Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.9 CVE-2026-12775

Montodel House-Rental-Management login.php sql injection_CVE-2026-12775

A vulnerability was detected in Montodel House-Rental-Management up to 90010017b81265eb1ef3810268909f7719a33863. Affected by this issue is some unk...

Montodel House-Rental-Management 90010017b81265eb1ef3810268909f7719a33863 CVE
NONE 0CF48E28-9697-

vulntraceai-plugin_0CF48E28-9697-5A24-B8B7-18B54F21B8B3

VulntraceAI — plugin & CLI Evidence-gated vulnerability research, in your terminal. No app, no account, no upload. VulntraceAI drives your own codi...

N/A N/A GITHUBEXPLOIT
NONE A86132C1-EDB2-

xss-sql_A86132C1-EDB2-53AD-B3CC-5097A7F54FB2

No description provided...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.3 CVE-2026-12772

BerriAI litellm PROXY_ADMIN database API Key Generator login_utils.py authenticate_user session expiration_CVE-2026-12772

A security flaw has been discovered in BerriAI litellm up to 1.82.2. This impacts the function authenticate_user of the file litellm/proxy/auth/log...

BerriAI litellm 1.82.0 CVE
MEDIUM 5.3 CVE-2026-12774

BerriAI litellm MCP Server Connection Testing rest_endpoints.py _execute_with_mcp_client server-side request forgery_CVE-2026-12774

A security vulnerability has been detected in BerriAI litellm up to 1.82.2. Affected by this vulnerability is the function _execute_with_mcp_client...

BerriAI litellm 1.82.0 CVE
MEDIUM 6.9 CVE-2026-12773

BerriAI litellm MCP Proxy user_api_key_auth_mcp.py UserAPIKeyAuth improper authentication_CVE-2026-12773

A weakness has been identified in BerriAI litellm up to 1.59.8. Affected is the function UserAPIKeyAuth of the file litellm/proxy/_experimental/mcp...

BerriAI litellm 1.59.0 CVE
MEDIUM 5.3 CVE-2026-12770

BerriAI litellm Admin Key key_management_endpoints.py improper authorization_CVE-2026-12770

A vulnerability was determined in BerriAI litellm up to 1.63.1. The impacted element is an unknown function of the file litellm/proxy/management_en...

BerriAI litellm 1.63.0 CVE
LOW 2.3 CVE-2026-12771

BerriAI litellm M2M JWT user_api_key_auth.py improper authorization_CVE-2026-12771

A vulnerability was identified in BerriAI litellm up to 1.82.2. This affects an unknown function of the file litellm/proxy/auth/user_api_key_auth.p...

BerriAI litellm 1.82.0 CVE
NONE B9CE5CD6-EC89-

ai-goat-ai-vulnerability-exploits-collection_B9CE5CD6-EC89-5FA8-B3CB-408F75A699C5

AI GOAT - AI Vulnerability & Exploits Collection ⚠️ A deliberately-vulnerable test corpus. Every file in this repository is intentionally insecure ...

N/A N/A GITHUBEXPLOIT
LOW 3.7 CVE-2026-56355

CVE-2026-56355_CVE-2026-56355

GNU Savannah Administration Savane through 3.17 uses untrusted data as part of authorization.

GNU Savane 3.14 CVE