Search
26 CVEs · published 2026-07-15 to 2026-07-15, Low severity
CVEs (26)
Showing 1–25 of 26
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-38755 | LOW | 2.9 | 2026-07-15 | A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input. | |
| CVE-2026-38752 | LOW | 2.9 | 2026-07-15 | A stack overflow in the evaluate() function (editors/awk.c) of BusyBox commit 371fe9 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script. | |
| CVE-2026-15921 | LOW | 3.1 | 2026-07-15 | Node Version Manager (nvm) is a POSIX-compliant shell function for managing multiple node.js versions. In versions 0.32.1 through 0.40.5, `nvm ls-remote` (and other command… | |
| CVE-2026-55398 | LOW | Patched | 3.7 | 2026-07-15 | CVE-2026-55398 is a memory management vulnerability in Secure Access clients and servers prior to 14.55. Attackers with intimate knowledge of and total control over the tun… |
| CVE-2026-33444 | LOW | Patched | 3.7 | 2026-07-15 | CVE-2026-33444 is a memory management vulnerability in Secure Access servers prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol… |
| CVE-2026-40958 | LOW | Patched | 3.7 | 2026-07-15 | CVE-2026-40958 is a input validation error in Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can crea… |
| CVE-2026-40956 | LOW | Patched | 3.7 | 2026-07-15 | CVE-2026-40956 is a memory disclosure vulnerability in Secure Access client versions prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel … |
| CVE-2026-40955 | LOW | Patched | 3.7 | 2026-07-15 | CVE-2026-40955 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total… |
| CVE-2026-40954 | LOW | Patched | 3.7 | 2026-07-15 | CVE-2026-40954 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total… |
| CVE-2026-62683 | LOW | Patched | 3.1 | 2026-07-15 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.17, File Browser can … |
| CVE-2026-60065 | LOW | 3.7 | 2026-07-15 | When NGINX Plus is configured to use the Message Queuing Telemetry Transport (MQTT) filter module (ngx_stream_mqtt_filter_module), unauthenticated attackers can send reques… | |
| CVE-2026-61872 | LOW | Patched | 2.5 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the TIFF encoder when an invalid tiff:tile-geometry is specified. Supplying malformed tile geometry para… |
| CVE-2026-61871 | LOW | Patched | 3.7 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the ICON decoder that occurs when a memory allocation fails. Processing a crafted ICON file that trigger… |
| CVE-2026-61869 | LOW | Patched | 2.9 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the MIFF encoder that occurs when a memory allocation fails during MIFF image processing, which can lead… |
| CVE-2026-61868 | LOW | Patched | 3.7 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.x before 6.9.13-51 contains a memory leak in the YUV decoder that occurs when opening of the blob fails. Repeated triggering can lead to… |
| CVE-2026-61867 | LOW | Patched | 2.9 | 2026-07-15 | ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the TIFF encoder when memory allocation fails. Attackers can trigger allocation failures during TIFF ima… |
| CVE-2026-61866 | LOW | Patched | 2.9 | 2026-07-15 | ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the JNG encoder when a blob cannot be opened. Attackers can trigger the memory leak by providing malform… |
| CVE-2026-61865 | LOW | Patched | 2.9 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the hough lines operation: when a specific operation fails, a small memory leak occurs. |
| CVE-2026-61864 | LOW | Patched | 2.9 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in color transformation to the log colorspace: when the operation fails, a small amount of memory is not released. |
| CVE-2026-61863 | LOW | Patched | 2.9 | 2026-07-15 | ImageMagick before 7.1.2-26 (and 6.x before 6.9.13-51) contains a memory leak in the TIFF encoder that occurs when a temporary file cannot be created, resulting in a small … |
| CVE-2026-61862 | LOW | Patched | 2.9 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains an information disclosure vulnerability: when a profile is displayed with the identify command and the profile value is n… |
| CVE-2026-61860 | LOW | Patched | 3.7 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a use-after-free vulnerability that occurs when freetype initialization fails: the method does not exit and continues to … |
| CVE-2026-61859 | LOW | Patched | 3.3 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy checks. This allows… |
| CVE-2026-61464 | LOW | Patched | 1.8 | 2026-07-15 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which ca… |
| CVE-2026-56764 | LOW | Patched | 3.7 | 2026-07-15 | Hono before 4.11.10 contains a timing attack vulnerability in the basicAuth and bearerAuth middlewares due to non-constant-time string comparison in the timingSafeEqual fun… |