Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.5 CVE-2026-35068

CVE-2026-35068_CVE-2026-35068

Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') v...

Dell PowerFlex CVE
HIGH 7.8 CVE-2026-32652

CVE-2026-32652_CVE-2026-32652

Dell AIOps Collector versions prior to 1.18.3 contain a "Use of Default Credentials" vulnerability. A low privileged attacker with console access c...

Dell AIOps CVE
MEDIUM 6 CVE-2026-20246

Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability_CVE-2026-20246

A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate privileges on an aff...

Cisco Cisco Umbrella Insights Virtual Appliance 2.6.0 CVE
MEDIUM 6.3 CVE-2026-20220

Cisco Crosswork Network Controller Remote Code Execution Vulnerability_CVE-2026-20220

A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, remote attacker to e...

Cisco Cisco Crosswork Network Change Automation 3.0.0 CVE
HIGH 7.5 CVE-2026-20190

Cisco Identity Services Engine Information Disclosure Vulnerability_CVE-2026-20190

A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive information on an affected device. Th...

Cisco Cisco Identity Services Engine Software 3.4.0 CVE
CRITICAL 9.1 CVE-2026-20181

Cisco Identity Services Engine Remote Code Execution Vulnerability_CVE-2026-20181

A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating sy...

Cisco Cisco Identity Services Engine Software 3.1.0 CVE
MEDIUM 5.5 CVE-2026-1288

RFA File Parsing Vulnerability in Autodesk Revit_CVE-2026-1288

A maliciously crafted RFA file, when converted to FormIt via “Convert RFA to FormIt” in Autodesk Revit, can force a NULL Pointer Dereference vulner...

Autodesk Revit 2027.0.0 CVE
MEDIUM 4.3 CVE-2026-12515

Katello: missing repository authorization in content_uploads exposes cross-product content existence_CVE-2026-12515

A flaw was found in Katello's of Red Hat Satellite. A content upload functionality where insufficient authorization checks in the ContentUploadsCon...

Red Hat Red Hat Hardened Images CVE
HIGH 7.5 CVE-2026-12151

undici WebSocket client vulnerable to denial of service via fragment count bypass_CVE-2026-12151

Impact: The undici WebSocket client enforces maxPayloadSize on the cumulative byte count of fragments in a message but does not enforce a limit on ...

undici undici CVE
CRITICAL 9.3 CVE-2025-71325

picklescan – Detection Bypass via STACK_GLOBAL Opcode Parsing Logic Flaw_CVE-2025-71325

picklescan before 0.0.27 contains a parsing logic error in the _list_globals function when handling STACK_GLOBAL opcodes, failing to track argument...

picklescan picklescan CVE