remote | Memory Corruption
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
7.5 HIGH
CVE-2026-51602 — Tenda CP3 RTSP Service Stack-Based Buffer Overflow

A stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attacker to cause a denial of service via a crafted SETUP requ…

Remote | Memory Corruption
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
7.5 HIGH
CVE-2026-51601 — Tenda CP3 RTSP Service Stack-Based Buffer Overflow

Tenda CP3 V3.0 firmware V31.1.9.91 contains a stack-based buffer overflow in the RTSP service. The device fails to validate the length of the clock= value in the Range header field when processing a …

Remote | Memory Corruption
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
7.5 HIGH
CVE-2026-51600 — Tenda CP3 RTSP Denial of Service Vulnerability

Tenda CP3 V3.0 firmware V31.1.9.91 does not validate the Content-Length header field in RTSP requests (including DESCRIBE, SETUP, and PLAY methods). When a request carrying a Content-Length header is…

Remote | Denial of Service
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
9.8 CRITICAL
CVE-2026-51599 — MERCURY MIPC252W RTSP Service Denial of Service Vulnerability

An insufficient input validation vulnerability in the RTSP service of MERCURY MIPC252W v1.0.5 Build 230306 Rel.79931n allows an unauthenticated remote attacker to render an individual TCP connection …

Remote | Denial of Service
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
6.5 MEDIUM
CVE-2026-51598 — MERCURY MIPC252W IP Camera RTSP Denial of Service Vulnerability

An input validation vulnerability in the RTSP service of MERCURY MIPC252W IP Camera v1.0.5 Build 230306 Rel.79931n) allows an unauthenticated, network-adjacent attacker to cause a denial of service v…

| Denial of Service
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
9.1 CRITICAL
CVE-2026-51597 — MERCURY MIPC252W RTSP Digest Authentication Replay Vulnerability

MERCURY MIPC252W IP camera v1.0.5 Build 230306 Rel.79931n does not implement nonce expiration in RTSP Digest authentication. An adjacent network attacker can capture a legitimate authentication excha…

Remote | Authentication
Jul 09, 2026 Jul 10, 2026
Jul 09, 2026
Jul 10, 2026
10.0 CRITICAL
CVE-2026-15308 — Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup …

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

python cpython cpython | Remote | Denial of Service
Jul 09, 2026 Jul 23, 2026
Jul 09, 2026
Jul 23, 2026
3.3 LOW
CVE-2026-15194 — Open5GS AMF context.c amf_context_final use after free

A security flaw has been discovered in Open5GS 2.7.7. This affects the function amf_context_final of the file src/amf/context.c of the component AMF. Performing a manipulation results in use after fr…

open5gs | Memory Corruption
Jul 09, 2026 Jul 09, 2026
Jul 09, 2026
Jul 09, 2026
5.3 MEDIUM
CVE-2026-15193 — AidanPark openclaw-android Android WebView Bridge JsBridge.kt os command injection

A vulnerability was determined in AidanPark openclaw-android up to 0.4.0. The affected element is an unknown function of the file android/app/src/main/java/com/openclaw/android/JsBridge.kt of the com…

openclaw-android | Injection
Jul 09, 2026 Jul 09, 2026
Jul 09, 2026
Jul 09, 2026
Showing 20 of 9522 Results