Search
34 CVEs · published 2026-08-30 to 2026-08-30, Medium severity
CVEs (34)
Showing 1–25 of 34
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-82591 | MEDIUM | 5.3 | 2026-08-30 | A security vulnerability has been detected in Open Asset Import Library Assimp up to 6.0.2. The impacted element is the function MD5Importer::MakeDataUnique of the file cod… | |
| CVE-2026-82590 | MEDIUM | 4.3 | 2026-08-30 | A weakness has been identified in Open5GS up to 2.7.7. The affected element is the function smf_nudm_sdm_handle_get of the file src/smf/nudm-handler.c of the component SMF.… | |
| CVE-2026-82589 | MEDIUM | 4.3 | 2026-08-30 | A security flaw has been discovered in Open5GS up to 2.7.7. Impacted is the function amf_namf_comm_handle_n1_n2_message_transfer of the file src/amf/namf-handler.c of the c… | |
| CVE-2026-82588 | MEDIUM | 4.3 | 2026-08-30 | A vulnerability was identified in Open5GS up to 2.7.7. This issue affects some unknown processing of the file src/amf/namf-handler.c of the component Transfer Endpoint. Suc… | |
| CVE-2026-82587 | MEDIUM | 4.3 | 2026-08-30 | A vulnerability was determined in Open5GS up to 2.7.7. This vulnerability affects the function amf_namf_comm_decode_ue_mm_context_list of the file src/amf/namf-handler.c of… | |
| CVE-2026-82556 | MEDIUM | 6.3 | 2026-08-30 | A vulnerability was found in Forgejo up to 15.0.4. This issue affects the function net.LookupIP of the file services/migrations/allowlist/is_migrate_allowed.go of the compo… | |
| CVE-2026-82554 | MEDIUM | 4.3 | 2026-08-30 | A flaw has been found in SourceCodester Queue Management System 1.0. This affects an unknown part of the file /api/add_customer.php. This manipulation of the argument Name … | |
| CVE-2026-82553 | MEDIUM | 6.3 | 2026-08-30 | A vulnerability was detected in sambitraj Student Management System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. Affected by this issue is the function mysqli_query of t… | |
| CVE-2026-82552 | MEDIUM | 4.3 | 2026-08-30 | A security vulnerability has been detected in Linux Foundation Magma 1.9.0. Affected by this vulnerability is an unknown functionality of the file tasks/ngap/ngap_amf.c of … | |
| CVE-2026-82551 | MEDIUM | 5.3 | 2026-08-30 | A weakness has been identified in Linux Foundation Magma 1.9.0. Affected is an unknown function of the file ngap_amf_handlers.c of the component NGSetup Handler. Executing … | |
| CVE-2026-82550 | MEDIUM | 5.3 | 2026-08-30 | A security flaw has been discovered in Linux Foundation Magma 1.9.0. This impacts an unknown function of the component NGSetupRequest Handler. Performing a manipulation of … | |
| CVE-2026-82658 | MEDIUM | Patched | 4.3 | 2026-08-30 | Admidio versions before 5.0.12 contain a broken access control vulnerability in profile_function.php that allows authenticated low-privilege users to read another user's fu… |
| CVE-2026-82652 | MEDIUM | 5.3 | 2026-08-30 | SiYuan before v3.8.1 fails to filter invisible-tier content from SQL embed blocks, attribute-view keys, and attribute-view backlinks in publish mode. Anonymous readers can … | |
| CVE-2026-82651 | MEDIUM | 4.9 | 2026-08-30 | SiYuan before v3.8.1 does not apply the IsForbiddenAbsPath guard (introduced in GHSA-c8r8-95hg-mp34) to the /history/*path and /repo/diff/*path endpoints in kernel/server/s… | |
| CVE-2026-82650 | MEDIUM | Patched | 4.4 | 2026-08-30 | SiYuan 3.8.0 contains a path traversal / sensitive file exposure vulnerability in the RenderTemplate function (kernel/model/template.go), reachable via the POST /api/templa… |
| CVE-2026-82647 | MEDIUM | 6.1 | 2026-08-30 | WWBN AVideo contains a cross-site request forgery vulnerability in sendEmail.json.php that allows authenticated administrators to send mail from the site's contact address … | |
| CVE-2026-82646 | MEDIUM | 6.1 | 2026-08-30 | WWBN AVideo contains an unauthenticated reflected cross-site scripting vulnerability in the url2Embed.json.php endpoint that allows attackers to inject malicious scripts by… | |
| CVE-2026-82643 | MEDIUM | 6.5 | 2026-08-30 | WWBN AVideo contains an unauthenticated credential submission vulnerability in plugin/Live/api/preauthorize.json.php that accepts credentials over GET without rate limiting… | |
| CVE-2026-82548 | MEDIUM | 5.3 | 2026-08-30 | A vulnerability was determined in Linux Foundation Magma 1.9.0. The impacted element is an unknown function of the component InitialUEMessage Handler. This manipulation cau… | |
| CVE-2026-82547 | MEDIUM | 6.5 | 2026-08-30 | A vulnerability was found in Linux Foundation Magma 1.9.0. The affected element is an unknown function of the file tasks/amf/amf_fsm.cpp of the component Registration Compl… | |
| CVE-2026-82545 | MEDIUM | 6.3 | 2026-08-30 | A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Impacted is an unknown function of the file /pages/sup_searchfrm.php. The manipulation of the… | |
| CVE-2026-82640 | MEDIUM | 5.5 | 2026-08-30 | browser-use web-ui versions 2.0.0 through 3.0.0 write configured LLM API keys to disk in cleartext without encryption or access restrictions. Attackers with read access to … | |
| CVE-2026-82637 | MEDIUM | 5.3 | 2026-08-30 | browser-use web-ui versions 2.0.0 through 3.0.0 fail to validate browser settings paths in run_agent_task, allowing attackers to create directories at arbitrary locations b… | |
| CVE-2026-82544 | MEDIUM | 4.3 | 2026-08-30 | A flaw has been found in wger-project wger up to 2.6.0-alpha2. This issue affects the function reset_user_password of the file wger/gym/views/gym.py of the component Passwo… | |
| CVE-2026-82634 | MEDIUM | 6.5 | 2026-08-30 | Frappe Framework development builds contain an authorization flaw in the render_jinja_template endpoint that allows low-privileged users to render arbitrary Jinja templates… |