Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 1.2 CVE-2026-10729

HTML injection in the notification email for “Slow Redirect” and “Cloned Website” Canarytokens_CVE-2026-10729

An HTML injection vulnerability in the notification email for "Slow Redirect" and "Cloned Website" Canarytokens exists in Thinkst Applied Research ...

Thinkst Applied Research Canarytokens sha-c42435e CVE
MEDIUM 6.3 CVE-2026-35717

CVE-2026-35717_CVE-2026-35717

A stack-based buffer overflow in the export_language.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers ...

n/a n/a n/a CVE
HIGH 8.7 CVE-2026-35085

Stack buffer overflow in method gdv-serverconfig_CVE-2026-35085

A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.

MBS Single-A V1_0_0_0 CVE
HIGH 8.7 CVE-2026-35084

Stack buffer overflow in method dali-devconfig_CVE-2026-35084

A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.

MBS Single-A V1_0_0_0 CVE
HIGH 8.7 CVE-2026-35083

Stack buffer overflow in method bac-deviceobject_CVE-2026-35083

A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.

MBS Single-A V1_0_0_0 CVE
HIGH 8.7 CVE-2026-35082

Local file inclusion vulnerability and deletion in ugw-logread method_CVE-2026-35082

The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplie...

MBS MBS products including Single-A, Double-A, Single-X, Double-X, and Triple-X V1_0_0_0 CVE
HIGH 7.2 CVE-2026-35081

Arbitrary process termination vulnerability in method ugw-logstop_CVE-2026-35081

The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-suppli...

MBS Single-A V1_0_0_0 CVE
HIGH 7.2 CVE-2026-35080

Arbitrary file delete vulnerability in method ugw-restoreinfo_CVE-2026-35080

The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-con...

MBS Single-A V1_0_0_0 CVE
HIGH 7.2 CVE-2026-35079

Arbitrary file delete vulnerability in method ugw-restore_CVE-2026-35079

The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-control...

MBS Single-A V1_0_0_0 CVE
HIGH 7.2 CVE-2026-35078

Arbitrary file delete vulnerability in method ugw-logstop_CVE-2026-35078

The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-contro...

MBS Single-A V1_0_0_0 CVE