🔍 جارٍ البحث...
يتم الاستعلام من 70+ مصدر أمني في نفس الوقت
CISA KEV • NVD • MITRE • Exploit-DB • BleepingComputer • ...
📅 اليوم 📊 تقارير
Threat Intelligence
🕐 2026-06-03 23:29
68
📅 2026-06-03
3
🔴 Critical
25
🟠 High
19
🟡 Medium
21
🟢 Low
2
🔥 Exploited
0
⚡ KEV
🎯 Severity 68 results
🔍 البحث
اختر يوم محدد
/ /
رقم الثغرة
اسم الشركة أو المنتج
الشركة أو المنتج
من تاريخ
/ /
إلى تاريخ
/ /
المجالالحدث / CVEالمصدرالوصف الاستغلالالخطورةالأنظمة المتأثرة نوع التهديدالحلول📅 تاريخ النشر
Vulnerability CVE-2026-47065 CVSS 9.8
CVE-2026-47065 — GHSA: ZDRES-232: resolveProxyClass Not Overridden - acceptMatch… 📄 التفاصيل ←
GHSA ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Pro… No 🔴 Critical Exploit 2026-06-03
Cloud CVE-2026-4035 CVSS 9.1
CVE-2026-4035 — GHSA: A vulnerability in mlflow/mlflow versions prior to 3.11.0 … 📄 التفاصيل ←
GHSA A vulnerability in mlflow/mlflow versions prior to 3.11.0 allows for the resolution of environment v… No 🔴 Critical AI Attack 2026-06-03
Vulnerability CVE-2026-35075 CVSS 9.8
CVE-2026-35075 — VulnCheck: An unauthenticated remote attacker can recover a def… 📄 التفاصيل ←
VulnCheck An unauthenticated remote attacker can recover a default, hard coded password from a firmware image … No 🔴 Critical Exploit Refer to CVE-2026-35075 NVD advisory 2026-06-03
Microsoft Five OpenClaw 0-Days let Attackers to Hijack Trusted AI Agent Access 📄 التفاصيل ← Cyber Security News Five zero-day flaws in OpenClaw allowed attackers to bypass trust boundaries and hijack AI agent acc… Yes 🟠 High Zero-Day Microsoft Patch Tuesday 2026-06-03
Fujitsu CVE-2026-50031 CVSS 7.5
CVE-2026-50031 — GHSA: ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer… 📄 التفاصيل ←
GHSA ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intell… No 🟠 High Exploit 2026-06-03
Web CVE-2025-15656 CVSS 8.8
CVE-2025-15656 — GHSA: Incorrect Privilege Assignment vulnerability in Mojoomla … 📄 التفاصيل ←
GHSA Incorrect Privilege Assignment vulnerability in Mojoomla School Management allows Privilege Escalati… No 🟠 High Exploit 2026-06-03
Vulnerability CVE-2026-41032 CVSS 7.5
CVE-2026-41032 — GHSA: It is possible for an unauthenticated adjacent attacker t… 📄 التفاصيل ←
GHSA It is possible for an unauthenticated adjacent attacker to download log files of the controller, whi… No 🟠 High Exploit 2026-06-03
Vulnerability CVE-2025-14772 CVSS 8.8
CVE-2025-14772 — GHSA: Authorization bypass through User-Controlled key vulnerab… 📄 التفاصيل ←
GHSA Authorization bypass through User-Controlled key vulnerability in ABB T-MAC Plus. This issue affect… No 🟠 High Exploit 2026-06-03
Web CVE-2025-14773 CVSS 8
CVE-2025-14773 — GHSA: Improper neutralization of input during web page generati… 📄 التفاصيل ←
GHSA Improper neutralization of input during web page generation ('cross-site scripting') vulne… No 🟠 High Exploit 2026-06-03
Web CVE-2025-15655 CVSS 7.6
CVE-2025-15655 — GHSA: Improper Neutralization of Special Elements used in an SQ… 📄 التفاصيل ←
GHSA Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulne… No 🟠 High Exploit 2026-06-03
Vulnerability CVE-2025-14774 CVSS 7.4
CVE-2025-14774 — GHSA: Incorrect Authorization vulnerability in ABB T-MAC Plus. … 📄 التفاصيل ←
GHSA Incorrect Authorization vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24. No 🟠 High Exploit 2026-06-03
Vulnerability CVE-2025-14771 CVSS 9.9
CVE-2025-14771 — GHSA: Files or directories accessible to external parties vulne… 📄 التفاصيل ←
GHSA Files or directories accessible to external parties vulnerability in ABB T-MAC Plus. This issue aff… No 🟠 High Exploit 2026-06-03
Web CVE-2025-15654 CVSS 7.1
CVE-2025-15654 — GHSA: Improper Neutralization of Input During Web Page Generati… 📄 التفاصيل ←
GHSA Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulne… No 🟠 High Exploit 2026-06-03
Malware CVE-2026-5241 CVSS 8
CVE-2026-5241 — VulnCheck: A vulnerability in the LightGlue model loading path o… 📄 التفاصيل ←
VulnCheck A vulnerability in the LightGlue model loading path of huggingface/transformers version 5.2.0 allows… No 🟠 High Python Exploit Update to v5.2.0 2026-06-03
Vulnerability CVE-2026-35085 CVSS 8.8
CVE-2026-35085 — VulnCheck: A remote attacker with user privileges can exploit a… 📄 التفاصيل ←
