Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.2 CVE-2026-11001

CVE-2026-11001_CVE-2026-11001

Inappropriate implementation in Payments in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specif...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6.1 CVE-2026-10999

CVE-2026-10999_CVE-2026-10999

Integer overflow in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to ...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6.5 CVE-2026-10994

CVE-2026-10994_CVE-2026-10994

Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from proce...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6.5 CVE-2026-10993

CVE-2026-10993_CVE-2026-10993

Heap buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from pro...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6.5 CVE-2026-10992

CVE-2026-10992_CVE-2026-10992

Insufficient data validation in Animation in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive informa...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6.9 CVE-2026-11435

Jinher OA nextselectplan.aspx sql injection_CVE-2026-11435

A security vulnerability has been detected in Jinher OA 1.0. This affects an unknown function of the file nextselectplan.aspx. Such manipulation of...

Jinher OA 1.0 CVE
MEDIUM 5.3 CVE-2026-11436

Mage AI Sign-in Flow index.tsx useMutation cross site scripting_CVE-2026-11436

A vulnerability was detected in Mage AI up to 0.9.79. This impacts the function useMutation of the file mage_ai/frontend/components/Sessions/SignFo...

n/a Mage AI 0.9.0 CVE
MEDIUM 6.9 CVE-2026-11437

perfree go-fastdfs-web Installation Endpoint checkServer server-side request forgery_CVE-2026-11437

A flaw has been found in perfree go-fastdfs-web up to 1.3.7. Affected is the function checkServer of the file /install/checkServer of the component...

perfree go-fastdfs-web 1.3.0 CVE
MEDIUM 5.3 CVE-2026-11438

theonedev projects improper authorization_CVE-2026-11438

A vulnerability has been found in theonedev onedev up to 15.0.5. Affected by this vulnerability is an unknown functionality of the file /projects. ...

theonedev onedev 15.0.0 CVE
MEDIUM 4.8 CVE-2026-11434

FluentCMS Blocks Plugin blocks cross site scripting_CVE-2026-11434

A weakness has been identified in FluentCMS 0.0.5. The impacted element is an unknown function of the file /admin/blocks of the component Blocks Pl...

n/a FluentCMS 0.0.5 CVE