A vulnerability labeled as critical has been found in Kiuwan SAST. This affects an unknown part of the component User Account Handler. Executing a manipulation can lead to incorrect authorization.
The identification of this vulnerability is CVE-2026-24069. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.
A vulnerability was found in goodoneuz pay-uz up to 2.2.24 and classified as critical. The impacted element is the function Route::any of the file /payment/api/editable/update of the component Endpoint. Such manipulation leads to improper access controls.
This vulnerability is traded as CVE-2026-31843. The attack may be launched remotely. There is no exploit available.
A vulnerability classified as problematic was found in Email Encoder Plugin up to 2.3.3 on WordPress. The impacted element is an unknown function. Executing a manipulation can lead to cross site scripting.
This vulnerability appears as CVE-2024-7083. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability marked as critical has been reported in Linux Kernel up to 6.12.79/6.18.20/6.19.10. This impacts the function netfs_limit_iter of the component netfs. This manipulation of the argument length causes buffer overflow.
This vulnerability appears as CVE-2026-31438. The attacker needs to be present on the local network. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability marked as problematic has been reported in Linux Kernel up to 6.6.130/6.12.79/6.18.20/6.19.10. This issue affects some unknown processing of the component xilinx. The manipulation leads to privilege escalation.
This vulnerability is documented as CVE-2026-31439. The attack requires being on the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.18.20/6.19.10. It has been declared as critical. Affected by this issue is some unknown functionality of the component netfs. The manipulation results in infinite loop.
This vulnerability is cataloged as CVE-2026-31435. The attack must originate from the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability identified as critical has been detected in Linux Kernel up to 6.12.79/6.18.20/6.19.10. This issue affects the function llist_abort_desc of the component dmaengine. Performing a manipulation results in null pointer dereference.
This vulnerability is reported as CVE-2026-31436. The attacker must have access to the local network to execute the attack. No exploit exists.
You should upgrade the affected component.
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.18.20/6.19.10. This vulnerability affects the function netfs_unbuffered_write of the file fs/netfs/direct_write.c. Such manipulation leads to null pointer dereference.
This vulnerability is documented as CVE-2026-31437. The attack requires being on the local network. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability marked as problematic has been reported in EfficientLab Controlio up to 1.3.94. This affects an unknown function. This manipulation causes uncontrolled search path.
This vulnerability is registered as CVE-2025-10549. The attack needs to be launched locally. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.6.111/6.12.52/6.17.2. Impacted is the function cifs_sg_set_buf of the file smb2ops.c of the component Crypto API. This manipulation of the argument sensitive_size causes privilege escalation.
This vulnerability is tracked as CVE-2025-40052. The attack is only possible within the local network. No exploit exists.
It is advisable to upgrade the affected component.