CVE-2026-81566: Schwachstellen-Eintrag (NVD)
Joomla Extension - joomshaper.com - Missing Access Control in Menu Item Creation in SP Page Builder (Free and Pro) 4.0.0 - 6.9.0 - The add-to-menu routine invoked the com_menus item model's save() method directly. That model does not perform authorisation itself, because the relevant checks reside in the com_menus controller, and the only check applied was core.edit on com_sppagebuilder. Users with no permissions whatsoever on com_menus could therefore create menu items, and because the record identifier was taken from the submitted jform[menuid] field, could also overwrite existing ones. The home flag was read back from the database and preserved, so the site's home menu item could be repointed while remaining the home item.
Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-16 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2026-31153 | Bynder 0.1.394 cross site scripting
A vulnerability classified as problematic was found in Bynder 0.1.394. This vulnerability affects unknown code. Executing a manipulation can lead to cross site scripting. This vulnerability is registered as CVE-2026-31153. It is possible to
CVE-2026-59243 | Apache Airflow FAB Provider up to 3.7.2 Azure AD OAuth Login signature verification
A vulnerability was found in Apache Airflow FAB Provider up to 3.7.2. It has been classified as critical. This vulnerability affects unknown code of the component Azure AD OAuth Login. Performing a manipulation results in improper verificat
CVE-2026-59245 | Apache Airflow up to 3.7.1 FAB Auth Manager resource_name dag_id permission
A vulnerability was found in Apache Airflow up to 3.7.1 and classified as problematic. This affects the function resource_name of the component FAB Auth Manager. Such manipulation of the argument dag_id leads to permission issues. This vuln
CVE-2026-49486 | Apache Airflow up to 3.15.0 FTP Provider FTPSHook.get_conn cleartext transmission
A vulnerability was found in Apache Airflow up to 3.15.0. It has been classified as problematic. The affected element is the function FTPSHook.get_conn of the component FTP Provider. Performing a manipulation results in cleartext transmissi
CVE-2026-58704 | Google Android Cellular Modem permission
A vulnerability was found in Google Android and classified as very critical. Affected by this vulnerability is an unknown functionality of the component Cellular Modem. Such manipulation leads to permission issues. This vulnerability is uni
CVE-2026-92239 | Mozilla Thunderbird up to 140.15/155 out-of-bounds (Nessus ID 346179)
A vulnerability was found in Mozilla Thunderbird up to 140.15/155. It has been declared as critical. This affects an unknown function. The manipulation results in out-of-bounds read. This vulnerability is identified as CVE-2026-92239. The a
CVE-2026-92238 | Mozilla Thunderbird up to 140.15 memory corruption (Nessus ID 346179)
A vulnerability was found in Mozilla Thunderbird up to 140.15. It has been classified as critical. The impacted element is an unknown function. The manipulation leads to memory corruption. This vulnerability is referenced as CVE-2026-92238.
CVE-2026-92240 | Mozilla Thunderbird up to 140.15/155 IMAP Response Parser out-of-bounds (Nessus ID 346179)
A vulnerability described as critical has been identified in Mozilla Thunderbird up to 140.15/155. Affected by this vulnerability is an unknown functionality of the component IMAP Response Parser. Executing a manipulation can lead to out-of
Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution
A critical security flaw in Issabel Framework, a web-based framework for the open-source unified communications PBX software, has come under active exploitation. The vulnerability in question is CVE-2026-89026 (CVSS v3.1 score: 9.8/CVSS v4.
