NVD disclosure day

Published threat advisories for May 30, 2026

CVE advisoryLOW

CVE-2026-10153

CicadasCMS Cross-Site Scripting Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A cross-site scripting vulnerability in a content management system's search function could allow remote attackers to execute scripts. This presents a business risk to organizations, as published exploits may be in use. Affected systems could face unauthorized data access or modification.

CVE advisoryLOW

CVE-2026-10127

Edimax Router Command Injection Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A command injection vulnerability exists in the POST Request Handler component, allowing remote attackers to execute commands by manipulating an argument. This impacts affected organizations by potentially compromising systems and data. The exploit is publicly available, presenting a risk of unauthorized command execut

CVE advisoryHIGH

CVE-2026-10125

Edimax Router Remote Code Execution Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability affecting a network device's POST Request Handler may allow remote attackers to cause a stack-based buffer overflow by manipulating an argument. Publicly available exploit information suggests a risk to organizations with affected systems. The realistic business risk involves potential compromise of net

CVE advisoryHIGH

CVE-2026-10124

Shibby Tomato Zserv Handler Remote Buffer Overflow Advisory

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability exists in the Zserv Handler component of Shibby Tomato firmware. A stack-based buffer overflow can occur remotely via manipulation of the rip_zebra_read_ipv4 function. This could impact system integrity and availability. The exploit has been publicly disclosed. This vulnerability affects products that a

CVE advisoryHIGH

CVE-2026-10121

TRENDnet Router Remote Code Execution Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in a TRENDnet device allows remote attackers to cause a stack-based buffer overflow. This could lead to unauthorized system control for organizations using this unsupported, end-of-life hardware. The vendor is unable to provide a fix due to the product's age.

CVE advisoryHIGH

CVE-2018-25426

WinMTR Denial of Service Via Malformed File.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in WinMTR allows a denial of service if the application processes a malformed file. This could lead to application crashes, impacting network troubleshooting for employees. The risk stems from attackers sending crafted input that triggers a buffer overflow.

CVE advisoryHIGH

CVE-2018-25425

Yot CMS SQL Injection Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

SQL injection in Yot CMS allows unauthenticated attackers to extract database information by injecting malicious code through specific parameters. This impacts organizations by exposing sensitive data, potentially leading to unauthorized access and compromise of data integrity. The risk arises from external attackers e

CVE advisoryHIGH

CVE-2018-25424

Gate Pass Management System SQL Injection Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An SQL injection vulnerability in the Gate Pass Management System allows unauthenticated attackers to bypass login. This can lead to unauthorized access to the application, potentially exposing data and disrupting operations. The business risk is heightened due to the ease of exploitation and the potential for unauthor

CVE advisoryHIGH

CVE-2018-25420

AiOPMSD SQL Injection via Watch.php Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An SQL injection vulnerability exists in the AiOPMSD Final 1.0.0 software, allowing unauthenticated attackers to access sensitive database information. This could impact data integrity and confidentiality by enabling the extraction of usernames and other details. The risk to affected organizations is high due to the po

CVE advisoryHIGH

CVE-2018-25413

AiOPMSD SQL Injection Via Search Parameter.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in AiOPMSD allows unauthenticated attackers to inject SQL commands, risking the exposure of sensitive database information. This affects organizations by potentially compromising data confidentiality through unauthorized access to user and database details. The risk arises from the ability to extract in

CVE advisoryHIGH

CVE-2018-25410

SIM-PKH SQL Injection Via Media Parameter

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An SQL injection vulnerability in SIM-PKH allows authenticated attackers to execute arbitrary SQL queries via the 'id' parameter. This impacts organizations by enabling data theft, potentially exposing usernames and database names. Business risk includes compromised data confidentiality and system integrity.

CVE advisoryHIGH

CVE-2018-25408

Open ISES Project File Download Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A path traversal vulnerability in the Open ISES Project's download feature allows unauthorized access to arbitrary files. This can lead to the exposure of sensitive data and impact system integrity. The realistic business risk includes potential data breaches and unauthorized access to configuration or system files.

CVE advisoryHIGH

CVE-2018-25407

Endonesia Portal SQL Injection Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in the eNdonesia Portal allows unauthenticated attackers to inject SQL queries. This could lead to the extraction of sensitive database information, impacting data integrity and posing a business risk. Organizations should identify affected assets and restrict external access.

CVE advisoryHIGH

CVE-2018-25405

Endonesia Portal SQL Injection Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

SQL injection vulnerabilities in eNdonesia Portal's mod.php file allow unauthenticated attackers to execute arbitrary SQL queries. This can lead to the extraction of sensitive database information, impacting organizational data confidentiality and integrity. The business risk involves potential data breaches and unauth

CVE advisoryHIGH

CVE-2026-10120

TRENDnet Router Firewall Rule Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in a TRENDnet router function can allow remote attackers to cause a buffer overflow, potentially leading to system compromise. As the product is end-of-life and unsupported, no vendor fix is available, and the exploit is public. This poses a risk to any remaining deployed devices.

CVE advisoryHIGH

CVE-2026-10119

TRENDnet Router Stack Buffer Overflow Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in TRENDnet devices, specifically the formSetMACFilter function, allows remote attackers to cause a stack-based buffer overflow. This impacts unsupported products, as the vendor has ended support for this device 15 years ago. Organizations using this equipment face business risk due to the public disclo