Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.3 CVE-2026-57924

CVE-2026-57924_CVE-2026-57924

In JetBrains YouTrack before 2026.2.16593 default role configuration exposed excessive user profile details

JetBrains YouTrack CVE
MEDIUM 5.3 CVE-2026-57923

CVE-2026-57923_CVE-2026-57923

In JetBrains YouTrack before 2026.2.16593 improper authorisation in the app configurations endpoint allowed modifying project settings

JetBrains YouTrack CVE
LOW 3.1 CVE-2026-57922

CVE-2026-57922_CVE-2026-57922

In JetBrains YouTrack before 2026.2.16593 project settings disclosure via the MCP was possible

JetBrains YouTrack CVE
MEDIUM 4.3 CVE-2026-57921

CVE-2026-57921_CVE-2026-57921

In JetBrains YouTrack before 2026.2.16593 improper access control allowed reading users' private data via the comment templates endpoint

JetBrains YouTrack CVE
MEDIUM 6.7 CVE-2026-53914

CVE-2026-53914_CVE-2026-53914

In JetBrains Kotlin before 2.4.20 code execution was possible via unsafe deserialization in the build cache metadata

JetBrains Kotlin CVE
MEDIUM 5.4 CVE-2026-13426

Client4 fails to validate path parameters_CVE-2026-13426

The Mattermost Go module github.com/mattermost/mattermost/server/public versions < v0.1.22 fail to validate path parameters when constructing API r...

Mattermost github.com/mattermost/mattermost/server/public v0.0.0 CVE
HIGH 7.5 CVE-2026-13283

CVE-2026-13283_CVE-2026-13283

Use after free in AdFilter in Google Chrome on Android prior to 149.0.7827.201 allowed a remote attacker who convinced a user to engage in specific...

Google Chrome 149.0.7827.201 CVE
HIGH 7.5 CVE-2026-10823

YMC Smart Filter < 3.11.3 - Unauthenticated Private/Draft Post Disclosure_CVE-2026-10823

The YMC Filter WordPress plugin before 3.11.3 does not properly authorize access to one of its REST API endpoints and does not validate a user-supp...

Unknown YMC Filter CVE
MEDIUM 5.3 CVE-2025-10268

Printcart Web to Print Product Designer for WooCommerce <= 2.4.8 - Unauthenticated Folder Content Disclosure via Path Traversal_CVE-2025-10268

The Printcart Web to Print Product Designer for WooCommerce WordPress plugin through 2.4.8 is vulnerable to path traversal which makes it possible ...

Unknown Printcart Web to Print Product Designer for WooCommerce CVE
MEDIUM 6.5 CVE-2026-57620

WordPress Exclusive Addons Elementor plugin <= 2.7.9.8 - Cross Site Scripting (XSS) vulnerability_CVE-2026-57620

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor allow...

Tim Strifler Exclusive Addons Elementor n/a CVE