A vulnerability, which was classified as critical, has been found in FFmpeg. The affected element is an unknown function of the file libavcodec/rasc.c of the component Media Handler. The manipulation leads to out-of-bounds write.
This vulnerability is documented as CVE-2026-58049. The attack can be initiated remotely. Additionally, an exploit exists.
Applying a patch is the recommended action to fix this issue.
A vulnerability was found in libssh2 up to 1.11.1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component SSH Handler. Executing a manipulation can lead to integer overflow.
This vulnerability is handled as CVE-2026-58050. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability was found in 7-Zip up to 26.02 on Windows. It has been rated as problematic. Affected by this issue is some unknown functionality of the component File Content Handler. The manipulation leads to protection mechanism failure.
This vulnerability is uniquely identified as CVE-2026-58052. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability, which was classified as critical, was found in Gitea act_runner up to 0.262.0. The impacted element is an unknown function of the component Docker Backend. The manipulation results in improper privilege management.
This vulnerability is reported as CVE-2026-58053. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability was found in MyBB up to 1.8.40 and classified as critical. This impacts the function verify_usergroup of the component User Module. Such manipulation leads to improper privilege management.
This vulnerability is traded as CVE-2026-58054. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability categorized as problematic has been discovered in nghttp2 up to 1.69.0. This affects an unknown part of the component HTTP Request Handler. The manipulation results in http request smuggling.
This vulnerability was named CVE-2026-58055. The attack may be performed from remote. In addition, an exploit is available.
It is advisable to implement a patch to correct this issue.
A vulnerability identified as critical has been detected in RustDesk. This vulnerability affects unknown code of the component Control Message Handler. This manipulation causes incorrect authorization.
The identification of this vulnerability is CVE-2026-58056. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Applying a patch is the recommended action to fix this issue.
A vulnerability labeled as problematic has been found in Flowise up to 3.1.2 on Windows. This issue affects some unknown processing of the component Environment Variable Handler. Such manipulation leads to improper handling of case sensitivity.
This vulnerability is referenced as CVE-2026-58057. It is possible to launch the attack remotely. Furthermore, an exploit is available.
The affected component should be upgraded.
A vulnerability identified as critical has been detected in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /preview.php. Performing a manipulation of the argument course_year_section results in sql injection.
This vulnerability is identified as CVE-2026-13485. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability labeled as critical has been found in SourceCodester Class and Exam Timetabling System 1.0/6.php. This impacts an unknown function of the file /preview6.php. Executing a manipulation of the argument course_year_section can lead to sql injection.
This vulnerability is tracked as CVE-2026-13486. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability, which was classified as critical, was found in itsourcecode Baptism Information Management System 1.0. This affects an unknown function of the file /editBaptism.php. Such manipulation of the argument ID leads to sql injection.
This vulnerability is listed as CVE-2026-13551. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability, which was classified as critical, has been found in itsourcecode Baptism Information Management System 1.0. The impacted element is an unknown function of the file /delbaptism.php. This manipulation of the argument ID causes sql injection.
This vulnerability is tracked as CVE-2026-13550. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability classified as problematic was found in CodeAstro Complaint Management System 1.0. The affected element is the function deletereport of the file application/controllers/Report.php of the component Report Endpoint. The manipulation results in authorization bypass.
This vulnerability is identified as CVE-2026-13549. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability classified as critical has been found in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /doctortimings.php. The manipulation of the argument editid leads to sql injection.
This vulnerability is referenced as CVE-2026-13548. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability described as critical has been identified in Hanwang e-Face General Management Platform 6.3.5.4. This issue affects some unknown processing of the file /manage/resourceUpload/upload.do. Executing a manipulation of the argument File can lead to unrestricted upload.
The identification of this vulnerability is CVE-2026-13547. The attack may be launched remotely. Furthermore, there is an exploit available.