A vulnerability labeled as critical has been found in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. Executing a manipulation can lead to least privilege violation.
This vulnerability is tracked as CVE-2026-15270. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability was found in pipecat-ai pipecat up to 1.3.x. It has been declared as critical. This vulnerability affects unknown code of the file src/pipecat/runner/utils.py of the component WebSocket Endpoint. The manipulation of the argument callSid results in missing authorization.
This vulnerability is reported as CVE-2026-54695. The attack can be launched remotely. No exploit exists.
A vulnerability was found in CakePHP up to 2.11.0/3.3.5/4.1.0. It has been rated as problematic. This issue affects the function getLoginRedirect of the component Authentication. This manipulation of the argument redirect causes open redirect.
This vulnerability appears as CVE-2026-55590. The attack may be initiated remotely. There is no available exploit.
A vulnerability identified as problematic has been detected in getkirby Kirby up to 4.9.3/5.4.3. The affected element is an unknown function of the component Page Picker Backend. Performing a manipulation results in permission issues.
This vulnerability is known as CVE-2026-49274. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability labeled as problematic has been found in getkirby Kirby up to 4.9.3/5.4.3. The impacted element is the function find of the file /api/site/find of the component Page Access Control. Executing a manipulation of the argument ID can lead to improper authorization.
This vulnerability is handled as CVE-2026-54005. The attack can be executed remotely. There is not any exploit available.
A vulnerability was found in Juniper Junos OS Evolved. It has been declared as critical. The affected element is an unknown function of the component evo-aftmand. Such manipulation leads to state issue.
This vulnerability is documented as CVE-2026-33794. The attack can be executed remotely. There is not any exploit available.
A vulnerability was found in Juniper Junos OS and Junos OS Evolved. It has been rated as critical. The impacted element is an unknown function of the component SNMP Daemon. Performing a manipulation results in out-of-bounds write.
This vulnerability is reported as CVE-2026-33799. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability categorized as critical has been discovered in Juniper Junos OS and Junos OS Evolved. This affects an unknown function of the component Routing Protocol Daemon. Executing a manipulation can lead to denial of service.
This vulnerability appears as CVE-2026-33801. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in jg-rp liquid up to 2.2.0 and classified as problematic. The impacted element is the function eof of the file TokenStream.eof of the component TokenStream. Such manipulation leads to infinite loop.
This vulnerability is listed as CVE-2026-55865. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in Juniper Junos OS Evolved. It has been rated as problematic. Affected is an unknown function of the component Intended Endpoint. The manipulation leads to information disclosure.
This vulnerability is documented as CVE-2026-33803. The attack can be initiated remotely. There is not any exploit available.
A vulnerability identified as critical has been detected in Absolute decompress up to 4.2.1. Affected by this issue is the function fs.link of the file index.js of the component Archive Extraction. This manipulation of the argument x.linkname causes path traversal.
This vulnerability appears as CVE-2026-39243. The attack may be initiated remotely. There is no available exploit.
A vulnerability categorized as critical has been discovered in keeva decompress up to 4.2.1. This affects an unknown part. Executing a manipulation can lead to path traversal.
The identification of this vulnerability is CVE-2026-39245. The attack needs to be done within the local network. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in CoreWCF up to 1.8.0/1.9.0. It has been declared as critical. The impacted element is the function WSSecurityOneDotZeroReceiveSecurityHeader of the component WS-Security Handler. Such manipulation leads to improper verification of cryptographic signature.
This vulnerability is traded as CVE-2026-54773. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in Cline up to 3.0.29. It has been classified as critical. This issue affects the function isAuthorizedBrowserRequest of the component Cline Hub Dashboard. This manipulation of the argument provider causes improper authorization.
This vulnerability is registered as CVE-2026-59723. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability, which was classified as critical, has been found in Nozomi Guardian and CMC up to 26.1.x. Affected by this issue is some unknown functionality of the component Audit Logging. The manipulation leads to allocation of resources.
This vulnerability is uniquely identified as CVE-2026-31984. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability was found in Nozomi Guardian and CMD up to 26.1.x. It has been classified as very critical. Impacted is the function the synchronization function of the component Synchronization. Performing a manipulation results in permission issues.
This vulnerability is identified as CVE-2026-33390. The attack can be initiated remotely. There is not any exploit available.