Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.8 CVE-2026-40641

CVE-2026-40641_CVE-2026-40641

Dell PowerFlex Manager, version(s) 4.6.0.1, contain(s) an Use of a Broken or Risky Cryptographic Algorithm vulnerability. An unauthenticated attack...

Dell PowerFlex CVE
MEDIUM 4.3 CVE-2026-35162

CVE-2026-35162_CVE-2026-35162

Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access co...

Dell PowerFlex CVE
MEDIUM 5.7 CVE-2026-35067

CVE-2026-35067_CVE-2026-35067

Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Access Control vulnerability. A low privileged attacker with adjacent network...

Dell PowerFlex CVE
HIGH 7.1 CVE-2026-35066

CVE-2026-35066_CVE-2026-35066

Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access co...

Dell PowerFlex CVE
HIGH 8.8 CVE-2026-35065

CVE-2026-35065_CVE-2026-35065

Dell PowerFlex Manager, version(s) [Versions], contain(s) a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker...

Dell PowerFlex CVE
HIGH 8.1 CVE-2026-32804

CVE-2026-32804_CVE-2026-32804

Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Authentication vulnerability. An unauthenticated attacker with adjacent netwo...

Dell PowerFlex CVE
HIGH 7.5 CVE-2026-22283

CVE-2026-22283_CVE-2026-22283

Dell PowerFlex Manager, version(s) Version prior to 4.8, contain(s) an Inclusion of Functionality from Untrusted Control Sphere vulnerability. An u...

Dell PowerFlex CVE
MEDIUM 5.4 CVE-2026-12528

389-ds-base: 389-ds-base: heap-buffer-overflows in __aclp__normalize_acltxt()_CVE-2026-12528

A flaw was found in 389 Directory Server in the __aclp__normalize_acltxt() function of aclparse.c. A malformed ACI (Access Control Instruction) str...

Red Hat Red Hat Directory Server 11 CVE
HIGH 8.1 CVE-2026-11311

NGINX Gateway Fabric vulnerability_CVE-2026-11311

When NGINX Plus is configured as the data plane for NGINX Gateway Fabric, an injection vulnerability exists in the NGINX configuration generator co...

F5 NGINX Gateway Fabric 2.5.0 CVE
MEDIUM 6.9 CVE-2026-10850

Plane 1.3.1 – Stored XSS in intake issue description_html_CVE-2026-10850

Plane CE 1.3.1 allows a low-privileged project member to submit arbitrary HTML/JS in the description_html field when creating an intake work item t...

Plane Plane 1.3.1 CVE