Posts of last 24 hours
A vulnerability has been found in Tie::Hash::Regex up to 1.x and classified as problematic. This impacts the function FETCH/EXISTS/DELETE of the component Regular Expression Compilation. The manipulation leads to improper input validation.
This vulnerability is documented as CVE-2026-77781. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
https://vuldb.com/vuln/394272
APKX-Hunter is an open-source Android Static Analysis Framework written entirely in C, purpose-buil
https://buaq.net/go-436884.html
马克·扎克伯格刚刚在爱尔兰买下了一处舒适的住所,靠近Meta公司的国际总部。所谓舒适的住所,其实是一座城堡。扎克买下了这座19世纪的斯特兰卡利城堡及其440英亩的土地,据估计,这处庄园花费了他2300
https://buaq.net/go-436893.html
A vulnerability, which was classified as problematic, was found in DataRecce Recce up to 1.49.x. This affects an unknown function of the component Query Run API. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2026-49360. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
https://vuldb.com/vuln/394271
A vulnerability, which was classified as problematic, has been found in OliveTin up to 2025.03.07. The impacted element is the function filterToDefinedArgumentsOnly of the component Filter. Performing a manipulation results in improper input validation.
This vulnerability is cataloged as CVE-2026-53541. It is possible to initiate the attack remotely. There is no exploit available.
Applying a patch is the recommended action to fix this issue.
https://vuldb.com/vuln/394270
Cloudflare's new Bot Preference Sync automatically aligns your robots.txt file with your AI bot policies for Search, Agent, and Training. Easily manage which bots access your content without maintaining static files.
https://blog.cloudflare.com/bot-preference-sync/
A vulnerability classified as critical was found in Basekick-Labs Arc up to 2026.06.0. The affected element is the function applyRegisterFile of the file internal/cluster/raft/fsm.go of the component Raft FSM. Such manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-48105. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
https://vuldb.com/vuln/394269
A vulnerability classified as critical has been found in Basekick-Labs Arc up to 2026.06.0. Impacted is an unknown function of the file internal/cluster/replication/receiver.go of the component Cluster Replication Receiver. This manipulation causes authentication bypass by capture-replay.
This vulnerability is tracked as CVE-2026-48106. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/394268
A vulnerability described as critical has been identified in Basekick-Labs Arc up to 2026.06.0. This issue affects the function ValidateSQLRequest of the file internal/api/query.go of the component User-SQL Validator. The manipulation results in improper privilege management.
This vulnerability is identified as CVE-2026-47735. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.
https://vuldb.com/vuln/394267
A vulnerability marked as critical has been reported in Basekick-Labs Arc up to 26.06.0. This vulnerability affects the function pprof.New of the file internal/api/server.go of the component Auth Middleware. The manipulation leads to missing authentication.
This vulnerability is referenced as CVE-2026-48050. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.
https://vuldb.com/vuln/394266