Monitor vulnerabilities that affect your stack. Sign up free to get alerts when software you use is affected.

CVE Vulnerabilities - 6 April 2026

RSS

23 vulnerabilities published on 6 April 2026

Severity:
Belkin F9K1015 Firmware 1.00.10 Uncontrolled Reboot Vulnerability
CVE-2026-5613
A security flaw in the Belkin F9K1015's reboot function makes it possible for a hacker to remotely take control of the device. This could happen if an attacker sends a specially crafted request to the...
7.4
Belkin F9K1015 Router: Remote Code Execution Through Webpage Argument
CVE-2026-5612
A security flaw exists in the Belkin F9K1015 router's web interface. An attacker can potentially inject malicious code by manipulating a specific argument in the router's settings. Belkin has not resp...
7.4
Belkin F9K1015 Router: Remote Code Execution Through Malformed Webpage Input
CVE-2026-5611
A security hole in the Belkin F9K1015 router's web interface allows an attacker to potentially execute malicious code on the router itself. This could happen remotely, without needing to be physically...
7.4
Belkin F9K1015 Router's Webpage Input Can Cause Crash
CVE-2026-5610
A security weakness in the Belkin F9K1015 router's user interface can allow an attacker to remotely crash the device. This could be used to disrupt internet access or cause other problems. It's recomm...
7.4
Tenda i12 Router: Malicious Input Can Crash the Device
CVE-2026-5609
A security flaw in the parameter handling of Tenda i12 routers can be exploited by an attacker to crash the device remotely. This can happen if the router receives specially crafted input. To protect ...
7.4
Belkin F9K1122 Firmware: Stack Overflow in Webpage Form
CVE-2026-5608
A critical flaw in the Belkin F9K1122 firmware allows an attacker to potentially execute malicious code by manipulating a webpage form. This could allow an attacker to take control of the device from ...
7.4
Tenda CH22 1.0.0.1 Can Be Hacked Remotely Through Form Submission
CVE-2026-5605
A flaw in Tenda CH22 1.0.0.1 makes it possible for a hacker to potentially take control of the device by submitting a specially crafted form. This can be done from anywhere in the world. We recommend ...
7.4
Impervium MCP Browser Agent 0.8.0 Allows Remote Attack Through URL Parameter
CVE-2026-5607
A security issue in Impervium MCP Browser Agent 0.8.0 allows hackers to trick the server into making unauthorized requests. This could happen if an attacker sends a specially crafted URL to the server...
5.3
PHPGurukul Shopping Portal: SQL Injection in Order Details
CVE-2026-5606
The PHPGurukul Online Shopping Portal Project version 2.1 has a security weakness in its order details page. This means that an attacker could potentially access or manipulate sensitive customer data....
5.3
Adobe Acrobat Reader has a flaw in how it handles PDFs
ECHO-46c5-7f90-2bcf
Adobe Acrobat Reader's security has a weakness in how it handles PDF files, which could allow attackers to execute arbitrary code on a victim's computer. This affects all versions of Adobe Acrobat Rea...
CGA-f9qq-57f2-ffmp
CGA-f9qq-57f2-ffmp
CGA-39jg-9vr8-xm6f
CGA-39jg-9vr8-xm6f
CGA-h498-jrhc-2qc6
CGA-h498-jrhc-2qc6
CGA-c3rr-m9xh-gmfw
CGA-c3rr-m9xh-gmfw
CGA-hfg4-p2p9-pvfr
CGA-hfg4-p2p9-pvfr
Adobe Acrobat DC allows unauthorized access to sensitive files
CGA-p338-c56f-p3qc
Adobe Acrobat DC has a vulnerability that allows attackers to access files that users did not intend to share. This could lead to sensitive information being exposed. Adobe is working on a patch to fi...
Adobe ColdFusion Unauthorized File Access via Dot Dot Slash
CGA-whh4-hgx9-244x
Adobe ColdFusion allows attackers to access files on the server by using a malicious URL. This could lead to sensitive information being exposed or malicious files being executed. Adobe recommends upd...
CGA-cfq9-xv63-3xpj
CGA-cfq9-xv63-3xpj
CGA-rpv3-fm9f-r9pq
CGA-rpv3-fm9f-r9pq
CGA-99f4-28j2-7vxm
CGA-99f4-28j2-7vxm
Apache HTTP Server Cross-Site Scripting (XSS) in mod_proxy_ajp
CGA-9jwx-cw7v-pjxh
Apache HTTP Server has a vulnerability in its mod_proxy_ajp module that allows an attacker to inject malicious code into web pages. This could allow an attacker to steal sensitive information or take ...
CGA-5926-72ff-mp26
CGA-5926-72ff-mp26
CGA-4r87-7f3w-2442
CGA-4r87-7f3w-2442