Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 EF699315-4D7C-

Exploit for Deserialization of Untrusted Data in Jenkins_EF699315-4D7C-5726-948A-21FDB30656FD

CVE-2026-53435 — Jenkins Deserialization → Arbitrary File Read PoC First public proof-of-concept for CVE-2026-53435, built when only the advisory e...

N/A N/A GITHUBEXPLOIT
HIGH 8.7 CFFDFA33-A926-

Exploit for Authorization Bypass Through User-Controlled Key in Saleor_CFFDFA33-A926-5333-9A7E-5C544AED218A

CVE-2026-24136 - Saleor GraphQL IDOR / Unauthenticated PII Exfiltration Tổng quan | Trường | Chi tiết | |---|---| | CVE ID | CVE-2026-24136 | | Loạ...

N/A N/A GITHUBEXPLOIT
HIGH 8.5 CVE-2026-11879

Arbitrary code execution in MobaXterm Personal Edition (Portable)_CVE-2026-11879

MobaXterm Personal Edition (Portable), in its 26.3 version (Build 5154), allows arbitrary code execution by loading malicious DLLs from a temporary...

Mobatek MobaXterm Personal Edition (Portable) 26.3 CVE
HIGH 8.8 CVE-2026-12035

CVE-2026-12035_CVE-2026-12035

Use after free in Views in Google Chrome on Windows prior to 149.0.7827.115 allowed a remote attacker to potentially exploit heap corruption via a ...

Google Chrome 149.0.7827.115 CVE
HIGH 8.8 CVE-2026-47342

Apache OFBiz: Privilege Escalation via updateOrRemove Authorization Bypass_CVE-2026-47342

A privilege escalation vulnerability in Apache OFBiz allows a low-privileged authenticated user to obtain higher privileges This issue affects A...

Apache Software Foundation Apache OFBiz CVE
HIGH 7.2 CVE-2026-47197

Quest Bot: Discord moderation role hierarchy bypass in ban, kick, mute, unmute, warn, and nickname commands_CVE-2026-47197

Quest Bot is an opensource Discord Bot. Prior to version 1.1.6, a moderator with the relevant Discord permission bit can use the bot to moderate us...

duck-organization questbot < 1.1.6 CVE
HIGH 8.4 CVE-2026-47196

Quest Bot: Empty automod rule causes every guild message to be deleted_CVE-2026-47196

Quest Bot is an opensource Discord Bot. Prior to version 1.1.6, the automod add command trims user input but does not reject an empty result. Addin...

duck-organization questbot < 1.1.6 CVE
HIGH 7.1 CVE-2026-47195

Quest Bot: Per-channel permission overwrite bypass in purge and slowmode commands._CVE-2026-47195

Quest Bot is an opensource Discord Bot. Prior to version 1.1.6, the purge and slowmode commands check only guild-level permissions on the invoking ...

duck-organization questbot < 1.1.6 CVE
HIGH 7 CVE-2026-9266

CVE-2026-9266_CVE-2026-9266

A Missing Required Cryptographic Step vulnerability has been identified in Moxa's embedded Linux firmware for industrial computers and controllers....

Moxa UC-1200A Series 1.0 CVE
HIGH 7.9 CVE-2026-11848

IEI Integration Corp| iRM-IEI Remote Management – Missing Authentication_CVE-2026-11848

The iRM-IEI Remote Management developed by IEI Integration Corp has a Missing Authentication vulnerability, allowing unauthenticated remote attacke...

IEI Integration Corp iRM-TSi410X CVE