Common Vulnerabilities and Exposures (CVE)

CVE-2026-8244

May 10, 2026 09:15:07 UTC

A vulnerability was identified in Industrial Application Software IAS Canias ERP 8.03. This impacts an unknown function of the component Login RMI Interface. The manipulation of the argument clientVersion leads to improper authentication. I...

CVE-2026-8243

May 10, 2026 09:00:12 UTC

A vulnerability was determined in Industrial Application Software IAS Canias ERP 8.03. This affects an unknown function of the component JNLP Deployment Endpoint. Executing a manipulation can lead to use of hard-coded cryptographic key . T...

CVE-2026-8242

May 10, 2026 08:15:08 UTC

A vulnerability was found in Industrial Application Software IAS Canias ERP 8.03. The impacted element is the function doAction of the component Login RMI Interface. Performing a manipulation results in observable response discrepancy. The ...

CVE-2026-8241

May 10, 2026 07:45:09 UTC

A vulnerability has been found in Industrial Application Software IAS Canias ERP 8.03. The affected element is the function iasGetServerInfoEvent of the component RMI Interface. Such manipulation leads to improper authorization. The attack ...

CVE-2025-8766

May 10, 2026 07:17:25 UTC

A container privilege escalation flaw was found in certain Multi-Cloud Object Gateway Core images. This issue stems from the /etc/passwd file being created with group-writable permissions during build time. In certain conditions, an attacke...

CVE-2026-45181

May 10, 2026 07:07:20 UTC

Hex-Rays IDA Pro 9.2 and 9.3 before 9.3sp2 does not block Clang dependency-file generation (via argument injection), which allows attackers to place their code into a plugins directory if the victim uses an attacker-supplied .i64 file.

CVE-2026-7270

May 10, 2026 06:55:17 UTC

An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to overwrite adjacent execve(2) argument buffers. The bug may be exploitable by an unprivileged user to obtain superuser...

CVE-2026-45186

May 10, 2026 06:42:10 UTC

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

CVE-2026-8235

May 10, 2026 06:15:10 UTC

A vulnerability was detected in 8421bit MiniClaw 0.8.0/0.9.0. This issue affects the function resolveSkillScriptPath of the file src/kernel.ts of the component System Command Handler. The manipulation results in os command injection. The ex...

CVE-2026-8234

May 10, 2026 06:00:13 UTC

A security vulnerability has been detected in EFM ipTIME A8004T 14.18.2. This vulnerability affects the function formWifiBasicSet of the file /goform/WifiBasicSet. The manipulation of the argument security_5g leads to stack-based buffer ove...

CVE-2026-44927

May 10, 2026 05:46:18 UTC

In uriparser before 1.0.2, there is pointer difference truncation to int in various places.

CVE-2026-44928

May 10, 2026 05:45:32 UTC

In uriparser before 1.0.2, the function family EqualsUri can misclassify two unequal URIs as equal.

CVE-2026-8233

May 10, 2026 05:30:13 UTC

A vulnerability was determined in Dotouch XproUPF 2.0.0-release-088aa7c4. Affected is an unknown function of the component UPF. This manipulation causes improper access controls. A high degree of complexity is needed for the attack. The exp...

CVE-2026-44916

May 10, 2026 05:23:59 UTC

In OpenStack Ironic through 35.x, instance_info['ks_template'] is rendered without sandboxing.

CVE-2026-8232

May 10, 2026 05:15:07 UTC

A vulnerability was found in Dotouch XproUPF 2.0.0-release-088aa7c4. This impacts the function vlib_worker_loop in the library /usr/xpro/upf/tools/libs/libvlib.so of the component UPF Process. The manipulation results in denial of service. ...