Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.3 CVE-2026-12809

Edimax BR-6478AC V2 POST Request wiz_5in1_redirect command injection_CVE-2026-12809

A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /goform/wiz_5in1_redirect of the...

Edimax BR-6478AC V2 1.23 CVE
MEDIUM 5.1 CVE-2026-12812

Radware Cyber Controller HTML Report Generation HTML injection_CVE-2026-12812

A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects an unknown part of the component HTML Report Gen...

Radware Cyber Controller 10.0 CVE
MEDIUM 5.3 CVE-2026-12811

kortix-ai suna Auth Endpoint page.tsx router.push cross site scripting_CVE-2026-12811

A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the function router.replace/router.push of the file apps/f...

kortix-ai suna 0.8.0 CVE
MEDIUM 5.3 CVE-2026-12814

Comfast CF-WR631AX V3 API Endpoint mbox-config system os command injection_CVE-2026-12814

A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system of the file /cgi-bin/mbox-config?section=ping_...

Comfast CF-WR631AX V3 2.7.0.0 CVE
MEDIUM 5.3 CVE-2026-12813

activepieces File URL file.ts handleUrlFile server-side request forgery_CVE-2026-12813

A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function handleUrlFile in the library packages/server/eng...

n/a activepieces 0.1 CVE
MEDIUM 5.3 CVE-2026-12821

FlowiseAI Flowise S3 Document Loader S3.ts path traversal_CVE-2026-12821

A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file packages/components/nodes/...

FlowiseAI Flowise 3.1.0 CVE
MEDIUM 5.3 CVE-2026-12815

coollabsio coolify Image Name os command injection_CVE-2026-12815

A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the component Image Name Handler. Such manipulation ...

coollabsio coolify 4.0.0 CVE
MEDIUM 5.3 8E435453-9D49-

Exploit for CVE-2026-39676_8E435453-9D49-528A-A043-03CC8664AC49

Cve-2026-39676 Wordpress Version: Download Manager 3.3.5.2 Title: Missing Authorization - Unauthenticated IDOR Exploit...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.3 CVE-2026-12807

Edimax BR-6478AC V2 POST Request setWAN command injection_CVE-2026-12807

A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file /goform/setWAN of the component POST Request Ha...

Edimax BR-6478AC V2 1.23 CVE
MEDIUM 5.3 CVE-2026-12808

Edimax BR-6478AC V2 POST Request stainfo command injection_CVE-2026-12808

A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the file /goform/stainfo of the component POST Req...

Edimax BR-6478AC V2 1.23 CVE