Search

Search Results (400990 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-39601 2026-10-02 3.7 Low
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in WPdevelop Booking Calendar booking allows Leveraging Race Conditions.This issue affects Booking Calendar: from n/a through 11.8.4.
CVE-2026-102666 1 Joyland 1 Joyland.ai 2026-10-02 6.5 Medium
The Joyland AI app contains hard-coded credentials for the GeTui push notification service, allowing an attacker to access the GeTui REST API and send push notifications containing arbitrary content to any user, group of users, or all users of the app at once.
CVE-2026-82358 1 Rt-labs Ab 1 C-open 2026-10-02 6.5 Medium
RT-Labs AB C-Open CANopen contains a write protection bypass in the SDO (Service Data Object) server implementation 'src/co_sdo_server.c' that fails to properly validate write permissions when processing download-segment frames. An unauthenticated attacker on the CAN bus can initiate an SDO upload for a read-only Object Dictionary (OD) entry, which sets a data pointer to the read-only object, then send download-segment frames to write to that memory location. The download-segment handler does not verify that a download session is active, allowing any CANopen node to overwrite read-only OD entries using two SDO frames. Note that CANopen protocol operates over CAN bus and does not provide built-in authentication mechanisms. Fixed in 1.1.1.
CVE-2026-102668 1 Joyland 1 Joyland.ai 2026-10-02 5.3 Medium
The Joyland AI app accepts any TLS certificates from any server without validation.
CVE-2026-102669 1 Joyland 1 Joyland.ai 2026-10-02 5.3 Medium
Joyland AI app does not verify hostnames, allowing a malicious host to connect or intercept chat messages.
CVE-2026-102670 1 Joyland 1 Joyland.ai 2026-10-02 4.3 Medium
Joyland AI app explicitly permits cleartext HTTP traffic on Android 9+ where the default is to block it.
CVE-2026-55393 1 Teledyne Flir 1 Aware2 2026-10-02 N/A
Unvalidated pathnames in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 (PackBot) and 1.7.9 (FirstLook) allows remote unauthenticated attackers to read configuration and security parameters on Teledyne FLIR PackBot and FirstLook robots running this software via path traversal.
CVE-2026-55394 1 Teledyne Flir 1 Aware2 2026-10-02 N/A
Unencrypted traffic in the 802.11 network of Teledyne FLIR Aware2 versions through 6.9.0.2 allows adjacent unauthenticated attackers to intercept, hijack, or modify session traffic against Teledyne FLIR PackBot robots running this software via sniffing or hijacking network traffic.
CVE-2026-14983 1 Teledyne Flir 1 Aware2 2026-10-02 N/A
Missing authentication in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to achieve denial of service against Teledyne FLIR PackBot robots running this software via misuse of the reboot endpoint.
CVE-2026-14984 1 Teledyne Flir 1 Aware2 2026-10-02 N/A
Cleartext transmission in the primary control endpoints of Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to intercept, hijack, or modify session traffic against Teledyne FLIR PackBot robots running this software via sniffing or hijacking network traffic.
CVE-2026-55395 1 Teledyne Flir 1 Aware2 2026-10-02 N/A
Hardcoded passwords in the access control in Teledyne FLIR Aware2 versions through 6.9.0.2 (PackBot) and 1.7.9 (FirstLook) allows remote unauthenticated attackers to access and reconfigure Teledyne FLIR PackBot and FirstLook robots running this software via reading the passwords from the firmware or documentation.
CVE-2026-55396 1 Teledyne Flir 1 Aware2 2026-10-02 N/A
Cleartext transmission without a cryptographic integrity check in operator control unit to robot UDP traffic in Teledyne FLIR Aware2 versions through 6.9.0.2 (PackBot) and 1.7.9 (FirstLook) allows adjacent unauthenticated attackers to intercept, hijack, or modify control traffic against Teledyne FLIR PackBot and FirstLook robots running this software via sniffing or hijacking network traffic.
CVE-2026-102671 1 Joyland 1 Joyland.ai 2026-10-02 5.3 Medium
The Joyland AI app accepts invalid SSL certificates in the invisible advertisement WebView by default.
CVE-2026-100251 1 Wormhole App 1 Wormhole 2026-10-02 6.5 Medium
Wormhole.app as deployed before 2026-08-22 misconfigures the coturn TURN server and does not properly restrict TCP relay peers, allowing an unauthenticated attacker to access instance metadata or to source TCP connections from the Wormhole relay's IP.
CVE-2026-102628 1 Eummena 1 Cadmos Lti 2026-10-02 9.3 Critical
The Cadmos LTI application hosted at cadmos.eummena.io had Laravel debug mode enabled (APP_DEBUG=true, APP_ENV=local) in a publicly accessible environment. An unauthenticated attacker could send a GET request and trigger an unhandled exception, causing Laravel to expose the entire server environment, including all .env configuration variables, in plaintext. Fixed on or before 2026-09-02.
CVE-2026-55252 1 Openrundev 1 Openrun 2026-10-02 N/A
OpenRun is an open-source, self-hosted GitOps platform for deploying web apps and internal tools to Docker or Kubernetes. Prior to version 0.17.7, the restrictions on redirect URLs in openrun can be bypassed by attackers, leading to open redirect attacks. This issue has been patched in version 0.17.7.
CVE-2026-96780 1 Patorjk 1 Figlet.js 2026-10-02 N/A
figlet.js is a FIG driver written in JavaScript that aims to implement the FIGfont specification. Prior to 1.11.3, text() and textSync() can enter an unbounded loop when whitespaceBreak is enabled and width is smaller than the rendered width of a single FIGlet character. Under these conditions, breakWord() cannot find a valid break point and returns without consuming a character, so generateFigTextLines() repeatedly processes the same input while consuming CPU and growing memory. The non-default option and attacker-controlled width must both reach an affected call. This issue is fixed in version 1.11.3.
CVE-2026-104020 1 Amazon 1 Ion-python 2026-10-02 7.5 High
Uncontrolled recursion in the Ion reader in Amazon Ion Python before 0.15.0 might allow a remote unauthenticated actor to crash the application using the library, resulting in a denial of service, via a crafted, deeply nested Ion value. To remediate this issue, users should upgrade to version 0.15.0 or later.
CVE-2026-102370 1 Tp-link 2 Kasa Ec70 V4, Kasa Ec71 V4 2026-10-02 N/A
Kasa EC70 v4 and EC71 v4 do not logically disable the production debug interface at the firmware or chip level and do not lock the bootloader.  Although the debug traces are physically severed during manufacturing, an attacker with physical access can restore the connection, interrupt the boot process, and manipulate boot parameters to enter a non-standard initialization path that exposes an unauthenticated root shell during startup. Successful exploitation may allow an attacker with physical access to obtain root-level command access during device startup, resulting in loss of confidentiality, integrity, and availability for the affected device. Exploitation requires device disassembly, restoration of the severed debug connection, and manipulation of the boot process.
CVE-2026-104002 1 Aws 1 Powertools-lambda-python 2026-10-02 5.3 Medium
A fail-open error handling issue within the data masking utility of Powertools for AWS Lambda (Python) might allow actors to read sensitive field values that the application intended to mask.  To remediate this issue, users should upgrade to version 3.35.0.