Vulnerabilities
Summary — last 7 days
New vulnerabilities2,759▲ 5 vs. last week
Critical / high1,275▼ 253 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)242▲ 224 vs. last week
403,659 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | Low (2) | 0.24% | — | Bladex SpringbladeAI | 10/6/2026 | 10/8/2026 | A vulnerability was determined in chillzhuang SpringBlade up to 5.0.1. This affects an unknown function of the file blade-service/blade-system/src/main/java/org/springblade/system/controller/RoleController.java of the component User Detail Endpoint. This manipulation of the argument ID causes improper authorization.… | |
| Deferred | Low (2) | 0.23% | — | Bladex SpringbladeAI | 10/6/2026 | 10/6/2026 | A vulnerability was found in chillzhuang SpringBlade up to 5.0.1. The impacted element is an unknown function of the file blade-service/blade-system/src/main/java/org/springblade/system/controller/ParamController.java of the component Parameter Submit Management. The manipulation of the argument initPassword results… | |
| Deferred | Low (2.1) | 0.23% | — | Newbee-ltd Newbee-mallAI | 10/6/2026 | 10/6/2026 | A vulnerability was found in newbee-ltd newbee-mall up to 2.7.5. This impacts an unknown function of the file /jshERP-boot/accountHead/updateAccountHeadAndDetail of the component Shopping Cart Quantity Handler. Performing a manipulation of the argument goodsCount results in business logic errors. The attack can be… | |
| Deferred | Low (2.1) | 0.22% | — | Pickmall LilishopAI | 10/6/2026 | 10/6/2026 | A vulnerability has been found in PickMall Lilishop up to 4.2.4. This affects an unknown function of the file /buyer/trade/receipt of the component Buyer Invoice List. Such manipulation of the argument memberId leads to authorization bypass. It is possible to launch the attack remotely. The exploit has been disclosed… | |
| Deferred | Medium (5.5) | 0.28% | — | Pickmall LilishopAI | 10/6/2026 | 10/8/2026 | A flaw has been found in PickMall Lilishop up to 4.2.4. The impacted element is an unknown function of the file /buyer/passport/member/bindMobile of the component Mobile Binding. This manipulation of the argument Username causes improper authorization. It is possible to initiate the attack remotely. The exploit has… | |
| Deferred | Low (2.1) | 1.1% | — | Yogeshojha RengineAI | 10/6/2026 | 10/6/2026 | A vulnerability was found in yogeshojha reNgine up to 2.2.0. Affected by this vulnerability is the function subdomain_discovery of the file web/reNgine/tasks.py of the component listTargets Endpoint. The manipulation of the argument Name results in os command injection. The attack can be launched remotely. The exploit… | |
| Deferred | Medium (5.5) | 0.50% | — | Ossrs SRSAI | 10/6/2026 | 10/6/2026 | A vulnerability was detected in OSSRS srs up to 7.0-a1. This affects the function systemAPI.Run of the file internal/proxy/api.go of the component System API. Performing a manipulation results in missing authentication. It is possible to initiate the attack remotely. The exploit is now public and may be used.… | |
| Deferred | Critical (10) | 2.1% | — | Totolink X6000rAI | 10/6/2026 | 10/6/2026 | A security vulnerability has been detected in TOTOLINK X6000R 9.4.0cu.652_B20230116. The impacted element is the function firmware_check of the file /cgi-bin/cstecgi.cgi of the component UploadFirmwareFile Handler. Such manipulation of the argument file_name leads to os command injection. The attack may be performed… | |
| Deferred | Medium (5.3) | 0.16% | — | PunkAI | 10/6/2026 | 10/6/2026 | Punk versions from 0.48 before 0.55 for Perl route Extended CONNECT requests to any GET route without an Origin check in ps_serve_one. On HTTP/2 and HTTP/3 a WebSocket handshake arrives as an Extended CONNECT, which is matched as a GET and so reaches every GET route, API operation and mount. The Origin check runs only… | |
| Undergoing Analysis | Medium (6.2) | 0.12% | — | SssdAI | 10/6/2026 | 10/8/2026 | A flaw was found in sssd. A local attacker can trigger a Denial of Service (DoS) by sending a specially crafted Pluggable Authentication Module (PAM) request when passkey authentication is enabled. Due to a missing state validation check in passkey Kerberos handling, the PAM responder dereferences an uninitialized… | |
| Undergoing Analysis | Medium (5.5) | 0.10% | — | SssdAI | 10/6/2026 | 10/6/2026 | A flaw was found in SSSD. A local attacker with access to the Name Service Switch (NSS) responder UNIX socket can trigger an integer underflow by sending a specially crafted request with an undersized packet header. This issue causes an out-of-bounds memory read during packet parsing, crashing the responder process… | |
| Undergoing Analysis | Medium (5.5) | 0.11% | — | SssdAI | 10/6/2026 | 10/7/2026 | A flaw was found in sssd. A local attacker can cause a Denial of Service (DoS) by sending a crafted Pluggable Authentication Module (PAM) request containing a zero-length authentication token to the responder socket. Due to missing input validation, the service attempts to read beyond buffer boundaries when processing… | |
