Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.3 22CFEBF4-738A-

Exploit for Missing Authorization in Plane_22CFEBF4-738A-52AD-B1A9-E066D3D33C80

CVE-2026-46558 Plane’s V2 asset subsystem trusted workspace slugs and asset UUIDs without enforcing the right membership checks, which let one auth...

N/A N/A GITHUBEXPLOIT
NONE THN:73F078ED386...

New Linux pedit COW Exploit Enables Root Access by Poisoning Cached Binaries_THN:73F078ED386CEDEB92973C14C2CA14DB

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEj0PC1aWOiorYx2AGD7fl-IVefJBKPJvjy7sMo5MURoMlaq492QcSdpSqqdGZRZk3u3e6BMS7qVzrJXBuWk-k...

N/A N/A THN
CRITICAL 9.3 THN:051D862466E...

CISA Adds Exploited PTC Windchill RCE Flaw to KEV as Web Shell Attacks Continue_THN:051D862466EBE7A5DE6BB7DD92EA2EA6

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhzGOpsiL9b-uwhocEgzazTFR251KJL6pnZAVCmzty7Nx0uR-vZ9r2-WP95IrRaKJtFoUxmBFbqrkt31Yn2MT...

N/A N/A THN
HIGH 7.5 CVE-2026-13283

CVE-2026-13283_CVE-2026-13283

Use after free in AdFilter in Google Chrome on Android prior to 149.0.7827.201 allowed a remote attacker who convinced a user to engage in specific...

Google Chrome 149.0.7827.201 CVE
HIGH 7.5 CVE-2026-10823

YMC Smart Filter < 3.11.3 - Unauthenticated Private/Draft Post Disclosure_CVE-2026-10823

The YMC Filter WordPress plugin before 3.11.3 does not properly authorize access to one of its REST API endpoints and does not validate a user-supp...

Unknown YMC Filter CVE
MEDIUM 5.3 CVE-2025-10268

Printcart Web to Print Product Designer for WooCommerce <= 2.4.8 - Unauthenticated Folder Content Disclosure via Path Traversal_CVE-2025-10268

The Printcart Web to Print Product Designer for WooCommerce WordPress plugin through 2.4.8 is vulnerable to path traversal which makes it possible ...

Unknown Printcart Web to Print Product Designer for WooCommerce CVE
MEDIUM 6.5 CVE-2026-57620

WordPress Exclusive Addons Elementor plugin <= 2.7.9.8 - Cross Site Scripting (XSS) vulnerability_CVE-2026-57620

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor allow...

Tim Strifler Exclusive Addons Elementor n/a CVE
HIGH 7.7 CVE-2026-57920

CVE-2026-57920_CVE-2026-57920

Peplink InControl 2 through 2.14.2 before 2026-06-03 allows use of a semicolon to bypass access-control rules for certain /rest/o/{orgId} endpoints.

Peplink InControl CVE
HIGH 8 CVE-2026-40711

CVE-2026-40711_CVE-2026-40711

Dell Dell Container Storage Modules, version(s) csi-powerstore v2.16.0, csi-unity v2.16.0, csi-powerflex v2.16.0, csi-powermax v2.16.0, contain(s) ...

Dell Container Storage Modules CVE
NONE 2DE71726-382B-

web-security-auditor_2DE71726-382B-5653-8780-93100257F741

Web Security Auditor Auditor automático de seguridad web desarrollado en Python. Esta herramienta está diseñada para ayudar a administradores y des...

N/A N/A GITHUBEXPLOIT