A vulnerability, which was classified as problematic, has been found in Zirve Information e-Taxpayer Accounting Website up to 07082025. This issue affects some unknown processing. The manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2025-7799. Remote exploitation of the attack is possible. No exploit is available.
CISA has issued a new directive requiring federal agencies to decommission all end of support edge devices within 12 months to reduce ongoing exploitation risks
A vulnerability classified as problematic was found in Roundcube Webmail up to 1.5.12/1.6.12. This vulnerability affects unknown code of the component SVG Handler. Executing a manipulation can lead to unprotected alternate channel.
The identification of this vulnerability is CVE-2026-25916. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability classified as problematic has been found in WAGO 0852-1322 and 0852-1328 up to 2.64. This affects an unknown part of the component Configuration File Handler. Performing a manipulation results in use of hard-coded cryptographic key
.
This vulnerability was named CVE-2026-22906. The attack may be initiated remotely. There is no available exploit.
A vulnerability described as critical has been identified in WAGO 0852-1322 and 0852-1328 up to 2.64. Affected by this issue is some unknown functionality of the file /js/../cgi-bin/post.cgi of the component CGI Endpoint. Such manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2026-22905. The attack can be launched remotely. No exploit exists.
A vulnerability marked as critical has been reported in WAGO 0852-1322 and 0852-1328 up to 2.64. Affected by this vulnerability is an unknown functionality of the component Cookie Handler. This manipulation causes stack-based buffer overflow.
This vulnerability is handled as CVE-2026-22904. The attack can be initiated remotely. There is not any exploit available.
A vulnerability labeled as critical has been found in WAGO 0852-1322 and 0852-1328 up to 2.64. Affected is an unknown function of the component Cookie Handler. The manipulation of the argument SESSIONID results in stack-based buffer overflow.
This vulnerability is known as CVE-2026-22903. It is possible to launch the attack remotely. No exploit is available.
A vulnerability identified as critical has been detected in Fluent Forms Pro Add On Pack Plugin up to 6.1.12 on WordPress. This impacts the function saveDataSource. The manipulation leads to server-side request forgery.
This vulnerability is traded as CVE-2026-0632. It is possible to initiate the attack remotely. There is no exploit available.