|
2111
|
6.1 |
MEDIUM
Network
|
dragonexpert
|
recent_threads_on_index
|
MyBB Recent threads 17.0 contains a persistent cross-site scripting vulnerability that allows attackers to inject malicious scripts by creating threads with crafted subject lines. Attackers can creat…
|
CWE-79
Cross-site Scripting
|
CVE-2018-25309
|
2026-05-2 04:15 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2112
|
7.4 |
HIGH
Network
|
skim-rs
|
skim
|
Skim is a fuzzy finder designed to through files, lines, and commands. The generate-files job in .github/workflows/pr.yml checks out attacker-controlled fork code and executes it via cargo run, with …
|
CWE-94
Code Injection
|
CVE-2026-41414
|
2026-05-2 04:03 |
2026-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2113
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-6868
|
2026-05-2 04:01 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2114
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
UDS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2026-7375
|
2026-05-2 04:00 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2115
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
Crash in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-7378
|
2026-05-2 03:55 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2116
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
Memory leak in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2026-7379
|
2026-05-2 03:41 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2117
|
7.5 |
HIGH
Network
|
libsndfile_project
|
libsndfile
|
An issue was discovered in libsndfile 1.2.2 IMA ADPCM codec. The AIFF code path (line 241) was fixed with (sf_count_t) cast, but the WAV code path (line 235) and close path (line 167) were not. When …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-37555
|
2026-05-2 03:37 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2118
|
5.5 |
MEDIUM
Local
|
wireshark
|
wireshark
|
SANE protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2026-6531
|
2026-05-2 03:16 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2119
|
5.5 |
MEDIUM
Local
|
wireshark
|
wireshark
|
Kismet protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
|
CWE-126
Buffer Over-read
|
CVE-2026-6532
|
2026-05-2 03:16 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2120
|
5.5 |
MEDIUM
Local
|
wireshark
|
wireshark
|
Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
|
CWE-1325
Improperly Controlled Sequential Memory Allocation
|
CVE-2026-6533
|
2026-05-2 03:16 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|