Aggregator
CVE-2026-36947 | SourceCodester Computer and Mobile Repair Shop Management System 1.0 view_service.php sql injection (EUVD-2026-21968)
2 weeks 1 day ago
A vulnerability was found in SourceCodester Computer and Mobile Repair Shop Management System 1.0 and classified as critical. Affected is an unknown function of the file /rsms/admin/services/view_service.php. Such manipulation leads to sql injection.
This vulnerability is listed as CVE-2026-36947. The attack may be performed from remote. There is no available exploit.
vuldb.com
CVE-2026-36946 | SourceCodester Computer and Mobile Repair Shop Management System 1.0 view_details.php sql injection (EUVD-2026-21966)
2 weeks 1 day ago
A vulnerability has been found in SourceCodester Computer and Mobile Repair Shop Management System 1.0 and classified as critical. This impacts an unknown function of the file /rsms/admin/inquiries/view_details.php. This manipulation causes sql injection.
This vulnerability is tracked as CVE-2026-36946. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
CVE-2026-31427 | Linux Kernel up to 6.1.167/6.6.130/6.12.79/6.18.20/6.19.10 nf_conntrack_sip process_sdp uninitialized pointer (EUVD-2026-21954)
2 weeks 1 day ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.1.167/6.6.130/6.12.79/6.18.20/6.19.10. This affects the function process_sdp of the component nf_conntrack_sip. The manipulation results in uninitialized pointer.
This vulnerability is identified as CVE-2026-31427. The attack can only be performed from the local network. There is not any exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2026-31424 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 netfilter null pointer dereference (EUVD-2026-21948)
2 weeks 1 day ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. The impacted element is an unknown function of the component netfilter. The manipulation leads to null pointer dereference.
This vulnerability is referenced as CVE-2026-31424. The attack needs to be initiated within the local network. No exploit is available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-31428 | Linux Kernel up to 6.1.167/6.6.130/6.12.79/6.18.20/6.19.10 netfilter __build_packet_message uninitialized pointer (EUVD-2026-21957)
2 weeks 1 day ago
A vulnerability classified as critical was found in Linux Kernel up to 6.1.167/6.6.130/6.12.79/6.18.20/6.19.10. The affected element is the function __build_packet_message of the component netfilter. Executing a manipulation can lead to uninitialized pointer.
The identification of this vulnerability is CVE-2026-31428. The attack needs to be done within the local network. There is no exploit available.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-31425 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 Control Message rds_ib_get_mr null pointer dereference (EUVD-2026-21950)
2 weeks 1 day ago
A vulnerability classified as critical has been found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. Impacted is the function rds_ib_get_mr of the component Control Message Handler. Performing a manipulation results in null pointer dereference.
This vulnerability was named CVE-2026-31425. The attack needs to be approached within the local network. There is no available exploit.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-31426 | Linux Kernel up to 6.1.167/6.6.130/6.12.79/6.18.20/6.19.10 kernel/locking/mutex.c acpi_ec_setup use after free (EUVD-2026-21953)
2 weeks 1 day ago
A vulnerability described as critical has been identified in Linux Kernel up to 6.1.167/6.6.130/6.12.79/6.18.20/6.19.10. This issue affects the function acpi_ec_setup of the file kernel/locking/mutex.c. Such manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2026-31426. The attack can only be initiated within the local network. No exploit exists.
Upgrading the affected component is recommended.
vuldb.com
The silent “Storm”: New infostealer hijacks sessions, decrypts server-side
2 weeks 1 day ago
New "Storm" infostealer skips local decryption, sending browser data to attacker servers. Varonis shows how server-side decryption enables session hijacking, bypassing passwords and MFA. [...]
Sponsored by Varonis
Ставите на Polymarket? Ваши финансы в опасности. Хакеры подложили «свинью» тем, кто запускает торговых ботов
2 weeks 1 day ago
На кону стоят суммы, которые заставляют забыть о правилах приличия.
CVE-2026-31423 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 rtsc_min divide by zero (EUVD-2026-21947)
2 weeks 1 day ago
A vulnerability marked as critical has been reported in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. This vulnerability affects the function rtsc_min. This manipulation causes divide by zero.
This vulnerability is handled as CVE-2026-31423. The attack can only be done within the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-31415 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 Control Message include/net/ipv6.h ip6_datagram_send_ctl denial of service
2 weeks 1 day ago
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. This affects the function ip6_datagram_send_ctl in the library include/net/ipv6.h of the component Control Message Handler. The manipulation results in denial of service.
This vulnerability is known as CVE-2026-31415. Attacking locally is a requirement. No exploit is available.
The affected component should be upgraded.
vuldb.com
CVE-2026-31422 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 flow_change null pointer dereference
2 weeks 1 day ago
A vulnerability identified as critical has been detected in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. Affected by this issue is the function flow_change. The manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2026-31422. Access to the local network is required for this attack to succeed. There is no exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2026-31418 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 netfilter mtype_del privilege escalation
2 weeks 1 day ago
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. Affected by this vulnerability is the function mtype_del of the component netfilter. Executing a manipulation can lead to privilege escalation.
This vulnerability appears as CVE-2026-31418. The attacker needs to be present on the local network. There is no available exploit.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-31417 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 x25_clear_queues buffer overflow
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. It has been rated as critical. Affected is the function x25_clear_queues. Performing a manipulation results in buffer overflow.
This vulnerability is reported as CVE-2026-31417. The attacker must have access to the local network to execute the attack. No exploit exists.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-31416 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 Netlink Message nfnetlink_log privilege escalation
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. It has been declared as critical. This impacts the function nfnetlink_log of the component Netlink Message Handler. Such manipulation leads to privilege escalation.
This vulnerability is documented as CVE-2026-31416. The attack requires being on the local network. There is not any exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-31414 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 nf_conntrack_expect /proc nfct_help privilege escalation
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11. It has been classified as critical. This affects the function nfct_help of the file /proc of the component nf_conntrack_expect. This manipulation causes privilege escalation.
This vulnerability is registered as CVE-2026-31414. The attack requires access to the local network. No exploit is available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-31419 | Linux Kernel up to 6.18.21/6.19.11 net bond_xmit_broadcast use after free
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.18.21/6.19.11 and classified as critical. The impacted element is the function bond_xmit_broadcast of the component net. The manipulation results in use after free.
This vulnerability is cataloged as CVE-2026-31419. The attack must originate from the local network. There is no exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-31421 | Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 fw_classify null pointer dereference
2 weeks 1 day ago
A vulnerability has been found in Linux Kernel up to 6.1.167/6.6.133/6.12.80/6.18.21/6.19.11 and classified as critical. The affected element is the function fw_classify. The manipulation leads to null pointer dereference.
This vulnerability is listed as CVE-2026-31421. The attack must be carried out from within the local network. There is no available exploit.
The affected component should be upgraded.
vuldb.com
CVE-2026-31420 | Linux Kernel up to 6.19.11 bridge br_mrp_start_test denial of service
2 weeks 1 day ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.19.11. Impacted is the function br_mrp_start_test of the component bridge. Executing a manipulation can lead to denial of service.
This vulnerability is tracked as CVE-2026-31420. The attack is only possible within the local network. No exploit exists.
You should upgrade the affected component.
vuldb.com