VulnCheck A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to ga… No 🟠 High Exploit Refer to CVE-2026-35085 NVD advisory 2026-06-03
Vulnerability CVE-2026-35084 CVSS 8.8
CVE-2026-35084 — VulnCheck: A remote attacker with user privileges can exploit a… 📄 التفاصيل ←
VulnCheck A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain… No 🟠 High Exploit Refer to CVE-2026-35084 NVD advisory 2026-06-03
Vulnerability CVE-2026-35083 CVSS 8.8
CVE-2026-35083 — VulnCheck: A remote attacker with user privileges can exploit a… 📄 التفاصيل ←
VulnCheck A remote attacker with user privileges can exploit a stack buffer overflow to gain full system acces… No 🟠 High Exploit Refer to CVE-2026-35083 NVD advisory 2026-06-03
Vulnerability CVE-2026-35082 CVSS 8.8
CVE-2026-35082 — VulnCheck: The ugw-logread method allows a remote attacker with… 📄 التفاصيل ←
VulnCheck The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files… No 🟠 High Exploit Refer to CVE-2026-35082 NVD advisory 2026-06-03
Vulnerability CVE-2026-35081 CVSS 8.1
CVE-2026-35081 — VulnCheck: The ugw-logstop method allows a remote attacker with… 📄 التفاصيل ←
VulnCheck The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processe… No 🟠 High Exploit Refer to CVE-2026-35081 NVD advisory 2026-06-03
Vulnerability CVE-2026-35080 CVSS 8.1
CVE-2026-35080 — VulnCheck: The ugw-restoreinfo method allows a remote attacker … 📄 التفاصيل ←
VulnCheck The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local f… No 🟠 High Exploit Refer to CVE-2026-35080 NVD advisory 2026-06-03
Vulnerability CVE-2026-35079 CVSS 8.1
CVE-2026-35079 — VulnCheck: The ugw-restore method allows a remote attacker with… 📄 التفاصيل ←
VulnCheck The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files… No 🟠 High Exploit Refer to CVE-2026-35079 NVD advisory 2026-06-03
Vulnerability CVE-2026-35078 CVSS 8.1
CVE-2026-35078 — VulnCheck: The ugw-logstop method allows a remote attacker with… 📄 التفاصيل ←
VulnCheck The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local file… No 🟠 High Exploit Refer to CVE-2026-35078 NVD advisory 2026-06-03
Vulnerability CVE-2026-35077 CVSS 8.1
CVE-2026-35077 — VulnCheck: The ugw-delete-file method allows a remote attacker … 📄 التفاصيل ←
VulnCheck The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local … No 🟠 High Exploit Refer to CVE-2026-35077 NVD advisory 2026-06-03
Vulnerability CVE-2026-35076 CVSS 8.1
CVE-2026-35076 — VulnCheck: The bac-scanresult method allows a remote attacker w… 📄 التفاصيل ←
VulnCheck The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local fi… No 🟠 High Exploit Refer to CVE-2026-35076 NVD advisory 2026-06-03
Malware CVE-2026-5241 CVSS 8
CVE-2026-5241 — GHSA: A vulnerability in the LightGlue model loading path of hug… 📄 التفاصيل ←
GHSA A vulnerability in the LightGlue model loading path of huggingface/transformers version 5.2.0 allows… No 🟠 High Exploit 2026-06-03
Synology CVE-2022-49036 CVSS 7.8
CVE-2022-49036 — GHSA: An inclusion of functionality from untrusted control sphe… 📄 التفاصيل ←
GHSA An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration i… No 🟠 High Exploit 2026-06-03
Vulnerability CVE-2026-35085 CVSS 8.8
CVE-2026-35085 — GHSA: A remote attacker with user privileges can exploit a stac… 📄 التفاصيل ←
GHSA A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to ga… No 🟠 High Exploit 2026-06-03
Fujitsu CVE-2026-50031 CVSS 7.5
CVE-2026-50031 — ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overf… 📄 التفاصيل ←
NVD ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intell… No 🟠 High Intel Processor Exploit Refer to CVE-2026-50031 NVD advisory 2026-06-03
Fortinet The Gentlemen Ransomware Group Uses Fortinet Exploits, AI, and Custom C2 Framewo… 📄 التفاصيل ← Cyber Security News A Russian-speaking ransomware crew known as The Gentlemen has quickly risen to become one of the mos… Yes 🟡 Medium Ransomware Fortinet PSIRT Advisory 2026-06-03
Cisco Cisco Webex Meetings Cross-Site Scripting Vulnerability 📄 التفاصيل ← Cisco Security RSS A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauth… No 🟡 Medium Exploit Cisco Security Advisory 2026-06-03
