|
141
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
New
|
-
|
CVE-2026-16312
|
2026-07-21 02:17 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
142
|
9.4 |
CRITICAL
Network
|
-
|
-
|
A flaw was found in the Konnectivity proxy-server configuration for hosted control planes. The agent-facing listener was started without --cluster-ca-cert (and without token-based agent authenticatio…
New
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-16242
|
2026-07-21 02:17 |
2026-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
143
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of the file /edit_room1.php. Executing a manip…
New
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-16154
|
2026-07-21 02:17 |
2026-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
144
|
4.4 |
MEDIUM
Local
|
-
|
-
|
A vulnerability was identified in nearai ironclaw up to 0.29.1. The affected element is the function validate_path of the file src/tools/builtin/path_utils.rs of the component write_file. The manipul…
Update
|
CWE-59
Link Following
|
CVE-2026-16130
|
2026-07-21 02:17 |
2026-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
145
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.15.0-beta.32. This affects the function CheckSSRF/isPrivateIP of the file internal/tools/web_shared.go of the component w…
Update
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-16124
|
2026-07-21 02:17 |
2026-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
146
|
8.8 |
HIGH
Network
|
-
|
-
|
OpenPLC_v3 contains a heap-based buffer overflow in the getData() function in webserver/core/modbus_master.cpp. getData() reads characters between two delimiters into a caller-supplied buffer with no…
Update
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-11826
|
2026-07-21 02:17 |
2026-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
147
|
8.8 |
HIGH
Network
|
-
|
-
|
LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to blind SQL injection in the ComparisonServlet component, allowing authenticated user to manipulate SQL queries via crafted input.
Update
|
CWE-89
SQL Injection
|
CVE-2025-45868
|
2026-07-21 02:17 |
2026-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
148
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 windows_server_2019<…
|
Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally.
Update
|
CWE-125
Out-of-bounds Read
|
CVE-2026-58609
|
2026-07-21 02:16 |
2026-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
149
|
7.5 |
HIGH
Network
|
-
|
-
|
IBM PowerVM Novalink are vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume memory res…
Update
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-9171
|
2026-07-21 02:15 |
2026-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
150
|
8.1 |
HIGH
Network
|
-
|
-
|
IBM Storage Protect Client 8.1.0.0 through 8.1.27.0, 8.1.27.1, and 8.2.0.0 through 8.2.1.0 IBM Storage Protect is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A rem…
Update
|
-
|
CVE-2026-13473
|
2026-07-21 02:15 |
2026-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|