Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.3 CVE-2026-48141

Memory leak in NI grpc-device BeginSidebandStream_CVE-2026-48141

There is a memory leak in NI grpc-device BeginSidebandStream that may result in denial of service due to memory exhaustion.  This affects NI grpc-d...

NI grpc-device CVE
MEDIUM 6.5 CVE-2026-48140

Unchecked enum cast vulnerability in NI grpc-device in BeginSidebandStream_CVE-2026-48140

There is an unchecked enum cast vulnerability in NI grpc-device BeginSidebandStream that may allow an attacker to trigger invalid enum states and u...

NI grpc-device CVE
HIGH 7.5 CVE-2026-48139

NULL pointer dereference vulnerability in NI grpc-device data moniker service_CVE-2026-48139

There is a NULL pointer dereference vulnerability in NI grpc-device in the data moniker service that may allow an attacker to cause a denial of ser...

NI grpc-device CVE
HIGH 7.5 CVE-2026-48138

Out-of-bounds read vulnerability in the NI grpc-device streaming API_CVE-2026-48138

There is an out-of-bounds read vulnerability in the NI grpc-device streaming API due to a missing bounds check that may result in a denial of servi...

NI grpc-device CVE
CRITICAL 9.1 CVE-2026-48137

Untrusted pointer dereference in NI grpc-device sideband streaming API_CVE-2026-48137

There is an untrusted pointer dereference vulnerability in the NI grpc-device sideband streaming API that may allow an attacker to cause an arbitra...

NI grpc-device CVE
MEDIUM 6.3 CVE-2026-47341

Apache APISIX: Session replay issue in hmac-auth_CVE-2026-47341

Authentication Bypass by Capture-replay vulnerability in Apache APISIX. Attacker can benefit from certain configurations in hmac-auth to re-use a ...

Apache Software Foundation Apache APISIX 3.11.0 CVE
MEDIUM 5.3 CVE-2026-47339

Apache APISIX: authz-casdoor incorrect session sharing_CVE-2026-47339

Incorrect Authorization vulnerability in Apache APISIX. An attacker can capitalise on authz-casdoor plugin under default configuration to authenti...

Apache Software Foundation Apache APISIX 2.14.1 CVE
LOW 2.1 CVE-2026-44915

Apache APISIX: Cas-auth plugin open redirect via unsanitized cookie value_CVE-2026-44915

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Apache APISIX. The default configuration of cas-auth in Apache APISIX is vuln...

Apache Software Foundation Apache APISIX 3.0.0 CVE
MEDIUM 5.3 CVE-2026-44087

Apache APISIX: Openid-connect plugin Identity Header Spoofing_CVE-2026-44087

Insufficient Verification of Data Authenticity vulnerability in Apache APISIX. The openid-connect plugin under default configuration has an attack...

Apache Software Foundation Apache APISIX 2.3 CVE
LOW 2.3 CVE-2026-44046

Apache APISIX: wolf-rbac plugin Identity Spoofing_CVE-2026-44046

Use of Less Trusted Source vulnerability in Apache APISIX. Attacker can take advantage of wolf-rbac plugin under default configuration to potentia...

Apache Software Foundation Apache APISIX 1.2.0 CVE