Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 CVE-2025-14098

Avira antivirus engine heap buffer OOB write when scanning a malformed MS-DOS executable file_CVE-2025-14098

Heap buffer out-of-bounds write vulnerability due to integer overflow in Avira Antivirus engine when scanning a malformed MS-DOS executable file ma...

Gen Digital Avira Antivirus CVE
MEDIUM 4.6 CVE-2026-11443

Allegra downloadAttachment Cross-Site Scripting Authentication Bypass Vulnerability_CVE-2026-11443

Allegra downloadAttachment Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to execute arbitrar...

Allegra Allegra 8.1.6.22 CVE
MEDIUM 6.5 CVE-2026-11442

Allegra exportReport Directory Traversal Information Disclosure Vulnerability_CVE-2026-11442

Allegra exportReport Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive inf...

Allegra Allegra 8.1.10.5 CVE
MEDIUM 5.5 CVE-2025-46313

CVE-2025-46313_CVE-2025-46313

A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.1. An app may be able to access sensitive user data.

Apple macOS CVE
MEDIUM 5.5 CVE-2025-43278

CVE-2025-43278_CVE-2025-43278

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected user...

Apple macOS CVE
MEDIUM 5.5 CVE-2025-24165

CVE-2025-24165_CVE-2025-24165

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7....

Apple macOS CVE
HIGH 8.8 CVE-2026-54361

MISP mass assignment vulnerabilities allow unauthorized modification of ownership and delegation records_CVE-2026-54361

MISP contained multiple mass assignment vulnerabilities in the handling of collections, tag collections, event delegations, and shadow attributes. ...

misp misp CVE
HIGH 8.4 CVE-2026-54360

MISP sharing group creation mass assignment allows unauthorized takeover of existing sharing groups_CVE-2026-54360

A mass assignment vulnerability exists in MISP’s sharing group creation endpoint. When creating a new sharing group, the controller did not remove ...

misp misp CVE
HIGH 7.1 CVE-2026-54359

MISP automation endpoints may be exposed to CSRF when Sec-Fetch-Site protection is disabled by default_CVE-2026-54359

MISP contains an insecure default configuration in which the Security.check_sec_fetch_site_header control is disabled. When this setting is disable...

misp misp CVE
HIGH 7.5 CVE-2026-54358

MISP organization administrators can target site administrator accounts for password reset_CVE-2026-54358

An incorrect authorization vulnerability in MISP allows an organization administrator to target site administrator accounts belonging to the same o...

misp misp CVE