Common Vulnerabilities and Exposures (CVE)

CVE-2026-5568

Apr 5, 2026 13:00:17 UTC

A vulnerability has been found in Akaunting up to 3.1.21. This issue affects some unknown processing of the component Invoice/Billing. The manipulation of the argument notes leads to cross site scripting. The attack is possible to be carrie...

CVE-2026-5567

Apr 5, 2026 12:45:14 UTC

A flaw has been found in Tenda M3 1.0.0.10. This vulnerability affects the function setAdvPolicyData of the file /goform/setAdvPolicyData of the component Destination Handler. Executing a manipulation of the argument policyType can lead to ...

CVE-2026-5599

Apr 5, 2026 12:36:27 UTC

A user with API access and "manage users" permission in any venueless world is able to trigger deletion of user accounts in other worlds.

CVE-2026-5566

Apr 5, 2026 12:15:10 UTC

A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This affects the function strcpy of the file /goform/formNatStaticMap. Performing a manipulation of the argument NatBind results in buffer overflow. Remote exploita...

CVE-2026-5565

Apr 5, 2026 12:00:17 UTC

A security vulnerability has been detected in code-projects Simple Laundry System 1.0. Affected by this issue is some unknown functionality of the file /delmemberinfo.php of the component Parameter Handler. Such manipulation of the argument...

CVE-2026-5564

Apr 5, 2026 11:30:12 UTC

A weakness has been identified in code-projects Simple Laundry System 1.0. Affected by this vulnerability is an unknown functionality of the file /searchguest.php of the component Parameter Handler. This manipulation of the argument searchS...

CVE-2026-5563

Apr 5, 2026 11:15:47 UTC

A security flaw has been discovered in AutohomeCorp frostmourne up to 1.0. Affected is the function httpTest of the file /api/monitor-api/alarm/previewData of the component Alarm Preview. The manipulation results in sql injection. The attac...

CVE-2026-5562

Apr 5, 2026 11:00:17 UTC

A vulnerability was identified in provectus kafka-ui up to 0.7.2. This impacts the function validateAccess of the file /api/smartfilters/testexecutions of the component Endpoint. The manipulation leads to code injection. The attack can be i...

CVE-2026-5561

Apr 5, 2026 10:45:13 UTC

A vulnerability was determined in Campcodes Complete POS Management and Inventory System up to 4.0.6. This affects an unknown function of the file app/Http/Controllers/SettingsController.php of the component Environment Variable Handler. Ex...

CVE-2026-5560

Apr 5, 2026 10:30:12 UTC

A vulnerability was found in PHPGurukul Online Shopping Portal Project 2.1. The impacted element is an unknown function of the file /payment-method.php of the component Parameter Handler. Performing a manipulation of the argument paymethod ...

CVE-2026-5559

Apr 5, 2026 10:15:15 UTC

A vulnerability has been found in AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha. The affected element is the function _is_safe_ast of the file sandbox.py of the component AST Validation. Such manipulation leads to improper neutralization o...

CVE-2026-5558

Apr 5, 2026 10:00:16 UTC

A flaw has been found in PHPGurukul PHPGurukul Online Shopping Portal Project up to 2.1. Impacted is an unknown function of the file /pending-orders.php of the component Parameter Handler. This manipulation of the argument ID causes sql inj...

CVE-2026-5557

Apr 5, 2026 09:45:15 UTC

A vulnerability was detected in badlogic pi-mono up to 0.58.4. This issue affects some unknown processing of the file packages/mom/src/slack.ts of the component pi-mom Slack Bot. The manipulation results in authentication bypass using alter...

CVE-2026-5556

Apr 5, 2026 09:30:15 UTC

A security vulnerability has been detected in badlogic pi-mono up to 0.58.4. This vulnerability affects the function discoverAndLoadExtensions of the file packages/coding-agent/src/core/extensions/loader.ts. The manipulation leads to code i...

CVE-2026-5555

Apr 5, 2026 09:15:11 UTC

A weakness has been identified in code-projects Concert Ticket Reservation System 1.0. This affects an unknown part of the file /ConcertTicketReservationSystem-master/login.php of the component Parameter Handler. Executing a manipulation of...