Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.7 CVE-2026-25624

Arista Edge Threat Management NGFW UI Administrative Cross-Site Scripting_CVE-2026-25624

An administrative cross-site scripting (XSS) vulnerability exists in the web user interface dashboard layout of Arista Edge Threat Management - Ari...

Arista Networks Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) CVE
MEDIUM 6 CVE-2026-25623

Arista Edge Threat Management NGFW UI Arbitrary Command Execution_CVE-2026-25623

An input validation command execution vulnerability exists in the browser management pipeline of Arista Edge Threat Management - Arista Next Genera...

Arista Networks Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) CVE
MEDIUM 6 CVE-2026-25622

Arista Edge Threat Management NGFW Captive Portal Custom Handler Command Injection_CVE-2026-25622

A Captive Portal Custom Handler command injection vulnerability exists in Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). O...

Arista Networks Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) CVE
MEDIUM 6 CVE-2026-25621

Arista Edge Threat Management NGFW Reports Application Insecure Input Validation_CVE-2026-25621

A Reports application infrastructure vulnerability exists in Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) due to insecure...

Arista Networks Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) 17.4.0 CVE
MEDIUM 6 CVE-2026-25620

Arista Edge Threat Management NGFW Captive Portal Encrypted Password Command Injection_CVE-2026-25620

An encrypted password command injection vulnerability exists in the Captive Portal application framework of Arista Edge Threat Management - Arista ...

Arista Networks Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) 17.4.0 CVE
CRITICAL 10 CVE-2026-11420

Path Traversal in Altium Enterprise Server NIS Allows Unauthenticated Arbitrary File Write and File Read_CVE-2026-11420

Two path traversal vulnerabilities in the Network Installation Service (NIS) of Altium Enterprise Server allow an unauthenticated network attacker ...

Altium Altium Enterprise Server CVE
CRITICAL 9.4 CVE-2026-11419

Path Traversal in Altium Enterprise Server Vault UploadController Allows Arbitrary File Write_CVE-2026-11419

A path traversal vulnerability exists in the Altium Enterprise Server Vault Service UploadController due to improper validation of a user-controlle...

Altium Altium Enterprise Server CVE
CRITICAL 9.4 CVE-2026-11423

Path Traversal in Altium Enterprise Server Collaboration Service Allows Privilege Escalation_CVE-2026-11423

A path traversal vulnerability exists in the Altium Enterprise Server Collaboration Service due to improper handling of user-supplied filenames in ...

Altium Altium Enterprise Server CVE
HIGH 7.1 CVE-2026-11422

Markdown Preview Enhanced 0.8.x Code Injection via WaveDrom Rendering_CVE-2026-11422

Markdown Preview Enhanced 0.8.x with crossnote engine 0.9.28 contains a code injection vulnerability in the WaveDrom rendering pipeline that allows...

shd101wyy Markdown Preview Enhanced CVE
CRITICAL 9.8 CVE-2026-7762

Heap buffer overflow in dot11ah.ko S1G Capabilities IE processing_CVE-2026-7762

A heap-based buffer overflow vulnerability in the dot11ah.ko HaLow Wi-Fi kernel driver in Morse Micro HaLowLink 2 software versions prior to 2.11.1...

Morse Micro HaLowLink 2 CVE