Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.1 CVE-2026-48102

GHSL-2026-118: 7-Zip UDF Field OOB Read_CVE-2026-48102

7-Zip is a file archiver with a high compression ratio. Versions 9.11 through 26.00 contain a heap out-of-bounds read of up to 3 bytes in the UDF d...

mcmilk 7-Zip >= 9.11, < 26.01 CVE
MEDIUM 6.5 CVE-2026-48101

GHSL-2026-117: 7-Zip UEFI Capsule uninitialized heap memory disclosure_CVE-2026-48101

7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an An uninitialized memory disclosure vulnerability in ...

mcmilk 7-Zip >= 9.21, < 26.01 CVE
MEDIUM 5.3 CVE-2026-11336

tittuvarghese CollegeManagementSystem Admin admin_page.php improper authorization_CVE-2026-11336

A vulnerability has been found in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979f7e27ae67b610dce5979500ef...

tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3 CVE
HIGH 7.1 CVE-2026-8714

Denial-of-Service Vulnerability in RTSP Input Handling on TP-Link’s Tapo C520WS_CVE-2026-8714

A denial-of-service vulnerability exists in the RTSP server component of TP-Link Tapo C520WS v2 due to improper handling of syntactically invalid i...

TP-Link Systems Inc. Tapo C520WS v2 CVE
MEDIUM 5.8 CVE-2026-7473

Arista EOS Unexpected Tunnel Protocol Decapsulation and Forwarding Bypass_CVE-2026-7473

On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE ...

Arista Networks EOS 4.36.0 CVE
MEDIUM 6.5 CVE-2026-48112

GHSL-2026-122 7-Zip Ar SYMDEF OOB Read_CVE-2026-48112

7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain a heap out-of-bounds read in 7-Zip Ar handler BSD SYMDE...

mcmilk 7-Zip >= 9.34, < 26.01 CVE
MEDIUM 4.3 CVE-2026-48111

GHSL-2026-121 7-Zip UEFI DEPEX OOB Read_CVE-2026-48111

7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an off-by-one out-of-bounds read vulnerability in the P...

mcmilk 7-Zip >= 9.18, < 26.01 CVE
MEDIUM 4.2 CVE-2026-48104

GHSL-2026-120: 7-Zip SquashFS BlockToNode uninitialized heap read_CVE-2026-48104

7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain an uninitialized heap read in the SquashFS archive hand...

mcmilk 7-Zip >= 9.18, < 26.01 CVE
MEDIUM 4.3 CVE-2026-48103

GHSL-2026-119 7-Zip WIM SecurityId OOB read_CVE-2026-48103

7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain an off-by-one heap out-of-bounds read in the WIM (Windo...

mcmilk 7-Zip >= 9.34, < 26.01 CVE
MEDIUM 5.3 CVE-2026-11339

D-Link DWR-M920 formUSSDSetup sub_41CF20 command injection_CVE-2026-11339

A vulnerability was detected in D-Link DWR-M920 up to 1.1.50. The affected element is the function sub_41CF20 of the file /boafrm/formUSSDSetup. Th...

D-Link DWR-M920 1.1.0 CVE