|
131
|
- |
|
-
|
-
|
libvips is a fast image processing library with low memory needs. The EXIF decoder within libvips versions before and including 8.18.1 was not verifying the range of EXIF tag groups before passing da…
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-35590
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
132
|
6.5 |
MEDIUM
Network
|
-
|
-
|
NanoMQ contains a protocol-semantics flaw in its MQTT v5 `SUBSCRIBE` handling: if a subscription entry is missing the final 1-byte `Subscription Options` field, the broker may still accept the malfor…
New
|
CWE-125
Out-of-bounds Read
|
CVE-2026-35217
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
133
|
- |
|
-
|
-
|
libvips is a fast image processing library with low memory needs. On 32-bit systems in versions before and including 8.18.0, the `gifload` operation could incorrectly determine dimensions leading to …
New
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-33328
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
134
|
- |
|
-
|
-
|
libvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly determine image dimensions leading to an integer o…
New
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-33327
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
135
|
7.3 |
HIGH
Network
|
-
|
-
|
dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…
New
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2026-32825
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
136
|
4.3 |
MEDIUM
Network
|
-
|
-
|
dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…
New
|
CWE-352
Origin Validation Error
|
CVE-2026-32823
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
137
|
7.5 |
HIGH
Network
|
-
|
-
|
dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…
New
|
CWE-22
Path Traversal
|
CVE-2026-32820
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
138
|
4.3 |
MEDIUM
Network
|
-
|
-
|
dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…
New
|
CWE-285
Improper Authorization
|
CVE-2026-32819
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
139
|
7.5 |
HIGH
Network
|
-
|
-
|
dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before an…
New
|
CWE-285
Improper Authorization
|
CVE-2026-32807
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
140
|
8.8 |
HIGH
Network
|
-
|
-
|
Parsec is a cloud-based application for simple and cryptographically secure file sharing. The application does not sanitize the workspace name, creating a vulnerability if that workspace name is a UN…
New
|
CWE-40
Path Traversal: '\\UNC\share\name\' (Windows UNC Share)
|
CVE-2026-25039
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|