Cisco Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability 📄 التفاصيل ← Cisco Security RSS A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communication… No 🟡 Medium Exploit Cisco Security Advisory 2026-06-03
Cisco Cisco Finesse Remote File Inclusion Vulnerability 📄 التفاصيل ← Cisco Security RSS A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary f… No 🟡 Medium Microsoft Edge Exploit Cisco Security Advisory 2026-06-03
Microsoft Microsoft 365 Android Apps Account Takeover Vulnerability Impacted Billions of A… 📄 التفاصيل ← Cyber Security News A single forgotten development flag left active in production code silently handed Microsoft account… No 🟡 Medium Android 14/13 Exploit Microsoft Patch Tuesday 2026-06-03
Gigabyte HTTP/2 Bomb — Remote DoS Exploit Hits nginx, Apache, IIS, Envoy, and Cloudflare … 📄 التفاصيل ← Cyber Security News A newly disclosed remote denial-of-service exploit dubbed “HTTP/2 Bomb” targets … No 🟡 Medium Apache HTTP Server 2.4.x Exploit Microsoft Patch Tuesday 2026-06-03
Web CVE-2026-7421 CVSS 4.4
CVE-2026-7421 — GHSA: The Passeum Ticketing plugin for WordPress is vulnerable t… 📄 التفاصيل ←
GHSA The Passeum Ticketing plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versi… No 🟡 Medium Exploit 2026-06-03
Network CVE-2026-9732 CVSS 4.3
CVE-2026-9732 — GHSA: The EmergencyWP – Dead Man's switch & legacy deli… 📄 التفاصيل ←
GHSA The EmergencyWP – Dead Man's switch & legacy deliverance plugin for WordPress is vulnerable… No 🟡 Medium Exploit 2026-06-03
Vulnerability CVE-2026-5078 CVSS 5.3
CVE-2026-5078 — VulnCheck: Impact: The morgan logging middleware's :remote-… 📄 التفاصيل ←
VulnCheck Impact: The morgan logging middleware's :remote-user token extracts the Basic auth username fro… No 🟡 Medium Exploit Update to v1.2.0 2026-06-03
Vulnerability CVE-2026-47325
CVE-2026-47325 — VulnCheck: ProjectsAndPrograms school-management-system uses pr… 📄 التفاصيل ←
VulnCheck ProjectsAndPrograms school-management-system uses predictable credentials by generating student&#039… No 🟡 Medium Exploit Refer to CVE-2026-47325 NVD advisory 2026-06-03
Web CVE-2026-47324
CVE-2026-47324 — VulnCheck: ProjectsAndPrograms school-management-system is vuln… 📄 التفاصيل ←
VulnCheck ProjectsAndPrograms school-management-system is vulnerable to Stored Cross‑Site Scripting (XSS) in m… No 🟡 Medium Exploit Refer to CVE-2026-47324 NVD advisory 2026-06-03
DDoS CVE-2026-44545 CVSS 5.3
CVE-2026-44545 — VulnCheck: daphne before 4.2.2 did not pass maxFramePayloadSize… 📄 التفاصيل ←
VulnCheck daphne before 4.2.2 did not pass maxFramePayloadSize or maxMessagePayloadSize to Autobahn's Web… No 🟡 Medium DDoS Refer to CVE-2026-44545 NVD advisory 2026-06-03
Containers CVE-2026-10729
CVE-2026-10729 — VulnCheck: An HTML injection vulnerability in the notification … 📄 التفاصيل ←
VulnCheck An HTML injection vulnerability in the notification email for "Slow Redirect" and "Cl… No 🟡 Medium Docker Exploit Refer to CVE-2026-10729 NVD advisory 2026-06-03
DDoS CVE-2025-70101
CVE-2025-70101 — VulnCheck: An out-of-bounds read in the ext4_ext_binsearch_idx … 📄 التفاصيل ←
VulnCheck An out-of-bounds read in the ext4_ext_binsearch_idx function in src/ext4_extent.c of the lwext4 1.0.… No 🟡 Medium DDoS Refer to CVE-2025-70101 NVD advisory 2026-06-03
DDoS CVE-2025-70100
CVE-2025-70100 — VulnCheck: A divide-by-zero vulnerability in the ext4_block_set… 📄 التفاصيل ←
VulnCheck A divide-by-zero vulnerability in the ext4_block_set_lb_size function in src/ext4_blockdev.c of the … No 🟡 Medium DDoS Refer to CVE-2025-70100 NVD advisory 2026-06-03
Vulnerability CVE-2026-47325
CVE-2026-47325 — GHSA: ProjectsAndPrograms school-management-system uses predict… 📄 التفاصيل ←
GHSA ProjectsAndPrograms school-management-system uses predictable credentials by generating student&#039… No 🟡 Medium Exploit 2026-06-03
Web CVE-2026-47324
CVE-2026-47324 — GHSA: ProjectsAndPrograms school-management-system is vulnerabl… 📄 التفاصيل ←
GHSA ProjectsAndPrograms school-management-system is vulnerable to Stored Cross‑Site Scripting (XSS) in m… No 🟡 Medium Exploit 2026-06-03
Synology CVE-2023-52951 CVSS 5.9
CVE-2023-52951 — GHSA: A cleartext transmission of sensitive information vulnera… 📄 التفاصيل ←
