Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.3 CVE-2026-12810

Edimax BR-6478AC V2 POST Request mp command injection_CVE-2026-12810

A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is the function mp of the file /goform/mp of the co...

Edimax BR-6478AC V2 1.23 CVE
MEDIUM 5.3 CVE-2026-12809

Edimax BR-6478AC V2 POST Request wiz_5in1_redirect command injection_CVE-2026-12809

A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /goform/wiz_5in1_redirect of the...

Edimax BR-6478AC V2 1.23 CVE
MEDIUM 5.1 CVE-2026-12812

Radware Cyber Controller HTML Report Generation HTML injection_CVE-2026-12812

A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects an unknown part of the component HTML Report Gen...

Radware Cyber Controller 10.0 CVE
MEDIUM 5.3 CVE-2026-12811

kortix-ai suna Auth Endpoint page.tsx router.push cross site scripting_CVE-2026-12811

A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the function router.replace/router.push of the file apps/f...

kortix-ai suna 0.8.0 CVE
MEDIUM 5.3 CVE-2026-12814

Comfast CF-WR631AX V3 API Endpoint mbox-config system os command injection_CVE-2026-12814

A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system of the file /cgi-bin/mbox-config?section=ping_...

Comfast CF-WR631AX V3 2.7.0.0 CVE
MEDIUM 5.3 CVE-2026-12813

activepieces File URL file.ts handleUrlFile server-side request forgery_CVE-2026-12813

A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function handleUrlFile in the library packages/server/eng...

n/a activepieces 0.1 CVE
MEDIUM 5.3 CVE-2026-12821

FlowiseAI Flowise S3 Document Loader S3.ts path traversal_CVE-2026-12821

A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file packages/components/nodes/...

FlowiseAI Flowise 3.1.0 CVE
MEDIUM 5.3 CVE-2026-12815

coollabsio coolify Image Name os command injection_CVE-2026-12815

A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the component Image Name Handler. Such manipulation ...

coollabsio coolify 4.0.0 CVE
HIGH 7.8 F9427710-4336-

Exploit for Use After Free in Linux Linux_Kernel_F9427710-4336-50DA-9AC4-7D23886787E5

CVE-2024-1086 Root Cause & Exploitation Target kernels: Linux 6.8 netfilter nftables Novel angle: Logic confusion in nftverdictinit causes refcount...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.3 8E435453-9D49-

Exploit for CVE-2026-39676_8E435453-9D49-528A-A043-03CC8664AC49

Cve-2026-39676 Wordpress Version: Download Manager 3.3.5.2 Title: Missing Authorization - Unauthenticated IDOR Exploit...

N/A N/A GITHUBEXPLOIT