Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.7 PACKETSTORM:219545

đź“„ Dovecot 3.1.0 Authentication Bypass / User Enumeration_PACKETSTORM:219545

This Metasploit auxiliary module targets an LDAP injection vulnerability in Dovecot mail servers that can lead to authentication bypass or user enu...

N/A N/A PACKETSTORM
LOW 3.1 CVE-2026-33599

Out-of-bounds read in service discovery_CVE-2026-33599

A rogue backend can send a crafted SVCB response to a Discovery of Designated Resolvers request, when requested via either the autoUpgrade (Lua) op...

PowerDNS DNSdist 1.9.0 CVE
LOW 3.7 CVE-2026-33597

PRSD detection denial of service_CVE-2026-33597

PRSD detection denial of service

PowerDNS DNSdist 1.9.0 CVE
LOW 3.1 CVE-2026-33596

TCP backend stream ID overflow_CVE-2026-33596

A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by sending a flood of perfect...

PowerDNS DNSdist 1.9.0 CVE
LOW 2.5 CVE-2026-6842

Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions_CVE-2026-6842

A flaw was found in nano. In environments with permissive umask settings, a local attacker can exploit incorrect directory permissions (0777 instea...

Red Hat Red Hat Enterprise Linux 10 CVE
LOW 3.7 CVE-2026-22746

User Attribute Enumeration when Using DaoAuthenticationProvider_CVE-2026-22746

Vulnerability in Spring Spring Security. If an application is using the UserDetails#isEnabled, #isAccountNonExpired, or #isAccountNonLocked user at...

Spring Spring Security 5.7.0 CVE
LOW 2.7 CVE-2026-6416

Tanium addressed an uncontrolled resource consumption vulnerability in Interact._CVE-2026-6416

Tanium addressed an uncontrolled resource consumption vulnerability in Interact.

Tanium Interact 3.2.0 CVE
LOW 2.7 CVE-2026-6408

Tanium addressed an information disclosure vulnerability in Tanium Server._CVE-2026-6408

Tanium addressed an information disclosure vulnerability in Tanium Server.

Tanium Tanium Server 7.6.4.0 CVE
LOW 2.7 CVE-2026-6392

Tanium addressed an information disclosure vulnerability in Threat Response._CVE-2026-6392

Tanium addressed an information disclosure vulnerability in Threat Response.

Tanium Threat Response 4.6.0 CVE
LOW 2.1 CVE-2026-40878

mailcow-dockerized Login Page has Reflected Parameter Injection / Wrong-Context XSS Escaping_CVE-2026-40878

mailcow: dockerized is an open source groupware/email suite based on docker. In versions prior to 2026-03b, the mailcow web interface passes the ra...

mailcow mailcow-dockerized < 2026-03b CVE