2026-04-27
2026-04-27 12:16Z
CRIT

CVE-2026-7122 — Such manipulation of the argument enable leads to os command injection.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7122

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This impacts the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument enable leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. CVSSv3.1 9.8 (CRITICAL)

CWECWE 77CWECWE 78TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-04-27
2026-04-27 12:16Z
CRIT

CVE-2026-7121 — This manipulation of the argument wizard causes os command injection.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7121

A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This manipulation of the argument wizard causes os command injection. It is possible to initiate the attack remotely. The exploit has been published and may be used. CVSSv3.1 9.8 (CRITICAL)

CWECWE 77CWECWE 78TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-04-27
2026-04-27 12:16Z
HIGH

CVE-2026-7119 — Tenda: The manipulation of the argument countrystr results in os command injection.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7119

A vulnerability was detected in Tenda HG3 2.0. The impacted element is an unknown function of the file /boaform/formCountrystr. The manipulation of the argument countrystr results in os command injection. The attack may be performed from remote. The exploit is now public and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 77CWECWE 78VNDTendaTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 11:16Z
CRIT

CVE-2026-33453 — Improperly: Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Apache Camel Camel-Coap component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-33453

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Apache Camel Camel-Coap component. Apache Camel's camel-coap component is vulnerable to Camel message header injection, leading to remote code execution when routes forward CoAP requests to header-sensitive producers (e.g. camel-exec) The camel-coap component maps incoming CoAP request URI query parameters directly into Camel Exchange In message headers without applying any Heade CVSSv3.1 10.0 (CRITICAL)

CWECWE 915VNDImproperlyTYPVulnerability
10.0
CVSS v3.1
100
Edit Score
2026-04-27
2026-04-27 11:16Z
HIGH

CVE-2026-27172 — ConsulRegistry: An attacker who can write to the Consul KV store backing a Camel ConsulRegistry

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-27172

The ConsulRegistry in the camel-consul component (class org.apache.camel.component.consul.ConsulRegistry and its inner ConsulRegistryUtils.deserialize method) read Java-serialized values from the Consul KV store and passed them to ObjectInputStream.readObject() without configuring an ObjectInputFilter. An attacker who can write to the Consul KV store backing a Camel ConsulRegistry instance could inject a malicious serialized Java object that is deserialized the next time Came CVSSv3.1 8.8 (HIGH) · EPSS 24th percentile

CWECWE 502VNDConsulregistryTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 11:16Z
CRIT

CVE-2026-22337 — Incorrect: Privilege Assignment vulnerability in Directorist Directorist Social Login allows Privilege Escalation.This issue affects

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-22337

Incorrect Privilege Assignment vulnerability in Directorist Directorist Social Login allows Privilege Escalation.This issue affects Directorist Social Login: from n/a before 2.1.4. CVSSv3.1 9.8 (CRITICAL)

CWECWE 266TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-04-27
2026-04-27 11:16Z
CRIT

CVE-2026-22336 — Neutralization: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-22336

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Directorist Booking allows SQL Injection.This issue affects Directorist Booking: from n/a before 3.0.2. CVSSv3.1 9.3 (CRITICAL)

CWECWE 89TYPVulnerability
9.3
CVSS v3.1
97
Edit Score
728 × 90 / responsive · programmatic ad slot
2026-04-27
2026-04-27 10:16Z
CRIT

CVE-2026-41409 — CVE: The fix for CVE-2024-52046 in Apache MINA AbstractIoBuffer.getObject() was incomplete.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-41409

The fix for CVE-2024-52046 in Apache MINA AbstractIoBuffer.getObject() was incomplete. The classname allowlist of classes allowed to be deserialized was applied too late after a static initializer in a class to be read might already have been executed. Affected versions are Apache MINA 2.0.0 <= 2.0.27, 2.1.0 <= 2.1.10, and 2.2.0 <= 2.2.5. The problem is resolved in Apache MINA 2.0.28, 2.1.11, and 2.2.6 by applying the classname allowlist earlier. Affected are app CVSSv3.1 9.8 (CRITICAL)

CWECWE 502VNDCveTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-04-27
2026-04-27 10:16Z
HIGH

CVE-2026-40858 — ProtoStream: An attacker who can write to the Infinispan cache used by a Camel application

