Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.1 CVE-2026-11373

Net::Statsite::Client versions through 1.1.0 for Perl allow metric injections_CVE-2026-11373

Net::Statsite::Client versions through 1.1.0 for Perl allow metric injections. Net::Statsite::Client is a client for the statsite protocol, which ...

JASEI Net::Statsite::Client CVE
LOW 2.3 CVE-2026-9610

Multiple Vulnerabilities in IBM Datacap_CVE-2026-9610

IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 exposes resources or functionality that isn't linked in the U...

IBM Datacap 9.1.7 CVE
MEDIUM 5.9 CVE-2026-9320

IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities_CVE-2026-9320

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are vulnerable to a denial o...

IBM WebSphere Application Server 9.0.0 CVE
HIGH 8.1 CVE-2026-9072

IBM i is Affected By Denial of Service, HTTP Request Smuggling, and Remote Code Execution Vulnerabilities in IBM WebSphere Application Server Liberty [, , , , ]_CVE-2026-9072

IBM i 7.6, 7.5, 7.4, and 7.3, IBM WebSphere Application Server, and IBM WebSphere Application Server Liberty - when using Intelligent Management wi...

IBM i 7.6.0 CVE
HIGH 7.5 CVE-2026-9071

IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by Uncontrolled Resource Consumption_CVE-2026-9071

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are vulnerable to a denial o...

IBM WebSphere Application Server 9.0.0 CVE
HIGH 7.4 CVE-2026-9006

IBM WebSphere Application Server is affected by server-side request forgery_CVE-2026-9006

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side request forgery (SSRF) with the Ajax Proxy configured. This may allow an...

IBM WebSphere Application Server 9.0 CVE
MEDIUM 6.9 CVE-2026-8934

Cross-Project Information Leakage in Google App Engine UI_CVE-2026-8934

A Missing Authorization vulnerability in a GraphQL private API operation of the Google App Engine section of the Cloud Console allows an unauthenti...

Google Cloud Cloud Console UIs CVE
HIGH 7.5 CVE-2026-8858

IBM i is Affected By Denial of Service, HTTP Request Smuggling, and Remote Code Execution Vulnerabilities in IBM WebSphere Application Server Liberty [, , , , ]_CVE-2026-8858

IBM i 7.6, 7.5, 7.4, and 7.3, IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to remote code execution...

IBM i 7.6.0 CVE
LOW 3.8 CVE-2026-8823

User Manager can demote bot accounts to guest without bot-management permission_CVE-2026-8823

Mattermost versions 11.7.x

Mattermost Mattermost 11.7.0 CVE
HIGH 7.4 CVE-2026-8646

IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities_CVE-2026-8646

IBM WebSphere Application Server 9.0 and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are vulnerable to HTTP reques...

IBM WebSphere Application Server 9.0.0 CVE