Vulnerabilities

Summary — last 7 days

New vulnerabilities2,737▼ 82 vs. last week
Critical / high1,248▼ 291 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)249▲ 212 vs. last week
–

33 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
DeferredLow (2.1)0.37%—Zsadmin2025 Zs-adminAIMybatis-plusAI7/21/20267/23/2026
A vulnerability was identified in zsadmin2025 ZS-Admin up to b52e14536d59fda11e56e2536a1c32e82a38cead. This affects the function getTenantId of the file /api/system/sys/dept/page of the component MyBatis-Plus Tenant Plugin. Such manipulation of the argument X-Tenant-Id leads to authorization bypass. The attack may be…
AnalyzedHigh (7.5)0.13%💥 PoCNotepad-plus-plus Notepad++6/26/20266/29/2026
Notepad++ is a free and open-source source code editor. Prior to 8.9.6.4, NppCommands.cpp checks the HMAC of the on-disk shortcuts.xml at the moment a user command fires (Time-of-Check). However, the command payload is taken from the in-memory _userCommands vector, which is populated at application startup and never…
AnalyzedHigh (7.8)0.21%—Notepad-plus-plus Notepad++6/26/20266/29/2026
Notepad++ is a free and open-source source code editor. In v8.9.6.1, isInTrustedDirectory() does NOT canonicalize the path before checking. It uses a prefix-based check (PathIsPrefix() or equivalent) that matches paths starting with trusted directory strings. A path traversal using ..\..\ after a trusted directory…
ModifiedHigh (7.8)0.21%💥 PoCNotepad-plus-plus Notepad++6/26/20266/30/2026
Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the <Command> tag text content inside <UserDefinedCommands> in shortcuts.xml is read by NppXml::value(aNode) (Parameters.cpp:3658) in the feedUserCmds() function and stored in UserCommand._cmd without any validation. When the user clicks the…
AnalyzedHigh (7.8)0.62%💥 ExploitNotepad-plus-plus Notepad++6/26/20266/29/2026
Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the <GUIConfig name="commandLineInterpreter"> tag in config.xml is read by NppXml::value() (Parameters.cpp:6430) and stored in _nppGUI._commandLineInterpreter without any validation, whitelist, or digital signature check. When the user triggers…
AnalyzedMedium (5)0.14%💥 PoCNotepad-plus-plus Notepad++6/26/20266/29/2026
Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, a local process in the same interactive Windows session can send a malformed WM_COPYDATA message to Notepad++ using the COPYDATA_FULL_CMDLINE path. The handler appears to process COPYDATASTRUCT.lpData as an unbounded NUL-terminated wchar_t*…
AnalyzedHigh (7.5)0.15%—Notepad-plus-plus Notepad++6/26/20266/29/2026
Notepad++ is a free and open-source source code editor. From 8.9.4 until 8.9.6, Notepad++ contains a local privilege escalation vulnerability in the installer. During installation, the installer invokes powershell.exe without using an absolute path after setting the working directory to the installation contextMenu…
AnalyzedMedium (4.6)0.19%—Notepad-plus-plus Notepad++4/30/20266/17/2026
Notepad++ 8.9.3 contains a format string injection vulnerability in the Find Results panel handler that allows attackers to cause denial of service and information disclosure by crafting a malicious nativeLang.xml language pack file. Attackers can distribute a poisoned language pack through community channels that…
AnalyzedMedium (6.1)0.40%—Amazon Freertos-plus-tcp4/29/20266/17/2026
Insufficient validation of the prefix length field in IPv6 Router Advertisement processing in FreeRTOS-Plus-TCP before V4.2.6 and V4.4.1 allows an adjacent network actor to cause memory corruption by sending a crafted Router Advertisement with a prefix length value exceeding the maximum valid length, resulting in a…
AnalyzedMedium (6)0.38%—Amazon Freertos-plus-tcp4/29/20266/17/2026
Insufficient option length validation in the IPv6 Router Advertisement parser in FreeRTOS-Plus-TCP before V4.2.6 and V4.4.1 allows an adjacent network actor to cause a denial of service (device crash) by sending a crafted Router Advertisement with a truncated PREFIX_INFORMATION option that is smaller than the expected…
AnalyzedHigh (7.2)0.37%—Amazon Freertos-plus-tcp4/29/20266/17/2026
Integer underflow in the DHCPv6 sub-option parser in FreeRTOS-Plus-TCP before V4.4.1 and V4.2.6 allows an adjacent network actor to corrupt the device's IPv6 address assignment, DNS configuration, and lease times, and to cause a denial of service (permanent IP task freeze requiring hardware reset) by sending a single…
AnalyzedMedium (6)0.36%—Amazon Freertos-plus-tcp4/29/20266/17/2026
Integer underflow in the ICMP and ICMPv6 echo reply handlers in FreeRTOS-Plus-TCP before V4.4.1 and V4.2.6 allows an adjacent network user to cause a denial of service (device crash) when outgoing ping support is enabled, because header sizes are subtracted from a packet length field without validating the field is…
