Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.3 CVE-2026-13572

itsourcecode Hospital Management System insertbillingrecord.php sql injection_CVE-2026-13572

A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /insertbilli...

itsourcecode Hospital Management System 1.0 CVE
MEDIUM 6.9 CVE-2026-13571

SourceCodester Simple Food Ordering System cart.php logic error_CVE-2026-13571

A flaw has been found in SourceCodester Simple Food Ordering System 1.0. The affected element is an unknown function of the file /cart.php. Executi...

SourceCodester Simple Food Ordering System 1.0 CVE
HIGH 7.5 CVE-2026-36478

CVE-2026-36478_CVE-2026-36478

An issue in Technitium DNS Server v.14.3 and before allows a remote attacker to cause a denial of service via the DnsServerApp.exe, DnsServerApp.dl...

n/a n/a n/a CVE
MEDIUM 4.6 CVE-2026-38571

CVE-2026-38571_CVE-2026-38571

Cleartext storage and exposure of WPA2 credentials, and missing authentication on the rr/wr memory read/write commands, in the unauthenticated UART...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-46604

Panic decoding image with out-of-bounds strip offset in x/image/tiff in golang.org/x/image_CVE-2026-46604

The TIFF decoder can panic when decoding an invalid image with an out-of-bounds strip offset.

golang.org/x/image golang.org/x/image/tiff CVE
MEDIUM 5.4 CVE-2026-50767

CVE-2026-50767_CVE-2026-50767

A stored cross-site scripting (XSS) vulnerability in the item type administration page of Koha Library Management System through 25.11 allows an au...

n/a n/a n/a CVE
MEDIUM 5.4 CVE-2026-50766

CVE-2026-50766_CVE-2026-50766

A stored cross-site scripting (XSS) vulnerability in the OPAC item detail page of Koha Library Management System through 25.11 allows an authentica...

n/a n/a n/a CVE
MEDIUM 6.1 CVE-2026-50765

CVE-2026-50765_CVE-2026-50765

Cross-Site Scripting (XSS) vulnerability in the patron restriction type administration page of Koha Library Management System through 25.11 allows ...

n/a n/a n/a CVE
MEDIUM 5.5 CVE-2026-36908

CVE-2026-36908_CVE-2026-36908

A stack overflow in the AP4_Array::EnsureCapacity component of axiomatic-systems Bento4 before v1.8.9allows attackers to cause a Denial of Service ...

n/a n/a n/a CVE
MEDIUM 5.5 CVE-2026-36907

CVE-2026-36907_CVE-2026-36907

A stack overflow in the AP4_StsdAtom::AP4_StsdAtom component of axiomatic-systems Bento4 before v1.8.9allows attackers to cause a Denial of Service...

n/a n/a n/a CVE