Search
283 CVEs · published 2026-08-04 to 2026-08-04
CVEs (283)
Showing 76–100 of 283
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-69704 | MEDIUM | 6.5 | 2026-08-04 | Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate database queries by passing unsanitized input through a GET parameter to the supp() d… | |
| CVE-2026-69703 | CRITICAL | 9.8 | 2026-08-04 | Atlas-Livre contains an improper access control vulnerability in the admin controllers under Espace_admin/controleur/ that allows unauthenticated attackers to bypass sessio… | |
| CVE-2026-69702 | MEDIUM | 6.5 | 2026-08-04 | SnailJob 1.7.0 contains a denial of service vulnerability in the FuryUtil.deserialize helper that allows authenticated attackers to crash the server by supplying a crafted … | |
| CVE-2026-68743 | MEDIUM | 5.5 | 2026-08-04 | A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before proc… | |
| CVE-2026-66300 | MEDIUM | Patched | 5.0 | 2026-08-04 | SNOMED International Snowstorm contains a reflected XSS vulnerability within the "Web Route" redirection functionality. An attacker can inject arbitrary JavaScript which wi… |
| CVE-2026-49435 | CRITICAL | 9.8 | 2026-08-04 | Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet and execut… | |
| CVE-2026-47781 | NONE | Patched | — | 2026-08-04 | PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during i… |
| CVE-2026-47764 | NONE | Patched | — | 2026-08-04 | pdm is a Python package and dependency manager supporting the latest PEP standards. Versions prior to 2.27.0 are vulnerable to path traversal through write_to_fs. InstallDe… |
| CVE-2026-13229 | NONE | — | 2026-08-04 | Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint. | |
| CVE-2026-0163 | CRITICAL | 9.8 | 2026-08-04 | In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free. This could lead to remote escalation of privilege with no additional execu… | |
| CVE-2017-20242 | CRITICAL | Patched | 9.8 | 2026-08-04 | Keysight IxChariot Endpoint before 9.5.102 contains a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to crash the endpo… |
| CVE-2017-20241 | CRITICAL | Patched | 9.8 | 2026-08-04 | Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to crash the endpoi… |
| CVE-2026-70470 | NONE | Patched | — | 2026-08-04 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise validatePythonCodeForDataFrame in packages/components/src/p… |
| CVE-2026-69264 | NONE | Patched | — | 2026-08-04 | Prior to 3.1.3, Flowise CSVAgent interpolates an attacker-controlled segment of the csvFile data URI directly into a Python source-code template that is then executed by Py… |
| CVE-2026-47763 | NONE | Patched | — | 2026-08-04 | pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or configuration fil… |
| CVE-2026-47623 | HIGH | Patched | 8.2 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to d… |
| CVE-2026-47622 | MEDIUM | Patched | 5.3 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A successful exploit of … |
| CVE-2026-47621 | MEDIUM | Patched | 6.5 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of this v… |
| CVE-2026-47620 | MEDIUM | Patched | 6.5 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of this v… |
| CVE-2026-47619 | MEDIUM | Patched | 6.6 | 2026-08-04 | NVIDIA Dynamo for Linux examples and recipes contain a vulnerability where an attacker could cause a system failure. A successful exploit of this vulnerability might lead t… |
| CVE-2026-47618 | HIGH | Patched | 7.5 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability in the Rust multimodal media fetcher where an attacker could cause server-side request forgery. A successful exploit of thi… |
| CVE-2026-47617 | HIGH | Patched | 7.5 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery via DNS rebinding. A successful exp… |
| CVE-2026-47616 | HIGH | Patched | 7.5 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery. A successful exploit of this vulne… |
| CVE-2026-47615 | HIGH | Patched | 7.5 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery by supplying a crafted URL in a multimodal request. A successful ex… |
| CVE-2026-47614 | HIGH | Patched | 7.5 | 2026-08-04 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery. A successful exploit of this vulnerability might lead to informati… |