Fri, Nov 07 · 08:15 PM CSTCVE-2025-10230
10.0/10 · Must read/watchNVDvuln
Summary
A flaw was found in Samba, in the front-end WINS hook handling: NetBIOS names from registration packets are passed to a shell without proper validation or escaping. Unsanitized NetBIOS name data from WINS registration packets are inserted into a shell command and executed by the Samba Active Directory Domain Controller
CVECVE-2025-10230
SeverityCRITICAL
TypeUPDATED
PublishedFri, Nov 07 · 08:15 PM CST
ModifiedMon, Aug 31 · 12:17 PM CDT
Thu, Apr 09 · 03:16 PM CDTCVE-2025-62718
9.9/10 · Must read/watchNVDvuln
Summary
Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.0 and 0.31.0, Axios does not correctly handle hostname normalization when checking NO_PROXY rules. Requests to loopback addresses like localhost. (with a trailing dot) or [::1] (IPv6 literal) skip NO_PROXY matching and go through the config
CVECVE-2025-62718
SeverityCRITICAL
TypeUPDATED
PublishedThu, Apr 09 · 03:16 PM CDT
ModifiedMon, Aug 31 · 01:17 PM CDT
Wed, May 26 · 07:15 PM CDTCVE-2019-25029
9.8/10 · Must read/watchNVDvuln
Summary
In Versa Director, the command injection is an attack in which the goal is execution of arbitrary commands on the host operating system via a vulnerable application. Command injection attacks are possible when an application passes unsafe user supplied data (forms, cookies, HTTP headers etc.) to a system shell. In this
CVECVE-2019-25029
SeverityCRITICAL
TypeUPDATED
PublishedWed, May 26 · 07:15 PM CDT
ModifiedMon, Aug 31 · 06:08 PM CDT
Wed, Mar 18 · 12:16 AM CDTCVE-2026-27459
9.8/10 · Must read/watchNVDvuln
Summary
pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values t
CVECVE-2026-27459
SeverityCRITICAL
TypeUPDATED
PublishedWed, Mar 18 · 12:16 AM CDT
ModifiedMon, Aug 31 · 01:17 PM CDT
Fri, Mar 06 · 07:16 PM CSTCVE-2026-29063
9.8/10 · Must read/watchNVDvuln
Summary
Immutable.js provides many Persistent Immutable data structures. Prior to versions 3.8.3, 4.3.7, and 5.1.5, Prototype Pollution is possible in immutable via the mergeDeep(), mergeDeepWith(), merge(), Map.toJS(), and Map.toObject() APIs. This issue has been patched in versions 3.8.3, 4.3.7, and 5.1.5.
CVECVE-2026-29063
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 06 · 07:16 PM CST
ModifiedMon, Aug 31 · 01:17 PM CDT
Fri, Mar 20 · 11:16 PM CDTCVE-2026-33228
9.8/10 · Must read/watchNVDvuln
Summary
flatted is a circular JSON parser. Prior to version 3.4.2, the parse() function in flatted can use attacker-controlled string values from the parsed JSON as direct array index keys, without validating that they are numeric. Since the internal input buffer is a JavaScript Array, accessing it with the key "__proto__" ret
CVECVE-2026-33228
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 20 · 11:16 PM CDT
ModifiedMon, Aug 31 · 01:17 PM CDT
Fri, Mar 27 · 09:17 PM CDTCVE-2026-33937
9.8/10 · Must read/watchNVDvuln
Summary
Handlebars provides the power necessary to let users build semantic templates. In versions 4.0.0 through 4.7.8, `Handlebars.compile()` accepts a pre-parsed AST object in addition to a template string. The `value` field of a `NumberLiteral` AST node is emitted directly into the generated JavaScript without quoting or sa
CVECVE-2026-33937
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 27 · 09:17 PM CDT
ModifiedMon, Aug 31 · 01:18 PM CDT
Mon, Jun 16 · 04:15 PM CDTCVE-2025-49794
9.1/10 · Must read/watchNVDvuln
Summary
A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circumstances when the XML schematron has the schema elements. This flaw allows a malicious actor to craft a malicious XML document used as input for libxml, resulting in the program's crash using libxml or
CVECVE-2025-49794
SeverityCRITICAL
TypeUPDATED
PublishedMon, Jun 16 · 04:15 PM CDT
ModifiedMon, Aug 31 · 05:17 PM CDT
Mon, Jun 16 · 04:15 PM CDTCVE-2025-49796
9.1/10 · Must read/watchNVDvuln
Summary
A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other possible undefined behavior due to sensitive
CVECVE-2025-49796
SeverityCRITICAL
TypeUPDATED
PublishedMon, Jun 16 · 04:15 PM CDT
ModifiedMon, Aug 31 · 05:17 PM CDT
Tue, Jan 27 · 04:16 PM CSTCVE-2026-24874
9.1/10 · Must read/watchNVDvuln
Summary
Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in themrdemonized xray-monolith.This issue affects xray-monolith: before 2025.12.30.
