A vulnerability marked as problematic has been reported in JetBrains YouTrack up to 2026.1.13161. This impacts an unknown function. The manipulation leads to insertion of sensitive information into sent data.
This vulnerability is listed as CVE-2026-49370. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability categorized as problematic has been discovered in NanoMQ MQTT Broker up to 0.24.8. This issue affects the function quic_stream_recv. Such manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2026-45151. The attack can be launched remotely. No exploit exists.
A vulnerability described as problematic has been identified in Red Hat Multicluster Engine for Kubernetes. The affected element is an unknown function. Such manipulation of the argument InfraEnv.status.conditions[].message leads to insertion of sensitive information into sent data.
This vulnerability is traded as CVE-2026-10101. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in KMW KM-IP521 and KM-IP421 4.04.91.230307. It has been rated as critical. This affects an unknown part of the component Setting Handler. The manipulation leads to unverified password change.
This vulnerability is referenced as CVE-2026-5386. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability labeled as problematic has been found in JetBrains YouTrack up to 2026.1.13161. This affects an unknown function of the component Groups Page. Executing a manipulation can lead to incorrect authorization.
This vulnerability is tracked as CVE-2026-49369. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability described as problematic has been identified in JetBrains YouTrack up to 2026.1.13161. This affects an unknown part of the component Notifications Handler. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-49368. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability identified as critical has been detected in Emlog Pro 2.6.9. This vulnerability affects unknown code of the component Template Upload Feature. The manipulation leads to path traversal.
This vulnerability is documented as CVE-2026-39276. The attack can be initiated remotely. There is not any exploit available.
A vulnerability, which was classified as critical, was found in Fourth Frontier Frontier X App up to 14.x. Affected by this vulnerability is an unknown functionality. Such manipulation leads to missing authentication.
This vulnerability is traded as CVE-2026-5768. Access to the local network is required for this attack to succeed. There is no exploit available.
You should upgrade the affected component.
A vulnerability classified as problematic was found in Open5GS up to 2.7.7. Affected by this vulnerability is an unknown functionality in the library lib/sbi/nnrf-handler.c of the component Shared NF-profile Parser. The manipulation results in denial of service.
This vulnerability is known as CVE-2026-10113. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A patch should be applied to remediate this issue.
A vulnerability has been found in zephyrproject-rtos Zephyr up to 4.3 and classified as problematic. This affects the function socketcan_frame. Performing a manipulation results in out-of-bounds read.
This vulnerability is cataloged as CVE-2026-5071. The attack must be initiated from a local position. There is no exploit available.
A vulnerability marked as critical has been reported in ninjew GEO my WP Plugin up to 4.5.5 on WordPress. Impacted is an unknown function of the component Shortcode Handler. The manipulation of the argument QUERY_STRING leads to sql injection.
This vulnerability is uniquely identified as CVE-2026-9757. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability labeled as problematic has been found in eskapism Simple History Plugin up to 5.26.0 on WordPress. This issue affects the function react_to_event of the component Reaction Endpoint. Executing a manipulation can lead to weak password recovery.
This vulnerability is handled as CVE-2026-7459. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability identified as critical has been detected in brainstormforce Spectra Gutenberg Blocks Plugin up to 2.19.25 on WordPress. This vulnerability affects the function call_user_func. Performing a manipulation of the argument render_callback results in improper privilege management.
This vulnerability is known as CVE-2026-7465. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
A vulnerability categorized as critical has been discovered in code-projects Online Music Site 1.0. This affects an unknown part of the file /Administrator/PHP/AdminUpdateAlbum.php. Such manipulation of the argument ID leads to sql injection.
This vulnerability is traded as CVE-2026-10171. The attack may be launched remotely. Furthermore, there is an exploit available.