Hackers exploit zero-day flaw in Cisco email gateway
Researchers warn the vulnerability could be used by state-linked actors for espionage. Weiterlesen
CISA Warns of Critical ScreenConnect Vulnerability Actively Exploited in Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical ConnectWise ScreenConnect vulnerability, tracked as CVE-2026-84869, to its Known Exploited Vulnerabilities (KEV) Catalog after confirming that threat acto
CVE-2022-44168 | Tenda AC15 15.03.05.18 fromSetRouteStatic buffer overflow (EUVD-2022-47118)
A vulnerability described as critical has been identified in Tenda AC15 15.03.05.18. This issue affects the function fromSetRouteStatic. The manipulation results in buffer overflow. This vulnerability is identified as CVE-2022-44168. The at
CVE-2022-44167 | Tenda AC15 15.03.05.18 formSetPPTPServer buffer overflow (EUVD-2022-47117)
A vulnerability marked as critical has been reported in Tenda AC15 15.03.05.18. This vulnerability affects the function formSetPPTPServer. The manipulation leads to buffer overflow. This vulnerability is referenced as CVE-2022-44167. The at
CVE-2022-44163 | Tenda AC21 16.03.08.15 formSetMacFilterCfg buffer overflow (EUVD-2022-47113)
A vulnerability labeled as critical has been found in Tenda AC21 16.03.08.15. This affects the function formSetMacFilterCfg. Executing a manipulation can lead to buffer overflow. The identification of this vulnerability is CVE-2022-44163. T
Notfall-Patch von Microsoft: Dringende <b>Windows</b>-Updates beheben schwere <b>Server</b>-Fehler
Die neuen Notfall-Patches stehen nun für Windows 10, Windows 11 sowie für die betroffenen Windows-Server-Versionen über den Microsoft Update-Katalog ... Weiterlesen
Critical WSO2 Vulnerability Allow Hackers to Gain Full Admin Access
WSO2 has disclosed a critical authentication bypass vulnerability that could allow remote attackers to take over accounts, including administrative accounts, in affected API management products. Tracked as CVE-2026-5430, the flaw has receiv
CVE-2022-44158 | Tenda AC21 16.03.08.15 set_device_name buffer overflow (EUVD-2022-47108)
A vulnerability identified as critical has been detected in Tenda AC21 16.03.08.15. Affected by this issue is the function set_device_name. Performing a manipulation results in buffer overflow. This vulnerability was named CVE-2022-44158. T
CVE-2022-44156 | Tenda AC15 15.03.05.19 formSetIpMacBind buffer overflow (EUVD-2022-47106)
A vulnerability categorized as critical has been discovered in Tenda AC15 15.03.05.19. Affected by this vulnerability is the function formSetIpMacBind. Such manipulation leads to buffer overflow. This vulnerability is uniquely identified as
CVE-2022-44153 | Rapid Software Rapid SCADA 5.8.4 cross site scripting (EUVD-2022-47103)
A vulnerability identified as problematic has been detected in Rapid Software Rapid SCADA 5.8.4. Impacted is an unknown function. This manipulation causes cross site scripting. This vulnerability is tracked as CVE-2022-44153. The attack is
CVE-2022-44151 | oretnom23 Simple Inventory Management System 1.0 /ims/login.php sql injection (EUVD-2022-47101)
A vulnerability labeled as critical has been found in oretnom23 Simple Inventory Management System 1.0. This vulnerability affects unknown code of the file /ims/login.php. The manipulation results in sql injection. This vulnerability is rep
CVE-2022-44140 | Jizhicms 2.3.3 /Member/memberedit.html sql injection (Issue 81 / EUVD-2022-47090)
A vulnerability was found in Jizhicms 2.3.3. It has been rated as critical. The affected element is an unknown function of the file /Member/memberedit.html. The manipulation leads to sql injection. This vulnerability is traded as CVE-2022-4
Google says some Pixel phone owners were hacked in zero-day attacks
The Pixel phone maker said there are indications that a bug in the phone's modem "may be under limited, targeted exploitation." Weiterlesen
ParaShells: Schwachstelle in Parallels Desktop ermöglicht Root-Zugriff ohne Adminrechte
LONDON (IT BOLTWISE) – Eine Schwachstelle in Parallels Desktop kann laut JFrog dazu führen, dass sich lokale Mac-Accounts als Root ausgeben und Code mit höchstem Zugriff ausführen. Der Angriff setzt voraus, dass bereits ein Programm auf dem
CVE-2026-68406 | Linux Kernel up to 7.2-rc3 cfg80211 input validation (Nessus ID 346033)
A vulnerability was found in Linux Kernel up to 6.6.147/6.12.100/6.18.41/7.1.5/7.2-rc3. It has been rated as very critical. This affects an unknown part of the component cfg80211. Performing a manipulation results in improper input validati
CVE-2026-68402 | Linux Kernel up to 7.2-rc3 cfg80211 net/wireless/scan.c cfg80211_is_element_inherited out-of-bounds (Nessus ID 346033)
A vulnerability was found in Linux Kernel up to 6.6.147/6.12.100/6.18.41/7.1.5/7.2-rc3. It has been rated as critical. This issue affects the function cfg80211_is_element_inherited of the file net/wireless/scan.c of the component cfg80211.
