Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
25534
Total
1899
Critical
7798
High
8005
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-10243 | HIGH | 7.3 | A security vulnerability has been detected in code-projects Smart Parking System 1.0. Affected is an unknown function of the component Admin Endpoint. Such manipulation leads … | Jun 01, 2026 |
| CVE-2026-10242 | MEDIUM | 6.3 | A weakness has been identified in itsourcecode Content Management System 1.0. This impacts an unknown function of the file /instructions.php. This manipulation of the argument … | Jun 01, 2026 |
| CVE-2026-10241 | MEDIUM | 6.3 | A security flaw has been discovered in jeecgboot The server processes these URLs up to 3.9.1. This affects the function FileDownloadUtils.download2DiskFromNet of the file /airag/app/debug … | Jun 01, 2026 |
| CVE-2026-10240 | MEDIUM | 6.3 | A vulnerability was identified in JeecgBoot up to 3.9.2. The impacted element is an unknown function of the file /airag/airagModel/test. The manipulation of the argument … | Jun 01, 2026 |
| CVE-2026-10239 | MEDIUM | 6.3 | A vulnerability was determined in JeecgBoot up to 3.9.2. The affected element is the function WordUtil.addImage of the file /airag/word/edit. Executing a manipulation can lead … | Jun 01, 2026 |
| CVE-2026-10237 | MEDIUM | 4.7 | A vulnerability was found in SourceCodester Water Billing Management System 1.0. Impacted is an unknown function of the file /admin/?page=user/manage_user of the component User Management … | Jun 01, 2026 |
| CVE-2026-10236 | HIGH | 7.3 | A vulnerability has been found in SourceCodester Water Billing Management System 1.0. This issue affects some unknown processing of the file /classes/Users.php?f=save of the component … | Jun 01, 2026 |
| CVE-2026-45192 | MEDIUM | 6.5 | A bug in the GET `/api/v2/connections/{connection_id}` REST API endpoint in Apache Airflow allowed an authenticated UI/API user with Connection-read permission to retrieve secrets stored in … | Jun 01, 2026 |
| CVE-2026-35563 | UNKNOWN | — | It was identified that the LDAP client implementation in version 2.1.7 does not verify if the server certificate matches the intended LDAP hostname. While the … | Jun 01, 2026 |
| CVE-2026-10235 | MEDIUM | 6.3 | A flaw has been found in CodeAstro Ingredients Stock Management System 1.0. This vulnerability affects unknown code of the file /Ingredients-Stock/stock_manager.php. This manipulation of the … | Jun 01, 2026 |
| CVE-2026-10234 | LOW | 3.5 | A vulnerability was detected in Mettle sendportal up to 3.0.1. This affects an unknown part of the file /webview/ of the component Campaign Handler. The … | Jun 01, 2026 |
| CVE-2026-10233 | LOW | 3.3 | A security vulnerability has been detected in Assimp up to 6.0.4. Affected by this issue is the function HL1MDLLoader::read_sequence_infos of the file HL1MDLLoader.cpp of the … | Jun 01, 2026 |
| CVE-2026-10232 | MEDIUM | 5.3 | A weakness has been identified in Assimp up to 6.0.4. Affected by this vulnerability is the function aiNode::~aiNode of the file scene.cpp of the component … | Jun 01, 2026 |
| CVE-2026-10231 | MEDIUM | 5.3 | A security flaw has been discovered in Assimp up to 6.0.4. Affected is the function HL1MDLLoader::extract_anim_value of the file HL1MDLLoader.cpp of the component Half-Life 1 … | Jun 01, 2026 |
| CVE-2026-10230 | MEDIUM | 5.3 | A vulnerability was identified in Assimp up to 6.0.4. This impacts the function Assimp::MDL::HalfLife::HL1MDLLoader::read_animations of the file HL1MDLLoader.cpp of the component Half-Life 1 MDL Loader. … | Jun 01, 2026 |
| CVE-2026-10229 | MEDIUM | 5.3 | A vulnerability was determined in Assimp up to 6.0.4. This affects the function HL1MDLLoader::read_meshes of the file HL1MDLLoader.cpp of the component Half-Life 1 MDL Loader. … | Jun 01, 2026 |
| CVE-2026-10228 | LOW | 3.5 | A vulnerability was found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. The impacted element is an unknown function of the file admission_form_check.php. The manipulation of the … | Jun 01, 2026 |
| CVE-2026-10227 | HIGH | 7.3 | A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. The affected element is an unknown function of the file add_user_check.php of the component … | Jun 01, 2026 |
| CVE-2026-10226 | HIGH | 7.3 | A flaw has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. Impacted is an unknown function of the file delete.php. Executing a manipulation of the … | Jun 01, 2026 |
| CVE-2026-10225 | HIGH | 7.3 | A vulnerability was detected in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. This issue affects some unknown processing of the file login_check.php of the component Login. Performing … | Jun 01, 2026 |
| CVE-2026-10224 | MEDIUM | 5.3 | A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.30. This vulnerability affects the function _handle_webhook_request of the file gateway/platforms/feishu.py of the component … | Jun 01, 2026 |
| CVE-2026-10223 | MEDIUM | 6.3 | A weakness has been identified in NousResearch hermes-agent up to 2026.4.30. This affects the function _scan_memory_content of the file tools/memory_tool.py. This manipulation causes injection. The … | Jun 01, 2026 |
| CVE-2026-10222 | MEDIUM | 5.6 | A security flaw has been discovered in NousResearch hermes-agent up to 2026.4.30. Affected by this issue is the function _sanitize_env_lines of the file hermes_cli/config.py. The … | Jun 01, 2026 |
| CVE-2026-48209 | HIGH | 7.1 | An improper neutralization of user-controllable input in OTRS or ((OTRS)) Community Edition ticket handling allows authenticated attackers to perform reflected cross-site scripting (XSS) attacks via … | Jun 01, 2026 |
| CVE-2026-48208 | MEDIUM | 6.5 | An improper neutralization of active SVG content in OTRS or ((OTRS)) Community Edition ticket article rendering allows attackers to inject specially crafted SVG payloads via … | Jun 01, 2026 |