Anwendungssicherheit
🟠 CVE-2026-18600: High Schwachstelle
A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. This affects the function network.switch_info/network.switch_status of the file /usr/lib/oui-httpd/rpc/network...
🟠 CVE-2026-18598: High Schwachstelle
A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function logread.get_system_log of the file...
🔴 CVE-2026-9487: Critical Schwachstelle
XML::Sig versions before 0.71 for Perl allow signature wrapping via duplicate ID. _get_signed_xml() in lib/XML/Sig.pm, called from verify(), resolves the...
🔴 CVE-2026-9390: Critical Schwachstelle
XML::Sig versions before 0.71 for Perl allow XPath injection in ID lookup. verify() and _get_signed_xml() in lib/XML/Sig.pm build XPath expressions...
🔴 CVE-2026-16534: Critical Schwachstelle
The Import and export users and customers WordPress plugin before 2.4.2 does not enforce WordPress's role-assignment and per-user edit permissions...
🔴 CVE-2026-16532: Critical Schwachstelle
The Link Library WordPress plugin before 7.9.3 does not properly sanitise and escape a user-supplied value before using it in...
🔴 CVE-2026-12965: Critical Schwachstelle
The Super Store Finder WordPress plugin through 7.8 does not sanitize a parameter of an unauthenticated AJAX action before using...
🔴 CVE-2026-18601: Critical Schwachstelle
A vulnerability was found in GL.iNet GL-MT3000 up to 4.4.5. This impacts the function ovpn-client.check_config of the file /cgi-bin/glc of...
🔴 CVE-2026-69085: Critical Schwachstelle
SiYuan before v3.7.3 contains a SQL injection vulnerability in the /api/filetree/searchDocs endpoint, where the caller-supplied keyword parameter is concatenated directly...
🔴 CVE-2026-69084: Critical Schwachstelle
SiYuan versions