Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.4 CVE-2026-50591

CVE-2026-50591_CVE-2026-50591

IN Znuny LTS before 6.5.21 and Znuny before 7.3.3, XSS can occur via stored user preferences.

Znuny Znuny 6.0.0 CVE
MEDIUM 6.5 CVE-2026-47655

Microsoft Graph Information Disclosure Vulnerability_CVE-2026-47655

{“lastseen”:””,”description”:””,”published”:”2026-06-04T22:00:53.146Z”,&#82...

Microsoft Microsoft Graph - CVE
MEDIUM 6.5 CVE-2026-47644

Copilot Chat (Microsoft Edge) Information Disclosure Vulnerability_CVE-2026-47644

{“lastseen”:””,”description”:””,”published”:”2026-06-04T22:00:52.404Z”,&#82...

Microsoft Copilot Chat (Microsoft Edge) - CVE
MEDIUM 6.5 CVE-2026-42824

M365 Copilot Information Disclosure Vulnerability_CVE-2026-42824

{“lastseen”:””,”description”:””,”published”:”2026-06-04T22:00:49.042Z”,&#82...

Microsoft Microsoft 365 Copilot - CVE
MEDIUM 5.3 CVE-2026-10875

projectworlds Online Art Gallery Shop Project adminHome.ph sql injection_CVE-2026-10875

A security flaw has been discovered in projectworlds Online Art Gallery Shop Project 1.0. The impacted element is an unknown function of the file /...

projectworlds Online Art Gallery Shop Project 1.0 CVE
MEDIUM 5.3 CVE-2026-10874

projectworlds Online Art Gallery Shop Project adminHome.php sql injection_CVE-2026-10874

A vulnerability was identified in projectworlds Online Art Gallery Shop Project 1.0. The affected element is an unknown function of the file /admin...

projectworlds Online Art Gallery Shop Project 1.0 CVE
MEDIUM 5.3 CVE-2026-10876

SourceCodester Ship Ferry Ticket Reservation System admin improper authorization_CVE-2026-10876

A weakness has been identified in SourceCodester Ship Ferry Ticket Reservation System 1.0. This affects an unknown function of the file /admin/. Th...

SourceCodester Ship Ferry Ticket Reservation System 1.0 CVE
MEDIUM 5.3 CVE-2026-50589

CVE-2026-50589_CVE-2026-50589

In OpenStack Ironic 32 through 35.0.1, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RP...

OpenStack Ironic 32.0.0 CVE
MEDIUM 5.3 CVE-2026-10878

D-Link DWR-M920 formSmsManage sub_41C8E8 command injection_CVE-2026-10878

A vulnerability was detected in D-Link DWR-M920 1.1.50/1.1.70. Affected is the function sub_41C8E8 of the file /boafrm/formSmsManage. Performing a ...

D-Link DWR-M920 1.1.50 CVE
MEDIUM 6.9 CVE-2026-10877

SourceCodester Ship Ferry Ticket Reservation System Admin Login login.php sql injection_CVE-2026-10877

A security vulnerability has been detected in SourceCodester Ship Ferry Ticket Reservation System up to 1.0. This impacts an unknown function of th...

SourceCodester Ship Ferry Ticket Reservation System 1.0 CVE