Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 6C9A8646-8BC0-

Exploit for Path Traversal in Fortinet Fortisandbox_6C9A8646-8BC0-5180-846E-1136F5603E79

cve-id ⚡ Simple Usage Use this project only in safe and authorized environments such as: - Local virtual machines - Docker containers - Isolated l...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 6FFCC386-0479-

Exploit for OS Command Injection in Fortinet Fortisandbox_6FFCC386-0479-54C4-BA32-967FE298FCBA

cve-id ⚡ Simple Usage Use this project only in safe and authorized environments such as: - Local virtual machines - Docker containers - Isolated l...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.8 CVE-2026-55706

CVE-2026-55706_CVE-2026-55706

sppp_pap_input in sys/net/if_spppsubr.c in OpenBSD before 076e2b1 allows authentication bypass via certain zero values for lengths.

OpenBSD OpenBSD CVE
MEDIUM 6.8 CVE-2025-15642

Netskope Client Service Insufficient Access Controls_CVE-2025-15642

Netskope is notified about a potential gap in its Netskoped Client for Windows systems where a malicious insider with admin privileges can lead to ...

Netskope Netskope Client CVE
MEDIUM 6.8 CVE-2025-15641

Netskope Client Exposed IOCTL with Insufficient Access Controls_CVE-2025-15641

Netskope was notified about a potential gap in its Netskope Client for Windows systems where a malicious insider with administrative privileges can...

Netskope Netskope Client CVE
CRITICAL 9.9 CVE-2026-46765

CVE-2026-46765_CVE-2026-46765

{“lastseen”:””,”description”:””,”published”:”2026-06-16T19:27:13.188Z”,&#82...

Oracle Corporation Oracle WebCenter Portal 12.2.1.4.0 CVE
CRITICAL 9.8 CVE-2026-54194

WordPress Fusion Builder plugin <= 3.15.4 - PHP Object Injection vulnerability_CVE-2026-54194

Contributor PHP Object Injection in Fusion Builder

ThemeFusion Fusion Builder n/a CVE
HIGH 8.5 CVE-2026-49113

WordPress Cornerstone plugin < 7.8.8 - Arbitrary Code Execution vulnerability_CVE-2026-49113

Subscriber Arbitrary Code Execution in Cornerstone < 7.8.8 versions.

THEMECO Cornerstone n/a CVE
CRITICAL 9.3 CVE-2026-49080

WordPress wpDataTables plugin <= 7.3.6 - SQL Injection vulnerability_CVE-2026-49080

Unauthenticated SQL Injection in wpDataTables

TMS wpDataTables n/a CVE
HIGH 8.5 CVE-2026-49073

WordPress Directorist Booking plugin <= 3.0.3 - SQL Injection vulnerability_CVE-2026-49073

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpWax Directorist Booking allows Blind SQL In...

wpWax Directorist Booking n/a CVE