Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.4 CVE-2026-12068

Avira Password Manager credential disclosure via cross-origin autofill in Firefox_CVE-2026-12068

Information disclosure vulnerability in Avira Password Manager when used with Mozilla Firefox may allow a remote attacker operating a cross-origin ...

Gen Digital Avira Password Manager * CVE
HIGH 7.8 CVE-2025-9033

Avira antivirus engine heap buffer OOB read when scanning a malformed PDF file (variant 3)_CVE-2025-9033

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Deni...

Gen Digital Avira Antivirus CVE
HIGH 7.8 CVE-2025-9032

Avira antivirus engine heap buffer OOB read when scanning a malformed PE file_CVE-2025-9032

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Local Execution of Code ...

Gen Digital Avira Antivirus CVE
HIGH 7.8 CVE-2025-14098

Avira antivirus engine heap buffer OOB write when scanning a malformed MS-DOS executable file_CVE-2025-14098

Heap buffer out-of-bounds write vulnerability due to integer overflow in Avira Antivirus engine when scanning a malformed MS-DOS executable file ma...

Gen Digital Avira Antivirus CVE
MEDIUM 4.6 CVE-2026-11443

Allegra downloadAttachment Cross-Site Scripting Authentication Bypass Vulnerability_CVE-2026-11443

Allegra downloadAttachment Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to execute arbitrar...

Allegra Allegra 8.1.6.22 CVE
MEDIUM 6.5 CVE-2026-11442

Allegra exportReport Directory Traversal Information Disclosure Vulnerability_CVE-2026-11442

Allegra exportReport Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive inf...

Allegra Allegra 8.1.10.5 CVE
MEDIUM 5.5 CVE-2025-46313

CVE-2025-46313_CVE-2025-46313

A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.1. An app may be able to access sensitive user data.

Apple macOS CVE
MEDIUM 5.5 CVE-2025-43278

CVE-2025-43278_CVE-2025-43278

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected user...

Apple macOS CVE
MEDIUM 5.5 CVE-2025-24165

CVE-2025-24165_CVE-2025-24165

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7....

Apple macOS CVE
HIGH 8.8 CVE-2026-54361

MISP mass assignment vulnerabilities allow unauthorized modification of ownership and delegation records_CVE-2026-54361

MISP contained multiple mass assignment vulnerabilities in the handling of collections, tag collections, event delegations, and shadow attributes. ...

misp misp CVE