Skip to main content

CWE archive

CWE-121 CVEs

Programmatic archive

3,522 CVEs tagged with CWE-121584 Critical, 2,296 High, 571 Medium, 70 Low, 1 Unrated.

CVE-2026-10159

Published May 31, 2026

A weakness has been identified in TRENDnet TEW-432BRP 3.10B20. Affected by this vulnerability is the function formSysLog of the file /goform/formSysLog. This manipulation of the a…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10158

Published May 31, 2026

A security flaw has been discovered in TRENDnet TEW-432BRP 3.10B20. Affected is the function formPortFw of the file /goform/formPortFw. The manipulation of the argument server_nam…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10125

Published May 30, 2026

A vulnerability was identified in Edimax BR-6478AC 1.23. Affected by this vulnerability is the function formPPPoESetup of the file /goform/formPPPoESetup of the component POST Req…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10124

Published May 30, 2026

A vulnerability was determined in Shibby Tomato up to 1.28. Affected is the function rip_zebra_read_ipv4 of the file /usr/sbin/ripd of the component Zserv Handler. Executing a man…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10123

Published May 30, 2026

A vulnerability was found in TRENDnet TEW-432BRP 3.10B20. This impacts the function formSetDomainFilter of the file /goform/formSetDomainFilter. Performing a manipulation of the a…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10122

Published May 30, 2026

A vulnerability has been found in TRENDnet TEW-432BRP 3.10B20. This affects the function formSetProtocolFilter of the file /goform/formSetProtocolFilter. Such manipulation of the…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10121

Published May 30, 2026

A flaw has been found in TRENDnet TEW-432BRP 3.10B20. The impacted element is the function formSetUrlFilter of the file /goform/formSetUrlFilter. This manipulation of the argument…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10120

Published May 30, 2026

A vulnerability was detected in TRENDnet TEW-432BRP 3.10B20. The affected element is the function formSetFirewallRule of the file /goform/formSetFirewallRule. The manipulation of…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10119

Published May 30, 2026

A security vulnerability has been detected in TRENDnet TEW-432BRP 3.10B20. Impacted is the function formSetMACFilter of the file /goform/formSetMACFilter. The manipulation of the…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10067

Published May 29, 2026

A vulnerability was detected in Shibby Tomato 1.28. Impacted is the function sub_90F0 of the file multimon.cgi. The manipulation results in stack-based buffer overflow. The attack…

CVSS 8.7 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10066

Published May 29, 2026

A security vulnerability has been detected in Shibby Tomato up to 1.28. This issue affects the function sub_9068 of the file tomatoups.cgi of the component UPS Service. The manipu…

CVSS 8.7 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-10065

Published May 29, 2026

A weakness has been identified in Shibby Tomato 1.28. This vulnerability affects the function get_ups_field of the file tomatodata.cgi. Executing a manipulation of the argument Da…

CVSS 8.7 · High
evidence mentions
4
Buzz score
22.6

CVE-2018-25383

Published May 29, 2026

Free MP3 CD Ripper 2.8 contains a stack-based buffer overflow vulnerability in WMA file processing that allows local attackers to bypass DEP protection via structured exception ha…

CVSS 8.6 · High
evidence mentions
3
Buzz score
25.4

CVE-2026-40528

Published May 29, 2026

OpenSC before 0.27.0, fixed in commit 0358817, contains a stack and heap buffer overrun vulnerability in the do_key_value() function in src/pkcs15init/profile.c that allows attack…

CVSS 1.0 · Low
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-40510

Published May 29, 2026

OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in piv_process_history() in src/libopensc/card-piv.c that allows physically prese…

CVSS 1.0 · Low
evidence mentions
4
Buzz score
27.6
Vendor/product tagsBeta · best-effort

CVE-2026-9038

Published May 28, 2026

A stack-based buffer overflow vulnerability in the charging controller’s signal-processing logic allows an attacker with physical access to the charging interface to supply messag…

CVSS 8.6 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-41565

Published May 28, 2026

CryptX versions before 0.088_001 for Perl have a stack buffer overflow in four AEAD decrypt_verify helpers. The gcm_decrypt_verify, ccm_decrypt_verify, chacha20poly1305_decrypt_v…

CVSS 7.5 · High
evidence mentions
4
Buzz score
27.6

CVE-2026-8363

Published May 27, 2026

A stack-based buffer overflow condition exists in WOSDeviceDropFolder.dll when processing a long URL path starting with /resources:

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-8362

Published May 27, 2026

A stack-based buffer overflow condition exists in WOSDefaultHttpModule.dll when processing a long URL path starting with /woshome

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-38422

Published May 27, 2026

Buffer Overflow vulnerability in arendst Tasmota v.15.3.0.3 and before allows a remote attacker to execute arbitrary code via the tasmota/tasmota_xdrv_driver/xdrv_10_scripter.ino,…

CVSS 7.3 · High
evidence mentions
3
Buzz score
22.9
Public PoC observed

CVE-2026-9632

Published May 27, 2026

A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of the file /goform/formGroupConfig of the component Web Managem…

CVSS 7.4 · High
evidence mentions
4
Buzz score
22.6
Showing 226-250 of 3,522 CVEsPage 10 of 141