Search: "digital"

1129 CVEs found

CVE-2026-32382
5.3 MEDIUM

Missing Authorization vulnerability in raratheme Digital Download digital-download allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Digital Download: from n/a...

Published: 2026-03-13
Products: 0
CVE-2025-52648
4.8 MEDIUM

HCL AION is affected by a vulnerability where offering images are not digitally signed. Lack of image signing may allow the use of unverified or tampered images, potentially leading to security risks ...

Published: 2026-03-16
Products: 1
Vendors:
hcl

A DLL search order hijacking vulnerability in Thermalright TR-VISION HOME on Windows (64-bit) allows a local attacker to escalate privileges via DLL side-loading. The application loads certain dynamic...

Published: 2026-03-16
Products: 1
Vendors:
thermalright
CVE-2026-32636
5.3 MEDIUM

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-17 and 6.9.13-42, the NewXMLTree method contains a bug that could result in a crash due to...

Published: 2026-03-18
Products: 2
Vendors:
imagemagick

Use after free in Digital Credentials API in Google Chrome prior to 146.0.7680.153 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a craf...

Published: 2026-03-20
Products: 4
Vendors:
microsoft apple linux google

A command injection vulnerability exists in DigitalOcean Droplet Agent through 1.3.2. The troubleshooting actioner component (internal/troubleshooting/actioner/actioner.go) processes metadata from the...

Published: 2026-03-23
Products: 0
CVE-2026-33201
6.8 MEDIUM

Digital Photo Frame GH-WDF10A provided by GREEN HOUSE CO., LTD. contains an active debug code vulnerability. If this vulnerability is exploited, files or configurations on the affected device may be r...

Published: 2026-03-26
Products: 0

goxmlsig provides XML Digital Signatures implemented in Go. Prior to version 1.6.0, the `validateSignature` function in `validate.go` goes through the references in the `SignedInfo` block to find one ...

Published: 2026-03-26
Products: 1
Vendors:
goxmldsig_project
CVE-2026-33535
4.0 MEDIUM

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, an out-of-bounds write of a zero byte exists in the X11 `display` intera...

Published: 2026-03-26
Products: 2
Vendors:
imagemagick
CVE-2026-33536
5.1 MEDIUM

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, due to an incorrect return value on certain platforms a pointer is incre...

Published: 2026-03-26
Products: 2
Vendors:
imagemagick

Gematik Authenticator securely authenticates users for login to digital health applications. Starting in version 4.12.0 and prior to version 4.16.0, the Mac OS version of the Authenticator is vulnerab...

Published: 2026-03-27
Products: 2
Vendors:
apple gematik
CVE-2026-33875
9.3 CRITICAL

Gematik Authenticator securely authenticates users for login to digital health applications. Versions prior to 4.16.0 are vulnerable to authentication flow hijacking, potentially allowing attackers to...

Published: 2026-03-27
Products: 1
Vendors:
gematik
CVE-2026-33936
5.3 MEDIUM

The `ecdsa` PyPI package is a pure Python implementation of ECC (Elliptic Curve Cryptography) with support for ECDSA (Elliptic Curve Digital Signature Algorithm), EdDSA (Edwards-curve Digital Signatur...

Published: 2026-03-27
Products: 1
Vendors:
tlsfuzzer
CVE-2026-33992
6.5 MEDIUM

pyLoad is a free and open-source download manager written in Python. Prior to version 0.5.0b3.dev97, PyLoad's download engine accepts arbitrary URLs without validation, enabling Server-Side Request Fo...

Published: 2026-03-27
Products: 1
Vendors:
pyload

The Download Monitor plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.1.7 via the executePayment() function due to missing validation on a...

Published: 2026-03-30
Products: 0

SzafirHost downloads necessary files in the context of the initiating web page. When called, SzafirHost updates its dynamic library. JAR files are correctly verified based on a list of trusted file ha...

Published: 2026-04-02
Products: 0

The Semtech LR11xx LoRa transceivers implement secure boot functionality using digital signatures to authenticate firmware. However, the implementation uses a non-standard cryptographic hashing algori...

Published: 2026-04-07
Products: 0

Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi Electric ...

Published: 2026-04-08
Products: 0

Cleartext Storage of Sensitive Information in GUI vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi El...

Published: 2026-04-08
Products: 0

A certificate validation vulnerability in Palo Alto Networks Autonomous Digital Experience Manager on Windows allows an unauthenticated attacker with adjacent network access to execute arbitrary code ...

Published: 2026-04-13
Products: 0