|
11
|
7.5 |
HIGH
Network
|
pgbouncer
|
pgbouncer
|
A possible null pointer reference in PgBouncer before 1.25.2 could lead to a crash, if a server sends an error response without SQLSTATE field.
Update
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-6666
|
2026-05-15 03:49 |
2026-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
12
|
4.3 |
MEDIUM
Network
|
pgbouncer
|
pgbouncer
|
PgBouncer before 1.25.2 did not perform an appropriate authorization check for the KILL_CLIENT admin command. All users with access to the administration console (which itself requires authorization)…
Update
|
CWE-862
Missing Authorization
|
CVE-2026-6667
|
2026-05-15 03:49 |
2026-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
13
|
3.7 |
LOW
Network
|
apache
|
tomcat
|
Observable Timing Discrepancy vulnerability when comparing AJP secret in Apache Tomcat.
This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M…
New
|
CWE-208
Information Exposure Through Timing Discrepancy
|
CVE-2026-43514
|
2026-05-15 03:46 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
14
|
7.2 |
HIGH
Network
|
arubanetworks
|
arubaos sd-wan
|
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authent…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-44855
|
2026-05-15 03:42 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
15
|
7.2 |
HIGH
Network
|
arubanetworks
|
arubaos sd-wan
|
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authent…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-44856
|
2026-05-15 03:42 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
16
|
7.2 |
HIGH
Network
|
arubanetworks
|
arubaos sd-wan
|
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authent…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-44857
|
2026-05-15 03:42 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
17
|
7.2 |
HIGH
Network
|
arubanetworks
|
arubaos sd-wan
|
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authent…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-44858
|
2026-05-15 03:41 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
18
|
7.2 |
HIGH
Network
|
arubanetworks
|
arubaos sd-wan
|
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authent…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-44859
|
2026-05-15 03:41 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
19
|
7.2 |
HIGH
Network
|
arubanetworks
|
arubaos sd-wan
|
SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 command-line interface and management protocol. An authenticated attacker with adm…
New
|
CWE-89
SQL Injection
|
CVE-2026-44860
|
2026-05-15 03:41 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
20
|
7.2 |
HIGH
Network
|
arubanetworks
|
arubaos sd-wan
|
SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 command-line interface and management protocol. An authenticated attacker with adm…
New
|
CWE-89
SQL Injection
|
CVE-2026-44861
|
2026-05-15 03:41 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|