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-40858

The camel-infinispan component's ProtoStream-based remote aggregation repository deserializes data read from a remote Infinispan cache using java.io.ObjectInputStream without applying any ObjectInputFilter. An attacker who can write to the Infinispan cache used by a Camel application can inject a crafted serialized Java object that, when read during normal aggregation repository operations such as get or recover, results in arbitrary code execution in the context of the appli CVSSv3.1 8.8 (HIGH)

CWECWE 502VNDProtostreamTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 10:16Z
HIGH

CVE-2026-40022 — When authentication is enabled on the Apache Camel embedded HTTP server or embedded management

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-40022

When authentication is enabled on the Apache Camel embedded HTTP server or embedded management server (camel-platform-http-main) and a non-root context path such as /api or /admin is configured via camel.server.path or camel.management.path, the BasicAuthenticationConfigurer and JWTAuthenticationConfigurer classes derive the authentication path from properties.getPath() when camel.server.authenticationPath / camel.management.authenticationPath is not explicitly set. Combined CVSSv3.1 8.2 (HIGH)

CWECWE 288TYPVulnerability
8.2
CVSS v3.1
91
Edit Score
2026-04-27
2026-04-27 10:16Z
CRIT

CVE-2026-33454 — Camel: The Camel-Mail component is vulnerable to Camel message header injection.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-33454

The Camel-Mail component is vulnerable to Camel message header injection. The custom header filter strategy used by the component (MailHeaderFilterStrategy) only filters the 'out' direction via setOutFilterStartsWith, while it does not configure the 'in' direction via setInFilterStartsWith. As a result, when a Camel application consumes mail through camel-mail (for example via from(\"imap://...\") or from(\"pop3://...\")) the inbound filter check is skipped and Camel-prefixed CVSSv3.1 9.4 (CRITICAL)

CWECWE 502VNDCamelTYPVulnerability
9.4
CVSS v3.1
97
Edit Score
2026-04-27
2026-04-27 09:16Z
HIGH

CVE-2026-7101 — The manipulation leads to buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7101

A vulnerability has been found in Tenda F456 1.0.0.5. This affects the function fromWrlclientSet of the file /goform/WrlclientSet of the component httpd. The manipulation leads to buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 09:16Z
HIGH

CVE-2026-7100 — Executing a manipulation can lead to buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7100

A flaw has been found in Tenda F456 1.0.0.5. The impacted element is the function fromNatlimitof of the file /goform/Natlimit of the component httpd. Executing a manipulation can lead to buffer overflow. The attack may be launched remotely. The exploit has been published and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 09:16Z
HIGH

CVE-2026-7099 — Tenda: Performing a manipulation of the argument mit_linktype results in buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7099

A vulnerability was detected in Tenda F456 1.0.0.5. The affected element is the function formQuickIndex of the file /goform/QuickIndex of the component httpd. Performing a manipulation of the argument mit_linktype results in buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119VNDTendaTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 09:16Z
HIGH

CVE-2026-7098 — Such manipulation of the argument page leads to buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7098

A security vulnerability has been detected in Tenda F456 1.0.0.5. Impacted is the function fromDhcpListClient of the file /goform/DhcpListClient of the component httpd. Such manipulation of the argument page leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 09:16Z
CRIT

CVE-2026-41635 — Apache: MINA's AbstractIoBuffer.resolveClass() contains two branches, one of them (for static classes or primitive

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-41635

Apache MINA's AbstractIoBuffer.resolveClass() contains two branches, one of them (for static classes or primitive types) does not check the class at all, bypassing the classname allowlist and allowing arbitrary code to be executed. The fix checks if the class is present in the accepted class filter before calling Class.forName().  Affected versions are Apache MINA 2.0.0 <= 2.0.27, 2.1.0 <= 2.1.10, and 2.2.0 <= 2.2.5. The problem is resolved in Apache MINA 2.0 CVSSv3.1 9.8 (CRITICAL)

CWECWE 502VNDApacheTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-04-27
2026-04-27 09:16Z
CRIT

CVE-2026-40860 — JmsBinding: Because this code path is reached whenever the mapJmsMessage option is enabled (the default)

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-40860

JmsBinding.extractBodyFromJms() in camel-jms, and the equivalent JmsBinding class in camel-sjms, deserialized the payload of incoming JMS ObjectMessage values via javax.jms.ObjectMessage.getObject() without applying any ObjectInputFilter, class allowlist or class denylist. Because this code path is reached whenever the mapJmsMessage option is enabled (the default) and Camel acts as a JMS consumer, an attacker able to publish a crafted ObjectMessage to a queue or topic consume CVSSv3.1 9.8 (CRITICAL)

