| medium |
CVE-2026-75086 — A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element… |
vulnerability |
nvd |
CVE-2026-75086 |
|
2026-08-18 |
| medium |
CVE-2026-75082 — A flaw has been found in Webkul Bagisto up to 2.4.4. The affected element is an unknown function of… |
vulnerability |
nvd |
CVE-2026-75082 |
|
2026-08-18 |
| medium |
CVE-2026-75081 — A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unknown function of the f… |
vulnerability |
nvd |
CVE-2026-75081 |
|
2026-08-18 |
| high |
CVE-2026-75080 — A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0.… |
vulnerability |
nvd |
CVE-2026-75080 |
|
2026-08-18 |
| high |
CVE-2026-75079 — A weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0. This vulnera… |
vulnerability |
nvd |
CVE-2026-75079 |
|
2026-08-18 |
| high |
CVE-2026-65400 — Apple macOS Improper Authentication Vulnerability |
vulnerability |
cisa-kev |
CVE-2026-65400 |
|
2026-08-18 |
| high |
CVE-2026-55040 — Microsoft SharePoint Weak Authentication Vulnerability |
vulnerability |
cisa-kev |
CVE-2026-55040 |
|
2026-08-18 |
| high |
CVE-2026-59310 — Broadcom VMware vCenter Path Traversal Vulnerability |
vulnerability |
cisa-kev |
CVE-2026-59310 |
|
2026-08-18 |
| high |
CVE-2026-33824 — Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability |
vulnerability |
cisa-kev |
CVE-2026-33824 |
rce |
2026-08-18 |
| low |
CVE-2026-9693 — Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membersh… |
vulnerability |
nvd |
CVE-2026-9693 |
|
2026-08-17 |
| low |
CVE-2026-75587 — Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a d… |
vulnerability |
nvd |
CVE-2026-75587 |
|
2026-08-17 |
| medium |
CVE-2026-75078 — A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This af… |
vulnerability |
nvd |
CVE-2026-75078 |
|
2026-08-17 |
| high |
CVE-2026-67961 — An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mech… |
vulnerability |
nvd |
CVE-2026-67961 |
|
2026-08-17 |
| critical |
CVE-2026-67919 — An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.ja… |
vulnerability |
nvd |
CVE-2026-67919 |
|
2026-08-17 |
| critical |
CVE-2026-42164 — Mahara before 25.04.5 and 26.04.0 is vulnerable in the Text block/section functionality when a call… |
vulnerability |
nvd |
CVE-2026-42164 |
|
2026-08-17 |
| critical |
CVE-2026-42162 — Mahara before 25.04.5 and 26.04.0 is vulnerable to artefacts being accessible to others under certai… |
vulnerability |
nvd |
CVE-2026-42162 |
|
2026-08-17 |
| critical |
CVE-2026-38165 — A Server-Side Template Injection (SSTI) vulnerability in the Velocity template engine configuration… |
vulnerability |
nvd |
CVE-2026-38165 |
|
2026-08-17 |
| medium |
CVE-2026-9859 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to enforce Permissi… |
vulnerability |
nvd |
CVE-2026-9859 |
|
2026-08-17 |
| high |
CVE-2026-9816 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate BoardMe… |
vulnerability |
nvd |
CVE-2026-9816 |
|
2026-08-17 |
| medium |
CVE-2026-75077 — A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by… |
vulnerability |
nvd |
CVE-2026-75077 |
|
2026-08-17 |
| critical |
CVE-2026-71424 — Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's GET /api/mcp/servers… |
vulnerability |
nvd |
CVE-2026-71424 |
|
2026-08-17 |
| critical |
CVE-2026-67960 — An issue in PbootCMS v.3.2.15 allows an attacker to execute arbitrary code via the MemberController.… |
vulnerability |
nvd |
CVE-2026-67960 |
|
2026-08-17 |
| high |
CVE-2026-67918 — Directory Traversal vulnerability in hermes-studio v.0.6.26 allows a remote attacker to obtain sensi… |
vulnerability |
nvd |
CVE-2026-67918 |
|
2026-08-17 |
| critical |
CVE-2026-67868 — A heap-based out-of-bounds write vulnerability exists in S2OPC 1.7.3 in server-side EventFilter hand… |
vulnerability |
nvd |
CVE-2026-67868 |
|
2026-08-17 |
| critical |
CVE-2026-67854 — SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute arbitrary code |
vulnerability |
nvd |
CVE-2026-67854 |
|
2026-08-17 |
| medium |
CVE-2026-65349 — An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 26.6.… |
vulnerability |
nvd |
CVE-2026-65349 |
|
2026-08-17 |
| medium |
