A vulnerability labeled as critical has been found in Gleam up to 1.16.x. Impacted is the function paths.build_packages_package of the file build/packages/packages.toml. The manipulation results in path traversal.
This vulnerability is cataloged as CVE-2026-43965. The attack must be initiated from a local position. There is no exploit available.
The affected component should be upgraded.
A vulnerability, which was classified as critical, has been found in Gleam up to 1.16.x. Affected is an unknown function of the file build/dev/docs/. The manipulation of the argument documentation.pages[].path leads to path traversal.
This vulnerability is traded as CVE-2026-32685. An attack has to be approached locally. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Gleam up to 1.16.x. Affected by this vulnerability is the function gleam_files of the file compiler-cli/src/fs.rs. The manipulation results in link following.
This vulnerability is known as CVE-2026-42795. Attacking locally is a requirement. No exploit is available.
You should upgrade the affected component.
A vulnerability has been found in Erlang OTP >=17.0/29.0.3 and classified as critical. The affected element is the function mfs_load_property_groups of the file lib/megaco/src/flex/megaco_flex_scanner_drv.flex.src of the component Megaco Flex Scanner. The manipulation of the argument parm name leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2026-59250. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability was found in Erlang OTP. It has been classified as problematic. This affects the function ssl_handshake:handle_server_hello_extensions/9 of the component Client Handshake. This manipulation causes improper certificate validation.
The identification of this vulnerability is CVE-2026-55953. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic was found in Erlang OTP 27.3.4.16/28.4.x/29.0.5. Affected by this issue is the function uri_string.get_port of the file uri_string.erl of the component stdlib. Executing a manipulation of the argument port can lead to improper validation of specified quantity in input.
The identification of this vulnerability is CVE-2026-59696. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability, which was classified as problematic, has been found in Erlang OTP. This affects the function list_to_integer/format_response/get_ms_from_retry_after of the file httpc_handler.erl of the component inets. The manipulation leads to improper validation of specified quantity in input.
This vulnerability is referenced as CVE-2026-71562. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Erlang OTP. Impacted is an unknown function of the component inets. This manipulation causes allocation of resources.
The identification of this vulnerability is CVE-2026-74835. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Erlang OTP. It has been rated as problematic. Affected by this vulnerability is the function eldap:parse_port of the component eldap. This manipulation causes improper validation of specified quantity in input.
This vulnerability is registered as CVE-2026-70409. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to install a patch to address this issue.
A vulnerability, which was classified as critical, has been found in gleam-lang gleam up to 1.17.x. Affected by this vulnerability is the function gleam_cli::dependencies::lookup_package of the file manifest.toml of the component Dependency Resolution. This manipulation causes insufficient verification of data authenticity.
This vulnerability is registered as CVE-2026-59247. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability was found in Red Hat Directory Server and classified as problematic. The affected element is an unknown function of the component SELFDN ACI bind-rule evaluator. Executing a manipulation can lead to improper access controls.
This vulnerability is tracked as CVE-2026-76560. The attack can be launched remotely. No exploit exists.
A vulnerability classified as problematic was found in GLib. This affects an unknown function of the component Fallback Path. Executing a manipulation can lead to time-of-check time-of-use.
This vulnerability is handled as CVE-2026-86469. It is possible to launch the attack on the local host. There is not any exploit available.
A vulnerability was found in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930 and classified as problematic. This issue affects some unknown processing of the file App/Common/Conf/config.php of the component Debug Mode. The manipulation of the argument DB_DEBUG results in information disclosure.
This vulnerability is known as CVE-2026-86308. It is possible to launch the attack remotely. Furthermore, an exploit is available.
This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.
The project was informed of the problem early through an issue report but has not responded yet.
A vulnerability classified as critical has been found in Mozilla Firefox up to 115.39/140.14/153.1/154. This issue affects some unknown processing of the component Audio/Video. Performing a manipulation results in use after free.
This vulnerability is cataloged as CVE-2026-84120. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Mozilla Firefox up to 115.39/140.14/153.1/154. Impacted is an unknown function of the component Security Component. Executing a manipulation can lead to use after free.
This vulnerability is registered as CVE-2026-84121. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Mozilla Firefox up to 140.14/153.1/154. The affected element is an unknown function of the component Audio/Video. The manipulation leads to use after free.
This vulnerability is documented as CVE-2026-84122. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability marked as critical has been reported in Mozilla Firefox. This affects an unknown part of the component JavaScript. This manipulation causes use after free.
This vulnerability is tracked as CVE-2026-84118. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability described as critical has been identified in Mozilla Firefox 115.39/140.14/153.1/154. This vulnerability affects unknown code of the component Navigation. Such manipulation leads to use after free.
This vulnerability is listed as CVE-2026-84119. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability described as critical has been identified in Mozilla Firefox up to 154. The affected element is an unknown function of the component Android. Executing a manipulation can lead to improper privilege management.
This vulnerability is tracked as CVE-2026-84117. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.