Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.9 CVE-2026-14178

openGauss存在非法内存访问导致DoS漏洞_CVE-2026-14178

openGauss 在处理带 NLS 参数的 to_timestamp 调用时,to_timestamp_with_fmt_nls() 会将 nls_fmt_str 保存到 u_sess->parser_cxt.nls_fmt_str。在 seqscan +...

openGauss-server openGauss-server-7.0.0-RC2 openGauss-server-7.0.0-RC2 CVE
MEDIUM 6.5 CVE-2026-51219

CVE-2026-51219_CVE-2026-51219

A heap buffer overflow in the HighPriorityASDUQueue_hasUnconfirmedIMessages function of lib60870 v2.3.3 to v2.3.6 allows attackers to cause a Denia...

n/a n/a n/a CVE
MEDIUM 5.9 CVE-2026-53692

Weak hahshing algorithm in Redeight CMS_CVE-2026-53692

Redeight CMS version 1.0 uses the MD5 algorithm without a salt to store user passwords. Because MD5 is a cryptographically broken algorithm and lac...

Redeight Redeight CMS 1.0 CVE
MEDIUM 6.1 CVE-2026-8403

Stored XSS in Exagate’s SYSGUARD 6001_CVE-2026-8403

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Eksagate Electronic Engineering and Computer ...

Eksagate Electronic Engineering and Computer Industry Trade Inc. SYSGUARD 6001 2.0.2 CVE
MEDIUM 5.7 CVE-2026-53433

Denial of Service in fzf_CVE-2026-53433

fzf is vulnerable to a Denial of Service (DoS) due to inefficient HTTP body processing in the --listen mode due to inefficient HTTP body processing...

fzf fzf CVE
MEDIUM 5.6 CVE-2026-53432

Integer Overflow in fzf_CVE-2026-53432

fzf is vulnerable to Integer Overflow leading to crash in FuzzyMatchV2 function. When input line length is approximately 2,200,000 bytes and patter...

fzf fzf CVE
MEDIUM 6.5 CVE-2026-4629

Keycloak: keycloak: privilege escalation through hardcoded role mapper injection_CVE-2026-4629

A flaw was found in Keycloak. A highly privileged user with `manage-clients` permission can exploit this vulnerability by injecting a hardcoded rol...

Red Hat Red Hat Build of Keycloak CVE
MEDIUM 4.3 CVE-2026-14209

Keycloak-admin-ui: keycloak-admin-ui: keycloak: admin ui extension brute-force-user endpoint bypasses fgapv2 user view restrictions_CVE-2026-14209

A vulnerability was discovered in Keycloak's Admin UI extension that allows certain administrative users to bypass security restrictions. When Fine...

Red Hat Red Hat Build of Keycloak CVE
MEDIUM 6.5 CVE-2026-12388

Keycloak-broker: keycloak: privilege escalation to realm administrator via improper authorization in identity provider mapper_CVE-2026-12388

A flaw was found in the Identity Provider (IdP) mapper component of Keycloak, which is used to manage how user information from external services i...

Red Hat Red Hat Build of Keycloak CVE
MEDIUM 5.1 CVE-2026-6954

Multiple vulnerabilities in Intermark IT’s WebControl CMS_CVE-2026-6954

Cross-Site Scripting (XSS) vulnerability in Intermark IT's WebControl CMS v3.5. This vulnerability allows an attacker to execute JavaScript code or...

Intermark IT WebControl CMS CVE