|
901
|
- |
|
-
|
-
|
Insufficient input validation in NETGEAR JR6150 (AC750 WiFi Router 802.11ac Dual Band Gigabit released in 2014) allows users connected to the local WiFi Networks to execute operating system commands.…
Update
|
CWE-20
Improper Input Validation
|
CVE-2026-0419
|
2026-06-11 02:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
902
|
- |
|
-
|
-
|
Insufficient configuration management in the listed devices allows authenticated administrators connected to the local network
to tamper with the system.
Update
|
CWE-15
External Control of System or Configuration Setting
|
CVE-2026-0418
|
2026-06-11 02:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
903
|
4.0 |
MEDIUM
Network
|
-
|
-
|
Dräger Atlan A350 versions 1.00 up to and including 1.01 contains an improper input handling vulnerability that allows attackers to cause a denial of service by sending specifically crafted non-Medib…
Update
|
CWE-1286
Improper Validation of Syntactic Correctness of Input
|
CVE-2021-4479
|
2026-06-11 02:16 |
2026-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
904
|
7.9 |
HIGH
Local
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
Update
|
CWE-1329
Reliance on Component That is Not Updateable
|
CVE-2026-48573
|
2026-06-11 02:15 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
905
|
6.8 |
MEDIUM
Physics
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
Update
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-50507
|
2026-06-11 01:33 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
906
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Silverpeas through 6.4.6 mishandles the "Personal space" feature that is selected when no componentId is set.
New
|
CWE-36
Absolute Path Traversal
|
CVE-2026-53698
|
2026-06-11 01:17 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
907
|
- |
|
-
|
-
|
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Nomachine allows Argument Injection.This issue affects Nomachine: before 9.5.7, before 8.23.2.
New
|
CWE-88
Argument Injection
|
CVE-2026-53694
|
2026-06-11 01:17 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
908
|
- |
|
-
|
-
|
A stored cross-site scripting vulnerability existed in MISP BSimVis tag rendering code. Several client-side rendering paths interpolated tag names, collection names, entity identifiers, cluster names…
New
|
CWE-79 CWE-116
Cross-site Scripting Improper Encoding or Escaping of Output
|
CVE-2026-53693
|
2026-06-11 01:17 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
909
|
9.6 |
CRITICAL
Network
|
-
|
-
|
A flaw was found in migration-planner. The agent-API middleware processes JSON Web Tokens (JWTs) for authentication, but its UpdateSourceInventory and UpdateAgentStatus handlers fail to validate the …
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-53471
|
2026-06-11 01:17 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
910
|
- |
|
-
|
-
|
Stack-based Buffer Overflow vulnerability in Erlang OTP (erl_interface) allows Stack-based Buffer Overflow.
This vulnerability is associated with program file lib/erl_interface/src/misc/ei_printterm…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-49760
|
2026-06-11 01:17 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|