CVE IDSeverityCVSSDescriptionDate
CVE-2026-71257HIGH7.5Apache Wicket enforces the upload limits configured on a form or upload field while parsing a multipart reques…2026-08-31
CVE-2026-71378MEDIUM4.6ResourceIsolationRequestCycleListener protects a Wicket application against cross-site request forgery by reje…2026-08-31
CVE-2026-75802MEDIUM5.4AjaxEditableChoiceLabel in wicket-extensions, when constructed with a non-null IChoiceRenderer, writes the dis…2026-08-31
CVE-2026-76982MEDIUM5.4Improper neutralization of input during web page generation in Apache Wicket. org.apache.wicket.markup.html.f…2026-08-31
CVE-2026-76983MEDIUM5.4Improper neutralization of input during web page generation in Apache Wicket. The tag is provi…2026-08-31
CVE-2026-76984MEDIUM5.4Improper neutralization of input during web page generation in Apache Wicket. org.apache.wicket.markup.head.M…2026-08-31
CVE-2026-82689CRITICAL9.9A vulnerability was detected in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected is an…2026-08-31
CVE-2026-82690CRITICAL9.1A flaw has been found in D-Link DNS-327L and DNS-340L up to 20260717. Affected by this vulnerability is an unk…2026-08-31
CVE-2026-82691CRITICAL9.1A vulnerability has been found in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected by …2026-08-31
CVE-2026-82797MEDIUM5.5Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Serialized Data with Nested Payload…2026-08-31
CVE-2026-12894HIGH8.8A flaw was found in the Qute template engine, which is used by Quarkus to generate dynamic content like HTML p…2026-08-31
CVE-2026-51666MEDIUM4.3Incorrect access control in the setWizardCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthentica…2026-08-31
CVE-2026-51667MEDIUM4.3Incorrect access control in the getWiFiIpMacTable function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthe…2026-08-31
CVE-2026-5956HIGH8.8Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Ankara H…2026-08-31
CVE-2026-74010MEDIUM5.3Missing Authorization vulnerability in John James Jacoby bbPress allows Exploiting Incorrectly Configured Acce…2026-08-31
CVE-2026-82692CRITICAL9.9A vulnerability was found in D-Link DNS-340L and DNS-345 up to 20260717. This affects an unknown part of the f…2026-08-31
CVE-2026-82693CRITICAL10.0A vulnerability was determined in Tenda AC1206 15.03.06.23. This vulnerability affects the function TendaTelne…2026-08-31
CVE-2026-82694CRITICAL10.0A vulnerability was identified in Tenda AC1206 15.03.06.23. This issue affects the function R7WebsSecurityHand…2026-08-31
CVE-2026-82695CRITICAL10.0A security flaw has been discovered in Tenda AC18 15.03.05.19. Impacted is an unknown function of the file /go…2026-08-31
CVE-2026-82696MEDIUM6.3A weakness has been identified in itsourcecode Sales and Inventory System 1.0. The affected element is an unkn…2026-08-31
CVE-2026-19616HIGH7.5Missing Authorization vulnerability in TBC Technology Inc. KitLogistic allows Accessing Functionality Not Prop…2026-08-31
CVE-2026-19702HIGH7.8Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TÜ…2026-08-31
CVE-2026-51668HIGH7.5Incorrect access control in the setLanguageCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenti…2026-08-31
CVE-2026-51669CRITICAL9.1Incorrect access control in the getPairCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticate…2026-08-31
CVE-2026-51670CRITICAL9.8Incorrect access control in the getSlaveUpdate function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenti…2026-08-31
CVE-2026-51671HIGH7.5Incorrect access control in the getCloudDownloadStatus function of TOTOLINK T6 4.1.5cu.748_B20211015 allows un…2026-08-31
CVE-2026-51672CRITICAL9.1Incorrect access control in the getRoamingCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthentic…2026-08-31
CVE-2026-51673HIGH7.5Incorrect access control in the setNtpCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated…2026-08-31
CVE-2026-51674CRITICAL9.8Incorrect access control in the setScheduleCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenti…2026-08-31
CVE-2026-51675CRITICAL9.1Incorrect access control in the setWanIeCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticat…2026-08-31
CVE-2026-51676CRITICAL9.1Incorrect access control in the setAccessDeviceCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauth…2026-08-31
CVE-2026-51677CRITICAL9.1Incorrect access control in the setUPnPCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticate…2026-08-31
CVE-2026-51678MEDIUM4.3Incorrect access control in the setSyslogCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthentica…2026-08-31
CVE-2026-51679CRITICAL9.1Incorrect access control in the setPasswordCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenti…2026-08-31
CVE-2026-51680CRITICAL9.1Incorrect access control in the setLedCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated…2026-08-31
CVE-2026-51681CRITICAL9.1Incorrect access control in the setRemoteCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthentica…2026-08-31
CVE-2026-76763HIGH7.5A flaw was found in SmallRye GraphQL. The number scalar coercion for BigInteger does not properly validate the…2026-08-31
CVE-2026-76985MEDIUM5.4Improper neutralization of input during web page generation in Apache Wicket. org.apache.wicket.extensions.ma…2026-08-31
CVE-2026-76986MEDIUM6.1Improper neutralization of input during web page generation in Apache Wicket. org.apache.wicket.markup.html.f…2026-08-31
CVE-2026-78074NAN/AJoomla Extension - miniorgange.com - Unauthenticated arbitrary extension deinstallation via various miniOrange…2026-08-31
CVE-2026-78075NAN/AJoomla Extension - joomshaper.com - Broken Object-Level Authorization in Blog Image Deletion in Helix Ultimate…2026-08-31
CVE-2026-78076NAN/AJoomla Extension - joomshaper.com - Broken Access Control & Missing Authorization in MegaMenu Settings in Heli…2026-08-31
CVE-2026-78077NAN/AJoomla Extension - joomshaper.com - Stored Cross-Site Scripting (XSS) in MegaMenu Layout Container & Embed In…2026-08-31
CVE-2026-78078NAN/AJoomla Extension - joomshaper.com - Privileged File Upload Bypass via Content Spoofing in Helix Ultimate < 2.2…2026-08-31
CVE-2026-78079NAN/AJoomla Extension - joomshaper.com - Open Redirect via Base64 Return Parameter in Helix Ultimate < 2.2.10 - Ret…2026-08-31
CVE-2026-82217HIGH8.8In Eclipse Theia versions 1.73.0 up to but not including 1.75.0, the AI "Agent Mode" file-change tools (writeF…2026-08-31
CVE-2026-82697LOW3.7A security vulnerability has been detected in sambitraj Student-Management-System up to 56ba287f2e9031523ccb42…2026-08-31
CVE-2026-82698MEDIUM5.3A vulnerability was detected in sambitraj Student-Management-System up to 56ba287f2e9031523ccb4244cb6e3fe530e4…2026-08-31
CVE-2026-82699LOW2.7A flaw has been found in sambitraj Student Management System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. T…2026-08-31
CVE-2026-82700MEDIUM4.3A vulnerability was found in code-projects Online Shopping System 1.0. Affected by this vulnerability is an un…2026-08-31
17 / 7715