Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

118 CVEs · Low severity

CVEs (118)

Showing 1–25 of 118

CVE ID Severity Patch CVSS Published Description
CVE-2024-23573 LOW 3.7 2026-07-17 HCL Aftermarket EPC is vulnerable to attack since the Application is vulnerable to Lucky 13. that makes the SS LLUCKY13 possible affects the TLS1.1and 1.2 and DTLS1.0 or 1.…
CVE-2025-59866 LOW 3.3 2026-07-17 The HCL DFMPro, DFXAnalytics and DFXServer installers are affected by ‘Insecure file permissions Leading to Privilege Escalation’ vulnerability, which enables any logged-in…
CVE-2026-10679 LOW 3.3 2026-07-21 The DesignWare SPI driver (drivers/spi/spi_dw.c) computed the SPI BAUDR clock divider as info->clock_frequency / config->frequency without validating config->frequency. sp…
CVE-2026-10755 LOW Patched 2.7 2026-07-20 The All in One SEO WordPress plugin before 4.9.9 does not correctly restrict access to some of its AI integration REST API endpoints, allowing users with low-level privile…
CVE-2026-11925 LOW 2.7 2026-07-21 Tanium addressed a User Interface (UI) Misrepresentation of Critical Information vulnerability in Tanium Server.
CVE-2026-12547 LOW 3.4 2026-07-21 SoupAuthManager caches proxy authentication credentials without scoping them to the proxy authority (host:port). When the proxy configuration changes (e.g., via system sett…
CVE-2026-14971 LOW 3.9 2026-07-17 IBM PowerVM Novalink 2.2.02.2.12.2.1.1, and 2.3.02.3.0.12.3.12.3.2 IBM NovaLink APIs misconfiguration may increase attack surface and enable unintended or unauthorized oper…
CVE-2026-15687 LOW 2.4 2026-07-23 A security issue was discovered in the Kubernetes Java client library where a compromised pod may be able to create new files in arbitrary locations on the client machine e…
CVE-2026-16073 LOW 3.5 2026-07-17 A security vulnerability has been detected in AstrBotDevs AstrBot up to 4.25.2. Affected by this issue is the function Star.text_to_image/NetworkRenderStrategy.render of th…
CVE-2026-16155 LOW 3.5 2026-07-18 A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /schoolyr.php. The …
CVE-2026-16156 LOW 3.5 2026-07-18 A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /forexam.php. The manipulation of the …
CVE-2026-16202 LOW 3.5 2026-07-19 A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /CYS.php. Thi…
CVE-2026-16203 LOW 3.5 2026-07-19 A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /forCYS.php. Such m…
CVE-2026-16205 LOW 2.4 2026-07-19 A weakness has been identified in Pluck CMS up to 4.7.21. This vulnerability affects the function htmlspecialchars_decode of the file data/modules/albums/albums.admin.php o…
CVE-2026-16207 LOW 3.7 2026-07-19 A vulnerability was detected in django-tastypie up to 0.15.1. Impacted is the function ApiKeyAuthentication of the file tastypie/authentication.py. The manipulation results…
CVE-2026-16211 LOW 2.6 2026-07-19 A vulnerability was determined in allegro up to bcf65b994ef29fb3fc2e10b660e6288723d5209e. This impacts the function AssetLastHostname.increment_hostname of the file src/ral…
CVE-2026-16213 LOW 3.3 2026-07-19 A security flaw has been discovered in Fantomas42 django-blog-zinnia up to 0.20. Affected by this vulnerability is an unknown functionality of the file zinnia/views/mixins/…
CVE-2026-16218 LOW 2.6 2026-07-19 A vulnerability was detected in hunvreus devpush up to 0.4.6. Affected by this issue is the function reset_storage of the file app/workers/tasks/storage.py of the component…
CVE-2026-16517 LOW 2.9 2026-07-21 A signed integer overflow vulnerability was found in libarchive's ZIP writer. In the archive_write_zip_header function in archive_write_set_format_zip.c, when ZIP encryptio…
CVE-2026-21762 LOW 3.7 2026-07-17 HCL DevOps Loop is affected by missing HTTP security headers. Missing security headers may reduce browser protections against common web-based attacks such as clickjacking,…
CVE-2026-21764 LOW 3.1 2026-07-17 HCL DevOps Loop is affected by insufficient input validation that allows special characters where they should be restricted. This may result in unintended application behav…
CVE-2026-21953 LOW 3.3 2026-07-21 Vulnerability in the Oracle Retail Xstore Point of Service product of Oracle Retail Applications (component: Xstore Mobile). The supported version that is affected is 21.…
CVE-2026-26080 LOW Patched 3.7 2026-07-20 HAProxy Community Edition 3.2.x through 3.3.x before 3.3.3 can enter a loop or crash because varint is mishandled. HAProxy Enterprise and ALOHA are also affected.
CVE-2026-41637 LOW 3.7 2026-07-22 In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, client terminated DNS-over-QUIC (DoQ) queries are not accounted properly by Unbound resulting in low-cost inflation…
CVE-2026-42955 LOW 3.7 2026-07-22 In NLnet Labs Unbound 1.16.2 up to and including 1.25.1, a similar vulnerability as with CVE-2026-40622 in the 'ghost domain names' family of attacks was found in Unbound t…