Anwendungssicherheit
🟠 CVE-2026-56808: High Schwachstelle
DGM3103SCT provided by AVTECH Security Corporation contains an OS command injection vulnerability, which may lead to arbitrary command execution with...
🟠 CVE-2026-8451: High Luecke in Citrix Netscaler_Application_Delivery_Controller
Insufficient input validation in NetScaler ADC and NetScaler Gateway leading to memory overread if NetScaler ADC or NetScaler Gateway is configured as a...
🟠 CVE-2026-57081: High Schwachstelle
Net::BitTorrent versions through 2.0.1 for Perl allow remote memory exhaustion via deeply nested bencoded input. bdecode recurses once per nested...
🟠 CVE-2026-49432: High Schwachstelle
Improper Input Validation vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp. A remote unauthenticated peer that can reach...
🟠 CVE-2026-14164: High Schwachstelle
A double free issue has been identified in libarchive's RAR5 reader. During parsing of a specially crafted RAR5 archive, the...
🟠 CVE-2026-56137: High Schwachstelle
RPG MAKER MV and MZ provided by Gotcha Gotcha Games Inc. contain an OS command injection vulnerability. If a user...
🟠 CVE-2026-49877: High Schwachstelle
Improper Authorization vulnerability in Apache ActiveMQ. An authenticated low-privilege Web Console user by default can access /admin/* paths in the...
🟠 CVE-2026-11590: High Schwachstelle
The WP Support Plus Responsive Ticket System WordPress plugin through 9.1.2 does not sanitize user-supplied array keys before using them...
🟠 CVE-2026-27957: High Schwachstelle
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.464, an authenticated command injection...
🔴 CVE-2026-6556: Critical Luecke in Fastify Fastify\/Express
@fastify/express versions 4.0.6 and earlier only rewrite the plugin prefix for middleware mount paths when the path argument is a...