Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.9 CVE-2026-13546

Feehi CMS REST API Endpoint articles missing authentication_CVE-2026-13546

A vulnerability was found in Feehi CMS up to 2.1.1. This vulnerability affects unknown code of the file /api/articles of the component REST API End...

Feehi CMS 2.1.0 CVE
HIGH 8.7 CVE-2026-13545

D-Link DCS-935L POST Parameter setconf.cgi sub_400E40 os command injection_CVE-2026-13545

A vulnerability has been found in D-Link DCS-935L 1.10.01. This affects the function sub_400E40 of the file setconf.cgi of the component POST Param...

D-Link DCS-935L 1.10.01 CVE
MEDIUM 5.3 CVE-2026-13538

Wavlink WL-NU516U1-A POST Parameter wireless.cgi sub_401D68 command injection_CVE-2026-13538

A vulnerability was determined in Wavlink WL-NU516U1-A M16U1_V240425. The affected element is the function sub_401D68 of the file /cgi-bin/wireless...

Wavlink WL-NU516U1-A M16U1_V240425 CVE
MEDIUM 5.3 CVE-2026-13537

CodeAstro Human Resource Management System cross-site request forgery_CVE-2026-13537

A vulnerability was found in CodeAstro Human Resource Management System 1.0. Impacted is an unknown function. The manipulation results in cross-sit...

CodeAstro Human Resource Management System 1.0 CVE
MEDIUM 5.3 CVE-2026-13536

GotoHTTP reg.12x cross site scripting_CVE-2026-13536

A vulnerability has been found in GotoHTTP up to 10.2. This issue affects some unknown processing of the file /reg.12x. The manipulation of the arg...

n/a GotoHTTP 10.0 CVE
MEDIUM 5.3 CVE-2026-13535

CodeAstro Human Resource Management System View Endpoint Employee_model.php GetFileInfo sql injection_CVE-2026-13535

A flaw has been found in CodeAstro Human Resource Management System 1.0. This vulnerability affects the function GetFileInfo of the file hrsystem/a...

CodeAstro Human Resource Management System 1.0 CVE
LOW 2.3 CVE-2026-13534

CherryHQ cherry-studio CherryIN Preload API MemoryService.ts sha256 authorization_CVE-2026-13534

A vulnerability was detected in CherryHQ cherry-studio up to 1.9.7. This affects the function sha256 of the file src/main/services/memory/MemorySer...

CherryHQ cherry-studio 1.9.0 CVE
MEDIUM 6.9 CVE-2026-13533

agentejo Cockpit CMS htaccess config.yaml YAMLLoad file access_CVE-2026-13533

A security vulnerability has been detected in agentejo Cockpit CMS up to 0.12.2. Affected by this issue is the function Spyc::YAMLLoad of the file ...

agentejo Cockpit CMS 0.12.0 CVE
MEDIUM 5.3 CVE-2026-13532

itsourcecode Hospital Management System departmentDoctor.php sql injection_CVE-2026-13532

A weakness has been identified in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the fi...

itsourcecode Hospital Management System 1.0 CVE
MEDIUM 5.3 CVE-2026-13531

itsourcecode Hospital Management System department.php sql injection_CVE-2026-13531

A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /department.php. Th...

itsourcecode Hospital Management System 1.0 CVE