Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6 CVE-2026-13752

Snowflake CLI SQL Injection Through Improper Neutralization of Parameters in Secret Creation and SPCS Service Log Commands_CVE-2026-13752

Improper neutralization of parameters in Snowflake CLI versions prior to 3.19 allowed unintended SQL execution. An attacker could exploit this by s...

Snowflake Snowflake CLI 1.1.0 CVE
MEDIUM 4.1 CVE-2026-13751

Snowflake CLI Server-Side Request Forgery via Arbitrary URL Fetch in !source/!load_CVE-2026-13751

Improper handling of untrusted remote references in Snowflake CLI versions prior to 3.19 allowed server-side request forgery. The SQL statement rea...

Snowflake Snowflake CLI 3.6.0 CVE
LOW 2.3 CVE-2026-13591

DeepMyst Mysti Contact Tracking ChannelBridge.ts _isTrackedConversation improper authorization_CVE-2026-13591

A weakness has been identified in DeepMyst Mysti 0.4.0. Affected is the function _isTrackedConversation of the file src/managers/ChannelBridge.ts o...

DeepMyst Mysti 0.4.0 CVE
MEDIUM 6.3 CVE-2026-13590

seladb PcapPlusPlus Modbus Protocol ModbusLayer.h getLength heap-based overflow_CVE-2026-13590

A security flaw has been discovered in seladb PcapPlusPlus 25.05. This impacts the function pcpp::ModbusLayer::getLength in the library Packet++/he...

seladb PcapPlusPlus 25.05 CVE
MEDIUM 6.3 CVE-2026-13589

seladb PcapPlusPlus Telnet Subnegotiation Packet TelnetLayer.cpp getSubCommand heap-based overflow_CVE-2026-13589

A vulnerability was identified in seladb PcapPlusPlus 25.05. This affects the function pcpp::TelnetLayer::getSubCommand of the file Packet++/src/Te...

seladb PcapPlusPlus 25.05 CVE
MEDIUM 6.3 CVE-2026-13588

seladb PcapPlusPlus TLS Hello SSLHandshake.cpp getHandshakeVersion heap-based overflow_CVE-2026-13588

A vulnerability was determined in seladb PcapPlusPlus 25.05. The impacted element is the function pcpp::SSLClientHelloMessage::getHandshakeVersion ...

seladb PcapPlusPlus 25.05 CVE
HIGH 7.3 CVE-2026-12912

Libtiff: libtiff: heap-based buffer overflow via crafted pixarlog-compressed tiff image_CVE-2026-12912

A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLog-compressed TIFF image. Th...

Red Hat Red Hat Enterprise Linux 10 CVE
MEDIUM 5.5 CVE-2026-39031

CVE-2026-39031_CVE-2026-39031

Lansweeper lsrunase 2.0 and lsencrypt 2.0 use RC4 encryption with a hardcoded 142-byte static key array to encrypt credentials. An 8-character pref...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-38641

CVE-2026-38641_CVE-2026-38641

An issue in the DSO::mmap_and_copy function of relibc commit 61f42d allows attackers to cause a Denial of Service (DoS) via loading a crafted share...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-38639

CVE-2026-38639_CVE-2026-38639

An issue in the parse_month function (/time/strptime.rs) of relibc commit ab6a2e allows attackers to cause a Denial of Service (DoS) via parsing a ...

n/a n/a n/a CVE