Common Vulnerabilities and Exposures (CVE)

CVE-2026-94954

Sep 29, 2026 17:54:45 UTC

A stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. It is reachable through the route /boafrm/formFilter (access-control / URL filter configuration handle...

CVE-2026-97897

Sep 29, 2026 17:54:15 UTC

A security flaw has been discovered in Krayin laravel-crm up to 2.2.5. This issue affects some unknown processing of the file Sanitizer.php of the component TinyMCE Media Upload. The manipulation results in cross site scripting. The attack ...

CVE-2026-84436

Sep 29, 2026 17:53:14 UTC

IBM Guardium Data Protection 12.2 is vulnerable to command injection in the certificate export CLI functionality, allowing a privileged authenticated CLI user to execute arbitrary commands with root privileges.

CVE-2026-102726

Sep 29, 2026 17:51:48 UTC

Unbounded PPP IPCP Option Parsing Causes a Worker Stall and Out-of-bounds Read

CVE-2026-100304

Sep 29, 2026 17:51:07 UTC

TDuck survey form 6.0 contains an information disclosure vulnerability in FormAuthUtils.hasPermission that fails open when a form does not exist, allowing authenticated users to access deleted form submissions. Attackers can read orphaned s...

CVE-2026-84440

Sep 29, 2026 17:51:03 UTC

IBM Guardium Data Protection 12.2 is vulnerable to command injection in the SNMP alert notification functionality. An authenticated attacker who can influence policy alert text can cause attacker-controlled data to be executed as operating ...

CVE-2026-102725

Sep 29, 2026 17:51:03 UTC

Out-of-bounds Read from Unvalidated MSRP Attribute List Length

CVE-2026-102724

Sep 29, 2026 17:49:52 UTC

NULL Pointer Dereference When Evicting the Sole MSRP Attribute

CVE-2026-102811

Sep 29, 2026 17:49:37 UTC

Marmite through 0.4.2 contains missing authentication in the development server endpoints /__marmite__/content, /__marmite__/config, and /__marmite__/file/, allowing unauthenticated attackers to create, modify, and overwrite site content an...

CVE-2026-100372

Sep 29, 2026 17:49:00 UTC

ClipBucket v5 before 5.5.3-#197 contains a path traversal vulnerability in the admin template editor that allows authenticated administrators to overwrite PHP files by supplying directory traversal sequences in the folder parameter. Attacke...

CVE-2026-102723

Sep 29, 2026 17:48:42 UTC

NULL Pointer Dereference on MSRP Attribute Table Exhaustion

CVE-2026-84842

Sep 29, 2026 17:48:01 UTC

IBM Guardium Data Protection 12.2 is vulnerable to path traversal and arbitrary file deletion in the Datasource REST component. An authenticated remote attacker could exploit this vulnerability to delete files and potentially cause denial o...

CVE-2026-102722

Sep 29, 2026 17:47:56 UTC

In the IPv4 PASV path, the FTP Client accepts whatever address was sent in the server's `227` reply. Validation only covers the parse and the non-zero values, thus a malicious server can name any address and direct the Client there.

CVE-2026-102242

Sep 29, 2026 17:47:16 UTC

Improper link resolution (CWE-59 / CWE-22) in the allowedLocalRoots path validation in Google MCP Toolbox for Databases versions 1.2.0 through 1.9.0 allows a remote authenticated attacker with tool execution permissions to bypass directory ...

CVE-2026-102721

Sep 29, 2026 17:47:12 UTC

A TFTP server that answers with a short ERROR packet makes the client read up to 64 bytes past the received datagram. Each receive path checks only that the datagram is at least four bytes long (nxd_tftp_client.c:1229, 1521, 1984)....