|
6851
|
- |
-
|
-
|
-
|
In BYD Atto3, an attacker can obtain an authentication key through Brute Force attack, which is permanently available. The authentication key enables flash to the Electronic Parking Break (EPB) and S…
|
-
|
CVE-2025-61081
|
2026-05-20 03:16 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6852
|
9.8 |
CRITICAL
Network
|
-
|
-
|
The TinyZero project thru commit 6652a63c57fa7e5ccde3fc9c598c7176ff15b839 (2025-58-24) contains a critical command injection vulnerability (CWE-78) in its HDFS file operation utilities. The vulnerabi…
|
CWE-78
OS Command
|
CVE-2026-31226
|
2026-05-20 03:14 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6853
|
8.8 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel
|
Insufficient granularity of access control in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally.
|
CWE-1220
Insufficient Granularity of Access Control
|
CVE-2026-35436
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6854
|
5.5 |
MEDIUM
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel word
|
Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2026-35440
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6855
|
8.4 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel
|
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
|
CWE-416
Use After Free
|
CVE-2026-40358
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6856
|
7.8 |
HIGH
Local
|
microsoft
|
365_apps excel office office_long_term_servicing_channel office_online_server
|
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
|
CWE-416
Use After Free
|
CVE-2026-40359
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6857
|
7.8 |
HIGH
Local
|
microsoft
|
365_apps excel office office_long_term_servicing_channel office_online_server
|
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
|
CWE-125
Out-of-bounds Read
|
CVE-2026-40360
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6858
|
8.4 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel word
|
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
CWE-416
Use After Free
|
CVE-2026-40361
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6859
|
7.8 |
HIGH
Local
|
microsoft
|
365_apps excel office office_long_term_servicing_channel office_online_server
|
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-40362
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6860
|
8.4 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel
|
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-40363
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6861
|
8.4 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel word
|
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
CWE-122 CWE-843 CWE-908
Heap-based Buffer Overflow Type Confusion Use of Uninitialized Resource
|
CVE-2026-40364
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6862
|
8.4 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel word
|
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
CWE-416
Use After Free
|
CVE-2026-40366
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6863
|
8.4 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel sharepoint_server word
|
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
|
CWE-822
Untrusted Pointer Dereference
|
CVE-2026-40367
|
2026-05-20 03:05 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6864
|
6.5 |
MEDIUM
Network
|
microsoft
|
power_automate_for_desktop
|
Exposure of sensitive information to an unauthorized actor in Power Automate allows an authorized attacker to disclose information over a network.
|
CWE-200
Information Exposure
|
CVE-2026-40374
|
2026-05-20 03:04 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6865
|
7.8 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel
|
Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally.
|
CWE-416
Use After Free
|
CVE-2026-40418
|
2026-05-20 03:04 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6866
|
7.8 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel
|
Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.
|
CWE-416
Use After Free
|
CVE-2026-40419
|
2026-05-20 03:04 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6867
|
8.8 |
HIGH
Local
|
microsoft
|
365_apps office office_long_term_servicing_channel
|
Improper access control in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally.
|
CWE-284
Improper Access Control
|
CVE-2026-40420
|
2026-05-20 03:04 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6868
|
5.3 |
MEDIUM
Local
|
-
|
-
|
An issue was discovered in the Portrait Dell Color Management application before 3.7.0 for Dell monitors. On Windows, a symbolic link vulnerability allows a local low-privileged user to escalate priv…
|
CWE-59
Link Following
|
CVE-2026-34883
|
2026-05-20 03:04 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6869
|
7.3 |
HIGH
Network
|
-
|
-
|
An issue was discovered in ModelScope 1.25.0 allowing attackers to execute arbitrary code via crafted module listed in the configuration file (dey_mini.yaml) under the key ['nnet']['module'].
|
CWE-94
Code Injection
|
CVE-2025-51427
|
2026-05-20 03:04 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6870
|
7.3 |
HIGH
Network
|
-
|
-
|
An issue in gohttp commit 34ea51 allows attackers to execute a directory traversal via supplying a crafted request.
