A vulnerability has been found in huggingface smolagents 1.25.0.dev0 and classified as critical. This affects the function evaluate_augassign/evaluate_call/evaluate_with of the file src/smolagents/local_python_executor.py of the component Incomplete Fix CVE-2025-9959. This manipulation causes code injection.
The identification of this vulnerability is CVE-2026-4963. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability categorized as problematic has been discovered in Open-Xchange OX Dovecot Pro up to 2.3.0. The impacted element is an unknown function. The manipulation results in resource consumption.
This vulnerability is cataloged as CVE-2026-27857. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability identified as critical has been detected in SC 7.16. The impacted element is an unknown function. This manipulation causes out-of-bounds write.
This vulnerability is tracked as CVE-2018-25222. The attack is restricted to local execution. Moreover, an exploit is present.
A vulnerability, which was classified as critical, has been found in libarchive on 32-bit. This vulnerability affects unknown code of the component ISO9660 Image Parser. Performing a manipulation results in heap-based buffer overflow.
This vulnerability is cataloged as CVE-2026-5121. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Tenda CH22 1.0.0.1/1.If. The impacted element is the function fromSetCfm of the file /goform/setcfm of the component Parameter Handler. The manipulation of the argument funcname leads to stack-based buffer overflow.
This vulnerability is referenced as CVE-2026-5154. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability described as critical has been identified in Identicalsoftware xWPE 1.5.30a-2.1. The impacted element is an unknown function of the component Command-Line Argument Handler. Such manipulation leads to out-of-bounds write.
This vulnerability is documented as CVE-2016-20037. The attack needs to be performed locally. Additionally, an exploit exists.
A vulnerability was found in werner yTree 1.94-1.1 and classified as critical. This affects an unknown part. Such manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2016-20038. Local access is required to approach this attack. Moreover, an exploit is present.
A vulnerability was found in msk Mapscrn 2.03. It has been declared as critical. This issue affects some unknown processing. Executing a manipulation can lead to out-of-bounds write.
The identification of this vulnerability is CVE-2017-20226. The attack can only be executed locally. Furthermore, there is an exploit available.
A vulnerability was found in iSelect 1.4. It has been rated as problematic. This affects an unknown part. Performing a manipulation results in memory corruption.
This vulnerability is identified as CVE-2016-20048. The attack is only possible with local access. Additionally, an exploit exists.
A vulnerability categorized as critical has been discovered in zFTP Client 20061220+dfsg3-4.1. The affected element is the function strcpy_chk. The manipulation of the argument Name results in out-of-bounds write.
This vulnerability is identified as CVE-2016-20046. The attack is only possible with local access. Additionally, an exploit exists.
A vulnerability classified as critical was found in Yasr Screen Reader 0.6.9-5. This impacts an unknown function. Executing a manipulation of the argument -p can lead to path traversal.
This vulnerability appears as CVE-2016-20041. The attack requires local access. In addition, an exploit is available.
A vulnerability has been found in ticalc Texas Instrument Emulator 3.03 and classified as critical. Affected by this issue is some unknown functionality of the component Command-Line Interface. This manipulation of the argument ROM causes path traversal.
This vulnerability is handled as CVE-2016-20040. It is possible to launch the attack on the local host. Additionally, an exploit exists.
A vulnerability was found in trn Threaded USENET News Reader 3.6-23. It has been classified as critical. This vulnerability affects unknown code. Performing a manipulation results in out-of-bounds write.
This vulnerability was named CVE-2016-20042. The attack needs to be approached locally. In addition, an exploit is available.