GHSA A cleartext transmission of sensitive information vulnerability in Synology Note Station Client befo… No 🟡 Medium Exploit 2026-06-03
Synology CVE-2024-47263 CVSS 4.1
CVE-2024-47263 — GHSA: An improper limitation of a pathname to a restricted dire… 📄 التفاصيل ←
GHSA An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerab… No 🟡 Medium Exploit 2026-06-03
Microsoft Microsoft wants to put AI agents on a short leash 📄 التفاصيل ← CSO Online As enterprises race to adopt AI agents across software development workflows, Microsoft is rolling o… No 🟢 Low AI Attack Microsoft Patch Tuesday 2026-06-03
Vulnerability CVE-2026-10705 CVSS 3.1
CVE-2026-10705 — GHSA: A flaw has been found in dask up to 3.0. Affected by this… 📄 التفاصيل ←
GHSA A flaw has been found in dask up to 3.0. Affected by this issue is the function nunique_approx of th… No 🟢 Low Exploit 2026-06-03
DDoS CVE-2026-9516
CVE-2026-9516 — GHSA: Cpanel::JSON::XS versions before 4.41 for Perl allow denia… 📄 التفاصيل ←
GHSA Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM prefixed input … No 🟢 Low DDoS 2026-06-03
Vulnerability CVE-2026-42507
CVE-2026-42507 — GHSA: When returning errors, functions in the net/textproto pac… 📄 التفاصيل ←
GHSA When returning errors, functions in the net/textproto package would include its input as part of the… No 🟢 Low Exploit 2026-06-03
Vulnerability CVE-2026-50052
CVE-2026-50052 — GHSA: In Vinyl Cache before 9.0.1 and Varnish Cache before 9.0.… 📄 التفاصيل ←
GHSA In Vinyl Cache before 9.0.1 and Varnish Cache before 9.0.3, a deficiency in HTTP/2 request parsing c… No 🟢 Low Exploit 2026-06-03
Vulnerability CVE-2026-8404 CVSS 3.1
CVE-2026-8404 — VulnCheck: An issue was discovered in Django 5.2 before 5.2.15 a… 📄 التفاصيل ←
VulnCheck An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.U… No 🟢 Low Exploit Update to v5.0. 2026-06-03
Vulnerability CVE-2026-7666 CVSS 3.1
CVE-2026-7666 — VulnCheck: An issue was discovered in Django 6.0 before 6.0.6 an… 📄 التفاصيل ←
VulnCheck An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends… No 🟢 Low Exploit Refer to CVE-2026-7666 NVD advisory 2026-06-03
Vulnerability CVE-2026-6873 CVSS 3.1
CVE-2026-6873 — VulnCheck: An issue was discovered in Django 6.0 before 6.0.6 an… 📄 التفاصيل ←
VulnCheck An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.http.HttpRequest.g… No 🟢 Low Exploit Refer to CVE-2026-6873 NVD advisory 2026-06-03
Vulnerability CVE-2026-48587 CVSS 3.1
CVE-2026-48587 — VulnCheck: An issue was discovered in Django 5.2 before 5.2.15 … 📄 التفاصيل ←
VulnCheck An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.utils.cache.has_va… No 🟢 Low Exploit Refer to CVE-2026-48587 NVD advisory 2026-06-03
Vulnerability CVE-2026-44546 CVSS 3.7
CVE-2026-44546 — VulnCheck: daphne before 4.2.2 reconstructs a raw HTTP request … 📄 التفاصيل ←
VulnCheck daphne before 4.2.2 reconstructs a raw HTTP request from Twisted's parsed headers and feeds it … No 🟢 Low Exploit Refer to CVE-2026-44546 NVD advisory 2026-06-03
DDoS CVE-2026-37460
CVE-2026-37460 — VulnCheck: Missing input validation in the rfapiRibBi2Ri() func… 📄 التفاصيل ←
VulnCheck Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.… No 🟢 Low DDoS Refer to CVE-2026-37460 NVD advisory 2026-06-03
Vulnerability CVE-2026-35193 CVSS 3.1
CVE-2026-35193 — VulnCheck: An issue was discovered in Django 5.2 before 5.2.15 … 📄 التفاصيل ←
VulnCheck An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.U… No 🟢 Low AI Attack Update to v5.0. 2026-06-03
Cloud CVE-2026-10722 CVSS 3.3
CVE-2026-10722 — VulnCheck: A vulnerability has been found in cilium ebpf up to … 📄 التفاصيل ←
VulnCheck A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of… No 🟢 Low Exploit Refer to CVE-2026-10722 NVD advisory 2026-06-03
Vulnerability CVE-2026-7666 CVSS 3.1
CVE-2026-7666 — GHSA: An issue was discovered in Django 6.0 before 6.0.6 and 5.2… 📄 التفاصيل ←
GHSA An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends… No 🟢 Low Exploit 2026-06-03
Vulnerability CVE-2026-6873 CVSS 3.1
CVE-2026-6873 — GHSA: An issue was discovered in Django 6.0 before 6.0.6 and 5.2… 📄 التفاصيل ←
GHSA An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.http.HttpRequest.g… No 🟢 Low Exploit 2026-06-03
Vulnerability CVE-2026-44546 CVSS 3.7
