CVE-2026-39987 - a full PTY shell Unauthenticated Stored Cross-Site Scripting Severity: CRITICAL CVSS: 9.8 Impact: Confidentiality, Integrity, Avai...
CVE-2026-34156 – NocoBase Sandbox Escape RCE -orange Authenticated Remote Code Execution in NocoBase versions ≤ 2.0.26 via workflow sandbox escape....
CVE-2026-23744 --- Description MCPJam inspector is a local-first development platform for MCP servers. The versions =1.4.2 are vulnerable to remote...
The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to privilege escalation via account takeover in ...
WP Maps Pro Unauthenticated Stored Cross-Site Scripting CVE-2026-8732 Overview A CRITICAL vulnerability, classified as CVE-2026-8732, has been iden...
No description provided...
Langroid is a framework for building large-language-model-powered applications. Prior to version 0.63.0, SQLChatAgent executes SQL produced by an L...
Cloud Foundry UAA versions v76.12.0 through v78.12.0 are vulnerable to a private key exposure. The server contains a vulnerability where EC (Ellipt...
Casdoor versions 2.362.0 and earlier contain a vulnerability involving unverified email binding that may enable account takeover. The getExistUserB...
IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to potential remote code execution due to deserialization of untrusted data via JAX-WS ...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.