Total
398901 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-25289 | 1 Qualcomm | 402 Ar8035, Ar8035 Firmware, Cologne and 399 more | 2026-08-06 | N/A | 9.6 CRITICAL |
| Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values. | |||||
| CVE-2026-25292 | 1 Qualcomm | 422 Ar8031, Ar8031 Firmware, Ar8035 and 419 more | 2026-08-06 | N/A | 7.6 HIGH |
| Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration. | |||||
| CVE-2026-68075 | 1 Apache | 1 Qpid Broker-j | 2026-08-06 | N/A | 6.5 MEDIUM |
| An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to version 10.1.0, which fixes the issue. | |||||
| CVE-2026-68077 | 1 Apache | 1 Qpid Broker-j | 2026-08-06 | N/A | 6.5 MEDIUM |
| An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to version 10.1.0, which fixes the issue. | |||||
| CVE-2026-21366 | 1 Qualcomm | 66 Lemans Au Lgit, Lemans Au Lgit Firmware, Lemansau and 63 more | 2026-08-06 | N/A | 7.8 HIGH |
| Memory corruption while processing a packet with a size close to the maximum allowed value. | |||||
| CVE-2026-24076 | 1 Qualcomm | 104 Aqt1000, Aqt1000 Firmware, Cologne and 101 more | 2026-08-06 | N/A | 6.7 MEDIUM |
| Memory Corruption when processing registry values with incorrect types using a direct query method. | |||||
| CVE-2026-24077 | 1 Qualcomm | 288 Aqt1000, Aqt1000 Firmware, Ar8035 and 285 more | 2026-08-06 | N/A | 6.5 MEDIUM |
| Information Disclosure when processing wireless network channel switch information with improperly formatted length fields. | |||||
| CVE-2026-24078 | 1 Qualcomm | 294 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Ar8035 and 291 more | 2026-08-06 | N/A | 6.5 MEDIUM |
| Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling. | |||||
| CVE-2026-24079 | 1 Qualcomm | 286 Ar8035, Ar8035 Firmware, Csra6620 and 283 more | 2026-08-06 | N/A | 8.1 HIGH |
| Cryptographic Issue while processing registration requests with malformed or missing authentication parameters. | |||||
| CVE-2026-24080 | 1 Qualcomm | 72 Cologne, Cologne Firmware, Fastconnect 6700 and 69 more | 2026-08-06 | N/A | 7.8 HIGH |
| Memory Corruption when handling malformed request parameters in the fingerprint TA. | |||||
| CVE-2026-24083 | 1 Qualcomm | 6 Qam8295p, Qam8295p Firmware, Qca6696 and 3 more | 2026-08-06 | N/A | 7.8 HIGH |
| Memory Corruption while processing IOCTL device driver requests with invalid arguments. | |||||
| CVE-2026-59173 | 1 Apache | 1 Traffic Server | 2026-08-06 | N/A | 7.5 HIGH |
| Uncontrolled Resource Consumption vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.0 through 9.1.13, from 10.0.0 through 10.1.2. Users are recommended to upgrade to version 9.1.14 or 10.1.3, which fixes the issue. | |||||
| CVE-2026-48782 | 1 Pydantic | 1 Pydantic Ai | 2026-08-06 | N/A | 6.8 MEDIUM |
| Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.56.0 through 1.101.0, 2.0.0b1, and 2.0.0b2, the cloud-metadata blocklist could be bypassed by encoding the metadata IP in an IPv6 transition form that the previous fix, CVE-2026-46678, did not decode, exposing cloud IAM short-term credentials. The previous remediation decoded only IPv4-mapped IPv6, 6to4, and the NAT64 well-known prefix, so the metadata guarantee did not hold for the remaining transition forms: IPv4-compatible IPv6 (::a.b.c.d), the NAT64 RFC 8215 local-use prefix (64:ff9b:1::/48), operator-chosen NAT64 prefixes, and ISATAP. The IPv6 wrapper is then delivered to the underlying IPv4 metadata endpoint. This occurs when an application using Pydantic AI opts a URL into force_download='allow-local' (which disables the default block on private/internal IPs) and runs on a network that actually routes the affected IPv6 transition forms: NAT64-configured networks (IPv6-only or dual-stack-with-NAT64 deployments, including some Kubernetes setups) for the NAT64 variants, or networks with an ISATAP tunnel for ISATAP. A standard dual-stack cloud VM or container does not route these forms and is not affected in practice. The IPv4-compatible and Teredo variants are deprecated and addressed as defense-in-depth. This is an incomplete fix of GHSA-cqp8-fcvh-x7r3 / CVE-2026-46678 (itself a follow-up to CVE-2026-25580). This issue has been fixed in version 2.0.0b3. | |||||
