|
361
|
7.3 |
HIGH
Network
|
-
|
-
|
A weakness has been identified in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. The impacted element is an unknown function of the file /success.php. This manipul…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-9469
|
2026-05-26 01:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
362
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A security flaw has been discovered in dazeb cline-mcp-memory-bank up to 55c81b9cf6c16700983c84dc4cdea3cafa19a75f. The affected element is the function handleInitializeMemoryBank of the file src/inde…
New
|
CWE-22
Path Traversal
|
CVE-2026-9468
|
2026-05-26 01:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
363
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was identified in debugmcp mcp-debugger up to 0.20.0. Impacted is the function handleGetSourceContext of the file src/server.ts. The manipulation leads to path traversal. The attack i…
New
|
CWE-22
Path Traversal
|
CVE-2026-9467
|
2026-05-26 01:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
364
|
5.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was determined in Tiandy Easy7 Integrated Management Platform 7.17.0. This issue affects some unknown processing of the file /rest/user/updateUserPassword of the component API Endpoin…
New
|
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2026-9466
|
2026-05-26 01:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
365
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability was found in Tiandy Easy7 Integrated Management Platform 7.17.0. This vulnerability affects unknown code of the file /Easy7/apps/WebService/GetDBDataEx.jsp. Performing a manipulation …
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-9465
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
366
|
4.7 |
MEDIUM
Network
|
-
|
-
|
A vulnerability has been found in YunaiV yudao-cloud 2026.03. This affects the function IotDataSinkHttpConfig of the file /admin-api/iot/data-sink/create of the component Admin API Endpoint. Such man…
New
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-9464
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
367
|
8.8 |
HIGH
Network
|
-
|
-
|
A flaw has been found in Edimax EW-7438RPn 1.31. Affected by this issue is the function formLicence of the file /goform/formLicence. This manipulation of the argument submit-url causes stack-based bu…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-9463
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
368
|
8.8 |
HIGH
Network
|
-
|
-
|
A vulnerability was detected in Edimax EW-7438RPn 1.31. Affected by this vulnerability is the function formWpsProxyEnable of the file /goform/formWpsProxyEnable. The manipulation of the argument subm…
New
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-9462
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
369
|
- |
|
-
|
-
|
Firefox for iOS displayed specially crafted right-to-left (RTL) and internationalized domain names (IDNs) incorrectly in link preview UI surfaces. A crafted RTL hostname could visually reorder portio…
New
|
-
|
CVE-2026-9078
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
370
|
7.1 |
HIGH
Network
|
-
|
-
|
Joomla Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through multiple filter parameters. Attackers can injec…
New
|
CWE-89
SQL Injection
|
CVE-2018-25381
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|