Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.3 CVE-2025-62338

The HCL BigFix Cloud Lifecycle Management is affected by Lack of Input Validation._CVE-2025-62338

The HCL BigFix Cloud Lifecycle Management is affected by Lack Of Input Validation. It may leads to an information exposure vulnerability. This low-...

HCL BigFix Cloud Lifecycle Management 10.9.1 and 10.9.2 CVE
LOW 3.1 CVE-2026-45739

Strawberry GraphQL: Default GraphiQL may expose HTTP headers in URLs_CVE-2026-45739

Strawberry GraphQL is a library for creating GraphQL APIs. In versions 0.288.4 through 0.315.3, Strawberry's bundled GraphiQL template wrote values...

strawberry-graphql strawberry >= 0.288.4, < 0.315.4 CVE
LOW 2 CVE-2026-10812

zilliztech GPTCache Cache Key pre.py BufferedReader.peek weak hash_CVE-2026-10812

A vulnerability was detected in zilliztech GPTCache up to 0.1.44. Affected by this issue is the function BufferedReader.peek of the file gptcache/p...

zilliztech GPTCache 0.1.0 CVE
LOW 2 CVE-2026-10801

modelscope ms-swift PIL Image Cache Key base.py Template._save_pil_image weak hash_CVE-2026-10801

A security vulnerability has been detected in modelscope ms-swift up to 4.2.0. This affects the function Template._save_pil_image of the file swift...

modelscope ms-swift 4.0 CVE
LOW 2 CVE-2026-10804

Streamlit Palette hashing.py weak hash_CVE-2026-10804

A vulnerability has been found in Streamlit up to 1.53.0. Impacted is an unknown function in the library lib/streamlit/runtime/caching/hashing.py o...

n/a Streamlit 1.0 CVE
LOW 2 CVE-2026-10803

MLflow Dataset Digest Computation digest_utils.py mlflow.data.digest_utils weak hash_CVE-2026-10803

A flaw has been found in MLflow up to 3.10.0. This issue affects the function mlflow.data.digest_utils of the file mlflow/data/digest_utils.py of t...

n/a MLflow 3.0 CVE
LOW 3.1 CVE-2025-52611

HCL iControl was affected by Unhandled Exception – Stack Trace Disclosure vulnerability_CVE-2025-52611

HCL iControl v4.0.0 was affected by Unhandled Exception - Stack Trace Disclosure vulnerability. The error occurs due to an undefined property being...

HCL iControl 4.0.0 CVE
LOW 3.7 CVE-2025-52609

HCL iControl was affected by Missing Security Headers vulnerability._CVE-2025-52609

HCL iControl was affected by Missing Security Headers vulnerability. which lead to cross-site scripting (XSS) attacks by enabling the built-in XSS ...

HCL iControl 4.0.0 CVE
LOW 3.1 CVE-2025-52608

HCL iControl was affected by Missing Cookie Attributes vulnerability._CVE-2025-52608

HCL iControl was affected by Missing Cookie Attributes vulnerability. It was observed that the application is missing several critical cookie attr...

HCL iControl 4.0.0 CVE
LOW 2 CVE-2026-10800

PaddlePaddle FastDeploy MultimodalHasher hasher.py hash_features weak hash_CVE-2026-10800

A weakness has been identified in PaddlePaddle FastDeploy up to 2.4.1. Affected by this issue is the function hash_features of the file fastdeploy/...

PaddlePaddle FastDeploy 2.4.0 CVE