|
CWE-22
Path Traversal
|
CVE-2025-70950
|
2026-05-20 03:04 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6871
|
- |
-
|
-
|
-
|
A command injection vulnerability exists in Panabit PAP-XM320 up to and including V7.7. The web management interface invokes the backend helper /usr/sbin/pappiw and passes user-controlled parameters …
|
-
|
CVE-2026-36827
|
2026-05-20 03:04 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6872
|
- |
-
|
-
|
-
|
A command injection vulnerability exists in the /cgi-bin/tools/ajax_cmd endpoint of Panabit PAP-XM320 up to and including v7.7. The CGI component allows authenticated users to execute arbitrary shell…
|
-
|
CVE-2026-36828
|
2026-05-20 03:04 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6873
|
- |
-
|
-
|
-
|
In the web management interface of Archer AX72 (SG) v1, the network diagnostic feature improperly handles invalid user input, resulting in limited exposure of diagnostic command usage information.
…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2026-5511
|
2026-05-20 02:59 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6874
|
7.5 |
HIGH
Network
|
-
|
-
|
HestiaCP versions 1.2.0 through 1.9.4 contain an IP spoofing vulnerability that allows unauthenticated remote attackers to bypass authentication security controls by supplying an arbitrary IP address…
|
CWE-348
Use of Less Trusted Source
|
CVE-2026-43634
|
2026-05-20 02:57 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6875
|
7.5 |
HIGH
Network
|
-
|
-
|
Funnel Builder for WooCommerce Checkout prior to 3.15.0.3 contains a missing authorization vulnerability in the public checkout endpoint that allows unauthenticated attackers to invoke internal metho…
|
CWE-862
Missing Authorization
|
CVE-2026-47100
|
2026-05-20 02:57 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6876
|
9.8 |
CRITICAL
Network
|
-
|
-
|
Tyler Identity Local (TID-L) uses documented, default administrative credentials. Users are not required to change the credentials before deployment. TID-L has not been distributed since December 202…
|
CWE-1392
Use of Default Credentials
|
CVE-2026-44159
|
2026-05-20 02:57 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6877
|
5.8 |
MEDIUM
Network
|
-
|
-
|
Technitium DNS Server aggressively tries to fetch missing RRSIG records or mismatched DNSKEY records. An attacker in control of a domain can cause a vulnerable system to generate excessive network tr…
|
CWE-405 CWE-406 CWE-770
Asymmetric Resource Consumption (Amplification) Insufficient Control of Network Message Volume (Network Amplification) Allocation of Resources Without Limits or Throttling
|
CVE-2026-45557
|
2026-05-20 02:57 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6878
|
8.4 |
HIGH
Local
|
-
|
-
|
An improper authentication vulnerability was discovered in the Motorola Factory Test component (com.motorola.motocit). The application contained a reference to a writable file descriptor in external …
|
-
|
CVE-2026-5804
|
2026-05-20 02:57 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6879
|
5.0 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to validate the Host header when constructing response URLs for custom slash commands which allows an authenticated attacker to redirect…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-6333
|
2026-05-20 02:51 |
2026-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6880
|
4.8 |
MEDIUM
Network
|
nozominetworks
|
cmc guardian
|
A Stored HTML Injection vulnerability was discovered in the Credentials Manager functionality due to improper validation of an input parameter. An authenticated user with administrative privileges ca…
|
CWE-79
Cross-site Scripting
|
CVE-2025-40901
|
2026-05-20 02:47 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6881
|
9.8 |
CRITICAL
Network
|
h2o
|
h2o
|
A security flaw has been discovered in h2oai h2o-3 up to 7402. This affects the function importBinaryModel of the file h2o-core/src/main/java/hex/Model.java of the component JAR Handler. Performing a…
|
CWE-20 CWE-502
Improper Input Validation Deserialization of Untrusted Data
|
CVE-2026-8751
|
2026-05-20 02:46 |
2026-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6882
|
4.8 |
MEDIUM
Network
|
nozominetworks
|
cmc guardian
|
A Stored HTML Injection vulnerability was discovered in the Users functionality due to improper validation of an input parameter. An authenticated user with administrative privileges can create a mal…
|
CWE-79
Cross-site Scripting
|
CVE-2025-40902
|
2026-05-20 02:44 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6883
|
4.8 |
MEDIUM
Network
|
nozominetworks
|
cmc guardian
|
A Stored HTML Injection vulnerability was discovered in the Schedule Restore Archive functionality due to improper validation of an input parameter. An authenticated user with administrative privileg…
|
CWE-79
Cross-site Scripting
|
CVE-2025-40903
|
2026-05-20 02:44 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6884
|
5.3 |
MEDIUM
Network
|
h2o
|
h2o
|
A weakness has been identified in h2oai h2o-3 up to 7402. This vulnerability affects the function exec of the file h2o-core/src/main/java/water/rapids/ast/prims/misc/AstSetProperty.java of the compon…
