|
261
|
9.1 |
CRITICAL
Network
|
-
|
-
|
There is an authentication bypass vulnerability in the NI SystemLink Enterprise Dashboard application that may allow an unauthenticated remote attacker to bypass authentication controls leading to pr…
New
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-9051
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
262
|
5.3 |
MEDIUM
Network
|
-
|
-
|
liboqs is a C-language cryptographic library that provides implementations of post-quantum cryptography algorithms. Prior to 0.16.0, an out-of-bounds read has been identified in the XMSS and XMSS^MT …
New
|
CWE-125
Out-of-bounds Read
|
CVE-2026-46344
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
263
|
5.4 |
MEDIUM
Adjacent
|
-
|
-
|
Danelec MacGregor Voyage Data Recorder
passwords are stored with a hashing method which limits password length and is susceptible to brute force attacks.
New
|
CWE-916
Use of Password Hash With Insufficient Computational Effort
|
CVE-2026-44611
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264
|
5.3 |
MEDIUM
Network
|
-
|
-
|
liboqs is a C-language cryptographic library that provides implementations of post-quantum cryptography algorithms. Prior to 0.16.0, an out-of-bounds read has been identified in the XMSS and XMSS^MT …
New
|
CWE-20 CWE-125
Improper Input Validation Out-of-bounds Read
|
CVE-2026-44518
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265
|
5.4 |
MEDIUM
Adjacent
|
-
|
-
|
An authenticated
user can download a backup of the Danelec MacGregor Voyage Data Recorder
device which includes account data and password hashes.
New
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2026-42951
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266
|
8.3 |
HIGH
Adjacent
|
-
|
-
|
The Danelec MacGregor Voyage Data Recorder
device includes a default username and password, with no enforced password change.
New
|
CWE-1392
Use of Default Credentials
|
CVE-2026-42941
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267
|
8.3 |
HIGH
Adjacent
|
-
|
-
|
Danelec MacGregor Voyage Data Recorder
includes default accounts with hard-coded credentials.
New
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2026-42929
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268
|
5.7 |
MEDIUM
Adjacent
|
-
|
-
|
The administrator account for the
Danelec MacGregor Voyage Data Recorder
web interface can directly edit sensitive files related to authentication, potentially changing the root password.
New
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2026-40425
|
2026-05-30 04:16 |
2026-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269
|
7.5 |
HIGH
Network
|
tanium
|
server
|
Tanium addressed a denial of service vulnerability in Tanium Server.
Update
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2026-9156
|
2026-05-30 04:16 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270
|
7.8 |
HIGH
Local
|
synology
|
beedrive
|
Uncontrolled search path element vulnerability in OpenSSL DLL component in Synology BeeDrive for desktop before 1.3.2-13814 allows local users to execute arbitrary code via unspecified vectors.
Update
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2023-52945
|
2026-05-30 04:13 |
2026-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|