Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.5 CVE-2026-50885

CVE-2026-50885_CVE-2026-50885

Incorrect access control in the share-based read endpoints of Sismics Docs (Teedy) v1.11 allow unauthorized attackers to access sensitive endpoints...

n/a n/a n/a CVE
CRITICAL 9.6 CVE-2026-50883

CVE-2026-50883_CVE-2026-50883

An HTML injection vulnerability in the /src/highlight.rs component of matze wastebin v3.4.1 allows attackers to execute arbitrary scripts via a cra...

matze matze wastebin v3.4.1 CVE
HIGH 7.5 CVE-2026-50882

CVE-2026-50882_CVE-2026-50882

An issue in the /api/v0/pastes endpoint of anna-is-cute paste v0.1.1 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

n/a n/a n/a CVE
CRITICAL 9.8 CVE-2026-50872

CVE-2026-50872_CVE-2026-50872

An issue in the loopback request handling component of fossar selfoss v2.20-SNAPSHOT allows attackers to execute arbitrary commands and obtain sens...

fossar selfoss v2.20-SNAPSHOT CVE
CRITICAL 9.8 CVE-2026-50871

CVE-2026-50871_CVE-2026-50871

An OS command injection vulnerability in the media archiving and export pipeline component of kanishka-linux Reminiscence v0.3.0 allows attackers t...

kanishka-linux Reminiscence v0.3.0 CVE
HIGH 7.5 CVE-2026-50870

CVE-2026-50870_CVE-2026-50870

An information disclosure vulnerability in the configuration endpoint of Ben Busby whoogle-search v1.2.3 allows attackers to obtain sensitive infor...

n/a n/a n/a CVE
CRITICAL 9.8 CVE-2026-50869

CVE-2026-50869_CVE-2026-50869

An issue in the api/plugin.php component of Bludit v3.19.0 allows attackers to execute a directory traversal via supplying a crafted request.

Bludit Team Bludit v3.19.0 CVE
CRITICAL 9.1 CVE-2026-45390

CVE-2026-45390_CVE-2026-45390

In OCaml-tar before 3.4.0, a crafted archive with ../ path segments in its name allows escaping the current working directory. This is not desired ...

OCaml OCaml-tar before 3.4.0 CVE
CRITICAL 9.1 CVE-2026-45389

CVE-2026-45389_CVE-2026-45389

In OCaml-TLS before 2.1.0, the server implementation does insufficient checks of the certificate provided by the client (when doing client authenti...

OCaml OCaml-TLS before 2.1.0 CVE
CRITICAL 9.1 CVE-2026-45388

CVE-2026-45388_CVE-2026-45388

In OCaml-TLS before 2.1.0, the client implementation does insufficient checks of the certificate provided by the server, which allows impersonation...

OCaml-TLS Project OCaml-TLS < 2.1.0 CVE