CVE-2026-44546 — GHSA: daphne before 4.2.2 reconstructs a raw HTTP request from … 📄 التفاصيل ←
GHSA daphne before 4.2.2 reconstructs a raw HTTP request from Twisted's parsed headers and feeds it … No 🟢 Low Exploit 2026-06-03
Vulnerability CVE-2026-8404 CVSS 3.1
CVE-2026-8404 — GHSA: An issue was discovered in Django 5.2 before 5.2.15 and 6.… 📄 التفاصيل ←
GHSA An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.U… No 🟢 Low Exploit 2026-06-03
Vulnerability CVE-2026-48587 CVSS 3.1
CVE-2026-48587 — GHSA: An issue was discovered in Django 5.2 before 5.2.15 and 6… 📄 التفاصيل ←
GHSA An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.utils.cache.has_va… No 🟢 Low Exploit 2026-06-03
DDoS CVE-2026-37460
CVE-2026-37460 — GHSA: Missing input validation in the rfapiRibBi2Ri() function … 📄 التفاصيل ←
GHSA Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.… No 🟢 Low DDoS 2026-06-03
Vulnerability CVE-2026-35193 CVSS 3.1
CVE-2026-35193 — GHSA: An issue was discovered in Django 5.2 before 5.2.15 and 6… 📄 التفاصيل ←
GHSA An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.U… No 🟢 Low AI Attack 2026-06-03
DDoS CVE-2025-60477
CVE-2025-60477 — GHSA: A NULL pointer dereference in the gf_filter_pid_resolve_f… 📄 التفاصيل ←
GHSA A NULL pointer dereference in the gf_filter_pid_resolve_file_template_ex function (/filter_core/filt… No 🟢 Low DDoS 2026-06-03
CVE-2026-47065 CVSS 9.8
CVE-2026-47065 — GHSA: ZDRES-232: resolveProxyClass Not Overridden - a…
🔴 Critical
GHSA 🔥 No Vulnerability 📅 2026-06-03
ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy Assessment: Ful…
📄 التفاصيل ←
CVE-2026-4035 CVSS 9.1
CVE-2026-4035 — GHSA: A vulnerability in mlflow/mlflow versions prior …
🔴 Critical
GHSA 🔥 No Cloud 📅 2026-06-03
A vulnerability in mlflow/mlflow versions prior to 3.11.0 allows for the resolution of environment variables in AI Gatew…
📄 التفاصيل ←
CVE-2026-35075 CVSS 9.8
CVE-2026-35075 — VulnCheck: An unauthenticated remote attacker can rec…
🔴 Critical
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
An unauthenticated remote attacker can recover a default, hard coded password from a firmware image and thus gain full a…
📄 التفاصيل ←
Five OpenClaw 0-Days let Attackers to Hijack Trusted AI Agent Access
🟠 High
Cyber Security News 🔥 Yes Microsoft 📅 2026-06-03
Five zero-day flaws in OpenClaw allowed attackers to bypass trust boundaries and hijack AI agent access across multiple …
📄 التفاصيل ←
CVE-2026-50031 CVSS 7.5
CVE-2026-50031 — GHSA: ipmi-oem in FreeIPMI before 1.6.18 has exploita…
🟠 High
GHSA 🔥 No Fujitsu 📅 2026-06-03
ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Manag…
📄 التفاصيل ←
CVE-2025-15656 CVSS 8.8
CVE-2025-15656 — GHSA: Incorrect Privilege Assignment vulnerability in…
🟠 High
GHSA 🔥 No Web 📅 2026-06-03
Incorrect Privilege Assignment vulnerability in Mojoomla School Management allows Privilege Escalation. This issue affe…
📄 التفاصيل ←
CVE-2026-41032 CVSS 7.5
CVE-2026-41032 — GHSA: It is possible for an unauthenticated adjacent …
🟠 High
GHSA 🔥 No Vulnerability 📅 2026-06-03
It is possible for an unauthenticated adjacent attacker to download log files of the controller, which may disclose some…
📄 التفاصيل ←
CVE-2025-14772 CVSS 8.8
CVE-2025-14772 — GHSA: Authorization bypass through User-Controlled ke…
🟠 High
GHSA 🔥 No Vulnerability 📅 2026-06-03
Authorization bypass through User-Controlled key vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24…
📄 التفاصيل ←
CVE-2025-14773 CVSS 8
CVE-2025-14773 — GHSA: Improper neutralization of input during web pag…
🟠 High
GHSA 🔥 No Web 📅 2026-06-03
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in ABB T-MA…
📄 التفاصيل ←
CVE-2025-15655 CVSS 7.6
CVE-2025-15655 — GHSA: Improper Neutralization of Special Elements use…
🟠 High
GHSA 🔥 No Web 📅 2026-06-03
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mojoomla…
📄 التفاصيل ←
CVE-2025-14774 CVSS 7.4
CVE-2025-14774 — GHSA: Incorrect Authorization vulnerability in ABB T-…
🟠 High
GHSA 🔥 No Vulnerability 📅 2026-06-03
Incorrect Authorization vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.…
📄 التفاصيل ←
CVE-2025-14771 CVSS 9.9
CVE-2025-14771 — GHSA: Files or directories accessible to external par…
🟠 High
GHSA 🔥 No Vulnerability 📅 2026-06-03