CVE-2026-63945 | Linux Kernel up to 7.0.11 Bluetooth Iso iso_sock_clear_timer use after free (Nessus ID 346033)
A vulnerability classified as very critical has been found in Linux Kernel up to 6.1.175/6.6.142/6.12.92/6.18.34/7.0.11. The affected element is the function iso_sock_clear_timer of the component Bluetooth Iso. Performing a manipulation res
CVE-2026-69127 | getkirby Kirby up to 4.9.4/5.5.1 Rest Api Error information exposure (EUVD-2026-54577)
A vulnerability was found in getkirby Kirby up to 4.9.4/5.5.1. It has been rated as problematic. This affects an unknown function of the component Rest Api Error Handler. The manipulation leads to information exposure through error message.
CVE-2026-44741 | Pimcore Admin Classic Bundle 1.7.16/2.2.2/2.2.3 Translation Grid Date Filter Property sql injection
A vulnerability labeled as critical has been found in Pimcore Admin Classic Bundle 1.7.16/2.2.2/2.2.3. Affected by this vulnerability is an unknown functionality of the component Translation Grid Date Filter. The manipulation of the argumen
CVE-2026-45618 | harttle LiquidJS up to 10.25.x code injection
A vulnerability marked as critical has been reported in harttle LiquidJS up to 10.25.x. Affected by this vulnerability is an unknown functionality. The manipulation leads to code injection. This vulnerability is listed as CVE-2026-45618. Th
CVE-2026-47717 | FrangoTeam Fuxa 1.3.0 Project Endpoint information disclosure
A vulnerability marked as problematic has been reported in FrangoTeam Fuxa 1.3.0. This affects an unknown function of the component Project Endpoint. The manipulation leads to information disclosure. This vulnerability is traded as CVE-2026
CVE-2026-14863 | FileRun up to 2026.2.0 Thumbnail Generation exec os command injection
A vulnerability was found in FileRun up to 2026.2.0. It has been declared as critical. This affects the function exec of the component Thumbnail Generation. The manipulation results in os command injection. This vulnerability is reported as
CVE-2026-47718 | frangoteam FUXA 1.3.0-2773 privileges management
A vulnerability described as problematic has been identified in frangoteam FUXA 1.3.0-2773. This impacts an unknown function. The manipulation results in improper privilege management. This vulnerability is known as CVE-2026-47718. It is po
ZDI-26-706: (0Day) CrewAI crewAI Framework Agent Loading Unsafe Reflection Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of CrewAI crewAI. User interaction is required to exploit this vulnerability in that the target must load a malicious agent configuration from th
ZDI-26-705: (0Day) BusyBox libarchive Symlink Directory Traversal Arbitrary File Creation Vulnerability
This vulnerability allows remote attackers to create arbitrary files on affected installations of BusyBox. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. T
ZDI-26-704: (0Day) Airbyte OneDrive Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability
This vulnerability allows remote attackers to initiate arbitrary server-side requests on affected installations of Airbyte. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.7. The following C
ZDI-26-707: (0Day) MindsDB OpenBBtable Code Injection Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of MindsDB. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned:
ZDI-26-703: (0Day) Airbyte SharePoint Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability
This vulnerability allows remote attackers to initiate arbitrary server-side requests on affected installations of Airbyte. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.7. The following C
CVE-2026-75757 | Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin's client JavaScript read its state cookies (tenant, actor_resource, actor_primary_key, actor_action, actor_domain, actor_authorizing, actor_paused) by matching the cookie name with an unanchored regular expression (new RegE
Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin'
CVE-2026-82605 | A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading to version 16.0 is sufficient to fix this issue. The affected component should be upgraded.
A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading
CVE-2026-82604 | A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to version 16.0 is recommended to address this issue. You should upgrade the affected component.
