|
181
|
8.8 |
HIGH
Network
|
accellion
|
kiteworks
|
Kiteworks is a private data network (PDN). Prior to version 9.3.0,ultiple SQL Injection vulnerabilities in Kiteworks Secure Data Forms could be exploited by an authenticated attacker with the FormBui…
New
|
CWE-89
SQL Injection
|
CVE-2026-24782
|
2026-06-4 00:16 |
2026-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
182
|
9.8 |
CRITICAL
Network
|
trendnet
|
tew-432brp_firmware
|
A vulnerability has been found in TRENDnet TEW-432BRP 3.10B20. This impacts the function formSetRoute of the file /goform/formSetRoute. The manipulation of the argument ip/mask/gateway leads to comma…
Update
|
CWE-74 CWE-77
Injection Command Injection
|
CVE-2026-10060
|
2026-06-3 23:39 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
183
|
9.8 |
CRITICAL
Network
|
trendnet
|
tew-432brp_firmware
|
A vulnerability was found in TRENDnet TEW-432BRP 3.10B20. Affected is the function formWPS of the file /goform/formWPS. The manipulation of the argument peerPin results in command injection. The atta…
Update
|
CWE-74 CWE-77
Injection Command Injection
|
CVE-2026-10061
|
2026-06-3 23:36 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
184
|
7.8 |
HIGH
Local
|
google
|
android
|
In multiple locations, there is a possible way to reset user-selected permissions selections due to a permissions bypass. This could lead to local escalation of privilege with no additional execution…
New
|
CWE-693
Protection Mechanism Failure
|
CVE-2025-48649
|
2026-06-3 23:35 |
2026-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
185
|
6.8 |
MEDIUM
Physics
|
opensc_project
|
opensc
|
OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in piv_process_history() in src/libopensc/card-piv.c that allows physically present attackers to trig…
Update
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-40510
|
2026-06-3 23:30 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
186
|
7.8 |
HIGH
Local
|
opensc_project
|
opensc
|
OpenSC before 0.27.0, fixed in commit 0358817, contains a stack and heap buffer overrun vulnerability in the do_key_value() function in src/pkcs15init/profile.c that allows attackers to corrupt memor…
Update
|
CWE-121 CWE-122
Stack-based Buffer Overflow Heap-based Buffer Overflow
|
CVE-2026-40528
|
2026-06-3 23:28 |
2026-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
187
|
7.8 |
HIGH
Local
|
google
|
android
|
In startAnimation of StageCoordinator.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution priv…
New
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2026-0036
|
2026-06-3 23:21 |
2026-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
188
|
9.8 |
CRITICAL
Network
|
trendnet
|
tew-432brp_firmware
|
A vulnerability was determined in TRENDnet TEW-432BRP 3.10B20. Affected by this vulnerability is the function formSetRoute of the file /goform/formSetRoute. This manipulation of the argument ip/mask/…
Update
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-10062
|
2026-06-3 23:21 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
189
|
7.8 |
HIGH
Local
|
google
|
android
|
In bta_jv_rfcomm_connect of bta_jv_act.cc, there is a possible bypass of bonding for a secure connection due to a logic error in the code. This could lead to local escalation of privilege with no add…
New
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-0045
|
2026-06-3 23:21 |
2026-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190
|
9.8 |
CRITICAL
Network
|
trendnet
|
tew-432brp_firmware
|
A vulnerability was identified in TRENDnet TEW-432BRP 3.10B20. Affected by this issue is the function formWPS of the file /goform/formWPS. Such manipulation of the argument peerPin leads to stack-bas…
Update
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2026-10063
|
2026-06-3 23:17 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|