Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.5 CVE-2026-11819

Community.general: community.general keyring_info — os keyring passphrase returned in plaintext_CVE-2026-11819

Module: plugins/modules/keyring_info.py CVSS 3.1: 5.5 MEDIUM — AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Issue: The module retrieves a passphrase fro...

Red Hat Red Hat Enterprise Linux 10 CVE
MEDIUM 5.1 CVE-2025-64105

FOSSBilling: IDOR Vulnerability in Support Ticket Creation_CVE-2025-64105

FOSSBilling is a billing and client management system that automates invoicing, payments, and communication for online service businesses. Versions...

FOSSBilling FOSSBilling >= 0.6.21, < 0.8.0 CVE
MEDIUM 6.5 CVE-2026-52673

CVE-2026-52673_CVE-2026-52673

SQL Injection vulnerability in Cboard v.0.4.2 and before allows a remote attacker to execute arbitrary code via the getDimensionsValues component

n/a n/a n/a CVE
MEDIUM 6.5 CVE-2025-55639

CVE-2025-55639_CVE-2025-55639

GPAC MP4Box v2.4 was discovered to contain a NULL pointer dereference in the gf_isom_add_track_kind() function at isomedia/isom_write.c. This vulne...

n/a n/a n/a CVE
MEDIUM 5.7 CVE-2026-56117

dhcpcd Heap Use-After-Free via Control Socket Handling_CVE-2026-56117

dhcpcd through 10.3.2, fixed in commit 78ea09e, contains a heap use-after-free vulnerability in the control socket handling within src/control.c th...

NetworkConfiguration dhcpcd CVE
MEDIUM 6 CVE-2026-56115

dhcpcd Stack Out-of-Bounds Write in dhcp6_makemessage()_CVE-2026-56115

dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c t...

NetworkConfiguration dhcpcd CVE
MEDIUM 6 CVE-2026-56114

dhcpcd Stack Out-of-Bounds Write in dhcp6_makemessage()_CVE-2026-56114

dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c t...

NetworkConfiguration dhcpcd CVE
MEDIUM 6 CVE-2026-56113

dhcpcd Heap Use-After-Free in dhcp6_deprecateaddrs via DHCPv6 RENEW_CVE-2026-56113

dhcpcd through 10.3.2, fixed in commit 5733d3c, contains a heap use-after-free vulnerability that allows unauthenticated same-link attackers to cra...

NetworkConfiguration dhcpcd CVE
MEDIUM 6.1 CVE-2026-55423

Langflow: Logout button does not clear session_CVE-2026-55423

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.7.0, the logout button does not clear the session. The pr...

langflow-ai langflow < 1.7.0 CVE
MEDIUM 6.3 CVE-2026-54308

n8n: Missing Token Validation on Microsoft Agent 365 Trigger Node_CVE-2026-54308

n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, the MicrosoftAgent365Trigger and StripeTrigger node did not validat...

n8n-io n8n >= 2.26.0, < 2.26.2 CVE