| Undergoing Analysis | Medium (5.5) | 0.10% | — | SssdAI | 10/6/2026 | 10/6/2026 | A flaw was found in SSSD. An unprivileged local user can repeatedly request lookups for nonexistent entries through the Name Service Switch (NSS) responder. Because the negative cache does not limit the total number of stored entries and only removes expired records when an existing key is rechecked, the cache can… | |
| Undergoing Analysis | Medium (4.4) | 0.10% | — | SssdAI | 10/6/2026 | 10/6/2026 | A flaw was found in SSSD. When configured with the Entra ID identity provider, input lookup names containing single quotes are not properly escaped before being included in Microsoft Graph Open Data Protocol (OData) queries. A low-privileged local user can exploit this flaw by submitting a crafted search request,… | |
| Undergoing Analysis | Medium (4.7) | 0.10% | — | SssdAI | 10/6/2026 | 10/8/2026 | A flaw was found in SSSD. A local user can cause a denial of service (DoS) by disrupting system authentication services. When handling Generic Security Services Application Programming Interface (GSSAPI) authentication in the Pluggable Authentication Module (PAM) responder, cached connection state is freed upon… | |
| Undergoing Analysis | Medium (6.8) | 0.31% | — | Redhat SssdAI | 10/5/2026 | 10/6/2026 | A flaw was found in SSSD. When configured to evaluate password expiration warnings before restrictive access rules in LDAP (Lightweight Directory Access Protocol) environments, an expired-password warning terminates rule evaluation early and treats the access request as successful. A remote authenticated user with an… | |
| Deferred | Low (2.1) | 0.20% | — | Anisha Online Appointment Booking SystemAI | 10/5/2026 | 10/8/2026 | A weakness has been identified in girishsaraf Online-Appointment-Booking-System up to f427b4757128ca253d33d0cc4e87bbb9c999a4d5. The affected element is an unknown function of the file book.php of the component Booking Handler. This manipulation of the argument Doctor/appointment causes sql injection. The attack is… | |
| Undergoing Analysis | Medium (5.9) | 0.22% | — | SssdAI | 10/5/2026 | 10/7/2026 | A flaw was found in sssd. A remote attacker can cause a denial of service (DoS) by submitting a certificate that lacks an expected Security Identifier (SID) extension. In deployments configured with SID-based certificate mapping rules, the service fails to verify the presence of the extension before processing it,… | |
| Undergoing Analysis | Medium (5.5) | 0.10% | — | SssdAI | 10/5/2026 | 10/6/2026 | A flaw was found in SSSD. A local attacker can exploit this issue by sending a specially crafted request with an invalid packet length to the autofs responder UNIX socket. This causes an integer underflow and an out-of-bounds memory read, which can crash the responder process and result in a denial of service (DoS). | |
| Undergoing Analysis | Medium (5.8) | 0.09% | — | SssdAI | 10/5/2026 | 10/6/2026 | A flaw was found in SSSD's NFS idmap plugin. When retrieving cached user or group names, the plugin detects if an entry exceeds the destination buffer size but fails to abort before copying data. A local attacker can trigger this vulnerability by requesting identity lookups that resolve to oversized cached entries,… | |
| Undergoing Analysis | Medium (5.5) | 0.10% | — | SssdAI | 10/5/2026 | 10/8/2026 | A flaw was found in SSSD. An issue in the Kerberos Credential Manager (KCM) responder allows a local user to cause a Denial of Service (DoS) by maintaining a persistent connection and repeatedly storing and destroying credentials. Because the service fails to release cached objects from memory when credentials are… | |
| Undergoing Analysis | Medium (4.7) | 0.09% | — | SssdAI | 10/5/2026 | 10/6/2026 | A flaw was found in SSSD. A use-after-free vulnerability exists in the Kerberos Credential Manager (KCM) responder during Kerberos ticket-granting ticket (TGT) renewal, where a deferred callback accesses memory that has already been released. An authenticated local user with a renewable Kerberos ticket can trigger… | |
| Undergoing Analysis | Medium (5.4) | 0.19% | — | SssdAI | 10/5/2026 | 10/7/2026 | A flaw was found in SSSD. When configured to enforce account expiration using LDAP (Lightweight Directory Access Protocol) shadow attributes, SSSD fails to treat an expiration value of zero as an expired account. A user with valid credentials for an expired account can exploit this flaw to bypass access controls and… | |
| Undergoing Analysis | Medium (5.5) | 0.10% | — | SssdAI | 10/5/2026 | 10/6/2026 | A flaw was found in SSSD. An unprivileged local user can repeatedly request master automount map updates through the autofs responder due to missing authorization checks. This triggers global cache invalidation and forces repeated lookups to backend directory providers, leading to a Denial of Service (DoS) from… | |
| Undergoing Analysis | Medium (5.5) | 0.10% | — | SssdAI | 10/5/2026 | 10/6/2026 | A flaw was found in SSSD. In configurations where the autofs responder service is enabled, memory allocated during successful request processing is not released until the client connection terminates. A local attacker can exploit this vulnerability by maintaining an open connection and repeatedly submitting valid… |