Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.9 CVE-2026-48682

CVE-2026-48682_CVE-2026-48682

FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in the IPv4 packet parser. In src/simple_packet_parser_ng.cpp, after vali...

n/a n/a n/a CVE
MEDIUM 5.9 CVE-2026-36616

CVE-2026-36616_CVE-2026-36616

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 contains hardcoded WiFi driver credentials including a RADIUS shared secret, WPS test key,...

n/a n/a n/a CVE
MEDIUM 6.4 CVE-2026-36612

CVE-2026-36612_CVE-2026-36612

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 enables WPS 2.0 by default with a weak lockout policy (60-second lockout after 10 attempts).

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-8879

CVE-2026-8879_CVE-2026-8879

Version 3.0.7 of the Securly Chrome Extension dynamically registers content13.min.js as a content script via chrome.scripting.registerContentScript...

Securly Securly Chrome Extension CVE
HIGH 7.5 CVE-2026-8878

CVE-2026-8878_CVE-2026-8878

Version 3.0.7 of the Securly Chrome Extension exposes multiple publicly accessible endpoints that allow unauthenticated access to sensitive data. T...

Securly Securly Chrome Extension CVE
HIGH 7.3 CVE-2026-8876

CVE-2026-8876_CVE-2026-8876

Version 3.0.7 of the Securly Chrome Extension contains hardcoded, plaintext AES passphrases in securly.min.js. These keys decrypt crisis alert keyw...

Securly Securly Chrome Extension CVE
MEDIUM 6.5 CVE-2026-26379

CVE-2026-26379_CVE-2026-26379

An issue in Koha v.25.11 and before allows a remote attacker to execute arbitrary code via the Z39.50 configuration module

n/a n/a n/a CVE
MEDIUM 5.4 CVE-2026-26378

CVE-2026-26378_CVE-2026-26378

Cross Site Scripting vulnerability in Koha 25.11 and before allows a remote attacker to execute arbitrary code via file upload function in Invoice ...

n/a n/a n/a CVE
MEDIUM 6.5 CVE-2026-26824

CVE-2026-26824_CVE-2026-26824

libxls through version 1.6.3 contains a use of uninitialized memory vulnerability in the OLE container parser. Memory allocated for the Master Sect...

n/a n/a n/a CVE
MEDIUM 6.8 CVE-2026-7764

Out-of-bounds read in morse.ko Vendor IE processing_CVE-2026-7764

An out-of-bounds read vulnerability in the morse.ko HaLow Wi-Fi kernel driver in Morse Micro HaLowLink 2 software versions prior to 2.11.12 allows ...

Morse Micro HaLowLink 2 CVE