Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 CVE-2026-58011

Glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime_CVE-2026-58011

A flaw was found in GLib. An out-of-bounds read of only 2 bytes can occur in the g_date_time_get_ymd function in the glib/gdatetime.c file when an ...

Red Hat Red Hat Enterprise Linux 10 CVE
MEDIUM 6.5 CVE-2026-58010

Glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal()_CVE-2026-58010

A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an al...

Red Hat Red Hat Enterprise Linux 10 CVE
HIGH 8.7 CVE-2026-13474

Denial of service via malformed HTTP/2 requests_CVE-2026-13474

Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the...

NetScaler ADC 14.1 CVE
MEDIUM 6.9 CVE-2026-10817

Insufficient input validation leading to memory overread_CVE-2026-10817

Insufficient input validation leading to memory overread in NetScaler ADC and NetScaler Gateway if the TCP TimeStamp is enabled in TCP Profile and ...

NetScaler ADC 14.1 CVE
HIGH 7.1 CVE-2026-10816

Arbitrary File Read (Unauthenticated)_CVE-2026-10816

Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management IP or SNIP with management a...

NetScaler ADC 14.1 CVE
MEDIUM 6.9 CVE-2026-35098

Improper Restriction of Excessive Authentication Attempts in KTM System e-BOK_CVE-2026-35098

KTM System e-BOK does not implement any limit or timeout on consecutive login attempts, allowing an attacker to perform unlimited authentication re...

KTM System e-BOK CVE
MEDIUM 6.9 CVE-2026-35097

Weak Password Requirements in KTM System e-BOK_CVE-2026-35097

KTM System e-BOK enforces a maximum password length of six numeric digits and does not permit the use of any alphabetic, special, or extended chara...

KTM System e-BOK CVE
MEDIUM 5.1 CVE-2026-35096

Cross-Site Request Forgery (CSRF) in KTM System e-BOK_CVE-2026-35096

KTM System e-BOK is vulnerable to Cross‑Site Request Forgery (CSRF) in both the email-change and password-change functionalities. An attacker can c...

KTM System e-BOK CVE
MEDIUM 4.8 CVE-2026-35095

Session fixation in KTM System e-BOK_CVE-2026-35095

KTM System e-BOK allows the session identifier to be set by the client prior to authentication. If a cookie with a valid name is set, its value rem...

KTM System e-BOK CVE
MEDIUM 5.9 CVE-2026-14178

openGauss存在非法内存访问导致DoS漏洞_CVE-2026-14178

openGauss 在处理带 NLS 参数的 to_timestamp 调用时,to_timestamp_with_fmt_nls() 会将 nls_fmt_str 保存到 u_sess->parser_cxt.nls_fmt_str。在 seqscan +...

openGauss-server openGauss-server-7.0.0-RC2 openGauss-server-7.0.0-RC2 CVE