Search found 289 matches

by Starburst-David
Wed Sep 09, 2026 2:27 am
Forum: CVE Advisories
Topic: 21 New Google Chrome CVE's
Replies: 0
Views: 16

21 New Google Chrome CVE's

There are 21 new Google Chrome CVE's that just came out.

Instead of 21 entries, there is jus this one with links.
All of the CVE's affect Google Chrome prior to 153.0.8010.36.

As of 2026-09-09 0225Z, the current Chrome version is Version 153.0.8010.37

--

https://cvefeed.io/vuln/detail/CVE ...
by Starburst-David
Tue Sep 08, 2026 11:11 pm
Forum: CVE Advisories
Topic: CVE-2026-81994 - Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollutio
Replies: 0
Views: 10

CVE-2026-81994 - Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollutio

CVE ID :CVE-2026-81994
Published : Sept. 8, 2026
Description :Acrobat Reader is affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access ...
by Starburst-David
Tue Sep 08, 2026 11:10 pm
Forum: CVE Advisories
Topic: CVE-2026-81996 - Acrobat Reader | Incorrect Authorization (CWE-863)
Replies: 0
Views: 10

CVE-2026-81996 - Acrobat Reader | Incorrect Authorization (CWE-863)

CVE ID :CVE-2026-81996
Published : Sept. 8, 2026
Description :Acrobat Reader is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vulnerability to gain elevated access. Exploitation of this issue does not ...
by Starburst-David
Mon Sep 07, 2026 3:51 pm
Forum: General
Topic: Attackers Exploited MikroTik RouterOS Flaws a Day Before Patches Shipped
Replies: 0
Views: 46

Attackers Exploited MikroTik RouterOS Flaws a Day Before Patches Shipped

Attackers Exploited MikroTik RouterOS Flaws a Day Before Patches Shipped

Attackers began compromising internet-exposed MikroTik routers on Sept. 2, a day before the Latvian vendor released fixes and three days before national authorities published the technical detail defenders needed to detect the ...
by Starburst-David
Sat Sep 05, 2026 1:34 am
Forum: CVE Advisories
Topic: CVE-2026-57164 - PJSIP: Heap overflow in the HTTP client
Replies: 0
Views: 64

CVE-2026-57164 - PJSIP: Heap overflow in the HTTP client

CVE ID :CVE-2026-57164
Published : Sept. 4, 2026
Description :PJSIP is a free and open source multimedia communication library written in C. Prior to commit 8d5956a, a heap buffer overflow exists in the PJLIB-UTIL HTTP client (http_client.c) when buffering an HTTP response body. This affects ...
by Starburst-David
Sat Sep 05, 2026 1:33 am
Forum: CVE Advisories
Topic: CVE-2026-57163 - PJSIP: Stack overflow parsing a TLS peer certificate's SubjectAltName in GnuTLS backend
Replies: 0
Views: 53

CVE-2026-57163 - PJSIP: Stack overflow parsing a TLS peer certificate's SubjectAltName in GnuTLS backend

CVE ID :CVE-2026-57163
Published : Sept. 4, 2026
Description :PJSIP is a free and open source multimedia communication library written in C. Prior to commit c4a151a, a stack buffer overflow exists in the GnuTLS TLS backend when parsing the Subject Alternative Name extension of a peer certificate ...
by Starburst-David
Sat Sep 05, 2026 1:33 am
Forum: CVE Advisories
Topic: CVE-2026-57162 - PJSIP: Stack overflow parsing SDP a=crypto attributes
Replies: 0
Views: 43

CVE-2026-57162 - PJSIP: Stack overflow parsing SDP a=crypto attributes

CVE ID :CVE-2026-57162
Published : Sept. 4, 2026
Description :PJSIP is a free and open source multimedia communication library written in C. Prior to commit a1b707c, a stack buffer overflow exists in the SRTP/SDES media transport when processing a=crypto attributes during SDP offer/answer (sdes ...
by Starburst-David
Sat Sep 05, 2026 1:32 am
Forum: CVE Advisories
Topic: CVE-2026-57161 - PJSIP: Stack overflow handling Service-Route headers in a registration response
Replies: 0
Views: 45

CVE-2026-57161 - PJSIP: Stack overflow handling Service-Route headers in a registration response

CVE ID :CVE-2026-57161
Published : Sept. 4, 2026
Description :PJSIP is a free and open source multimedia communication library written in C. Prior to commit acc03b5, a stack buffer overflow exists in PJSUA when processing Service-Route headers in a registration response (update_service_route() in ...
by Starburst-David
Sat Sep 05, 2026 1:32 am
Forum: CVE Advisories
Topic: CVE-2026-57159 - PJSIP: SDP parser out-of-bounds write in remote payload-type map maintenance
Replies: 0
Views: 43

CVE-2026-57159 - PJSIP: SDP parser out-of-bounds write in remote payload-type map maintenance

CVE ID :CVE-2026-57159
Published : Sept. 4, 2026
Description :PJSIP is a free and open source multimedia communication library written in C. Prior to commit 673b978, a remote out-of-bounds read and write can occur in the SDP negotiator when the remote payload-type map maintenance feature is enabled ...
by Starburst-David
Fri Sep 04, 2026 12:42 pm
Forum: CVE Advisories
Topic: CVE-2026-85614 - OpenPanel API before 2.3.0 Unauthenticated SSRF via site-checker
Replies: 0
Views: 53

CVE-2026-85614 - OpenPanel API before 2.3.0 Unauthenticated SSRF via site-checker

CVE ID :CVE-2026-85614
Published : Sept. 4, 2026, 11:30 a.m. | 42 minutes ago
Description :OpenPanel before 2.3.0 contains an unauthenticated server-side request forgery vulnerability in the GET /tools/site-checker endpoint that accepts a fully client-controlled URL parameter with no private IP ...

Go to advanced search