Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.1 CVE-2026-36521

CVE-2026-36521_CVE-2026-36521

PublicCMS V5.202506.d has a Cross Site Scripting (XSS) vulnerability in the site configuration management module.

n/a n/a n/a CVE
MEDIUM 6.5 CVE-2026-12309

Memory safety bug fixed in Thunderbird 152_CVE-2026-12309

Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

Mozilla Firefox 140.12 CVE
MEDIUM 5.3 CVE-2026-12308

Memory safety bug fixed in Thunderbird 152_CVE-2026-12308

Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

Mozilla Firefox 140.12 CVE
MEDIUM 5.3 CVE-2026-12307

Memory safety bug fixed in Thunderbird 152_CVE-2026-12307

Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

Mozilla Firefox 140.12 CVE
MEDIUM 5.3 CVE-2026-12306

Memory safety bug fixed in Thunderbird 152_CVE-2026-12306

Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

Mozilla Firefox 140.12 CVE
MEDIUM 6.5 CVE-2026-12302

Mitigation bypass in the DOM: Security component_CVE-2026-12302

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird ...

Mozilla Firefox 115.37 CVE
MEDIUM 5.3 CVE-2026-12301

Memory safety bug fixed in Thunderbird 152_CVE-2026-12301

Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152 and Thunderbird 152.

Mozilla Firefox 152 CVE
MEDIUM 5.3 CVE-2026-12300

Memory safety bug fixed in Thunderbird 152_CVE-2026-12300

Memory safety bug fixed in Thunderbird 152. This vulnerability was fixed in Firefox 152 and Thunderbird 152.

Mozilla Firefox 152 CVE
MEDIUM 6 CVE-2026-53863

OpenClaw < 2026.4.25 - Unvalidated Group ID Acceptance in Tool Group Policy_CVE-2026-53863

OpenClaw before 2026.4.25 contains an input validation vulnerability in tool group policy callers that accept unvalidated group IDs. Attackers who ...

OpenClaw OpenClaw CVE
MEDIUM 5.3 CVE-2026-53861

OpenClaw < 2026.5.6 - Allowlist Bypass via Combined POSIX Inline Flags on macOS_CVE-2026-53861

OpenClaw before 2026.5.6 contains an allowlist bypass vulnerability in the macOS Swift exec feature that misses combined POSIX inline-command flags...

OpenClaw OpenClaw CVE