Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.3 CVE-2026-12212

hcengineering Huly Platform RPC operations.ts getMailboxSecret access control_CVE-2026-12212

A vulnerability has been found in hcengineering Huly Platform up to 0.7.0. Affected is the function getMailboxSecret of the file server/account/src...

hcengineering Huly Platform 0.1 CVE
MEDIUM 5.1 CVE-2026-12223

Yealink SIP-T46U Web FastCGI Service tftpuploadiperf mod_webd.TFTPUploadIperf command injection_CVE-2026-12223

A vulnerability was identified in Yealink SIP-T46U 108.86.0.118. Affected by this vulnerability is the function mod_webd.TFTPUploadIperf of the fil...

Yealink SIP-T46U 108.86.0.118 CVE
HIGH 8.6 CVE-2026-12222

Yealink SIP-T46U Web FastCGI Service bttest mod_webd.BlueToothTest stack-based overflow_CVE-2026-12222

A vulnerability was determined in Yealink SIP-T46U 108.86.0.118. Affected is the function mod_webd.BlueToothTest of the file /api/inner/bttest of t...

Yealink SIP-T46U 108.86.0.118 CVE
HIGH 8.6 CVE-2026-12221

Yealink SIP-T46U Firmware Chunk Upload upgrade sprintf stack-based overflow_CVE-2026-12221

A vulnerability was found in Yealink SIP-T46U 108.86.0.118. This impacts the function sprintf of the file /api/upgrade/upgrade of the component Fir...

Yealink SIP-T46U 108.86.0.118 CVE
HIGH 8.6 CVE-2026-12220

Yealink SIP-T46U Firmware Chunk Upload handler accupgradebychunk mod_upgrade.SparePartsUpload stack-based overflow_CVE-2026-12220

A vulnerability has been found in Yealink SIP-T46U 108.86.0.118. This affects the function mod_upgrade.SparePartsUpload of the file /api/upgrade/ac...

Yealink SIP-T46U 108.86.0.118 CVE
MEDIUM 5.3 CVE-2026-12219

Yealink SIP-T46U Web FastCGI Service start mod_diagnose.CommandShellByType command injection_CVE-2026-12219

A flaw has been found in Yealink SIP-T46U 108.86.0.118. The impacted element is the function mod_diagnose.CommandShellByType of the file /api/diagn...

Yealink SIP-T46U 108.86.0.118 CVE
HIGH 8.6 CVE-2026-12218

Yealink SIP-T46U Web FastCGI Service beforewifitest StartReportInformation stack-based overflow_CVE-2026-12218

A vulnerability was detected in Yealink SIP-T46U 108.87.50.1. The affected element is the function StartReportInformation of the file /api/inner/be...

Yealink SIP-T46U 108.87.50.1 CVE
HIGH 8.1 D84F8A25-5F36-

Exploit for CVE-2026-10795_D84F8A25-5F36-52AC-B454-01D5ECE7059F

CVE Lab: CVE-2026-10795 - UpdraftPlus UpdraftCentral RPC Authentication Bypass Chained to Plugin Installation Executive Summary This repository con...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.1 CVE-2026-12211

Intelbras iNVU 7016 FT Web syslog path traversal_CVE-2026-12211

A flaw has been found in Intelbras iNVU 7016 FT 3.004.00IB000.0.T Build 2025-09-26. This impacts an unknown function of the file /RPC2_Loadfile/sys...

Intelbras iNVU 7016 FT 3.004.00IB000.0.T Build 2025-09-26 CVE
MEDIUM 5.3 CVE-2026-12210

universal-tool-calling-protocol python-utcp utcp-gql/utcp-websocket server-side request forgery_CVE-2026-12210

A vulnerability was detected in universal-tool-calling-protocol python-utcp 1.1.0. This affects an unknown function of the component utcp-gql/utcp-...

universal-tool-calling-protocol python-utcp 1.1.0 CVE