CVECVE-2026-24874
SeverityCRITICAL
TypeUPDATED
PublishedTue, Jan 27 · 04:16 PM CST
ModifiedMon, Aug 31 · 01:17 PM CDT
Fri, Mar 20 · 11:16 PM CDTCVE-2026-33186
9.1/10 · Must read/watchNVDvuln
Summary
gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an authorization bypass resulting from improper input validation of the HTTP/2 `:path` pseudo-header. The gRPC-Go server was too lenient in its routing logic, accepting requests where the `:path` omitted the mandatory leading slash (e.g.,
CVECVE-2026-33186
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 20 · 11:16 PM CDT
ModifiedMon, Aug 31 · 01:17 PM CDT
Thu, Oct 09 · 02:15 PM CDTCVE-2025-11561
8.8/10 · Worth your timeNVDvuln
Summary
A flaw was found in the integration of Active Directory and the System Security Services Daemon (SSSD) on Linux systems. In default configurations, the Kerberos local authentication plugin (sssd_krb5_localauth_plugin) is enabled, but a fallback to the an2ln plugin is possible. This fallback allows an attacker with perm
CVECVE-2025-11561
SeverityHIGH
TypeUPDATED
PublishedThu, Oct 09 · 02:15 PM CDT
ModifiedMon, Aug 31 · 05:17 PM CDT
Wed, Jan 22 · 05:15 AM CSTCVE-2024-11218
8.6/10 · Worth your timeNVDvuln
Summary
A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 and a race condition when building a malicious Containerfile. SELinux might mitigate it, but even with SELinux on, it still allows the enumeration of files and directories on the host.
CVECVE-2024-11218
SeverityHIGH
TypeUPDATED
PublishedWed, Jan 22 · 05:15 AM CST
ModifiedMon, Aug 31 · 05:17 PM CDT
Tue, May 14 · 03:42 PM CDTCVE-2024-3727
8.3/10 · Worth your timeNVDvuln
Summary
A flaw was found in the github.com/containers/image library. This flaw allows attackers to trigger unexpected authenticated registry accesses on behalf of a victim user, causing resource exhaustion, local path traversal, and other attacks.
CVECVE-2024-3727
SeverityHIGH
TypeUPDATED
PublishedTue, May 14 · 03:42 PM CDT
ModifiedMon, Aug 31 · 06:17 PM CDT
Tue, Jun 24 · 02:15 PM CDTCVE-2025-6032
8.3/10 · Worth your timeNVDvuln
Summary
A flaw was found in Podman. The podman machine init command fails to verify the TLS certificate when downloading the VM images from an OCI registry. This issue results in a Man In The Middle attack.
