A vulnerability classified as problematic was found in Kovah LinkAce up to 2.1.0. The affected element is the function processTaxonomy of the file LinkRepository.php. Executing a manipulation can lead to authorization bypass.
The identification of this vulnerability is CVE-2026-30954. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in Google Android. The impacted element is an unknown function. The manipulation leads to out-of-bounds write.
This vulnerability is referenced as CVE-2026-0122. The attack can only be performed from a local environment. No exploit is available.
It is suggested to install a patch to address this issue.
A vulnerability has been found in parse-community parse-server up to 8.6.18/9.0.0 9.5.2-alpha.5 and classified as critical. This impacts an unknown function. This manipulation causes improper access controls.
This vulnerability is tracked as CVE-2026-30962. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability labeled as critical has been found in parse-community parse-server up to 8.6.20/9.0.0 9.5.2-alpha.7. Impacted is the function redirectClassNameForKey of the component Query Parameter Handler. Such manipulation leads to incorrect authorization.
This vulnerability is traded as CVE-2026-30965. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.
A vulnerability classified as problematic was found in parse-community parse-server up to 8.6.15/9.0.0 9.5.2-alpha.2. This impacts an unknown function. The manipulation results in incorrect authorization.
This vulnerability was named CVE-2026-30947. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in parse-community parse-server up to 8.6.17/9.0.0 9.5.2-alpha.4. Affected is an unknown function. This manipulation causes improper authentication.
The identification of this vulnerability is CVE-2026-30949. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Google Android. It has been classified as critical. The affected element is the function EfwApTransport::ProcessRxRing of the file efw_ap_transport.cc. This manipulation causes out-of-bounds write.
This vulnerability is tracked as CVE-2026-0123. The attack is restricted to local execution. No exploit exists.
It is suggested to install a patch to address this issue.
A vulnerability was found in Google Android. It has been rated as critical. This affects an unknown function. Performing a manipulation results in out-of-bounds write.
This vulnerability is cataloged as CVE-2026-0124. It is possible to initiate the attack remotely. There is no exploit available.
To fix this issue, it is recommended to deploy a patch.
A vulnerability identified as problematic has been detected in parse-community parse-server up to 8.6.16/9.0.0 9.5.2-alpha.3. Affected is an unknown function of the component SVG File Parser. The manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2026-30948. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.