CVE-2026-65347 — The issue was addressed with improved checks. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, m… |
vulnerability |
nvd |
CVE-2026-65347 |
|
2026-08-17 |
| high |
CVE-2026-65346 — An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6.1… |
vulnerability |
nvd |
CVE-2026-65346 |
|
2026-08-17 |
| high |
CVE-2026-65343 — A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.… |
vulnerability |
nvd |
CVE-2026-65343 |
|
2026-08-17 |
| medium |
CVE-2026-65339 — A logic issue was addressed with improved checks. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.… |
vulnerability |
nvd |
CVE-2026-65339 |
|
2026-08-17 |
| medium |
CVE-2026-65334 — A memory corruption issue was addressed with improved state management. This issue is fixed in Safar… |
vulnerability |
nvd |
CVE-2026-65334 |
|
2026-08-17 |
| medium |
CVE-2026-65331 — This issue was addressed through improved state management. This issue is fixed in Safari 26.6.1, iO… |
vulnerability |
nvd |
CVE-2026-65331, CVE-2026-65332, CVE-2026-65333, CVE-2026-65335, CVE-2026-65336, CVE-2026-65337, CVE-2026-65340, CVE-2026-65351 |
|
2026-08-17 |
| medium |
CVE-2026-65329 — An authentication issue was addressed with improved state management. This issue is fixed in iOS 26.… |
vulnerability |
nvd |
CVE-2026-65329 |
|
2026-08-17 |
| medium |
CVE-2026-64788 — The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS… |
vulnerability |
nvd |
CVE-2026-64788, CVE-2026-65330 |
|
2026-08-17 |
| medium |
CVE-2026-64784 — An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Sa… |
vulnerability |
nvd |
CVE-2026-64784 |
|
2026-08-17 |
| medium |
CVE-2026-64781 — The issue was addressed with improved input validation. This issue is fixed in Safari 26.6.1, iOS 18… |
vulnerability |
nvd |
CVE-2026-64781 |
|
2026-08-17 |
| low |
CVE-2026-64779 — A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari… |
vulnerability |
nvd |
CVE-2026-64779, CVE-2026-64782 |
|
2026-08-17 |
| medium |
CVE-2026-64778 — The issue was addressed with improved checks. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and… |
vulnerability |
nvd |
CVE-2026-64778, CVE-2026-64780 |
|
2026-08-17 |
| medium |
CVE-2026-64760 — An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.10… |
vulnerability |
nvd |
CVE-2026-64760 |
|
2026-08-17 |
| medium |
CVE-2026-64715 — A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari… |
vulnerability |
nvd |
CVE-2026-64715, CVE-2026-64787 |
|
2026-08-17 |
| medium |
CVE-2026-63178 — Onyx is an open-source AI platform. Prior to 4.3.0, Onyx Enterprise Edition's PATCH /manage/admin/us… |
vulnerability |
nvd |
CVE-2026-63178 |
|
2026-08-17 |
| high |
CVE-2026-56677 — 9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint i… |
vulnerability |
nvd |
CVE-2026-56677 |
|
2026-08-17 |
| critical |
CVE-2026-51977 — An issue in Trueview T18061 WiFi 3MP Robot Pan-Tilt Security Camera Version 1.0 allows a physically… |
vulnerability |
nvd |
CVE-2026-51977 |
|
2026-08-17 |
| medium |
CVE-2026-45791 — Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's user.updat… |
vulnerability |
nvd |
CVE-2026-45791 |
|
2026-08-17 |
| high |
CVE-2026-45790 — Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's organizati… |
vulnerability |
nvd |
CVE-2026-45790 |
|
2026-08-17 |
| medium |
CVE-2026-43795 — The issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.… |
vulnerability |
nvd |
CVE-2026-43795, CVE-2026-65338, CVE-2026-65341 |
|
2026-08-17 |
| high |
CVE-2026-43794 — A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari… |
vulnerability |
nvd |
CVE-2026-43794 |
|
2026-08-17 |
| medium |
CVE-2026-43667 — A reachable assertion was addressed with improved input validation. This issue is fixed in iOS 18.7.… |
vulnerability |
nvd |
CVE-2026-43667 |
|
2026-08-17 |
| critical |
CVE-2026-42163 — Mahara before 25.04.5 and 26.04.0 is vulnerable to unauthorized access to internal accounts via Lear… |
vulnerability |
nvd |
CVE-2026-42163 |
|
2026-08-17 |
| medium |
CVE-2026-28984 — The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS… |
vulnerability |
nvd |
CVE-2026-28984 |
|
2026-08-17 |