Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.7 CVE-2026-56780

Modoboa < 2.9.0 - Insecure Direct Object Reference in Account Password Change API_CVE-2026-56780

Modoboa before 2.9.0 contains an insecure direct object reference vulnerability in the PUT /api/v1/accounts/{pk}/password/ endpoint that allows dom...

modoboa modoboa CVE
HIGH 7.7 CVE-2026-56285

Nitter – Server-Side Request Forgery in /video Media Proxy Endpoint_CVE-2026-56285

Nitter's /video media proxy endpoint fails to validate target URLs against Twitter/X domains and uses a hardcoded default HMAC key, allowing unauth...

zedeus nitter CVE
HIGH 7.5 CVE-2026-49049

Joomla Extension – joomshaper.com – Unauthenticated access to Helix3 template ajax handler_CVE-2026-49049

The Helix3 plugin for Joomla exposes an ajax handler task, that allows unauthenticated attackers to delete arbitrary files, write arbitrary JSON fi...

joomshaper.com Helix3 extension for Joomla 1.0-3.1.1 CVE
HIGH 8.8 CVE-2026-13749

Snowflake CLI Arbitrary Code Execution via Snowpark Annotation Processor Template Injection_CVE-2026-13749

Improper neutralization in the Snowpark annotation processor callback template in Snowflake CLI versions prior to 3.19 allowed arbitrary code execu...

Snowflake Snowflake CLI 2.4.0 CVE
HIGH 8.3 CVE-2026-13744

Snowflake CLI SQL Injection Through Improper Neutralization of User-Controlled Input_CVE-2026-13744

Improper neutralization of attacker-controlled content in Snowflake CLI versions prior to 3.19 allowed unintended SQL execution. By supplying craft...

Snowflake Snowflake CLI 1.2.2 CVE
HIGH 8.7 CVE-2026-13583

Edimax EW-7478APC POST Request formUSBFolder buffer overflow_CVE-2026-13583

A vulnerability has been found in Edimax EW-7478APC 1.04. Impacted is the function formUSBFolder of the file /goform/formUSBFolder of the component...

Edimax EW-7478APC 1.04 CVE
HIGH 8.7 CVE-2026-13582

Edimax EW-7478APC POST Request formUSBAccount buffer overflow_CVE-2026-13582

A flaw has been found in Edimax EW-7478APC 1.04. This issue affects the function formUSBAccount of the file /goform/formUSBAccount of the component...

Edimax EW-7478APC 1.04 CVE
HIGH 8.7 CVE-2026-13580

Edimax EW-7478APC POST Request formQoS buffer overflow_CVE-2026-13580

A security vulnerability has been detected in Edimax EW-7478APC 1.04. This affects the function formQoS of the file /goform/formQoS of the componen...

Edimax EW-7478APC 1.04 CVE
HIGH 7.3 CVE-2026-12912

Libtiff: libtiff: heap-based buffer overflow via crafted pixarlog-compressed tiff image_CVE-2026-12912

A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLog-compressed TIFF image. Th...

Red Hat Red Hat Enterprise Linux 10 CVE
HIGH 8.8 5E9A2406-CBCB-

Exploit for CVE-2026-43503_5E9A2406-CBCB-52D3-84A7-1C3505E7F2B4

CVE-2026-43503 DirtyClone - PoC - SecurewithUmer POC of DirtyClone — a Linux kernel local privilege escalation vulnerability. This repository conta...

N/A N/A GITHUBEXPLOIT