Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.3 CVE-2026-34117

Guardian Language-System Unauthenticated OS Command Injection via id Parameter in text_to_subtitles.php_CVE-2026-34117

Guardian language-system passes the id GET parameter directly into a PHP exec() call in text_to_subtitles.php (line 19) without sanitization: exec(...

guardian language-system CVE
CRITICAL 9.3 CVE-2026-34116

Guardian Language-System Unauthenticated OS Command Injection via id Parameter in transcribe.php_CVE-2026-34116

Guardian language-system passes the id GET parameter directly into a PHP exec() call in transcribe.php (line 15) without sanitization: exec(\"php j...

guardian language-system CVE
CRITICAL 9.3 CVE-2026-34115

Guardian Language-System Unauthenticated OS Command Injection via id Parameter in transcribe_amazon.php_CVE-2026-34115

Guardian language-system passes the id GET parameter directly into a PHP exec() call in transcribe_amazon.php (line 15) without sanitization: exec(...

guardian language-system CVE
CRITICAL 9.3 CVE-2026-34114

Guardian Language-System Unauthenticated OS Command Injection via id Parameter in translate_text.php_CVE-2026-34114

Guardian language-system passes the id GET parameter directly into a PHP exec() call in translate_text.php (line 18) without sanitization: exec(\"p...

guardian language-system CVE
CRITICAL 9.3 CVE-2026-34113

Guardian Language-System Unauthenticated OS Command Injection via id Parameter in speech_text.php_CVE-2026-34113

Guardian language-system passes the id GET parameter directly into a PHP exec() call in speech_text.php (line 18) without sanitization: exec(\"php ...

guardian language-system CVE
NONE HACKREAD:DEEC6B...

Fake “Google Notes” Browser Extension Caught Swapping Crypto Wallet Addresses_HACKREAD:DEEC6B233FE1EBE6C0095D8C38A8E349

McAfee says a Google Notes browser extension is replacing copied crypto payment details, putting wallet transfers at risk for Chrome, Brave, and Mi...

N/A N/A HACKREAD
NONE THN:A535E70D749...

SEO-Poisoned Software Sites Abuse ScreenConnect to Deploy AsyncRAT_THN:A535E70D7494354C6ABC37D083B4AE7E

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhbKfADFEhazeaRztmVJkTBhFqZxALUDBwsOV_25bWjZ6Qm3pCBoSSawssWOOJC2ZQ7M6hrUDRXLfR5gcpWRk...

N/A N/A THN
CRITICAL 9.3 CVE-2026-34111

Guardian Language-System Unauthenticated OS Command Injection via id Parameter in speechmac_text.php_CVE-2026-34111

Guardian language-system passes the id GET parameter directly into a PHP exec() call in speechmac_text.php (line 18) without sanitization: exec(\"p...

guardian language-system CVE
CRITICAL 9.3 CVE-2026-34110

Guardian Language-System Unauthenticated OS Command Injection via id Parameter in complex_start.php_CVE-2026-34110

Guardian language-system passes the id GET parameter directly into a PHP exec() call in complex_start.php (line 14) without sanitization: exec(\"ph...

guardian language-system CVE
HIGH 8.8 5C4631B4-82A2-

Exploit for Type Confusion in Google Chrome_5C4631B4-82A2-5EFA-A0FE-D1C3DD3820CD

No description provided...

N/A N/A GITHUBEXPLOIT