Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2026-11500

Weaviate Static API Key client.go validateConfig authorization_CVE-2026-11500

A vulnerability was identified in Weaviate up to 1.37.7. This vulnerability affects the function validateConfig of the file usecases/auth/authentic...

n/a Weaviate 1.37.0 CVE
LOW 2.3 CVE-2026-11493

Tenda AC15 Samba smb.conf weak password_CVE-2026-11493

A weakness has been identified in Tenda AC15 15.03.05.19. The impacted element is an unknown function of the file /etc_ro/smb.conf of the component...

Tenda AC15 15.03.05.19 CVE
LOW 2 CVE-2026-11481

yoanbernabeu grepai Postgres Embedding Cache chunker.go PostgresStore.LookupByContentHash weak hash_CVE-2026-11481

A vulnerability was determined in yoanbernabeu grepai up to 0.35.0. The affected element is the function PostgresStore.LookupByContentHash of the f...

yoanbernabeu grepai 0.1 CVE
LOW 2.3 CVE-2026-11479

yoanbernabeu grepai Qdrant Backend chunker.go weak hash_CVE-2026-11479

A vulnerability has been found in yoanbernabeu grepai 0.35.0. This issue affects some unknown processing of the file indexer/chunker.go of the comp...

yoanbernabeu grepai 0.35.0 CVE
LOW 2.3 CVE-2026-11464

JeecgBoot User List Endpoint SysUserController.java queryPageList information disclosure_CVE-2026-11464

A vulnerability was identified in JeecgBoot up to 3.9.2. Affected by this vulnerability is the function queryPageList of the file src\main\java\org...

n/a JeecgBoot 3.9.0 CVE
LOW 2.3 CVE-2026-11465

songquanpeng one-api Redemption Code Top-Up Endpoint redemption.go Redeem logic error_CVE-2026-11465

A security flaw has been discovered in songquanpeng one-api up to 0.6.11-preview.7. Affected by this issue is the function Redeem of the file model...

songquanpeng one-api 0.6.11-preview.0 CVE
LOW 2.3 CVE-2026-11455

FoundationAgents MetaGPT common.py check_cmd_exists command injection_CVE-2026-11455

A vulnerability was determined in FoundationAgents MetaGPT up to 0.8.2. Affected by this issue is the function check_cmd_exists of the file metagpt...

FoundationAgents MetaGPT 0.8.0 CVE
LOW 3.1 MS:CVE-2026-11251

Chromium: CVE-2026-11251 Insufficient validation of untrusted input in Password Manager_MS:CVE-2026-11251

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.8 CVE-2025-12656

Migration, Backup, Staging – WPvivid Backup & Migration <= 0.9.128 - Authenticated (Admin+) Arbitrary Directory Deletion_CVE-2025-12656

The Migration, Backup, Staging – WPvivid Backup & Migration plugin for WordPress is vulnerable to arbitrary directory deletion due to insufficient ...

wpvividplugins WPvivid — Backup, Migration & Staging CVE
LOW 3.1 CVE-2026-48102

GHSL-2026-118: 7-Zip UDF Field OOB Read_CVE-2026-48102

7-Zip is a file archiver with a high compression ratio. Versions 9.11 through 26.00 contain a heap out-of-bounds read of up to 3 bytes in the UDF d...

mcmilk 7-Zip >= 9.11, < 26.01 CVE