|
CWE-266 CWE-284 NVD-CWE-noinfo
Incorrect Privilege Assignment Improper Access Control
|
CVE-2026-8752
|
2026-05-20 02:44 |
2026-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6885
|
5.4 |
MEDIUM
Network
|
nozominetworks
|
cmc guardian
|
A Stored HTML Injection vulnerability was discovered in the Smart Polling functionality due to improper validation of an input parameter. An authenticated user with limited privileges can push malici…
|
CWE-79
Cross-site Scripting
|
CVE-2025-40904
|
2026-05-20 02:41 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6886
|
4.8 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to escape some variables that could contain malicious content during error page composition which allows an attacker with access to edit…
|
CWE-79
Cross-site Scripting
|
CVE-2026-3495
|
2026-05-20 02:37 |
2026-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6887
|
4.3 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13, 11.4.x <= 11.4.3 fail to check the create_post channel permission during post edit operations which allows an authenticated attacker with re…
|
CWE-862
Missing Authorization
|
CVE-2026-3637
|
2026-05-20 02:34 |
2026-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6888
|
3.3 |
LOW
Local
|
continue
|
continue
|
A vulnerability was identified in continuedev continue up to 1.2.22. This affects the function lsTool of the file core/tools/implementations/lsTool.ts of the component JSON-RPC Server. Such manipulat…
|
CWE-22
Path Traversal
|
CVE-2026-8770
|
2026-05-20 02:30 |
2026-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6889
|
7.5 |
HIGH
Network
|
google
|
chrome
|
Integer overflow in Skia in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted …
|
CWE-472
External Control of Assumed-Immutable Web Parameter
|
CVE-2026-8510
|
2026-05-20 02:29 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6890
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient policy enforcement in Payments in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to bypass discretionary access control via a crafted HTML page. (Chromium sec…
|
CWE-284
Improper Access Control
|
CVE-2026-8566
|
2026-05-20 02:29 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6891
|
8.3 |
HIGH
Network
|
google
|
chrome
|
Insufficient policy enforcement in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape v…
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-8571
|
2026-05-20 02:28 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6892
|
3.1 |
LOW
Network
|
google
|
chrome
|
Insufficient policy enforcement in Network in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a craft…
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-8572
|
2026-05-20 02:28 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6893
|
5.3 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient policy enforcement in WebXR in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive informa…
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-8583
|
2026-05-20 02:27 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6894
|
8.3 |
HIGH
Network
|
google
|
chrome
|
Use after free in Input in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HT…
|
CWE-416
Use After Free
|
CVE-2026-8513
|
2026-05-20 02:24 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6895
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Object lifecycle issue in WebShare in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a cra…
|
CWE-664
Improper Control of a Resource Through its Lifetime
|
CVE-2026-8517
|
2026-05-20 02:24 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6896
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: …
|
CWE-472
External Control of Assumed-Immutable Web Parameter
|
CVE-2026-8519
|
2026-05-20 02:23 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6897
|
4.3 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to validate that the RefreshedToken differs from the original invite token during remote cluster invite confirmation which allows an aut…
|
CWE-863
Incorrect Authorization
|
CVE-2026-4273
|
2026-05-20 02:23 |
2026-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6898
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Use after free in Downloads in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
|
CWE-416
Use After Free
|
CVE-2026-8522
|
2026-05-20 02:23 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6899
|
8.3 |
HIGH
Network
|
google
|
chrome
|
Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: H…
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-8525
|
2026-05-20 02:22 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6900
|
7.5 |
HIGH
Network
|
hsclabs
|
mailinspector
|
HSC MailInspector v5.3.3-7 contains a Local File Inclusion (LFI) vulnerability caused by improper control of user-supplied file paths. The endpoint /vendor/phpunit/phpunit.php processes user-controll…
|
CWE-73
External Control of File Name or Path
|
CVE-2026-29962
|
2026-05-20 02:21 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|