|
4511
|
8.4 |
HIGH
Local
|
-
|
-
|
Permission control vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availability.
|
CWE-362
Race Condition
|
CVE-2026-41964
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4512
|
5.6 |
MEDIUM
Network
|
-
|
-
|
Use-After-Free (UAF) vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availability.
|
CWE-840
Business Logic Errors
|
CVE-2026-41965
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4513
|
5.6 |
MEDIUM
Network
|
-
|
-
|
Permission control vulnerability in the smart sensing service. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
CWE-840
Business Logic Errors
|
CVE-2026-41966
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4514
|
5.9 |
MEDIUM
Local
|
-
|
-
|
Permission control vulnerability in the manufacturability design module. Impact: Successful exploitation of this vulnerability may affect availability.
|
CWE-840
Business Logic Errors
|
CVE-2026-41967
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4515
|
5.9 |
MEDIUM
Local
|
-
|
-
|
Permission control vulnerability in the manufacturability design module. Impact: Successful exploitation of this vulnerability may affect availability.
|
CWE-840
Business Logic Errors
|
CVE-2026-41968
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4516
|
6.2 |
MEDIUM
Physics
|
-
|
-
|
Permission control vulnerability in the projection module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
CWE-275
Permission Issues
|
CVE-2026-41969
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4517
|
6.8 |
MEDIUM
Adjacent
|
-
|
-
|
Out-of-bounds write vulnerability in the distributed file system module. Impact: Successful exploitation of this vulnerability may affect availability.
|
CWE-787
Out-of-bounds Write
|
CVE-2026-41970
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4518
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Permission control vulnerability in the security control module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
CWE-840
Business Logic Errors
|
CVE-2026-41971
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4519
|
8.3 |
HIGH
Network
|
pyload-ng_project
|
pyload-ng
|
pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the set_config_value() API method (@permission(Perms.SETTINGS)) in src/pyload/core/api/__init__.py gates …
|
CWE-441 CWE-863 CWE-918
Confused Deputy Incorrect Authorization Server-Side Request Forgery (SSRF)
|
CVE-2026-42313
|
2026-05-15 23:04 |
2026-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4520
|
6.7 |
MEDIUM
Local
|
fortinet
|
fortiap fortiap-u fortiap-w2
|
An improper neutralization of special elements used in an OS command ("OS Command Injection") vulnerability [CWE-78] vulnerability in Fortinet FortiAP 7.6.0 through 7.6.2, FortiAP 7.4.0 through 7.4.5…
|
CWE-78
OS Command
|
CVE-2025-53680
|
2026-05-15 23:04 |
2026-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|