Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.1 CVE-2026-11269

CVE-2026-11269_CVE-2026-11269

Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker in a privileged network position to execute ...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6 CVE-2026-11326

CVE-2026-11326_CVE-2026-11326

OpenAI Atlas before 1.2025.288.15 exposed privileged browser APIs to web content on *.openai.com origins. A cross-site scripting vulnerability in f...

OpenAI OpenAI Atlas CVE
HIGH 8.2 CVE-2026-45327

TinyIce: Missing authentication on WebRTC ingest endpoint allows unauthorized stream injection_CVE-2026-45327

TinyIce is a streaming server for audio and video. In versions 0.8.95 through 2.4.1, missing authentication on WebRTC ingest endpoint allows unauth...

DatanoiseTV tinyice >= 0.8.95, < 2.5.0 CVE
HIGH 7.5 CVE-2026-45291

Cloudburst Network erroneously handles invalid connections_CVE-2026-45291

Cloudburst Network provides network components used within Cloudburst projects. A vulnerability in versions prior to `1.0.0.CR3-20260418.124334-32`...

CloudburstMC Network < 1.0.0.CR3-20260418.124334-32 CVE
HIGH 7.5 CVE-2026-45290

Cloudburst Network has DoS in RakNet connection handling due to missing bound checks_CVE-2026-45290

Cloudburst Network provides network components used within Cloudburst projects. A vulnerability in versions prior to `1.0.0.CR3-20260417.085727-30`...

CloudburstMC Network < 1.0.0.CR3-20260417.085727-30 CVE
MEDIUM 6.9 CVE-2026-11344

code-projects Vehicle Management System New Driver Registration Form newdriver.php unrestricted upload_CVE-2026-11344

A vulnerability was found in code-projects Vehicle Management System 1.0. This impacts an unknown function of the file newdriver.php of the compone...

code-projects Vehicle Management System 1.0 CVE
MEDIUM 6.9 CVE-2026-11342

code-projects Hotel and Tourism Reservation System details.php sql injection_CVE-2026-11342

A vulnerability has been found in code-projects Hotel and Tourism Reservation System 1.0. This affects an unknown function of the file /details.php...

code-projects Hotel and Tourism Reservation System 1.0 CVE
MEDIUM 5.3 CVE-2026-11341

D-Link DWR-M920 formIMEISetup sub_412DA0 os command injection_CVE-2026-11341

A flaw has been found in D-Link DWR-M920 up to 1.1.50. The impacted element is the function sub_412DA0 of the file /boafrm/formIMEISetup. This mani...

D-Link DWR-M920 1.1.0 CVE
HIGH 8.6 CVE-2026-50733

Markdown Preview Enhanced Arbitrary Code Execution via WaveDrom eval()_CVE-2026-50733

Markdown Preview Enhanced before 0.8.28 parses WaveDrom diagrams by evaluating untrusted markdown content with eval(), allowing arbitrary JavaScrip...

shd101wyy Markdown Preview Enhanced CVE
HIGH 8.6 CVE-2026-49493

Markdown Preview Enhanced Arbitrary Code Execution via Bitfield interpretJS()_CVE-2026-49493

Markdown Preview Enhanced before 0.8.28 parses Bitfield fenced code blocks with interpretJS(), which evaluates the block content as code via vm.run...

shd101wyy Markdown Preview Enhanced CVE