Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.3 CVE-2026-56378

ImageMagick – Heap Out-of-Bounds Read in PCD Decoder_CVE-2026-56378

ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file c...

ImageMagick ImageMagick CVE
MEDIUM 6.3 CVE-2026-56367

ImageMagick – Heap Out-of-Bounds Read in PSB RLE Decoding_CVE-2026-56367

ImageMagick before 7.1.2-15 and 6.9.x before 6.9.13-40 contains an integer overflow in the PSB (PSD v2) RLE decoding path (ReadPSDChannelRLE in cod...

ImageMagick ImageMagick CVE
MEDIUM 6.9 CVE-2026-56316

Cap-go – Job Existence Oracle via Unauthenticated OPTIONS /build/upload/:jobId/*_CVE-2026-56316

Cap-go before 12.128.2 contains an information disclosure vulnerability in the OPTIONS /build/upload/:jobId/* endpoint that allows unauthenticated ...

Cap-go capgo CVE
MEDIUM 6.9 CVE-2026-56299

Capgo – Denial of Service via Unauthenticated OPTIONS Request to /build/upload Endpoint_CVE-2026-56299

Capgo before 12.128.2 contains an authentication bypass vulnerability in the /build/upload/:jobId/* endpoint that allows unauthenticated attackers ...

Capgo Capgo CVE
MEDIUM 6.8 CVE-2026-56236

Capgo CLI – Arbitrary File Overwrite via Symlink-Following in Local Credential Operations_CVE-2026-56236

Capgo CLI before 12.128.2 contains arbitrary file overwrite vulnerabilities in login and build credentials operations that follow symlinks without ...

capgo cli CVE
MEDIUM 6.4 C40A1F53-C56D-

nuclei-template-creator_C40A1F53-C56D-57E9-848D-B707E7916E4C

Nuclei Template Creator English | 中文 A comprehensive skill for creating high-quality Nuclei security scanning templates across all supported prot...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.3 AE467228-AC78-

Exploit for Improper Access Control in Joomla Joomla\!_AE467228-AC78-5F1A-93CF-D381D698C936

No description provided...

N/A N/A GITHUBEXPLOIT
MEDIUM 6.9 CVE-2026-12795

BerriAI litellm SSO Debug Flow ui_sso.py json.dumps missing authentication_CVE-2026-12795

A vulnerability was determined in BerriAI litellm up to 1.82.2. This affects the function json.dumps of the file litellm/proxy/management_endpoints...

BerriAI litellm 1.82.0 CVE
MEDIUM 5.1 CVE-2026-12789

ILIAS Learning Management System Learning Progress Tracking class.ilTrQuery.php executeQueries sql injection_CVE-2026-12789

A vulnerability was identified in ILIAS Learning Management System 11.0. This issue affects the function ilTrQuery::executeQueries of the file comp...

ILIAS Learning Management System 11.0 CVE
MEDIUM 5.3 CVE-2026-12788

zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 XML Parser import xml external entity reference_CVE-2026-12788

A vulnerability was determined in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0. This vulnerability affe...

zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0 CVE