CVE Alerts 's Avatar

CVE Alerts

@cve.skyfleet.blue

Unofficial account to notify You about new CVE id's CVE is a program that identifies, defines, and catalogs publicly disclosed cybersecurity vulnerabilities. check out @infosec.skyfleet.blue 🆘 @skyfleet.blue

1,046
Followers
6
Following
22,669
Posts
02.08.2023
Joined
Posts Following

Latest posts by CVE Alerts @cve.skyfleet.blue

CVE-2026-3698 - UTT HiPER 810G NTP strcpy buffer overflow A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. This affects the function strcpy of the file /goform/NTP. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit is publicly available and might be used.

CVE-2026-3698 - UTT HiPER 810G NTP strcpy buffer overflow
CVE ID : CVE-2026-3698

Published : March 8, 2026, 2:16 a.m. | 56 minutes ago

Description : A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. This affects the function strcpy of the file /goform/...

08.03.2026 05:39 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3699 - UTT HiPER 810G formRemoteControl strcpy buffer overflow A security flaw has been discovered in UTT HiPER 810G up to 1.7.7-171114. This impacts the function strcpy of the file /goform/formRemoteControl. The manipulation results in buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks.

CVE-2026-3699 - UTT HiPER 810G formRemoteControl strcpy buffer overflow
CVE ID : CVE-2026-3699

Published : March 8, 2026, 3:16 a.m. | 1 hour, 56 minutes ago

Description : A security flaw has been discovered in UTT HiPER 810G up to 1.7.7-171114. This impacts the function ...

08.03.2026 05:34 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3697 - Planet ICG-2510 Language Package Configuration httpd sub_40C8E4 stack-based overflow A vulnerability was determined in Planet ICG-2510 1.0_20250811. The impacted element is the function sub_40C8E4 of the file /usr/sbin/httpd of the component Language Package Configuration Handler. Executing a manipulation of the argument Language can lead to stack-based buffer overflow. The attack can be launched remotely. The vendor was contacted early …

CVE-2026-3697 - Planet ICG-2510 Language Package Configuration httpd sub_40C8E4 stack-based overflow
CVE ID : CVE-2026-3697

Published : March 8, 2026, 2:16 a.m. | 56 minutes ago

Description : A vulnerability was determined in Planet ICG-2510 1.0_20250811. The impacted el...

08.03.2026 05:29 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3698 - UTT HiPER 810G NTP strcpy buffer overflow A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. This affects the function strcpy of the file /goform/NTP. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit is publicly available and might be used.

CVE-2026-3698 - UTT HiPER 810G NTP strcpy buffer overflow
CVE ID : CVE-2026-3698

Published : March 8, 2026, 2:16 a.m. | 2 hours, 56 minutes ago

Description : A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. This affects the function strcpy of the file...

08.03.2026 05:24 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3700 - UTT HiPER 810G formConfigDnsFilterGlobal strcpy buffer overflow A weakness has been identified in UTT HiPER 810G up to 1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigDnsFilterGlobal. This manipulation causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks.

CVE-2026-3700 - UTT HiPER 810G formConfigDnsFilterGlobal strcpy buffer overflow
CVE ID : CVE-2026-3700

Published : March 8, 2026, 3:16 a.m. | 1 hour, 56 minutes ago

Description : A weakness has been identified in UTT HiPER 810G up to 1.7.7-171114. Affected is the functio...

08.03.2026 05:19 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30910 - Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows. Combined aead encryption, combined signature creation, and bin2hex functions do not check that output size will be less than SIZE_MAX, which could lead to integer wraparound causing an undersized output buffer. This can cause a crash in bin2hex and encryption …

CVE-2026-30910 - Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows
CVE ID : CVE-2026-30910

Published : March 8, 2026, 2:16 a.m. | 56 minutes ago

Description : Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer ov...

08.03.2026 05:14 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3682 - welovemedia FFmate ffmpeg.go Execute argument injection A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. This vulnerability affects the function Execute of the file /internal/service/ffmpeg/ffmpeg.go. The manipulation leads to argument injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about …

CVE-2026-3682 - welovemedia FFmate ffmpeg.go Execute argument injection
CVE ID : CVE-2026-3682

Published : March 8, 2026, 12:16 a.m. | 56 minutes ago

Description : A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. This vulnerability affects t...

