Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.7 CVE-2026-2827

Open User Map PRO <= 1.4.31 - Unauthenticated Stored Cross-Site Scripting via 'oum_location_notification'_CVE-2026-2827

The Open User Map PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'oum_location_notification' parameter in versions u...

100plugins Open User Map PRO CVE
CRITICAL 9.8 CVE-2026-35273

CVE-2026-35273_CVE-2026-35273

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Management). Supported versions...

Oracle Corporation PeopleSoft Enterprise PeopleTools 8.61, 8.62 CVE
HIGH 8.1 F11C41A7-4DE7-

Exploit for Type Confusion in Google Chrome_F11C41A7-4DE7-55FE-9CEE-BFF8F14A09D7

SSD Advisory – Google Chrome RCE Source: ssd-disclosure.com/ssd-advisory-google-chrome-rce Summary A critical remote code execution vulnerability i...

N/A N/A GITHUBEXPLOIT
NONE TRENDMICROBLOG:...

GenAI Is Both Hunter and Hunted at Pwn2Own Berlin 2026_TRENDMICROBLOG:AA4A788A037B4D31219E33496D242017

This year’s Pwn2Own competition in Berlin revealed just how much of the AI stack remains exposed -- and the gap between what these tools promise an...

N/A N/A TRENDMICROBLOG
HIGH 7.6 98D7FC0C-3955-

Exploit for Improper Authentication in Pocketbase_98D7FC0C-3955-56D1-8337-74FE94A341E4

CVE-2026-44166 — PocketBase OAuth2 Account Pre-Hijacking Self-contained lab + writeup for CVE-2026-44166: an attacker with any account on a configu...

N/A N/A GITHUBEXPLOIT
NONE A80B7830-0196-

Exploit for CVE-2026-28699_A80B7830-0196-594A-AA8C-1EF928459222

CVE-2026-28699 — Gitea OAuth2 Scope Bypass via HTTP Basic Auth Self-contained lab + writeup for CVE-2026-28699: a Gitea OAuth2 access token scoped ...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 BD6FBA2A-C9D0-

0day_BD6FBA2A-C9D0-5CA6-95F7-FEE1045D9EEC

0day Due to well-known reasons, the original repository was deleted, but a copy remains. Forking and stargazing counts as zero. However, rest assur...

N/A N/A GITHUBEXPLOIT
MEDIUM 6.2 CVE-2026-53465

ImageMagick: Heap Buffer Over-Write in SF3 encoder when writing multi-frame image_CVE-2026-53465

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-25, a crafted multi-frame can...

ImageMagick ImageMagick < 7.1.2-25 CVE
MEDIUM 4 CVE-2026-53464

ImageMagick: Memory Leak in wand option parser when providing invalid arguments_CVE-2026-53464

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-25, when providing invalid op...

ImageMagick ImageMagick < 7.1.2-25 CVE
MEDIUM 4.3 CVE-2026-53463

ImageMagick: Null Pointer Dereference in distort operation when passing incorrect arguments_CVE-2026-53463

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when passi...

ImageMagick ImageMagick < 6.9.13-50 CVE