Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.6 CVE-2026-12104

Authenticated OS Command Injection in Bondix_CVE-2026-12104

OS command injection in the environment and tunnel configuration functionality in SIMA GmbH Bondix through version 1.25.7.5 on Linux allows an auth...

SIMA GmbH Bondix Server CVE
LOW 3 CVE-2026-49358

PhpWeasyPrint vulnerable to arbitrary file deletion at shutdown via public $temporaryFiles_CVE-2026-49358

PhpWeasyPrint is a PHP library allowing PDF generation from a URL or an HTML page. Prior to version 2.6.0, `AbstractGenerator::$temporaryFiles` is ...

pontedilana php-weasyprint < 2.6.0 CVE
MEDIUM 6.3 CVE-2026-21768

HCL Verse for Android is susceptible to an injection vulnerability_CVE-2026-21768

The compose-rich-editor library (v1.0.0-rc14) used in HCL Verse for Android's rich text email composition fails to properly validate all HTML input...

HCLSoftware Verse for Android 14.5.10 CVE
HIGH 8.5 CVE-2025-71326

AVAST Antivirus 25.11 Unquoted Service Path Privilege Escalation_CVE-2025-71326

AVAST Antivirus 25.11 contains an unquoted service path vulnerability in the SecureLine service that allows local non-privileged users to execute c...

Avast AVAST Antivirus 25.11 CVE
CRITICAL 9.6 CVE-2026-12297

Sandbox escape due to incorrect boundary conditions in the Networking component_CVE-2026-12297

Sandbox escape due to incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, F...

Mozilla Firefox 115.37 CVE
CRITICAL 9.6 CVE-2026-12296

Sandbox escape in the Security: Process Sandboxing component_CVE-2026-12296

Sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and...

Mozilla Firefox 140.12 CVE
CRITICAL 9.6 CVE-2026-12295

Sandbox escape in the DOM: Navigation component_CVE-2026-12295

Sandbox escape in the DOM: Navigation component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 1...

Mozilla Firefox 115.37 CVE
CRITICAL 9.6 CVE-2026-12294

Sandbox escape in the DOM: Workers component_CVE-2026-12294

Sandbox escape in the DOM: Workers component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152,...

Mozilla Firefox 115.37 CVE
CRITICAL 9.8 CVE-2026-12293

Use-after-free in the Graphics: WebGPU component_CVE-2026-12293

Use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 152 and Thunderbird 152.

Mozilla Firefox 152 CVE
HIGH 8.1 CVE-2026-12292

Incorrect boundary conditions in the Web Audio component_CVE-2026-12292

Incorrect boundary conditions in the Web Audio component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thu...

Mozilla Firefox 140.12 CVE