Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.5 CVE-2026-36808

CVE-2026-36808_CVE-2026-36808

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the webAuthUserInfo parameter of the formA...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-36807

CVE-2026-36807_CVE-2026-36807

Shenzhen Tenda Technology Co., Ltd Tenda W15E v15.11.0.10 was discovered to contain a buffer overflow in the webAuthUserPwd parameter of the formAd...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-36799

CVE-2026-36799_CVE-2026-36799

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a buffer overflow in the portalAuth parameter of the formPortalAut...

n/a n/a n/a CVE
MEDIUM 6.5 CVE-2026-36798

CVE-2026-36798_CVE-2026-36798

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain multiple stack overflows in the formSetDebugCfgr function via the ...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-36797

CVE-2026-36797_CVE-2026-36797

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a stack overflow in the IPMacBindRuleIp parameter of the formIPMac...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-36796

CVE-2026-36796_CVE-2026-36796

Shenzhen Tenda Technology Co., Ltd Tenda G0 v15.11.0.5 was discovered to contain a stack overflow in the picCropName parameter of the formCropAndSe...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-36783

CVE-2026-36783_CVE-2026-36783

Shenzhen Tenda Technology Co., Ltd Tenda O3 Wireless Router v1.0.0.5(4180) was discovered to contain a stack overflow in the domain parameter of th...

n/a n/a n/a CVE
MEDIUM 6.5 CVE-2026-50639

Metrics::Any::Adapter::SignalFx versions before 0.04 for Perl does not protect against metric injections_CVE-2026-50639

Metrics::Any::Adapter::SignalFx versions before 0.04 for Perl does not protect against metric injections. The statsd protocol (and extensions such...

PEVANS Metrics::Any::Adapter::SignalFx CVE
HIGH 8.8 CVE-2026-6893

Dracut: dracut: root code execution via dhcp options command injection_CVE-2026-6893

A flaw was found in dracut. A remote attacker on the adjacent network can exploit this vulnerability by providing specially crafted DHCP (Dynamic H...

Red Hat Red Hat Enterprise Linux 10 CVE
MEDIUM 5.9 CVE-2026-50127

Weblate SSRF: outbound URL guard misses the NAT64 well-known prefix (64:ff9b::/96)_CVE-2026-50127

Weblate is a web based localization tool. From version 5.15 to before version 2026.6, Weblate's VCS_RESTRICT_PRIVATE did not properly account for s...

WeblateOrg weblate >= 5.15, < 2026.6 CVE