08.03.2026 01:58 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3683 - bufanyun HotGo Endpoint upload.go ImageTransferStorage server-side request forgery A vulnerability was detected in bufanyun HotGo up to 2.0. This issue affects the function ImageTransferStorage of the file /server/internal/logic/common/upload.go of the component Endpoint. The manipulation results in server-side request forgery. The attack may be launched remotely. The exploit is now public and may be used. The vendor was contacted …

CVE-2026-3683 - bufanyun HotGo Endpoint upload.go ImageTransferStorage server-side request forgery
CVE ID : CVE-2026-3683

Published : March 8, 2026, 12:16 a.m. | 56 minutes ago

Description : A vulnerability was detected in bufanyun HotGo up to 2.0. This issue affects the...

08.03.2026 01:53 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3680 - RyuzakiShinji biome-mcp-server biome-mcp-server.ts command injection A security flaw has been discovered in RyuzakiShinji biome-mcp-server up to 1.0.0. Affected by this issue is some unknown functionality of the file biome-mcp-server.ts. Performing a manipulation results in command injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for …

CVE-2026-3680 - RyuzakiShinji biome-mcp-server biome-mcp-server.ts command injection
CVE ID : CVE-2026-3680

Published : March 7, 2026, 11:15 p.m. | 1 hour, 56 minutes ago

Description : A security flaw has been discovered in RyuzakiShinji biome-mcp-server up to 1.0.0. Aff...

08.03.2026 01:48 👍 1 🔁 0 💬 0 📌 0
CVE-2026-3681 - welovemedia FFmate webhook.go fireWebhook server-side request forgery A weakness has been identified in welovemedia FFmate up to 2.0.15. This affects the function fireWebhook of the file /internal/service/webhook/webhook.go. Executing a manipulation can lead to server-side request forgery. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks. …

CVE-2026-3681 - welovemedia FFmate webhook.go fireWebhook server-side request forgery
CVE ID : CVE-2026-3681

Published : March 7, 2026, 11:15 p.m. | 1 hour, 56 minutes ago

Description : A weakness has been identified in welovemedia FFmate up to 2.0.15. This affects the f...

08.03.2026 01:43 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30909 - Crypt::NaCl::Sodium versions through 2.002 for Perl has potential integer overflows Crypt::NaCl::Sodium versions through 2.002 for Perl has potential integer overflows. bin2hex, encrypt, aes256gcm_encrypt_afternm and seal functions do not check that output size will be less than SIZE_MAX, which could lead to integer wraparound causing an undersized output buffer. Encountering this issue is unlikely as the message length would need to …

CVE-2026-30909 - Crypt::NaCl::Sodium versions through 2.002 for Perl has potential integer overflows
CVE ID : CVE-2026-30909

Published : March 8, 2026, 12:46 a.m. | 26 minutes ago

Description : Crypt::NaCl::Sodium versions through 2.002 for Perl has potential integer ove...

08.03.2026 01:38 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3696 - Totolink N300RH CGI cstecgi.cgi setWiFiWpsConfig os command injection A vulnerability was found in Totolink N300RH 6..1c.1353_B20190305. The affected element is the function setWiFiWpsConfig of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performing a manipulation results in os command injection. The attack can be initiated remotely. The exploit has been made public and could be used.

CVE-2026-3696 - Totolink N300RH CGI cstecgi.cgi setWiFiWpsConfig os command injection
CVE ID : CVE-2026-3696

Published : March 8, 2026, 12:32 a.m. | 40 minutes ago

Description : A vulnerability was found in Totolink N300RH 6..1c.1353_B20190305. The affected element is th...

08.03.2026 01:33 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3695 - SourceCodester Modern Image Gallery App delete.php path traversal A vulnerability has been found in SourceCodester Modern Image Gallery App 1.0. Impacted is an unknown function of the file /delete.php. Such manipulation of the argument filename leads to path traversal. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be …

CVE-2026-3695 - SourceCodester Modern Image Gallery App delete.php path traversal
CVE ID : CVE-2026-3695

Published : March 8, 2026, 12:32 a.m. | 40 minutes ago

Description : A vulnerability has been found in SourceCodester Modern Image Gallery App 1.0. Impacted is an unk...

