Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.5 CVE-2026-50889

CVE-2026-50889_CVE-2026-50889

An input handling flaw in the HTTP refresh token process of LLDAP v0.6.2 allows attackers to cause a Denial of Service (DoS) via sending a crafted ...

n/a n/a n/a CVE
HIGH 8.1 CVE-2026-50888

CVE-2026-50888_CVE-2026-50888

An authenticated Server-Side Request Forgery (SSRF) in the custom scraper subsystem component of Benjamin Jonard Koillection v1.8.0 allows attacker...

n/a n/a n/a CVE
HIGH 8.8 CVE-2026-50884

CVE-2026-50884_CVE-2026-50884

Incorrect access control in statping-ng v0.93.0 allows attackers to escalate privileges to Administrator and access sensitive components.

statping statping-ng 0.93.0 CVE
HIGH 7.3 CVE-2026-12327

Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152_CVE-2026-12327

Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of me...

Mozilla Firefox 140.12 CVE
HIGH 7.3 CVE-2026-12326

Memory safety bugs fixed in Firefox 152 and Thunderbird 152_CVE-2026-12326

Memory safety bugs present in Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with eno...

Mozilla Firefox 152 CVE
HIGH 7.3 CVE-2026-12324

Incorrect boundary conditions in the Graphics: CanvasWebGL component_CVE-2026-12324

Incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird ...

Mozilla Firefox 140.12 CVE
HIGH 8.8 CVE-2026-44932

indirect remote shell command injection via unsanitized DHCP options in wicked_CVE-2026-44932

Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0.6.79 could be used by attackers operating a malicious ...

SUSE wicked CVE
HIGH 8.6 CVE-2026-42089

yeoman-environment Vulnerable to Arbitrary Package Installation without User Confirmation_CVE-2026-42089

Yeoman Environment provides an API to discover, create, and run generators, and to configure where and how a generator is resolved. Versions 2.9.0 ...

yeoman environment >= 2.9.0, < 6.0.1 CVE
HIGH 7.8 CVE-2026-24228

CVE-2026-24228_CVE-2026-24228

NVIDIA NeMo Framework for Linux contains a vulnerability where an attacker may cause deserialization of untrusted data. A successful exploit of thi...

NVIDIA NeMo Framework Versions 0.0 to 2.7.2 CVE
HIGH 7.8 CVE-2026-24155

CVE-2026-24155_CVE-2026-24155

NVIDIA NeMo Framework for all platforms contains a code injection vulnerability. A successful exploit of this vulnerability might lead to code exec...

NVIDIA NeMo Framework Versions 0.0 to 2.7.2 CVE