Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2026-13511

VoltAgent Memory REST API memory.handlers.ts handleGetMemoryConversation improper authorization_CVE-2026-13511

A vulnerability was determined in VoltAgent up to 2.1.17. Affected by this issue is the function handleGetMemoryConversation of the file packages/s...

n/a VoltAgent 2.1.0 CVE
MEDIUM 6.3 CVE-2026-13510

SimStudioAI sim Password Protection deployment.ts weak hash_CVE-2026-13510

A vulnerability was found in SimStudioAI sim up to 0.6.92. Affected by this vulnerability is an unknown functionality in the library apps/sim/lib/c...

SimStudioAI sim 0.6.0 CVE
MEDIUM 5.3 CVE-2026-13512

Databend Tenant client_session_manager.rs state_key authorization_CVE-2026-13512

A vulnerability was identified in Databend up to 1.2.881 on HTTP. This affects the function ClientSessionManager::state_key of the file src/query/s...

n/a Databend 1.2.881 CVE
HIGH 8.7 CVE-2026-13515

Tenda JD12L SetPptpServerCfg formSetPPTPServer stack-based overflow_CVE-2026-13515

A security vulnerability has been detected in Tenda JD12L 16.03.53.23. Impacted is the function formSetPPTPServer of the file /goform/SetPptpServer...

Tenda JD12L 16.03.53.23 CVE
LOW 2.4 CVE-2026-13514

Chess Play and Learn App com.chess AndroidManifest.xml backup_CVE-2026-13514

A weakness has been identified in Chess Play and Learn App up to 4.9.42 on Android. This issue affects some unknown processing of the file AndroidM...

Chess Play and Learn App 4.9.0 CVE
LOW 2.3 CVE-2026-13513

MyScale MyScaleDB SegmentId.h getCacheKey data authenticity_CVE-2026-13513

A security flaw has been discovered in MyScale MyScaleDB up to 1.8.0. This vulnerability affects the function SegmentId::getCacheKey in the library...

MyScale MyScaleDB 1.0 CVE
LOW 2.3 CVE-2026-13507

volcengine OpenViking Local VectorDB Primary-key Label str_to_uint64.py str_to_uint64 data authenticity_CVE-2026-13507

A vulnerability was detected in volcengine OpenViking up to 0.3.21. This affects the function str_to_uint64 of the file openviking/storage/vectordb...

volcengine OpenViking 0.3.0 CVE
MEDIUM 5.3 CVE-2026-13509

RAGapp Knowledge File files.py FileHandler.remove_file path traversal_CVE-2026-13509

A vulnerability has been found in RAGapp up to 0.1.5. Affected is the function FileHandler.upload_file/FileHandler.remove_file of the file src/raga...

n/a RAGapp 0.1.0 CVE
MEDIUM 5.1 CVE-2026-13508

khoj-ai khoj Conversation Sharing api_chat.py authorization_CVE-2026-13508

A flaw has been found in khoj-ai khoj up to 2.0.0-beta.28. This impacts an unknown function of the file src/khoj/routers/api_chat.py of the compone...

khoj-ai khoj 2.0.0-beta.0 CVE
MEDIUM 5.1 CVE-2026-13504

code-projects Project Management System Mail Compose mail.php cross site scripting_CVE-2026-13504

A vulnerability has been found in code-projects Project Management System 1.0. This vulnerability affects unknown code of the file /mail.php of the...

code-projects Project Management System 1.0 CVE