Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2026-44911

Apache NiFi: Incorrect Authorization for Configuration Verification Requests_CVE-2026-44911

Authorization handling for component configuration verification requests in Apache NiFi 1.15.0 through 2.9.0 allows clients with read access to sub...

Apache Software Foundation Apache NiFi 1.15.0 CVE
HIGH 7.3 CVE-2026-6645

Insecure Search Path Vulnerability in PaperCut Print Deploy Client for Windows_CVE-2026-6645

An insecure process execution vulnerability exists in the pc-printer-updater.exe component of the PaperCut Print Deploy Client for Windows. The app...

PaperCut Print Deploy CVE
HIGH 7.1 CVE-2026-8918

CVE-2026-8918_CVE-2026-8918

A permissive list of allowed inputs in ASUS Armoury Crate allows a local administrator to perform arbitrary memory read/write operations or cause a...

ASUS Armoury Crate CVE
MEDIUM 6.9 CVE-2026-11748

CVE-2026-11748_CVE-2026-11748

A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the SearchFirstActiveDirectoryRealm substitut...

LY Corporation Central Dogma 0.84.0 CVE
CRITICAL 9.4 CVE-2026-11746

CVE-2026-11746_CVE-2026-11746

A vulnerability has been identified in centraldogma-server versions prior to 0.84.0, where enabling ZooKeeper replication without setting replicati...

LY Corporation Central Dogma 0.84.0 CVE
HIGH 8.8 CVE-2026-11745

CVE-2026-11745_CVE-2026-11745

A vulnerability has been identified in centraldogma-server-mirror-git versions prior to 0.84.0, where the Git mirror SSH client does not verify rem...

LY Corporation Central Dogma 0.84.0 CVE
MEDIUM 4.8 CVE-2026-12823

Browserbase Autobrowse Trace Artifact default permission_CVE-2026-12823

A security flaw has been discovered in Browserbase up to 20260526. This impacts an unknown function of the component Autobrowse Trace Artifact Hand...

n/a Browserbase 20260526 CVE
MEDIUM 4.8 CVE-2026-12822

langflow-ai langflow Bundle URL Loader code injection_CVE-2026-12822

A vulnerability was identified in langflow-ai langflow up to 1.9.3. This affects an unknown function of the component Bundle URL Loader. The manipu...

langflow-ai langflow 1.9.0 CVE
MEDIUM 5.3 CVE-2026-12810

Edimax BR-6478AC V2 POST Request mp command injection_CVE-2026-12810

A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is the function mp of the file /goform/mp of the co...

Edimax BR-6478AC V2 1.23 CVE
MEDIUM 5.3 CVE-2026-12809

Edimax BR-6478AC V2 POST Request wiz_5in1_redirect command injection_CVE-2026-12809

A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /goform/wiz_5in1_redirect of the...

Edimax BR-6478AC V2 1.23 CVE