CWECWE 502VNDJmsbindingTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-04-27
2026-04-27 09:16Z
HIGH

CVE-2026-40473 — MinaConverter: When a Camel route uses camel-mina as a TCP or UDP consumer and requests

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-40473

The camel-mina component's MinaConverter.toObjectInput(IoBuffer) type converter wraps an IoBuffer in a java.io.ObjectInputStream without applying any ObjectInputFilter or class-loading restrictions. When a Camel route uses camel-mina as a TCP or UDP consumer and requests conversion to ObjectInput (for example via getBody(ObjectInput.class) or @Body ObjectInput), an attacker sending a crafted serialized Java object over the network to the MINA consumer port can trigger arbitra CVSSv3.1 8.8 (HIGH)

CWECWE 502VNDMinaconverterTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 09:16Z
CRIT

CVE-2026-40453 — CVE: This enables remote code execution and arbitrary file write on routes that forward JMS

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-40453

The fix for CVE-2025-27636 added setLowerCase(true) to HttpHeaderFilterStrategy so that case-variant header names such as 'CAmelExecCommandExecutable' are filtered out alongside 'CamelExecCommandExecutable'. The same setLowerCase(true) call was not applied to five non-HTTP HeaderFilterStrategy implementations: JmsHeaderFilterStrategy and ClassicJmsHeaderFilterStrategy in camel-jms, SjmsHeaderFilterStrategy in camel-sjms, CoAPHeaderFilterStrategy in camel-coap, and GooglePubsu CVSSv3.1 9.9 (CRITICAL)

CWECWE 178VNDCveTYPVulnerability
9.9
CVSS v3.1
100
Edit Score
2026-04-27
2026-04-27 08:16Z
HIGH

CVE-2026-7097 — This manipulation of the argument page causes buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7097

A weakness has been identified in Tenda F456 1.0.0.5. This issue affects the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter of the component httpd. This manipulation of the argument page causes buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 08:16Z
HIGH

CVE-2026-7096 — The manipulation of the argument fmgpon_loid results in os command injection.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7096

A security flaw has been discovered in Tenda HG3 2.0 300003070. This vulnerability affects the function formgponConf of the file /boaform/admin/formgponConf. The manipulation of the argument fmgpon_loid results in os command injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks. CVSSv3.1 8.8 (HIGH)

CWECWE 77CWECWE 78TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 04:16Z
HIGH

CVE-2026-7082 — Executing a manipulation of the argument Go can lead to buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7082

A flaw has been found in Tenda F456 1.0.0.5. Affected by this vulnerability is the function formWrlExtraSet of the file /goform/WrlExtraSet of the component httpd. Executing a manipulation of the argument Go can lead to buffer overflow. The attack can be executed remotely. The exploit has been published and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 04:16Z
HIGH

CVE-2026-7081 — Tenda: Performing a manipulation of the argument dips results in buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7081

A vulnerability was detected in Tenda F456 1.0.0.5. Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. Performing a manipulation of the argument dips results in buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119VNDTendaTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 03:16Z
HIGH

CVE-2026-7106 — Highland: The Highland Software Custom Role Manager plugin for WordPress is vulnerable to Privilege Escalation

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7106

The Highland Software Custom Role Manager plugin for WordPress is vulnerable to Privilege Escalation in versions up to and including 1.0.0. This is due to insufficient authorization checks in the hscrm_save_user_roles() function, which is hooked to the personal_options_update action accessible by any authenticated user. This makes it possible for authenticated attackers, with Subscriber-level access or higher, to potentially modify user roles via the profile update form. CVSSv3.1 8.8 (HIGH)

CWECWE 269VNDHighlandTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-04-27
2026-04-27 03:16Z
HIGH

CVE-2026-7080 — Such manipulation of the argument delno leads to buffer overflow.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7080

A security vulnerability has been detected in Tenda F456 1.0.0.5. This impacts the function fromPPTPUserSetting of the file /goform/PPTPUserSetting of the component httpd. Such manipulation of the argument delno leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. CVSSv3.1 8.8 (HIGH)

CWECWE 120CWECWE 119TYPVulnerability
8.8
CVSS v3.1
94
Edit Score