Skip to content

Secure EU

Menu
  • Home
Menu

CVE-2026-25895 – FUXA Unauthenticated Remote Code Execution via Arbitrary File Write in Upload API

Posted on February 10, 2026

CVE ID : CVE-2026-25895 Published : Feb. 9, 2026, 11:16 p.m. | 44 minutes ago Description : FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. A path traversal vulnerability in FUXA allows an…

CVE-2026-25894 – FUXA Unauthenticated Remote Code Execution via Hardcoded JWT Secret in Default Configuration

Posted on February 10, 2026

CVE ID : CVE-2026-25894 Published : Feb. 9, 2026, 11:16 p.m. | 44 minutes ago Description : FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. An insecure default configuration in FUXA allows an…

CVE-2026-25761 – Command injection via crafted filenames in Super-linter Action

Posted on February 9, 2026

CVE ID : CVE-2026-25761 Published : Feb. 9, 2026, 9:15 p.m. | 44 minutes ago Description : Super-linter is a combination of multiple linters to run as a GitHub Action or standalone. From…

CVE-2026-25498 – Craft has a potential authenticated Remote Code Execution via malicious attached Behavior

Posted on February 9, 2026

CVE ID : CVE-2026-25498 Published : Feb. 9, 2026, 8:15 p.m. | 1 hour, 44 minutes ago Description : Craft is a platform for creating digital experiences. In versions 4.0.0-RC1 through 4.16.17 and 5.0.0-RC1…

CVE-2026-25497 – Craft has a GraphQL Asset Mutation Privilege Escalation

Posted on February 9, 2026

CVE ID : CVE-2026-25497 Published : Feb. 9, 2026, 8:15 p.m. | 1 hour, 44 minutes ago Description : Craft is a platform for creating digital experiences. In Craft versions from 4.0.0-RC1 to before…

CVE-2026-25495 – Craft has a SQL Injection in Element Indexes via criteria[orderBy]

Posted on February 9, 2026

CVE ID : CVE-2026-25495 Published : Feb. 9, 2026, 8:15 p.m. | 1 hour, 44 minutes ago Description : Craft is a platform for creating digital experiences. In Craft versions 4.0.0-RC1 through 4.16.17 and…

CVE-2026-25057 – Zip Slip in MarkUs config upload allowing RCE

Posted on February 9, 2026

CVE ID : CVE-2026-25057 Published : Feb. 9, 2026, 8:15 p.m. | 1 hour, 44 minutes ago Description : MarkUs is a web application for the submission and grading of student assignments. Prior to…

CVE-2026-24684 – FreeRDP has a Heap-use-after-free in play_thread

Posted on February 9, 2026

CVE ID : CVE-2026-24684 Published : Feb. 9, 2026, 7:15 p.m. | 44 minutes ago Description : FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, the RDPSND async…

CVE-2026-24683 – FreeRDP has a heap-use-after-free in ainput_send_input_event

Posted on February 9, 2026

CVE ID : CVE-2026-24683 Published : Feb. 9, 2026, 7:15 p.m. | 44 minutes ago Description : FreeRDP is a free implementation of the Remote Desktop Protocol. ainput_send_input_event caches channel_callback in a local…

CVE-2026-24682 – FreeRDP has a Heap-buffer-overflow in audio_formats_free

Posted on February 9, 2026

CVE ID : CVE-2026-24682 Published : Feb. 9, 2026, 7:15 p.m. | 44 minutes ago Description : FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, audin_server_recv_formats frees an…

Posts pagination

Previous 1 … 3 4 5 6 Next
©2026 Secure EU | Design: Newspaperly WordPress Theme