Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 CVE-2026-11183

CVE-2026-11183_CVE-2026-11183

Out of bounds read in GWP-ASan in Google Chrome prior to 149.0.7827.53 allowed a local attacker to obtain potentially sensitive information from pr...

Google Chrome 149.0.7827.53 CVE
MEDIUM 4.3 CVE-2026-11309

CVE-2026-11309_CVE-2026-11309

Insufficient policy enforcement in History in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a crafted H...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6.3 CVE-2026-11308

CVE-2026-11308_CVE-2026-11308

Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious ...

Google Chrome 149.0.7827.53 CVE
MEDIUM 5.9 CVE-2026-11238

CVE-2026-11238_CVE-2026-11238

Inappropriate implementation in DevTools in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious ex...

Google Chrome 149.0.7827.53 CVE
MEDIUM 5.1 CVE-2026-50235

Lyrion Music Server 9.2.0 Reflected XSS via search Parameters_CVE-2026-50235

Lyrion Music Server 9.2.0 contains a reflected cross-site scripting vulnerability in advanced search parameters that fail to properly sanitize user...

LMS Community Lyrion Music Server 9.2.0 CVE
MEDIUM 6.9 CVE-2026-50233

Lyrion Music Server 9.2.0 Arbitrary Directory Listing_CVE-2026-50233

Lyrion Music Server 9.2.0 contains an arbitrary directory listing vulnerability in its readdirectory query, exposed through both the CLI service (T...

LMS Community Lyrion Music Server 9.2.0 CVE
MEDIUM 5.1 CVE-2026-50232

Lyrion Music Server 9.2.0 Stored XSS via Metadata Tags_CVE-2026-50232

Lyrion Music Server 9.2.0 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scripts through media file...

LMS Community Lyrion Music Server 9.2.0 CVE
MEDIUM 5.1 CVE-2026-50231

Lyrion Music Server 9.2.0 Unauthenticated Stored XSS via server.log_CVE-2026-50231

Lyrion Music Server 9.2.0 contains an unauthenticated stored cross-site scripting vulnerability in the log viewer that allows attackers to inject m...

LMS Community Lyrion Music Server 9.2.0 CVE
MEDIUM 5.1 CVE-2026-50230

Lyrion Music Server 9.2.0 Reflected XSS via server.log_CVE-2026-50230

Lyrion Music Server 9.2.0 contains an unauthenticated reflected cross-site scripting vulnerability in the server.log endpoint that allows attackers...

LMS Community Lyrion Music Server 9.2.0 CVE
MEDIUM 4.3 CVE-2026-48092

7-Zip SquashFS Fragment Offset Overflow (GHSL-2026-116)_CVE-2026-48092

7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain a heap memory disclosure via SquashFS fragment offset i...

mcmilk 7-Zip >= 9.34, < 26.01 CVE