CVE ID :CVE-2026-19961 Published : Aug. 16, 2026, 11:16 p.m. | 56 minutes ago Description :A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing…
CVE-2026-19959 – Edimax EW-7478APC formWanTcpipSetup stack-based overflow
CVE ID :CVE-2026-19959 Published : Aug. 16, 2026, 11:16 p.m. | 56 minutes ago Description :A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup….
CVE-2026-74791 – Scriban before 7.0.0 Authorization Bypass via Stale Include Cache
CVE ID :CVE-2026-74791 Published : Aug. 16, 2026, 2:16 p.m. | 9 hours, 56 minutes ago Description :Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cached templates to…
CVE-2026-74790 – Scriban before 7.0.0 MemberFilter Bypass via TemplateContext Cache
CVE ID :CVE-2026-74790 Published : Aug. 16, 2026, 2:16 p.m. | 9 hours, 56 minutes ago Description :Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter changes, allowing reused TemplateContext instances to…
CVE-2026-74784 – Scriban before 7.2.0 Denial of Service via array.insert_at
CVE ID :CVE-2026-74784 Published : Aug. 16, 2026, 2:16 p.m. | 9 hours, 56 minutes ago Description :Scriban before 7.2.0 contains a denial of service vulnerability in the array.insert_at function that allocates unbounded null…
CVE-2026-18855 – The Link Library plugin for WordPress is vulnerabl
CVE ID :CVE-2026-18855 Published : Aug. 15, 2026, 8:11 p.m. | 4 hours, 1 minute ago Description :The Link Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path…
CVE-2026-19598 – Pods <= 3.3.9 – Unauthenticated Privilege Escalation via Authorization Bypass to Admin Methods via 'pods_admin' AJAX Router
CVE ID :CVE-2026-19598 Published : Aug. 15, 2026, 5:25 p.m. | 6 hours, 47 minutes ago Description :The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via…
CVE-2026-19900 – LB-LINK X-PRO shadow hard-coded credentials
CVE ID :CVE-2026-19900 Published : Aug. 15, 2026, 5:16 p.m. | 6 hours, 56 minutes ago Description :A vulnerability was identified in LB-LINK X-PRO 1.0.22-20231206. The impacted element is an unknown function of the…
CVE-2026-19901 – LB-LINK X-PRO easycwmp hard-coded credentials
CVE ID :CVE-2026-19901 Published : Aug. 15, 2026, 5:15 p.m. | 6 hours, 58 minutes ago Description :A security flaw has been discovered in LB-LINK X-PRO 1.0.22-20231206. This affects an unknown function of the…
CVE-2026-18500 – @fastify/jwt vulnerable to authorization bypass via global secret overriding the per-request key
CVE ID :CVE-2026-18500 Published : Aug. 15, 2026, 2:17 p.m. | 9 hours, 56 minutes ago Description :@fastify/jwt is a JSON Web Token plugin for Fastify. In versions before 10.2.2, a per-request verification key…