#euvd

7 posts · Last used 11d

Back to Timeline
EUVD Bot @EUVD_Bot@mastodon.social · Aug 03, 2026
🚨 EUVD-2026-52288 📊 Score: 8.7/10 (CVSS v3.1) 📦 Product: luci 🏢 Vendor: OpenWRT 📅 Updated: 2026-08-03 📝 OpenWrt luci-app-bmx7 before commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd contains a path traversal vulnerability in the bmx7-info CGI script that allows unauthenticated attackers to read files outside the configured runtimeDir. Attackers can supply director... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-52288 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
1
EUVD Bot @EUVD_Bot@mastodon.social · Jul 30, 2026
🚨 EUVD-2026-50712 📊 Score: 4.3/10 (CVSS v3.1) 📦 Product: Chrome 🏢 Vendor: Google 📅 Updated: 2026-07-30 📝 Inappropriate implementation in GPU in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-50712 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
0
EUVD Bot @EUVD_Bot@mastodon.social · Jul 25, 2026
🚨 EUVD-2026-48767 📊 Score: n/a 📦 Product: Catalyst::View::Wkhtmltopdf 🏢 Vendor: RRWO 📅 Updated: 2026-07-25 📝 Catalyst::View::Wkhtmltopdf versions before 0.6.1 for Perl allow shell command injection (RCE) via PDF render options. Options are passed directly to the wkhtmltopdf command without sanitization. Any web application that passes user-controlled options su... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-48767 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
1
EUVD Bot @EUVD_Bot@mastodon.social · Jul 27, 2026
🚨 EUVD-2026-49394 📊 Score: n/a 📦 Product: Plack::App::Prerender 🏢 Vendor: RRWO 📅 Updated: 2026-07-27 📝 Plack::App::Prerender versions before 0.3.0 for Perl can proxy to an arbitrary host via unvalidated REQUEST_URI concatenation in call. When the rewrite base is a plain string, the REQUEST_URI is appended to it, with no check that the path starts with a forward ... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-49394 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
1
EUVD Bot @EUVD_Bot@mastodon.social · Jul 22, 2026
🚨 EUVD-2026-47011 📊 Score: 9.1/10 (CVSS v3.1) 📦 Product: AIT-Core, AIT-Core 🏢 Vendor: NASA-AMMOS 📅 Published: 2026-07-21 | Updated: 2026-07-22 📝 The AMMOS Instrument Toolkit (Formerly the Bespoke Links to Instruments for Surface and Space (BLISS)) is a Python-based software suite developed to handle Ground Data System (GDS), Electronic Ground Support Equipment (E... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-47011 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
0
EUVD Bot @EUVD_Bot@mastodon.social · Jul 19, 2026
🚨 EUVD-2026-45461 📊 Score: n/a 📦 Product: Linux, Linux, Linux (+11 more) 🏢 Vendor: Linux 📅 Updated: 2026-07-19 📝 In the Linux kernel, the following vulnerability has been resolved: 9p: avoid putting oldfid in p9_client_walk() error path When p9_client_walk() is called with clone set to false, fid aliases oldfid. If the walk subsequently fails after the request ... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45461 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
0
EUVD Bot @EUVD_Bot@mastodon.social · Jul 15, 2026
🚨 EUVD-2026-44693 📊 Score: 8.3/10 (CVSS v3.1) 📦 Product: vaultwarden 🏢 Vendor: dani-garcia 📅 Updated: 2026-07-15 📝 Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's SSO authorization flow did not bind the OAuth state parameter accepted by /connect/authorize to the initiating browser session, allowed attacker-controlled P... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-44693 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
0
EUVD Bot @EUVD_Bot@mastodon.social · Jun 30, 2026
🚨 EUVD-2026-40345 📊 Score: 10.0/10 (CVSS v3.1) 📦 Product: ColdFusion 🏢 Vendor: Adobe 📅 Updated: 2026-06-30 📝 ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-40345 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
0

You've seen all posts