Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.6 CVE-2026-49771

WordPress Photo Gallery by 10Web plugin <= 1.8.41 - SQL Injection vulnerability_CVE-2026-49771

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in 10Web Photo Gallery by 10Web allows Blind SQL...

10Web Photo Gallery by 10Web n/a CVE
MEDIUM 6.1 CVE-2026-49510

CVE-2026-49510_CVE-2026-49510

Integer overflow or wraparound vulnerability in Samsung Open Source rlottie allows Integer Attacks. This issue affects rlottie: before 21292665023...

Samsung Open Source rlottie 21292665023e5074b38254432716866d00f1985f CVE
MEDIUM 6.1 CVE-2026-47320

CVE-2026-47320_CVE-2026-47320

Access of uninitialized pointer, Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Pointer Manipulation, Oversized Seriali...

Samsung Open Source rlottie eae37633fda13ac05b25c6c95aacea4bc33c80a3 CVE
MEDIUM 6.1 CVE-2026-47319

CVE-2026-47319_CVE-2026-47319

Memory allocation with excessive size value vulnerability in Samsung Open Source rlottie allows Excessive Allocation. This issue affects rlottie: ...

Samsung Open Source rlottie 0b4e308fa88c72cbb60cc8a2c1d2c2ad89b101dd CVE
MEDIUM 6.1 CVE-2026-47318

CVE-2026-47318_CVE-2026-47318

Stack-based buffer overflow vulnerability in Samsung Open Source rlottie allows Overflow Buffers. This issue affects rlottie: before ce72b35a7ad0d...

Samsung Open Source rlottie ce72b35a7ad0dded03051d3aa0ef75321c3bd035 CVE
MEDIUM 6.1 CVE-2026-47306

CVE-2026-47306_CVE-2026-47306

Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Oversized Serialized Data Payloads. This issue affects rlottie: before ...

Samsung Open Source rlottie e2d19e3b150e0e4a9586fa90b56fd3061cc98945 CVE
LOW 2 CVE-2026-10800

PaddlePaddle FastDeploy MultimodalHasher hasher.py hash_features weak hash_CVE-2026-10800

A weakness has been identified in PaddlePaddle FastDeploy up to 2.4.1. Affected by this issue is the function hash_features of the file fastdeploy/...

PaddlePaddle FastDeploy 2.4.0 CVE
MEDIUM 6.1 CVE-2026-10305

CVE-2026-10305_CVE-2026-10305

Out-of-bounds read vulnerability in Samsung Open Source rlottie allows Overread Buffers. This issue affects rlottie: before 223a2a41ba4f462e4abe76...

Samsung Open Source rlottie 223a2a41ba4f462e4abe767bebba49a366c9b9fd CVE
HIGH 8.7 CVE-2026-50213

Bulk User Private Data Harvesting_CVE-2026-50213

The account validation endpoint /v1/User/validate returns comprehensive user profile data sheets, which can be crawled by iterating predictable ide...

Acer Connect M6E 5G Portable WiFi Router * CVE
HIGH 7.1 CVE-2026-50212

Arbitrary Remote Device Unbinding_CVE-2026-50212

Weak validation logic within device dissociation API routines allows a remote entity to forcefully unbind unrelated user endpoints, causing severe ...

Acer Connect M6E 5G Portable WiFi Router * CVE