CVECVE-2025-6032
SeverityHIGH
TypeUPDATED
PublishedTue, Jun 24 · 02:15 PM CDT
ModifiedMon, Aug 31 · 05:17 PM CDT
Thu, Mar 26 · 09:17 PM CDTCVE-2026-0966
8.2/10 · Worth your timeNVDvuln
Summary
A flaw was found in libssh. The API function `ssh_get_hexa()` is vulnerable to a denial of service when processing zero-length input. This can be exploited remotely by an attacker during GSSAPI (Generic Security Service Application Program Interface) authentication if the server's logging verbosity is set to `SSH_LOG_P
CVECVE-2026-0966
SeverityHIGH
TypeUPDATED
PublishedThu, Mar 26 · 09:17 PM CDT
ModifiedMon, Aug 31 · 03:17 PM CDT
Wed, Apr 08 · 02:16 AM CDTCVE-2026-33810
8.2/10 · Worth your timeNVDvuln
Summary
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in th
CVECVE-2026-33810
SeverityHIGH
TypeUPDATED
PublishedWed, Apr 08 · 02:16 AM CDT
ModifiedMon, Aug 31 · 01:17 PM CDT
Mon, Apr 06 · 04:16 PM CDTCVE-2026-34982
8.2/10 · Worth your timeNVDvuln
Summary
Vim is an open source, command line text editor. Prior to version 9.2.0276, a modeline sandbox bypass in Vim allows arbitrary OS command execution when a user opens a crafted file. The `complete`, `guitabtooltip` and `printheader` options are missing the `P_MLE` flag, allowing a modeline to be executed. Additionally, t
CVECVE-2026-34982
SeverityHIGH
TypeUPDATED
PublishedMon, Apr 06 · 04:16 PM CDT
ModifiedMon, Aug 31 · 01:18 PM CDT
Mon, Jul 01 · 01:15 PM CDTCVE-2024-6387
8.1/10 · Worth your timeNVDvuln
Summary
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
CVECVE-2024-6387
SeverityHIGH
TypeUPDATED
PublishedMon, Jul 01 · 01:15 PM CDT
ModifiedMon, Aug 31 · 05:17 PM CDT
Mon, Jul 07 · 03:15 PM CDTCVE-2025-5987
8.1/10 · Worth your timeNVDvuln
Summary
A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resultin
CVECVE-2025-5987
SeverityHIGH
TypeUPDATED
PublishedMon, Jul 07 · 03:15 PM CDT
ModifiedMon, Aug 31 · 06:17 PM CDT
Fri, Mar 27 · 09:17 PM CDTCVE-2026-33938
8.1/10 · Worth your timeNVDvuln
Summary
Handlebars provides the power necessary to let users build semantic templates. In versions 4.0.0 through 4.7.8, the `@partial-block` special variable is stored in the template data context and is reachable and mutable from within a template via helpers that accept arbitrary objects. When a helper overwrites `@partial-b
CVECVE-2026-33938
SeverityHIGH
TypeUPDATED
PublishedFri, Mar 27 · 09:17 PM CDT
ModifiedMon, Aug 31 · 01:18 PM CDT
Tue, Mar 31 · 08:16 PM CDTCVE-2026-4800
8.1/10 · Worth your timeNVDvuln
Summary
Impact: The fix for CVE-2021-23337 (https://github.com/advisories/GHSA-35jh-r3h4-6jhm) added validation for the variable option in _.template but did not apply the same validation to options.imports key names. Both paths flow into the same Function() constructor sink. When an application passes untrusted input as optio
CVECVE-2026-4800
SeverityHIGH
TypeUPDATED
PublishedTue, Mar 31 · 08:16 PM CDT
ModifiedMon, Aug 31 · 01:18 PM CDT
Thu, May 16 · 09:15 PM CDTCVE-2023-45745
7.9/10 · Worth your timeNVDvuln
Summary
Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.
CVECVE-2023-45745
SeverityHIGH
TypeUPDATED
PublishedThu, May 16 · 09:15 PM CDT
ModifiedMon, Aug 31 · 01:37 PM CDT
Wed, May 26 · 07:15 PM CDTCVE-2018-16497
7.8/10 · Worth your timeNVDvuln
Summary
In Versa Analytics, the cron jobs are used for scheduling tasks by executing commands at specific dates and times on the server. If the job is run as the user root, there is a potential privilege escalation vulnerability. In this case, the job runs a script as root that is writable by users who are members of the versa
CVECVE-2018-16497
SeverityHIGH
TypeUPDATED
PublishedWed, May 26 · 07:15 PM CDT
ModifiedMon, Aug 31 · 05:54 PM CDT
Tue, Apr 07 · 05:16 PM CDTCVE-2025-14821
7.8/10 · Worth your timeNVDvuln
Summary
A flaw was found in libssh. This vulnerability allows local man-in-the-middle attacks, security downgrades of SSH (Secure Shell) connections, and manipulation of trusted host information, posing a significant risk to the confidentiality, integrity, and availability of SSH communications via an insecure default configur
CVECVE-2025-14821
SeverityHIGH
TypeUPDATED
PublishedTue, Apr 07 · 05:16 PM CDT
ModifiedMon, Aug 31 · 12:17 PM CDT