08.03.2026 01:29 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3693 - Shy2593666979 AgentChat User Endpoint user.py update_user_info resource injection A flaw has been found in Shy2593666979 AgentChat up to 2.3.0. This issue affects the function get_user_info/update_user_info of the file /src/backend/agentchat/api/v1/user.py of the component User Endpoint. This manipulation of the argument user_id causes improper control of resource identifiers. It is possible to initiate the attack remotely. The exploit has been …

CVE-2026-3693 - Shy2593666979 AgentChat User Endpoint user.py update_user_info resource injection
CVE ID : CVE-2026-3693

Published : March 8, 2026, 12:32 a.m. | 40 minutes ago

Description : A flaw has been found in Shy2593666979 AgentChat up to 2.3.0. This issue affects ...

08.03.2026 01:25 👍 1 🔁 0 💬 0 📌 0
CVE-2026-3679 - Tenda FH451 QuickIndex formQuickIndex stack-based overflow A vulnerability was identified in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function formQuickIndex of the file /goform/QuickIndex. Such manipulation of the argument mit_linktype/PPPOEPassword leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit is publicly available and might be used.

CVE-2026-3679 - Tenda FH451 QuickIndex formQuickIndex stack-based overflow
CVE ID : CVE-2026-3679

Published : March 7, 2026, 11:15 p.m. | 1 hour, 56 minutes ago

Description : A vulnerability was identified in Tenda FH451 1.0.0.9. Affected by this vulnerability is the fun...

08.03.2026 01:24 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3677 - Tenda FH451 setcfm fromSetCfm stack-based overflow A vulnerability was found in Tenda FH451 1.0.0.9. This impacts the function fromSetCfm of the file /goform/setcfm. The manipulation of the argument funcname/funcpara1 results in stack-based buffer overflow. The attack may be performed from remote. The exploit has been made public and could be used.

CVE-2026-3677 - Tenda FH451 setcfm fromSetCfm stack-based overflow
CVE ID : CVE-2026-3677

Published : March 7, 2026, 10:15 p.m. | 2 hours, 56 minutes ago

Description : A vulnerability was found in Tenda FH451 1.0.0.9. This impacts the function fromSetCfm of the file /gof...

08.03.2026 01:19 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3678 - Tenda FH451 AdvSetWan sub_3C434 stack-based overflow A vulnerability was determined in Tenda FH451 1.0.0.9. Affected is the function sub_3C434 of the file /goform/AdvSetWan. This manipulation of the argument wanmode/PPPOEPassword causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.

CVE-2026-3678 - Tenda FH451 AdvSetWan sub_3C434 stack-based overflow
CVE ID : CVE-2026-3678

Published : March 7, 2026, 11:15 p.m. | 1 hour, 56 minutes ago

Description : A vulnerability was determined in Tenda FH451 1.0.0.9. Affected is the function sub_3C434 of the file ...

08.03.2026 01:14 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3670 - Freedom Factory dGEN1 com.dgen.alarm improper authorization A vulnerability was detected in Freedom Factory dGEN1 up to 20260221. Affected is an unknown function of the component com.dgen.alarm. Performing a manipulation results in improper authorization. The attack requires a local approach. The exploit is now public and may be used. The vendor was contacted early about this disclosure …

CVE-2026-3670 - Freedom Factory dGEN1 com.dgen.alarm improper authorization
CVE ID : CVE-2026-3670

Published : March 7, 2026, 7:15 p.m. | 1 hour, 56 minutes ago

Description : A vulnerability was detected in Freedom Factory dGEN1 up to 20260221. Affected is an unknown fun...

