Skip to content
  • 🚨 EUVD-2026-26369

    Uncategorized cybersecurity infosec euvd cve vulnerability
    1
    0 Votes
    1 Posts
    6 Views
    euvd_bot@mastodon.socialE
    EUVD-2026-26369 Score: n/a Product: Dancer::Session::Abstract Vendor: BIGPRESH Updated: 2026-04-30 Dancer::Session::Abstract versions through 1.3522 for Perl generates session ids insecurely.The session id is generated from summing the character codepoints of the absolute pathname with the process id, the epoch time and calls to the built-in rand() ... https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-26369#cybersecurity #infosec #euvd #cve #vulnerability
  • 🚨 EUVD-2026-26296

    Uncategorized cybersecurity infosec euvd cve vulnerability
    1
    0 Votes
    1 Posts
    6 Views
    euvd_bot@mastodon.socialE
    EUVD-2026-26296 Score: n/a Product: Plack::Middleware::XSendfile Vendor: MIYAGAWA Updated: 2026-04-29 Plack::Middleware::XSendfile versions through 1.0053 for Perl can allow client-controlled path rewriting.Plack::Middleware::XSendfile allows the variation setting (sendfile type) to be set by the client via the X-Sendfile-Type header, if it is not c... https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-26296#cybersecurity #infosec #euvd #cve #vulnerability
  • 🚨 EUVD-2026-26237

    Uncategorized cybersecurity infosec euvd cve vulnerability
    1
    0 Votes
    1 Posts
    7 Views
    euvd_bot@mastodon.socialE
    EUVD-2026-26237 Score: n/a Product: Text::CSV_XS Vendor: HMBRAND Updated: 2026-04-29 Text::CSV_XS versions before 1.62 for Perl have a use-after-free when registered callbacks extend the Perl argument stack, which may enable type confusion or memory corruption.The Parse, print, getline, and getline_all methods invoke registered callbacks (for exampl... https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-26237#cybersecurity #infosec #euvd #cve #vulnerability
  • 🚨 EUVD-2026-25229

    Uncategorized cybersecurity infosec euvd cve vulnerability
    1
    0 Votes
    1 Posts
    2 Views
    euvd_bot@mastodon.socialE
    EUVD-2026-25229 Score: 7.8/10 (CVSS v3.1) Vendor: Red Hat Updated: 2026-04-23 A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB compatibility map handling, allows an attacker with local or remote X11 server access to trigger a buffer read overrun. This can lead to memory-safety violations and potential... https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25229#cybersecurity #infosec #euvd #cve #vulnerability
  • 🚨 EUVD-2026-22307

    Uncategorized cybersecurity infosec euvd cve vulnerability
    1
    0 Votes
    1 Posts
    1 Views
    euvd_bot@mastodon.socialE
    EUVD-2026-22307 Score: 6.2/10 (CVSS v3.1) Product: FortiClientEMS, FortiClientEMS Vendor: Fortinet Updated: 2026-04-14 A improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.0 through 7.4.5, FortiClientEMS 7.2.0 through 7.2.12, FortiClientEMS 7.0 all versions may allow attack... https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-22307#cybersecurity #infosec #euvd #cve #vulnerability
  • 🚨 EUVD-2026-22299

    Uncategorized cybersecurity infosec euvd cve vulnerability
    1
    0 Votes
    1 Posts
    1 Views
    euvd_bot@mastodon.socialE
    EUVD-2026-22299 Score: 7.1/10 (CVSS v3.1) Updated: 2026-04-14 Krayin CRM v2.2.x was discovered to contain a SQL injection vulnerability via the rotten_lead parameter at /Lead/LeadDataGrid.php. https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-22299#cybersecurity #infosec #euvd #cve #vulnerability