Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2026-13489

78 xiaozhi-esp32 MCP Response mcp_server.cc ParseMessage improper synchronization_CVE-2026-13489

A weakness has been identified in 78 xiaozhi-esp32 up to 2.2.6. Affected by this issue is the function ParseMessage of the file main/mcp_server.cc ...

78 xiaozhi-esp32 2.2.0 CVE
MEDIUM 5.3 CVE-2026-13496

itsourcecode Hospital Management System ajaxmedicine.php sql injection_CVE-2026-13496

A vulnerability was found in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /ajaxmedicine.php...

itsourcecode Hospital Management System 1.0 CVE
MEDIUM 5.1 CVE-2026-13495

itsourcecode Hospital Management System adminprofile.php sql injection_CVE-2026-13495

A vulnerability has been found in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /adminprofile.php. The m...

itsourcecode Hospital Management System 1.0 CVE
LOW 2.3 CVE-2026-13493

AIDC-AI ComfyUI-Copilot Workflow Checkpoint Restore conversation_api.py resource injection_CVE-2026-13493

A flaw has been found in AIDC-AI ComfyUI-Copilot up to 2.0.28. This issue affects some unknown processing of the file backend/controller/conversati...

AIDC-AI ComfyUI-Copilot 2.0.0 CVE
MEDIUM 6.9 CVE-2026-13486

SourceCodester Class and Exam Timetabling System preview6.php sql injection_CVE-2026-13486

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/6.php. This impacts an unknown function of the file /preview...

SourceCodester Class and Exam Timetabling System 1.0 CVE
MEDIUM 6.9 CVE-2026-13485

SourceCodester Class and Exam Timetabling System preview.php sql injection_CVE-2026-13485

A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /preview.php. Perfo...

SourceCodester Class and Exam Timetabling System 1.0 CVE
MEDIUM 6.9 CVE-2026-13488

SourceCodester Class and Exam Timetabling System preview7.php sql injection_CVE-2026-13488

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0/7.php. Affected by this vulnerability is an unknown fun...

SourceCodester Class and Exam Timetabling System 1.0 CVE
MEDIUM 6.9 CVE-2026-13487

SourceCodester Class and Exam Timetabling System archive.php sql injection_CVE-2026-13487

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /archive.php. T...

SourceCodester Class and Exam Timetabling System 1.0 CVE
NONE 3CCC5B18-4CA6-

WR41TH_3CCC5B18-4CA6-591D-AD95-F40F8D11244E

WRAITH Offensive Security Framework — an all-in-one, menu-driven recon & exploitation toolkit for Linux. ⚠ For authorized security testing only. Ev...

N/A N/A GITHUBEXPLOIT
LOW 2.3 CVE-2026-13484

MLflow Experiment-scoped Label Schema CRUD API authorization_CVE-2026-13484

A vulnerability has been found in MLflow up to 4666cffc7912ea606d592fc38d6a75e2935f65e7. The impacted element is an unknown function of the compone...

n/a MLflow 4666cffc7912ea606d592fc38d6a75e2935f65e7 CVE