07.03.2026 21:29 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3669 - Freedom Factory dGEN1 com.dgen.alarm AlarmService improper authorization A security vulnerability has been detected in Freedom Factory dGEN1 up to 20260221. This impacts the function AlarmService of the component com.dgen.alarm. Such manipulation leads to improper authorization. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. The vendor was contacted early …

CVE-2026-3669 - Freedom Factory dGEN1 com.dgen.alarm AlarmService improper authorization
CVE ID : CVE-2026-3669

Published : March 7, 2026, 7:15 p.m. | 1 hour, 56 minutes ago

Description : A security vulnerability has been detected in Freedom Factory dGEN1 up to 20260221....

07.03.2026 21:24 👍 0 🔁 0 💬 0 📌 0
CVE-2026-2671 - Mendi Neurofeedback Headset Bluetooth Low Energy cleartext transmission A vulnerability was detected in Mendi Neurofeedback Headset V4. Affected by this vulnerability is an unknown functionality of the component Bluetooth Low Energy Handler. Performing a manipulation results in cleartext transmission of sensitive information. The attack can only be performed from the local network. The attack's complexity is rated as …

CVE-2026-2671 - Mendi Neurofeedback Headset Bluetooth Low Energy cleartext transmission
CVE ID : CVE-2026-2671

Published : March 7, 2026, 6:16 p.m. | 2 hours, 56 minutes ago

Description : A vulnerability was detected in Mendi Neurofeedback Headset V4. Affected by this vu...

07.03.2026 21:19 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30856 - WeKnora: Tool Execution Hijacking via Ambigous Naming Convention In MCP client and Indirect Prompt Injection WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.3.0, a vulnerability involving tool name collision and indirect prompt injection allows a malicious remote MCP server to hijack tool execution. By exploiting an ambiguous naming convention in the MCP client (mcp_{service}_{tool}), an attacker …

CVE-2026-30856 - WeKnora: Tool Execution Hijacking via Ambigous Naming Convention In MCP client and Indirect Prompt Injection
CVE ID : CVE-2026-30856

Published : March 7, 2026, 4:32 p.m. | 38 minutes ago

Description : WeKnora is an LLM-powered framework designed for deep...

07.03.2026 20:13 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30852 - Caddy: vars_regexp double-expands user input, leaking env vars and files Caddy is an extensible server platform that uses TLS by default. From version 2.7.5 to before version 2.11.2, the vars_regexp matcher in vars.go:337 double-expands user-controlled input through the Caddy replacer. When vars_regexp matches against a placeholder like {http.request.header.X-Input}, the header value gets resolved once (expected), then passed through repl.ReplaceAll() again …

CVE-2026-30852 - Caddy: vars_regexp double-expands user input, leaking env vars and files
CVE ID : CVE-2026-30852

Published : March 7, 2026, 4:28 p.m. | 43 minutes ago

Description : Caddy is an extensible server platform that uses TLS by default. From version 2.7.5 to be...

07.03.2026 20:08 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3667 - Freedom Factory dGEN1 org.ethosmobile.ethoslauncher FakeAppService improper authorization A security flaw has been discovered in Freedom Factory dGEN1 up to 20260221. The impacted element is the function FakeAppService of the component org.ethosmobile.ethoslauncher. The manipulation results in improper authorization. The attack must be initiated from a local position. The exploit has been released to the public and may be …

CVE-2026-3667 - Freedom Factory dGEN1 org.ethosmobile.ethoslauncher FakeAppService improper authorization
CVE ID : CVE-2026-3667

Published : March 7, 2026, 4:15 p.m. | 55 minutes ago

Description : A security flaw has been discovered in Freedom Factory dGEN1 up to 2026022...

07.03.2026 20:03 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30855 - WeKnora: Broken Access Control in Tenant Management WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.3.2, an authorization bypass in tenant management endpoints of WeKnora application allows any authenticated user to read, modify, or delete any tenant by ID. Since account registration is open to the public, this vulnerability …

CVE-2026-30855 - WeKnora: Broken Access Control in Tenant Management
CVE ID : CVE-2026-30855

Published : March 7, 2026, 4:31 p.m. | 40 minutes ago

Description : WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to ...

