Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.9 CVE-2026-11450

GL.iNet GL-MT3000 Path Normalization dlopen command injection_CVE-2026-11450

A vulnerability was detected in GL.iNet GL-MT3000 4.4.5. This affects the function dlopen in the library /usr/lib/oui-httpd/rpc/ of the component P...

GL.iNet GL-MT3000 4.4.5 CVE
MEDIUM 5.3 CVE-2026-11449

GL.iNet GL-MT3000 LuCI JSON-RPC rpc rpc_sys command injection_CVE-2026-11449

A security vulnerability has been detected in GL.iNet GL-MT3000 4.4.5. The impacted element is the function rpc_sys of the file /cgi-bin/luci/rpc o...

GL.iNet GL-MT3000 4.4.5 CVE
MEDIUM 5.1 CVE-2026-11448

GL.iNet GL-MT3000 Minidlna Service rpc realpath command injection_CVE-2026-11448

A weakness has been identified in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function realpath of the file /rpc of the component Mi...

GL.iNet GL-MT3000 4.4.0 CVE
HIGH 8.4 CVE-2026-26422

CVE-2026-26422_CVE-2026-26422

clash-verge-service-ipc before 2.3.0 has a world-reachable IPC endpoint, leading to local privilege escalation.

Clash Verge Rev clash-verge-service-ipc CVE
HIGH 8.3 CVE-2026-11012

CVE-2026-11012_CVE-2026-11012

Use after free in Serial in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to p...

Google Chrome 149.0.7827.53 CVE
HIGH 8.3 CVE-2026-11010

CVE-2026-11010_CVE-2026-11010

Use after free in WebShare in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to...

Google Chrome 149.0.7827.53 CVE
CRITICAL 9.6 CVE-2026-11009

CVE-2026-11009_CVE-2026-11009

Use after free in USB in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a cr...

Google Chrome 149.0.7827.53 CVE
MEDIUM 6.5 CVE-2026-11006

CVE-2026-11006_CVE-2026-11006

Out of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a crafted ...

Google Chrome 149.0.7827.53 CVE
MEDIUM 5.3 CVE-2026-11004

CVE-2026-11004_CVE-2026-11004

Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain po...

Google Chrome 149.0.7827.53 CVE
HIGH 8.3 CVE-2026-11002

CVE-2026-11002_CVE-2026-11002

Use after free in Autofill in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentiall...

Google Chrome 149.0.7827.53 CVE