Files or directories accessible to external parties vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0…
📄 التفاصيل ←
CVE-2025-15654 CVSS 7.1
CVE-2025-15654 — GHSA: Improper Neutralization of Input During Web Pag…
🟠 High
GHSA 🔥 No Web 📅 2026-06-03
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fox-them…
📄 التفاصيل ←
CVE-2026-5241 CVSS 8
CVE-2026-5241 — VulnCheck: A vulnerability in the LightGlue model load…
🟠 High
VulnCheck 🔥 No Malware 📅 2026-06-03
A vulnerability in the LightGlue model loading path of huggingface/transformers version 5.2.0 allows an attacker-control…
📄 التفاصيل ←
CVE-2026-35085 CVSS 8.8
CVE-2026-35085 — VulnCheck: A remote attacker with user privileges can…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system acces…
📄 التفاصيل ←
CVE-2026-35084 CVSS 8.8
CVE-2026-35084 — VulnCheck: A remote attacker with user privileges can…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access …
📄 التفاصيل ←
CVE-2026-35083 CVSS 8.8
CVE-2026-35083 — VulnCheck: A remote attacker with user privileges can…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.…
📄 التفاصيل ←
CVE-2026-35082 CVSS 8.8
CVE-2026-35082 — VulnCheck: The ugw-logread method allows a remote att…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient…
📄 التفاصيل ←
CVE-2026-35081 CVSS 8.1
CVE-2026-35081 — VulnCheck: The ugw-logstop method allows a remote att…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficien…
📄 التفاصيل ←
CVE-2026-35080 CVSS 8.1
CVE-2026-35080 — VulnCheck: The ugw-restoreinfo method allows a remote…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insuffic…
📄 التفاصيل ←
CVE-2026-35079 CVSS 8.1
CVE-2026-35079 — VulnCheck: The ugw-restore method allows a remote att…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient…
📄 التفاصيل ←
CVE-2026-35078 CVSS 8.1
CVE-2026-35078 — VulnCheck: The ugw-logstop method allows a remote att…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficien…
📄 التفاصيل ←
CVE-2026-35077 CVSS 8.1
CVE-2026-35077 — VulnCheck: The ugw-delete-file method allows a remote…
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insuffi…
📄 التفاصيل ←
CVE-2026-35076 CVSS 8.1
CVE-2026-35076 — VulnCheck: The bac-scanresult method allows a remote …
🟠 High
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insuffici…
📄 التفاصيل ←
CVE-2026-5241 CVSS 8
CVE-2026-5241 — GHSA: A vulnerability in the LightGlue model loading p…
🟠 High
GHSA 🔥 No Malware 📅 2026-06-03
A vulnerability in the LightGlue model loading path of huggingface/transformers version 5.2.0 allows an attacker-control…
📄 التفاصيل ←
CVE-2022-49036 CVSS 7.8
CVE-2022-49036 — GHSA: An inclusion of functionality from untrusted co…
🟠 High
GHSA 🔥 No Synology 📅 2026-06-03
An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Ba…
📄 التفاصيل ←
CVE-2026-35085 CVSS 8.8
CVE-2026-35085 — GHSA: A remote attacker with user privileges can expl…
🟠 High
GHSA 🔥 No Vulnerability 📅 2026-06-03
A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system acces…
📄 التفاصيل ←
CVE-2026-50031 CVSS 7.5
CVE-2026-50031 — ipmi-oem in FreeIPMI before 1.6.18 has exploitable bu…
🟠 High
NVD 🔥 No Fujitsu 📅 2026-06-03
ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Manag…
📄 التفاصيل ←
The Gentlemen Ransomware Group Uses Fortinet Exploits, AI, and Custom …
🟡 Medium
Cyber Security News 🔥 Yes Fortinet 📅 2026-06-03
A Russian-speaking ransomware crew known as The Gentlemen has quickly risen to become one of the most active threats in …
📄 التفاصيل ←
Cisco Webex Meetings Cross-Site Scripting Vulnerability
🟡 Medium
Cisco Security RSS 🔥 No Cisco 📅 2026-06-03
A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote at…
📄 التفاصيل ←
Cisco Unified Communications Manager Server-Side Request Forgery Vulne…
🟡 Medium
Cisco Security RSS 🔥 No Cisco 📅 2026-06-03
A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Ma…
📄 التفاصيل ←
Cisco Finesse Remote File Inclusion Vulnerability
🟡 Medium
Cisco Security RSS 🔥 No Cisco 📅 2026-06-03
A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote loc…
📄 التفاصيل ←
Microsoft 365 Android Apps Account Takeover Vulnerability Impacted Bil…
🟡 Medium
Cyber Security News 🔥 No Microsoft 📅 2026-06-03
