Anwendungssicherheit

🟠 CVE-2026-18600: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-18600: High Schwachstelle

A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. This affects the function network.switch_info/network.switch_status of the file /usr/lib/oui-httpd/rpc/network...

05. Aug. 2026 Keine Kommentare
🟠 CVE-2026-18598: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-18598: High Schwachstelle

A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function logread.get_system_log of the file...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-9487: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-9487: Critical Schwachstelle

XML::Sig versions before 0.71 for Perl allow signature wrapping via duplicate ID. _get_signed_xml() in lib/XML/Sig.pm, called from verify(), resolves the...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-9390: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-9390: Critical Schwachstelle

XML::Sig versions before 0.71 for Perl allow XPath injection in ID lookup. verify() and _get_signed_xml() in lib/XML/Sig.pm build XPath expressions...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-16534: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-16534: Critical Schwachstelle

The Import and export users and customers WordPress plugin before 2.4.2 does not enforce WordPress's role-assignment and per-user edit permissions...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-16532: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-16532: Critical Schwachstelle

The Link Library WordPress plugin before 7.9.3 does not properly sanitise and escape a user-supplied value before using it in...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-12965: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-12965: Critical Schwachstelle

The Super Store Finder WordPress plugin through 7.8 does not sanitize a parameter of an unauthenticated AJAX action before using...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-18601: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-18601: Critical Schwachstelle

A vulnerability was found in GL.iNet GL-MT3000 up to 4.4.5. This impacts the function ovpn-client.check_config of the file /cgi-bin/glc of...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-69085: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-69085: Critical Schwachstelle

SiYuan before v3.7.3 contains a SQL injection vulnerability in the /api/filetree/searchDocs endpoint, where the caller-supplied keyword parameter is concatenated directly...

05. Aug. 2026 Keine Kommentare
🔴 CVE-2026-69084: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-69084: Critical Schwachstelle

SiYuan versions

05. Aug. 2026 Keine Kommentare