|
1571
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Fix NULL deref and buffer over-read in SDP debugfs
[Why & How]
dp_sdp_message_debugfs_write() dereferences conne…
|
-
|
CVE-2026-53135
|
2026-06-25 18:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1572
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_fib: fix stale stack leak via the OIFNAME register
For NFT_FIB_RESULT_OIFNAME the destination register is declared…
|
-
|
CVE-2026-53134
|
2026-06-25 18:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1573
|
- |
|
-
|
-
|
A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.
|
CWE-284
Improper Access Control
|
CVE-2026-48939
|
2026-06-25 14:16 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1574
|
9.9 |
CRITICAL
Network
|
-
|
-
|
Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to elevate privileges over a network.
|
CWE-250
Execution with Unnecessary Privileges
|
CVE-2026-48584
|
2026-06-25 14:16 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1575
|
7.8 |
HIGH
Local
|
-
|
-
|
Dell Server Hardware Manager, versions prior to 3.2.2, contains an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, lea…
|
CWE-284
Improper Access Control
|
CVE-2026-46461
|
2026-06-25 14:16 |
2026-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1576
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2025-8106
|
2026-06-25 08:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1577
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2026-47093
|
2026-06-25 07:16 |
2026-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1578
|
5.3 |
MEDIUM
Network
|
-
|
-
|
The WP Go Maps – Most Popular Map Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 10.1.01. This is due to the plugin not properly verifying tha…
|
CWE-862
Missing Authorization
|
CVE-2026-12238
|
2026-06-25 06:16 |
2026-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1579
|
7.5 |
HIGH
Network
|
vitejs voidzero
|
vite vite\+
|
Vite is a frontend tooling framework for JavaScript. Prior to 8.0.16, 7.3.5, and 6.4.3, the contents of files that are specified by server.fs.deny can be returned to the browser on Windows. Vite’s de…
|
CWE-22 CWE-200
Path Traversal Information Exposure
|
CVE-2026-53571
|
2026-06-25 05:44 |
2026-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1580
|
5.3 |
MEDIUM
Network
|
protobufjs_project
|
protobufjs protobufjs-cli
|
protobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 8.6.0 and 7.6.3, protobufjs accepted certain schema-derived names that could collide with properties used by protobuf…
|
CWE-674 CWE-754
Uncontrolled Recursion Improper Check for Unusual or Exceptional Conditions
|
CVE-2026-54269
|
2026-06-25 05:40 |
2026-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|