|
471
|
8.8 |
HIGH
Network
|
-
|
-
|
A security vulnerability has been detected in Edimax BR-6675nD 1.12. Affected is the function formL2TPSetup of the file /goform/formL2TPSetup of the component POST Request Handler. Such manipulation …
|
CWE-119 CWE-120
Incorrect Access of Indexable Resource ('Range Error') Classic Buffer Overflow
|
CVE-2026-9380
|
2026-05-24 22:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
472
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A weakness has been identified in Edimax BR-6675nD 1.12. This impacts the function formWpsStart of the file /goform/formWpsStart of the component POST Request Handler. This manipulation of the argume…
|
CWE-74 CWE-77
Injection Command Injection
|
CVE-2026-9379
|
2026-05-24 21:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
473
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A security flaw has been discovered in Edimax BR-6675nD 1.12. This affects the function formHwSet of the file /goform/formHwSet of the component POST Request Handler. The manipulation of the argument…
|
CWE-74 CWE-77
Injection Command Injection
|
CVE-2026-9378
|
2026-05-24 21:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
474
|
2.4 |
LOW
Network
|
-
|
-
|
A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of the file /admin/productedit.php. The manipulation of the argument productName …
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2026-9377
|
2026-05-24 21:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
475
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was determined in JPress up to 1.0.3. The affected element is an unknown function of the file /ucenter/article/doWriteSave of the component UCenter Article Submission Endpoint. Execut…
|
CWE-266 CWE-285
Incorrect Privilege Assignment Improper Authorization
|
CVE-2026-9376
|
2026-05-24 20:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
476
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.9.2. Impacted is the function FileUploadUtils.upload of the file /common/upload of the component Common Upload Endpoint. Performing a mani…
|
CWE-284 CWE-434
Improper Access Control Unrestricted Upload of File with Dangerous Type
|
CVE-2026-9374
|
2026-05-24 20:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
477
|
3.7 |
LOW
Network
|
-
|
-
|
A vulnerability has been found in JeecgBoot 3.9.1. This issue affects some unknown processing of the file /openapi/call/ of the component OpenAPI Endpoint. Such manipulation leads to improper authent…
|
CWE-287
Improper Authentication
|
CVE-2026-9373
|
2026-05-24 20:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
478
|
7.3 |
HIGH
Network
|
-
|
-
|
A flaw has been found in ItzCrazyKns Vane up to 1.12.1. This vulnerability affects unknown code of the file src/app/api/providers/route.ts of the component Model Provider API. This manipulation of th…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-9372
|
2026-05-24 20:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
479
|
5.6 |
MEDIUM
Network
|
-
|
-
|
A security vulnerability has been detected in ItzCrazyKns Vane up to 1.12.1. Affected by this issue is some unknown functionality of the file route.ts of the component API. The manipulation leads to …
|
CWE-287 CWE-306
Improper Authentication Missing Authentication for Critical Function
|
CVE-2026-9371
|
2026-05-24 19:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
480
|
3.7 |
LOW
Network
|
-
|
-
|
A weakness has been identified in ulisesbocchio jasypt-spring-boot up to 3.0.5/4.0.4. Affected by this vulnerability is the function getSecretKeySaltGenerator of the file jasypt-spring-boot/src/main/…
|
CWE-759 CWE-760
Use of a One-Way Hash without a Salt Use of a One-Way Hash with a Predictable Salt
|
CVE-2026-9370
|
2026-05-24 19:16 |
2026-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|