Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.2 ZSL-2026-5990

Lyrion Music Server 9.2.0 (metadata) Stored XSS_ZSL-2026-5990

Summary Lyrion Music Server formerly Logitech Media Server, and often abbreviated as "LMS" is open-source software which can control and serve stre...

N/A N/A ZEROSCIENCE
HIGH 8.7 ZSL-2026-5992

Lyrion Music Server 9.2.0 Path Traversal File Read_ZSL-2026-5992

Summary Lyrion Music Server formerly Logitech Media Server, and often abbreviated as "LMS" is open-source software which can control and serve stre...

N/A N/A ZEROSCIENCE
HIGH 7.2 28BA8DE6-E5F6-

Dirty-cow-exploit_28BA8DE6-E5F6-5EDA-B23F-99DD01F58B76

System Documentation Architecture - Frontend: React 19 + Vite + TailwindCSS 4. - Backend: Express.js REST API with modular routing. - Database: SQL...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 CVE-2026-37460

CVE-2026-37460_CVE-2026-37460

Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a De...

n/a n/a n/a CVE
HIGH 8.8 CVE-2026-11177

CVE-2026-11177_CVE-2026-11177

Use after free in Omnibox in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures ...

Google Chrome 149.0.7827.53 CVE
HIGH 8.8 CVE-2026-11175

CVE-2026-11175_CVE-2026-11175

Incorrect security UI in Messages in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a crafted...

Google Chrome 149.0.7827.53 CVE
HIGH 8.8 CVE-2026-11172

CVE-2026-11172_CVE-2026-11172

Incorrect security UI in Contact Picker in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a c...

Google Chrome 149.0.7827.53 CVE
HIGH 8.1 CVE-2026-11170

CVE-2026-11170_CVE-2026-11170

Inappropriate implementation in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to perform OS-level privilege...

Google Chrome 149.0.7827.53 CVE
HIGH 8.1 CVE-2026-11169

CVE-2026-11169_CVE-2026-11169

Inappropriate implementation in XML in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) vi...

Google Chrome 149.0.7827.53 CVE
HIGH 8.6 CVE-2026-11158

CVE-2026-11158_CVE-2026-11158

Insufficient validation of untrusted input in Downloads in Google Chrome on Mac prior to 149.0.7827.53 allowed a local attacker to potentially perf...

Google Chrome 149.0.7827.53 CVE