Vulnerabilities (CVE)

Total 398901 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-25289 1 Qualcomm 402 Ar8035, Ar8035 Firmware, Cologne and 399 more 2026-08-06 N/A 9.6 CRITICAL
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
CVE-2026-25292 1 Qualcomm 422 Ar8031, Ar8031 Firmware, Ar8035 and 419 more 2026-08-06 N/A 7.6 HIGH
Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.
CVE-2026-68075 1 Apache 1 Qpid Broker-j 2026-08-06 N/A 6.5 MEDIUM
An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to version 10.1.0, which fixes the issue.
CVE-2026-68077 1 Apache 1 Qpid Broker-j 2026-08-06 N/A 6.5 MEDIUM
An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to version 10.1.0, which fixes the issue.
CVE-2026-21366 1 Qualcomm 66 Lemans Au Lgit, Lemans Au Lgit Firmware, Lemansau and 63 more 2026-08-06 N/A 7.8 HIGH
Memory corruption while processing a packet with a size close to the maximum allowed value.
CVE-2026-24076 1 Qualcomm 104 Aqt1000, Aqt1000 Firmware, Cologne and 101 more 2026-08-06 N/A 6.7 MEDIUM
Memory Corruption when processing registry values with incorrect types using a direct query method.
CVE-2026-24077 1 Qualcomm 288 Aqt1000, Aqt1000 Firmware, Ar8035 and 285 more 2026-08-06 N/A 6.5 MEDIUM
Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.
CVE-2026-24078 1 Qualcomm 294 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Ar8035 and 291 more 2026-08-06 N/A 6.5 MEDIUM
Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.
CVE-2026-24079 1 Qualcomm 286 Ar8035, Ar8035 Firmware, Csra6620 and 283 more 2026-08-06 N/A 8.1 HIGH
Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.
CVE-2026-24080 1 Qualcomm 72 Cologne, Cologne Firmware, Fastconnect 6700 and 69 more 2026-08-06 N/A 7.8 HIGH
Memory Corruption when handling malformed request parameters in the fingerprint TA.
CVE-2026-24083 1 Qualcomm 6 Qam8295p, Qam8295p Firmware, Qca6696 and 3 more 2026-08-06 N/A 7.8 HIGH
Memory Corruption while processing IOCTL device driver requests with invalid arguments.
CVE-2026-59173 1 Apache 1 Traffic Server 2026-08-06 N/A 7.5 HIGH
Uncontrolled Resource Consumption vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.0 through 9.1.13, from 10.0.0 through 10.1.2. Users are recommended to upgrade to version 9.1.14 or 10.1.3, which fixes the issue.
CVE-2026-48782 1 Pydantic 1 Pydantic Ai 2026-08-06 N/A 6.8 MEDIUM
Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.56.0 through 1.101.0, 2.0.0b1, and 2.0.0b2, the cloud-metadata blocklist could be bypassed by encoding the metadata IP in an IPv6 transition form that the previous fix, CVE-2026-46678, did not decode, exposing cloud IAM short-term credentials. The previous remediation decoded only IPv4-mapped IPv6, 6to4, and the NAT64 well-known prefix, so the metadata guarantee did not hold for the remaining transition forms: IPv4-compatible IPv6 (::a.b.c.d), the NAT64 RFC 8215 local-use prefix (64:ff9b:1::/48), operator-chosen NAT64 prefixes, and ISATAP. The IPv6 wrapper is then delivered to the underlying IPv4 metadata endpoint. This occurs when an application using Pydantic AI opts a URL into force_download='allow-local' (which disables the default block on private/internal IPs) and runs on a network that actually routes the affected IPv6 transition forms: NAT64-configured networks (IPv6-only or dual-stack-with-NAT64 deployments, including some Kubernetes setups) for the NAT64 variants, or networks with an ISATAP tunnel for ISATAP. A standard dual-stack cloud VM or container does not route these forms and is not affected in practice. The IPv4-compatible and Teredo variants are deprecated and addressed as defense-in-depth. This is an incomplete fix of GHSA-cqp8-fcvh-x7r3 / CVE-2026-46678 (itself a follow-up to CVE-2026-25580). This issue has been fixed in version 2.0.0b3.
CVE-2026-9726 1 Alternativecommerce 1 Alternativecommerce 2026-08-06 N/A 9.8 CRITICAL
Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal AlternativeCommerce (Basket) allows Object Injection. This issue affects Drupal AlternativeCommerce (Basket) versions: from 0.0.0 to 2.1.17.
CVE-2026-15427 1 Tp-link 2 Archer Vx1800v, Archer Vx1800v Firmware 2026-08-06 N/A 8.1 HIGH
An OS command injection vulnerability exists in the TR-069 / CWMP management interface of Archer VX1800v v1 due to insufficient input validation and sanitization of parameters, allowing crafted input to be executed as system-level commands. Exploitation requires specific conditions such as TR-069 being enabled and ability to influence ACS-delivered commands, compromise or control an ACS server. Successful exploitation may allow arbitrary command execution with root privileges, resulting in complete compromise of the device.
CVE-2026-15428 1 Tp-link 2 Archer Vx1800v, Archer Vx1800v Firmware 2026-08-06 N/A 8.8 HIGH
An OS command injection vulnerability exists in Archer VX800v v1 due to insufficient input sanitization of the domain name parameter. An adjacent attacker who can access the relevant HTTP interface can modify the parameter to inject shell metacharacters, resulting in arbitrary code execution with root privileges. Successful exploitation may allow remote code execution and complete compromise of the device.
CVE-2026-15429 1 Tp-link 2 Archer Vx1800v, Archer Vx1800v Firmware 2026-08-06 N/A 8.8 HIGH
A privilege escalation vulnerability exists in the HTTP authentication component in Archer VX1800v v1. Improper handling of user-controlled input may allow newline characters to be injected into internally constructed configuration data.  An authenticated user with sufficient privileges may be able to modify account settings and gain elevated administrative privileges.
CVE-2026-5040 1 Tp-link 2 Deco M5, Deco M5 Firmware 2026-08-06 N/A 6.7 MEDIUM
TP-Link Deco M5 v1 uses a weak password hashing mechanism to store user credentials. An attacker who obtains the password hash through system compromise or privileged access could perform brute-force or dictionary attacks. Successful exploitation may result in disclosure of authentication credentials, enabling unauthorized access to device management functions, depending on the privileges associated with the recovered password. The primary security impact is loss of confidentiality.
CVE-2026-47429 1 Vitest.dev 1 Vitest 2026-08-06 N/A 9.8 CRITICAL
Vitest is a testing framework powered by Vite. Prior to 3.2.5 and 4.1.0, the Vitest UI/API server on Windows used isFileServingAllowed incorrectly for /__vitest_attachment__, allowing \\?\\..\\ path traversal to read files outside the project; exposed API write and rerun features such as saveTestFile and rerun could also allow arbitrary script execution. This issue is fixed in versions 3.2.5 and 4.1.0.
CVE-2026-48125 1 Ua-parser-js Project 1 Ua-parser-js 2026-08-06 N/A 5.3 MEDIUM
UAParser.js is a JavaScript library to detect browsers, operating systems, CPUs, and devices from user-agent data. From 2.0.1 until 2.0.10, a regular expression denial-of-service vulnerability exists when using the Client Hints API. By sending a crafted Sec-CH-UA-Model header to an application that calls UAParser(headers).withClientHints(), an attacker can cause excessive CPU time due to catastrophic backtracking in the device regex because Client Hints values are copied without the UA_MAX_LENGTH limit used for User-Agent values. This issue is fixed in version 2.0.10.