Recent Advisories

Severity ID Title Vendor Product Date Type
NONE HACKREAD:FEF430...

Scammers Use TikTok and Instagram Reels to Spread Vidar Infostealer_HACKREAD:FEF430EC98059407CE82CAAAEEEE2025

ReversingLabs reveals how hackers exploit social media engagement metrics to deliver Vidar infostealer malware to thousands of unsuspecting users.

N/A N/A HACKREAD
HIGH 7.5 CVE-2026-34183

Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler_CVE-2026-34183

Issue summary: Remote peer may exhaust heap memory of the QUIC server or client by flooding it with packets containing PATH_CHALLENGE frames. Impa...

OpenSSL OpenSSL 4.0.0 CVE
CRITICAL 9.1 CVE-2026-34182

CMS AuthEnvelopedData Processing May Accept Forged Messages_CVE-2026-34182

Issue Summary: Cryptographic Message Services (CMS) processing fails to perform sufficient input validation on the cipher and tag length fields of ...

OpenSSL OpenSSL 4.0.0, 3.6.0, 3.5.0, 3.4.0, 3.0.0 CVE
MEDIUM 6.9 317E04B3-54AE-

Exploit for Incomplete Comparison with Missing Factors in Arista Eos_317E04B3-54AE-5CAF-87AE-5F2F7D5797F2

README.md markdown CVE-2026-7473 - Arista EOS Tunnel Decapsulation Bypass ⚠️ ADVERTENCIA Este código es SOLO para fines educativos y pruebas de seg...

N/A N/A GITHUBEXPLOIT
HIGH 7.4 CVE-2026-34181

PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys_CVE-2026-34181

Issue Summary: The PKCS#12 file processing fails to perform sufficient input validation for files that use Password-Based Message Authentication Co...

OpenSSL OpenSSL 4.0.0 CVE
HIGH 7.5 CVE-2026-36813

CVE-2026-36813_CVE-2026-36813

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the picCropName parameter of the formCropA...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-36806

CVE-2026-36806_CVE-2026-36806

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the webAuthUserPwd parameter of the formMo...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-36805

CVE-2026-36805_CVE-2026-36805

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain multiple buffer overflows in the Saveqqlist function via the qqStr...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-11799

UXSS in Focus for iOS / Klar Webkit navigation_CVE-2026-11799

UXSS in Focus for iOS / Klar Webkit navigation. This vulnerability was fixed in Focus for iOS 151.3.1 and Klar for iOS 151.3.1.

Mozilla Focus for iOS 151.3.1 CVE
MEDIUM 5.3 CVE-2026-53442

CVE-2026-53442_CVE-2026-53442

Jenkins 2.567 and earlier, LTS 2.555.2 and earlier does not encrypt secrets from POST config.xml submissions before storing them in job configurati...

Jenkins Project Jenkins 2.568 CVE