A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to vers
CVE-2026-82603 | A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The attack may be launched remotely. The exploit is now public and may be used.
A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The at
CVE-2026-82602 | A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclo
CVE-2026-82601 | A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has b
CVE-2026-75760 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider call fails the change added a changeset error whose message inspected the raw error term (An error occurred while generating embeddings: #{inspect(error)}). A plain-string add_error produces an Ash.Error.Changes.InvalidChange
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider ca
CVE-2026-82580 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verbatim with Exception.message/1 into the tool-result content. That content is appended to the conversation, emitted as a {:tool_result, ...} stream event, and sent back to the model, which typically relays it to the user. No
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verb
CVE-2026-82579 | Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a model response of :tool_calls, then filters the calls through normalize_tool_calls/2 and unprocessed_tool_calls/2. Both can empty the list: a call missing a valid name, or one reusing a tool_call_id that already has a resul
Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a
CVE-2026-82564 | Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution, identity_filter/3 built the update/destroy filter directly from the raw tool arguments as [{key, Map.get(arguments, to_string(key))}] and passed it to Ash.Query.do_filter/2. A map value is parsed as a predicate expression
Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution
CVE-2026-82600 | A security flaw has been discovered in SeaCMS up to 13.6. Affected by this issue is some unknown functionality of the file /zyapi.php?ac=videolist. Performing a manipulation of the argument ids results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.
A security flaw has been discovered in SeaCMS up to 13.6. Affected by this issue is some unknown functionality of the file /zyapi.php?ac=videolist. Performing a manipulation of the argument ids results in sql injection. The attack can be in
CVE-2026-81315 | Origin Validation Error vulnerability in ash-project ash_ai allows a malicious web page to bypass the MCP server's DNS-rebinding protection and issue cross-site requests to a user's local MCP server with that user's actor. In AshAi.Mcp.Server, with the default allowed_origins: nil, origin_allowed?/3 accepts an origin when uri.host == conn.host and the forwarded scheme is https. Both values are attacker-controlled: conn.host comes from the Host header and the
Origin Validation Error vulnerability in ash-project ash_ai allows a malicious web page to bypass the MCP server's DNS-rebinding protection and issue cross-site requests to a user's local MCP server with that user's actor. In AshAi.Mcp.Ser
CVE-2026-77956 | Improper Control of Generation of Code (Code Injection) vulnerability in ash-project ash_ai allows a remote, unauthenticated client to execute arbitrary Elixir code. AshAi.Actions.Prompt evaluates prompt content through EEx.eval_string/2. The documented prompt: fn input, context -> ... end form lets the prompt content be built from action arguments, so when a prompt action's text incorporates request data, that attacker-controlled text is compiled and run as
Improper Control of Generation of Code (Code Injection) vulnerability in ash-project ash_ai allows a remote, unauthenticated client to execute arbitrary Elixir code. AshAi.Actions.Prompt evaluates prompt content through EEx.eval_string/2.
CVE-2026-82599 | A vulnerability was identified in SeaCMS up to 13.6. Affected by this vulnerability is the function unlink of the file /member.php?action=chgpwdsubmit of the component Avatar Upload. Such manipulation of the argument oldpic leads to path traversal. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
A vulnerability was identified in SeaCMS up to 13.6. Affected by this vulnerability is the function unlink of the file /member.php?action=chgpwdsubmit of the component Avatar Upload. Such manipulation of the argument oldpic leads to path tr
CVE-2026-82598 | A vulnerability was determined in SeaCMS up to 13.6. Affected is the function parseIf of the file search.php of the component Template Engine. This manipulation of the argument searchtype causes code injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
A vulnerability was determined in SeaCMS up to 13.6. Affected is the function parseIf of the file search.php of the component Template Engine. This manipulation of the argument searchtype causes code injection. It is possible to initiate th
CVE-2026-82597 | A vulnerability was identified in TOTOLINK NR1800X 9.1.0u.6681_B20230703. This affects the function setUssd of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ussd leads to command injection. The attack can be initiated remotely. The exploit is publicly available and might be used.