07.03.2026 19:58 👍 0 🔁 0 💬 0 📌 0
CVE-2026-29787 - mcp-memory-service: System Information Disclosure via Health Endpoint mcp-memory-service is an open-source memory backend for multi-agent systems. Prior to version 10.21.0, the /api/health/detailed endpoint returns detailed system information including OS version, Python version, CPU count, memory totals, disk usage, and the full database filesystem path. When MCP_ALLOW_ANONYMOUS_ACCESS=true is set (required for the HTTP server to function without OAuth/API …

CVE-2026-29787 - mcp-memory-service: System Information Disclosure via Health Endpoint
CVE ID : CVE-2026-29787

Published : March 7, 2026, 4:15 p.m. | 55 minutes ago

Description : mcp-memory-service is an open-source memory backend for multi-agent systems. Prior to versio...

07.03.2026 19:53 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30859 - WeKnora: Broken Access Control - Cross-Tenant Data Exposure WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.2.12, a broken access control vulnerability in the database query tool allows any authenticated tenant to read sensitive data belonging to other tenants, including API keys, model configurations, and private messages. The application fails …

CVE-2026-30859 - WeKnora: Broken Access Control - Cross-Tenant Data Exposure
CVE ID : CVE-2026-30859

Published : March 7, 2026, 4:35 p.m. | 36 minutes ago

Description : WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. P...

07.03.2026 19:48 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30832 - Soft Serve: SSRF via unvalidated LFS endpoint in repo import Soft Serve is a self-hostable Git server for the command line. From version 0.6.0 to before version 0.11.4, an authenticated SSH user can force the server to make HTTP requests to internal/private IP addresses by running repo import with a crafted --lfs-endpoint URL. The initial batch request is blind (the …

CVE-2026-30832 - Soft Serve: SSRF via unvalidated LFS endpoint in repo import
CVE ID : CVE-2026-30832

Published : March 7, 2026, 4:15 p.m. | 55 minutes ago

Description : Soft Serve is a self-hostable Git server for the command line. From version 0.6.0 to before version 0...

07.03.2026 19:44 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30851 - Caddy forward_auth copy_headers Does Not Strip Client-Supplied Headers, Allowing Identity Injection and Privilege Escalation Caddy is an extensible server platform that uses TLS by default. From version 2.10.0 to before version 2.11.2, forward_auth copy_headers does not strip client-supplied headers, allowing identity injection and privilege escalation. This issue has been patched in version 2.11.2.

CVE-2026-30851 - Caddy forward_auth copy_headers Does Not Strip Client-Supplied Headers, Allowing Identity Injection and Privilege Escalation
CVE ID : CVE-2026-30851

Published : March 7, 2026, 4:28 p.m. | 42 minutes ago

Description : Caddy is an extensible server platfor...

07.03.2026 19:40 👍 0 🔁 0 💬 0 📌 0
CVE-2026-30834 - PinchTab: SSRF with Full Response Exfiltration via Download Handler PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. Prior to version 0.7.7, a Server-Side Request Forgery (SSRF) vulnerability in the /download endpoint allows any user with API access to induce the PinchTab server to make requests to arbitrary URLs, including internal network …

CVE-2026-30834 - PinchTab: SSRF with Full Response Exfiltration via Download Handler
CVE ID : CVE-2026-30834

Published : March 7, 2026, 4:15 p.m. | 55 minutes ago

Description : PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser...

07.03.2026 19:37 👍 0 🔁 0 💬 0 📌 0
CVE-2026-3665 - xlnt-community xlnt XLSX File xlsx_consumer.cpp read_office_document null pointer dereference A vulnerability was identified in xlnt-community xlnt up to 1.6.1. The affected element is the function xlnt::detail::xlsx_consumer::read_office_document of the file source/detail/serialization/xlsx_consumer.cpp of the component XLSX File Parser. The manipulation leads to null pointer dereference. The attack must be carried out locally. The exploit is publicly available and might be used.

CVE-2026-3665 - xlnt-community xlnt XLSX File xlsx_consumer.cpp read_office_document null pointer dereference
CVE ID : CVE-2026-3665

Published : March 7, 2026, 4:15 p.m. | 55 minutes ago

Description : A vulnerability was identified in xlnt-community xlnt up to 1.6.1. The...

07.03.2026 19:34 👍 0 🔁 0 💬 0 📌 0