AnalyzedHigh (7.1)0.29%—Amazon Freertos-plus-tcp4/29/20266/17/2026
Insufficient packet validation in FreeRTOS-Plus-TCP before V4.2.6 and V4.4.1 allows an adjacent network actor to bypass all checksum and minimum-size validation by spoofing the Ethernet source MAC address to match one of the device's own registered endpoints, because the loopback detection mechanism skips all input…
DeferredMedium (5.5)0.43%—Liyupi Yu-pictureAIBaomidou Mybatis-plusAI4/26/20266/17/2026
A vulnerability was determined in liyupi yu-picture up to a053632c41340152bf75b66b3c543d129123d8ec. This impacts the function PageRequest of the file yu-picture-backend/src/main/java/com/yupi/yupicturebackend/service/impl/PictureServiceImpl.java of the component MyBatis-Plus. Executing a manipulation of the argument…
AnalyzedHigh (7.8)0.18%—Notepad-plus-plus Notepad++4/10/20266/17/2026
A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handler component. When a user drags and drops a directory path of exactly 259 characters without a trailing backslash, the application appends a backslash and null terminator without proper bounds checking, resulting in a…
AnalyzedHigh (7.3)0.21%—Notepad-plus-plus Notepad++2/19/20266/17/2026
Notepad++ is a free and open-source source code editor. An Unsafe Search Path vulnerability (CWE-426) exists in versions prior to 8.9.2 when launching Windows Explorer without an absolute executable path. This may allow execution of a malicious explorer.exe if an attacker can control the process working directory.…
AnalyzedHigh (7.7)1.8%⚠ Active exploitation💥 PoCNotepad-plus-plus Notepad++2/3/20266/17/2026
Notepad++ versions prior to 8.8.9, when using the WinGUp updater, contain an update integrity verification vulnerability where downloaded update metadata and installers are not cryptographically verified. An attacker able to intercept or redirect update traffic can cause the updater to download and execute an…
AnalyzedMedium (5.3)0.34%—Amazon Freertos-plus-tcp10/10/202510/8/2026
A missing validation check in FreeRTOS-Plus-TCP's UDP/IPv6 packet processing code can lead to an invalid pointer dereference when receiving a UDP/IPv6 packet with an incorrect IP version field in the packet header. This issue only affects applications using IPv6. We recommend upgrading to the latest version and ensure…
AnalyzedMedium (5.3)0.31%—Amazon Freertos-plus-tcp10/10/202510/8/2026
A missing validation check in FreeRTOS-Plus-TCP's IPv6 packet processing code can lead to an out-of-bounds read when receiving a IPv6 packet with incorrect payload lengths in the packet header. This issue only affects applications using IPv6. We recommend users upgrade to the latest version and ensure any forked or…
AnalyzedMedium (5.3)0.31%—Amazon Freertos-plus-tcp10/10/202510/8/2026
A missing validation check in FreeRTOS-Plus-TCP's ICMPv6 packet processing code can lead to an out-of-bounds read when receiving ICMPv6 packets of certain message types which are smaller than the expected size. These issues only affect applications using IPv6. Users should upgrade to the latest version and ensure any…
ModifiedHigh (8.1)0.61%—Amazon Freertos-plus-tcp6/24/20246/17/2026
FreeRTOS-Plus-TCP is a lightweight TCP/IP stack for FreeRTOS. FreeRTOS-Plus-TCP versions 4.0.0 through 4.1.0 contain a buffer over-read issue in the DNS Response Parser when parsing domain names in a DNS response. A carefully crafted DNS response with domain name length value greater than the actual domain name…
ModifiedHigh (7.8)0.53%—Notepad-plus-plus Notepad++11/30/20236/17/2026
An Untrusted search path vulnerability in notepad++ 6.5 allows local users to gain escalated privileges through the msimg32.dll file in the current working directory.
ModifiedHigh (7.8)0.33%💥 PoCNotepad-plus-plus Notepad++11/30/20236/17/2026
A vulnerability classified as problematic was found in NotePad++ up to 8.1. Affected by this vulnerability is an unknown functionality of the file dbghelp.exe. The manipulation leads to uncontrolled search path. An attack has to be approached locally. The identifier VDB-246421 was assigned to this vulnerability. NOTE:…
ModifiedMedium (5.5)0.41%—Notepad-plus-plus Notepad++8/25/20236/17/2026
Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer read overflow in `FileManager::detectLanguageFromTextBegining `. The exploitability of this issue is not clear. Potentially, it may be used to leak internal memory allocation information. As of time of…
ModifiedMedium (5.5)0.50%—Notepad-plus-plus Notepad++8/25/20236/17/2026
Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to global buffer read overflow in `nsCodingStateMachine::NextStater`. The exploitability of this issue is not clear. Potentially, it may be used to leak internal memory allocation information. As of time of publication, no…