Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.1 CVE-2026-48102

GHSL-2026-118: 7-Zip UDF Field OOB Read_CVE-2026-48102

7-Zip is a file archiver with a high compression ratio. Versions 9.11 through 26.00 contain a heap out-of-bounds read of up to 3 bytes in the UDF d...

mcmilk 7-Zip >= 9.11, < 26.01 CVE
LOW 3.1 CVE-2026-11247

CVE-2026-11247_CVE-2026-11247

Insufficient policy enforcement in CustomTabs in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin dat...

Google Chrome 149.0.7827.53 CVE
LOW 3.1 CVE-2026-11240

CVE-2026-11240_CVE-2026-11240

Insufficient validation of untrusted input in Loader in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the rend...

Google Chrome 149.0.7827.53 CVE
LOW 2 CVE-2026-11330

thedotmack claude-mem Observation Content Hash store.ts computeObservationContentHash weak hash_CVE-2026-11330

A weakness has been identified in thedotmack claude-mem up to 11.0.1. The affected element is the function computeObservationContentHash of the fil...

thedotmack claude-mem 11.0.0 CVE
LOW 3.1 CVE-2026-11251

CVE-2026-11251_CVE-2026-11251

Insufficient policy enforcement in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the rende...

Google Chrome 149.0.7827.53 CVE
LOW 3.1 CVE-2026-11244

CVE-2026-11244_CVE-2026-11244

Insufficient validation of untrusted input in WebAuthentication in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromis...

Google Chrome 149.0.7827.53 CVE
LOW 2 CVE-2026-11329

onnx onnx-mlir Placeholder Node Cache backend.py generate_hash_key weak hash_CVE-2026-11329

A vulnerability has been found in onnx onnx-mlir up to 0.5.0.0. Affected by this issue is the function generate_hash_key of the file src/Runtime/py...

onnx onnx-mlir 0.5.0 CVE
LOW 2.7 CVE-2026-9088

Keycloak: keycloak: information disclosure due to user profile permission bypass_CVE-2026-9088

A flaw was found in org.keycloak.services. An administrator with delegated access to read group memberships and users can bypass user profile permi...

Red Hat Red Hat Build of Keycloak CVE
LOW 2.1 CVE-2026-45287

OpenTelemetry-Go’s Schema ParseFile leaks file descriptors on each parse_CVE-2026-45287

OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.0.17, `go.opentelemetry.io/otel/schema/v1.0` and `go.opentelemetry.i...

open-telemetry go.opentelemetry.io/otel/schema/v1.1 < 0.0.17 CVE
LOW 2 CVE-2026-10814

milvus-io milvus Grantee ID Hash kv_catalog.go weak hash_CVE-2026-10814

A vulnerability has been found in milvus-io milvus up to 2.6.13. This vulnerability affects unknown code of the file internal/metastore/kv/rootcoor...

milvus-io milvus 2.6.0 CVE