A single forgotten development flag left active in production code silently handed Microsoft account tokens to any app o…
📄 التفاصيل ←
HTTP/2 Bomb — Remote DoS Exploit Hits nginx, Apache, IIS, Envoy, and C…
🟡 Medium
Cyber Security News 🔥 No Gigabyte 📅 2026-06-03
A newly disclosed remote denial-of-service exploit dubbed “HTTP/2 Bomb” targets the default HTTP/2 c…
📄 التفاصيل ←
CVE-2026-7421 CVSS 4.4
CVE-2026-7421 — GHSA: The Passeum Ticketing plugin for WordPress is vu…
🟡 Medium
GHSA 🔥 No Web 📅 2026-06-03
The Passeum Ticketing plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and inclu…
📄 التفاصيل ←
CVE-2026-9732 CVSS 4.3
CVE-2026-9732 — GHSA: The EmergencyWP – Dead Man's switch & l…
🟡 Medium
GHSA 🔥 No Network 📅 2026-06-03
The EmergencyWP – Dead Man's switch & legacy deliverance plugin for WordPress is vulnerable to Cross-Site Reque…
📄 التفاصيل ←
CVE-2026-5078 CVSS 5.3
CVE-2026-5078 — VulnCheck: Impact: The morgan logging middleware'…
🟡 Medium
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
Impact: The morgan logging middleware's :remote-user token extracts the Basic auth username from the Authorization …
📄 التفاصيل ←
CVE-2026-47325
CVE-2026-47325 — VulnCheck: ProjectsAndPrograms school-management-syst…
🟡 Medium
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
ProjectsAndPrograms school-management-system uses predictable credentials by generating student's and teacher'…
📄 التفاصيل ←
CVE-2026-47324
CVE-2026-47324 — VulnCheck: ProjectsAndPrograms school-management-syst…
🟡 Medium
VulnCheck 🔥 No Web 📅 2026-06-03
ProjectsAndPrograms school-management-system is vulnerable to Stored Cross‑Site Scripting (XSS) in multiple attributes o…
📄 التفاصيل ←
CVE-2026-44545 CVSS 5.3
CVE-2026-44545 — VulnCheck: daphne before 4.2.2 did not pass maxFrameP…
🟡 Medium
VulnCheck 🔥 No DDoS 📅 2026-06-03
daphne before 4.2.2 did not pass maxFramePayloadSize or maxMessagePayloadSize to Autobahn's WebSocketServerFactory.…
📄 التفاصيل ←
CVE-2026-10729
CVE-2026-10729 — VulnCheck: An HTML injection vulnerability in the not…
🟡 Medium
VulnCheck 🔥 No Containers 📅 2026-06-03
An HTML injection vulnerability in the notification email for "Slow Redirect" and "Cloned Website" C…
📄 التفاصيل ←
CVE-2025-70101
CVE-2025-70101 — VulnCheck: An out-of-bounds read in the ext4_ext_bins…
🟡 Medium
VulnCheck 🔥 No DDoS 📅 2026-06-03
An out-of-bounds read in the ext4_ext_binsearch_idx function in src/ext4_extent.c of the lwext4 1.0.0 library allows att…
📄 التفاصيل ←
CVE-2025-70100
CVE-2025-70100 — VulnCheck: A divide-by-zero vulnerability in the ext4…
🟡 Medium
VulnCheck 🔥 No DDoS 📅 2026-06-03
A divide-by-zero vulnerability in the ext4_block_set_lb_size function in src/ext4_blockdev.c of the lwext4 1.0.0 library…
📄 التفاصيل ←
CVE-2026-47325
CVE-2026-47325 — GHSA: ProjectsAndPrograms school-management-system us…
🟡 Medium
GHSA 🔥 No Vulnerability 📅 2026-06-03
ProjectsAndPrograms school-management-system uses predictable credentials by generating student's and teacher'…
📄 التفاصيل ←
CVE-2026-47324
CVE-2026-47324 — GHSA: ProjectsAndPrograms school-management-system is…
🟡 Medium
GHSA 🔥 No Web 📅 2026-06-03
ProjectsAndPrograms school-management-system is vulnerable to Stored Cross‑Site Scripting (XSS) in multiple attributes o…
📄 التفاصيل ←
CVE-2023-52951 CVSS 5.9
CVE-2023-52951 — GHSA: A cleartext transmission of sensitive informati…
🟡 Medium
GHSA 🔥 No Synology 📅 2026-06-03
A cleartext transmission of sensitive information vulnerability in Synology Note Station Client before 2.2.4-703 allows …
📄 التفاصيل ←
CVE-2024-47263 CVSS 4.1
CVE-2024-47263 — GHSA: An improper limitation of a pathname to a restr…
🟡 Medium
GHSA 🔥 No Synology 📅 2026-06-03
An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in Backup.Repo…
📄 التفاصيل ←
Microsoft wants to put AI agents on a short leash
🟢 Low
CSO Online 🔥 No Microsoft 📅 2026-06-03
As enterprises race to adopt AI agents across software development workflows, Microsoft is rolling out new controls aime…
📄 التفاصيل ←
CVE-2026-10705 CVSS 3.1
CVE-2026-10705 — GHSA: A flaw has been found in dask up to 3.0. Affect…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
A flaw has been found in dask up to 3.0. Affected by this issue is the function nunique_approx of the file dask/datafram…
