Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.1 CVE-2025-66606

CVE-2025-66606_CVE-2025-66606

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properly encode URLs. An attacker ...

Yokogawa Electric Corporation FAST/TOOLS R9.01 CVE
LOW 2.1 CVE-2025-66605

CVE-2025-66605_CVE-2025-66605

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Since there are input fields on this webpage with the au...

Yokogawa Electric Corporation FAST/TOOLS R9.01 CVE
LOW 2.1 CVE-2025-66604

CVE-2025-66604_CVE-2025-66604

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The library version could be displayed on the web page. ...

Yokogawa Electric Corporation FAST/TOOLS R9.01 CVE
LOW 2.1 CVE-2025-66603

CVE-2025-66603_CVE-2025-66603

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The web server accepts the OPTIONS method. An attacker c...

Yokogawa Electric Corporation FAST/TOOLS R9.01 CVE
LOW 3.5 CVE-2026-25764

OpenProject vulnerable to Stored HTML injection_CVE-2026-25764

OpenProject is an open-source, web-based project management software. Prior to versions 16.6.7 and 17.0.3, an HTML injection vulnerability occurs i...

opf openproject < 16.6.7 CVE
LOW 2.1 CVE-2026-25729

DeepAudit Affected by User Enumeration via Broken Access Control_CVE-2026-25729

DeepAudit is a multi-agent system for code vulnerability discovery. In 3.0.4 and earlier, there is an improper access control vulnerability in the ...

lintsinghua DeepAudit <= 3.0.4 CVE
LOW 2.3 CVE-2026-25724

Claude Code Has Permission Deny Bypass Through Symbolic Links_CVE-2026-25724

Claude Code is an agentic coding tool. Prior to version 2.1.7, Claude Code failed to strictly enforce deny rules configured in settings.json when a...

anthropics claude-code < 2.1.7 CVE
LOW 1.1 CVE-2026-24050

Zulip affected by Stored XSS in user profile modal_CVE-2026-24050

Zulip is an open-source team collaboration tool. From 5.0 to before 11.5, some administrative actions on the user profile were susceptible to store...

zulip zulip >= 5.0, < 11.5 CVE
LOW 3.3 CVE-2025-15320

Tanium addressed a denial of service vulnerability in Tanium Client._CVE-2025-15320

Tanium addressed a denial of service vulnerability in Tanium Client.

Tanium Tanium Client 7.6.2.0 CVE
LOW 2 CVE-2026-23739

Asterisk xml.c uses unsafe XML_PARSE_NOENT leading to potential XXE Injection_CVE-2026-23739

Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 20.7-cert9, 20.18.2, 21.12.1, 22.8.2, and 23.2.2, the a...

asterisk asterisk < 23.2.2 CVE