| CVE-2026-9726 | 1 Alternativecommerce | 1 Alternativecommerce | 2026-08-06 | N/A | 9.8 CRITICAL |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal AlternativeCommerce (Basket) allows Object Injection. This issue affects Drupal AlternativeCommerce (Basket) versions: from 0.0.0 to 2.1.17. | |||||
| CVE-2026-15427 | 1 Tp-link | 2 Archer Vx1800v, Archer Vx1800v Firmware | 2026-08-06 | N/A | 8.1 HIGH |
| An OS command injection vulnerability exists in the TR-069 / CWMP management interface of Archer VX1800v v1 due to insufficient input validation and sanitization of parameters, allowing crafted input to be executed as system-level commands. Exploitation requires specific conditions such as TR-069 being enabled and ability to influence ACS-delivered commands, compromise or control an ACS server. Successful exploitation may allow arbitrary command execution with root privileges, resulting in complete compromise of the device. | |||||
| CVE-2026-15428 | 1 Tp-link | 2 Archer Vx1800v, Archer Vx1800v Firmware | 2026-08-06 | N/A | 8.8 HIGH |
| An OS command injection vulnerability exists in Archer VX800v v1 due to insufficient input sanitization of the domain name parameter. An adjacent attacker who can access the relevant HTTP interface can modify the parameter to inject shell metacharacters, resulting in arbitrary code execution with root privileges. Successful exploitation may allow remote code execution and complete compromise of the device. | |||||
| CVE-2026-15429 | 1 Tp-link | 2 Archer Vx1800v, Archer Vx1800v Firmware | 2026-08-06 | N/A | 8.8 HIGH |
| A privilege escalation vulnerability exists in the HTTP authentication component in Archer VX1800v v1. Improper handling of user-controlled input may allow newline characters to be injected into internally constructed configuration data. An authenticated user with sufficient privileges may be able to modify account settings and gain elevated administrative privileges. | |||||
| CVE-2026-5040 | 1 Tp-link | 2 Deco M5, Deco M5 Firmware | 2026-08-06 | N/A | 6.7 MEDIUM |
| TP-Link Deco M5 v1 uses a weak password hashing mechanism to store user credentials. An attacker who obtains the password hash through system compromise or privileged access could perform brute-force or dictionary attacks. Successful exploitation may result in disclosure of authentication credentials, enabling unauthorized access to device management functions, depending on the privileges associated with the recovered password. The primary security impact is loss of confidentiality. | |||||
| CVE-2026-47429 | 1 Vitest.dev | 1 Vitest | 2026-08-06 | N/A | 9.8 CRITICAL |
| Vitest is a testing framework powered by Vite. Prior to 3.2.5 and 4.1.0, the Vitest UI/API server on Windows used isFileServingAllowed incorrectly for /__vitest_attachment__, allowing \\?\\..\\ path traversal to read files outside the project; exposed API write and rerun features such as saveTestFile and rerun could also allow arbitrary script execution. This issue is fixed in versions 3.2.5 and 4.1.0. | |||||
| CVE-2026-48125 | 1 Ua-parser-js Project | 1 Ua-parser-js | 2026-08-06 | N/A | 5.3 MEDIUM |
| UAParser.js is a JavaScript library to detect browsers, operating systems, CPUs, and devices from user-agent data. From 2.0.1 until 2.0.10, a regular expression denial-of-service vulnerability exists when using the Client Hints API. By sending a crafted Sec-CH-UA-Model header to an application that calls UAParser(headers).withClientHints(), an attacker can cause excessive CPU time due to catastrophic backtracking in the device regex because Client Hints values are copied without the UA_MAX_LENGTH limit used for User-Agent values. This issue is fixed in version 2.0.10. | |||||
