Recent Advisories

Severity ID Title Vendor Product Date Type
NONE HACKREAD:B8C2FC...

Gcore Helps Ucom Safeguard Public Live Broadcast Infrastructure During Armenia’s Parliamentary Elections_HACKREAD:B8C2FC2FFB391B581361B7B7294A172D

Luxembourg, Luxembourg, 19th June 2026, CyberNewswire

N/A N/A HACKREAD
NONE THN:317DE22F4DA...

AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution_THN:317DE22F4DAC6034658E5E5B0FCABAED

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg3wJOg5Y5vAn_dM0DcIB6SwV2B34iO0H-moeyuWLJ_DF1KgEEZMBGtKPDXYk0pL4wclWbnSmOB74sqReSZoG...

N/A N/A THN
MEDIUM 6.9 CVE-2026-55205

Hermes WebUI < 0.51.468 - Resource Exhaustion via Unauthenticated OAuth Flow Endpoint_CVE-2026-55205

Hermes WebUI before 0.51.468 contains a resource exhaustion vulnerability in the unauthenticated POST /api/onboarding/oauth/start endpoint that all...

nesquena hermes-webui CVE
HIGH 8.7 CVE-2026-55204

HAProxy – NULL Pointer Dereference in hpack_dht_insert Function_CVE-2026-55204

HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c tha...

haproxy haproxy CVE
CRITICAL 9 CVE-2026-55203

HAProxy – Integer Overflow in FCGI Demux Record Length Field_CVE-2026-55203

HAProxy through 3.4.0, fixed in commit 5985276, contains an integer overflow vulnerability in the fcgi_conn structure's drl field that allows buffe...

haproxy haproxy CVE
MEDIUM 4.7 CVE-2026-54106

U.S. GAO EPDS and CBCA EDS network access control bypass_CVE-2026-54106

The U.S. Government Accountability Office (GAO) Electronic Protest Docketing System (EPDS) and Civilian Board of Contract Appeals (CBCA) Electronic...

Government Accountability Office Electronic Protest Docketing System (EPDS) CVE
MEDIUM 6.9 CVE-2026-54105

U.S. GAO EPDS and CBCA EDS user information disclosure_CVE-2026-54105

The U.S. Government Accountability Office (GAO) Electronic Protest Docketing System (EPDS) and Civilian Board of Contract Appeals (CBCA) Electronic...

Government Accountability Office Electronic Protest Docketing System (EPDS) CVE
HIGH 8.8 CVE-2026-54104

U.S. GAO EPDS and CBCA EDS client-based privilege escalation_CVE-2026-54104

The U.S. Government Accountability Office (GAO) Electronic Protest Docketing System (EPDS) and Civilian Board of Contract Appeals (CBCA) Electronic...

Government Accountability Office Electronic Protest Docketing System (EPDS) CVE
CRITICAL 9.8 CVE-2026-54103

U.S. GAO EPDS and CBCA EDS unauthenticated password change_CVE-2026-54103

The U.S. Government Accountability Office (GAO) Electronic Protest Docketing System (EPDS) and Civilian Board of Contract Appeals (CBCA) Electronic...

Government Accountability Office Electronic Protest Docketing System (EPDS) CVE
LOW 1.8 CVE-2026-48617

CVE-2026-48617_CVE-2026-48617

A flaw in Node.js Permission Model enforcement allows Bypass via `process.report.writeReport()` Path Misvalidation. This can lead to confidentialit...

nodejs node 22.22.3 CVE