A vulnerability was identified in TOTOLINK NR1800X 9.1.0u.6681_B20230703. This affects the function setUssd of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ussd leads to command injection. The attack can be initiated remo
CVE-2026-82596 | A vulnerability was determined in LatencyUtils up to 2.0.3. Affected by this issue is the function LatencyStats.recordDetectedPause of the file src/main/java/org/LatencyUtils/LatencyStats.java of the component PauseDetector. Executing a manipulation can lead to memory corruption. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has no
A vulnerability was determined in LatencyUtils up to 2.0.3. Affected by this issue is the function LatencyStats.recordDetectedPause of the file src/main/java/org/LatencyUtils/LatencyStats.java of the component PauseDetector. Executing a man
CVE-2026-82595 | A vulnerability was found in D-Link DIR-825M 1.1.8. Affected by this vulnerability is the function sub_456CF4 of the file /boafrm/formSysCmd of the component System Command Execution. Performing a manipulation of the argument sysCmd results in command injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.
A vulnerability was found in D-Link DIR-825M 1.1.8. Affected by this vulnerability is the function sub_456CF4 of the file /boafrm/formSysCmd of the component System Command Execution. Performing a manipulation of the argument sysCmd results
CVE-2026-82594 | A vulnerability has been found in LogNet grpc-spring-boot-starter up to 5.2.0. Affected is an unknown function of the component Annotation Processing. Such manipulation leads to improper authorization. The attack may be performed from remote. A high complexity level is associated with this attack. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an i
A vulnerability has been found in LogNet grpc-spring-boot-starter up to 5.2.0. Affected is an unknown function of the component Annotation Processing. Such manipulation leads to improper authorization. The attack may be performed from remot
CVE-2026-82593 | A flaw has been found in D-Link DIR-825M 1.1.8. This impacts the function sub_41802C of the file /boafrm/formLtefotaUpgradeFibocom of the component LTE Module Firmware Upgrade. This manipulation of the argument fota_url causes stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been published and may be used.
A flaw has been found in D-Link DIR-825M 1.1.8. This impacts the function sub_41802C of the file /boafrm/formLtefotaUpgradeFibocom of the component LTE Module Firmware Upgrade. This manipulation of the argument fota_url causes stack-based b
CVE-2026-82592 | A vulnerability was detected in D-Link DIR-825M 1.1.8. This affects the function sub_46725C of the file /boafrm/formDiskFormat of the component Disk Formatting Handler Endpoint. The manipulation of the argument partition results in stack-based buffer overflow. The attack can be executed remotely. The exploit is now public and may be used.
A vulnerability was detected in D-Link DIR-825M 1.1.8. This affects the function sub_46725C of the file /boafrm/formDiskFormat of the component Disk Formatting Handler Endpoint. The manipulation of the argument partition results in stack-ba
CVE-2026-82591 | A security vulnerability has been detected in Open Asset Import Library Assimp up to 6.0.2. The impacted element is the function MD5Importer::MakeDataUnique of the file code/AssetLib/MD5/MD5Loader.cpp. The manipulation of the argument iNewIndex leads to heap-based buffer overflow. The attack can only be performed from a local environment. The identifier of the patch is bf9dabb617c46e5133dac65cca6bff177917afcb. Applying a patch is the recommended action to fix
A security vulnerability has been detected in Open Asset Import Library Assimp up to 6.0.2. The impacted element is the function MD5Importer::MakeDataUnique of the file code/AssetLib/MD5/MD5Loader.cpp. The manipulation of the argument iNewI
CVE-2026-82590 | A weakness has been identified in Open5GS up to 2.7.7. The affected element is the function smf_nudm_sdm_handle_get of the file src/smf/nudm-handler.c of the component SMF. Executing a manipulation of the argument preemptCap can lead to reachable assertion. The attack may be launched remotely. Upgrading to version 2.8.0 is sufficient to fix this issue. This patch is called 4554405f29bffd7562abedbee63484825bd90cd5. You should upgrade the affected component.
A weakness has been identified in Open5GS up to 2.7.7. The affected element is the function smf_nudm_sdm_handle_get of the file src/smf/nudm-handler.c of the component SMF. Executing a manipulation of the argument preemptCap can lead to rea