📄 التفاصيل ←
CVE-2026-9516
CVE-2026-9516 — GHSA: Cpanel::JSON::XS versions before 4.41 for Perl a…
🟢 Low
GHSA 🔥 No DDoS 📅 2026-06-03
Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM prefixed input when a decode filter…
📄 التفاصيل ←
CVE-2026-42507
CVE-2026-42507 — GHSA: When returning errors, functions in the net/tex…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
When returning errors, functions in the net/textproto package would include its input as part of the error. This might a…
📄 التفاصيل ←
CVE-2026-50052
CVE-2026-50052 — GHSA: In Vinyl Cache before 9.0.1 and Varnish Cache b…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
In Vinyl Cache before 9.0.1 and Varnish Cache before 9.0.3, a deficiency in HTTP/2 request parsing can be exploited to l…
📄 التفاصيل ←
CVE-2026-8404 CVSS 3.1
CVE-2026-8404 — VulnCheck: An issue was discovered in Django 5.2 befor…
🟢 Low
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.UpdateCacheMiddleware…
📄 التفاصيل ←
CVE-2026-7666 CVSS 3.1
CVE-2026-7666 — VulnCheck: An issue was discovered in Django 6.0 befor…
🟢 Low
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` …
📄 التفاصيل ←
CVE-2026-6873 CVSS 3.1
CVE-2026-6873 — VulnCheck: An issue was discovered in Django 6.0 befor…
🟢 Low
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.http.HttpRequest.get_signed_cookie` in…
📄 التفاصيل ←
CVE-2026-48587 CVSS 3.1
CVE-2026-48587 — VulnCheck: An issue was discovered in Django 5.2 befo…
🟢 Low
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.utils.cache.has_vary_header()` in Djan…
📄 التفاصيل ←
CVE-2026-44546 CVSS 3.7
CVE-2026-44546 — VulnCheck: daphne before 4.2.2 reconstructs a raw HTT…
🟢 Low
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
daphne before 4.2.2 reconstructs a raw HTTP request from Twisted's parsed headers and feeds it to autobahn for WebS…
📄 التفاصيل ←
CVE-2026-37460
CVE-2026-37460 — VulnCheck: Missing input validation in the rfapiRibBi…
🟢 Low
VulnCheck 🔥 No DDoS 📅 2026-06-03
Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 all…
📄 التفاصيل ←
CVE-2026-35193 CVSS 3.1
CVE-2026-35193 — VulnCheck: An issue was discovered in Django 5.2 befo…
🟢 Low
VulnCheck 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.UpdateCacheMiddleware…
📄 التفاصيل ←
CVE-2026-10722 CVSS 3.3
CVE-2026-10722 — VulnCheck: A vulnerability has been found in cilium e…
🟢 Low
VulnCheck 🔥 No Cloud 📅 2026-06-03
A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go…
📄 التفاصيل ←
CVE-2026-7666 CVSS 3.1
CVE-2026-7666 — GHSA: An issue was discovered in Django 6.0 before 6.0…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` …
📄 التفاصيل ←
CVE-2026-6873 CVSS 3.1
CVE-2026-6873 — GHSA: An issue was discovered in Django 6.0 before 6.0…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.http.HttpRequest.get_signed_cookie` in…
📄 التفاصيل ←
CVE-2026-44546 CVSS 3.7
CVE-2026-44546 — GHSA: daphne before 4.2.2 reconstructs a raw HTTP req…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
daphne before 4.2.2 reconstructs a raw HTTP request from Twisted's parsed headers and feeds it to autobahn for WebS…
📄 التفاصيل ←
CVE-2026-8404 CVSS 3.1
CVE-2026-8404 — GHSA: An issue was discovered in Django 5.2 before 5.2…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.UpdateCacheMiddleware…
📄 التفاصيل ←
CVE-2026-48587 CVSS 3.1
CVE-2026-48587 — GHSA: An issue was discovered in Django 5.2 before 5.…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.utils.cache.has_vary_header()` in Djan…
📄 التفاصيل ←
CVE-2026-37460
CVE-2026-37460 — GHSA: Missing input validation in the rfapiRibBi2Ri()…
🟢 Low
GHSA 🔥 No DDoS 📅 2026-06-03
Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 all…
📄 التفاصيل ←
CVE-2026-35193 CVSS 3.1
CVE-2026-35193 — GHSA: An issue was discovered in Django 5.2 before 5.…
🟢 Low
GHSA 🔥 No Vulnerability 📅 2026-06-03
An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.UpdateCacheMiddleware…
📄 التفاصيل ←
CVE-2025-60477
CVE-2025-60477 — GHSA: A NULL pointer dereference in the gf_filter_pid…
🟢 Low
GHSA 🔥 No DDoS 📅 2026-06-03
A NULL pointer dereference in the gf_filter_pid_resolve_file_template_ex function (/filter_core/filter_pid.c) of GPAC Pr…
📄 التفاصيل ←