Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.5 63040014-95CF-

Exploit for CVE-2026-48909_63040014-95CF-53D4-BB60-351E8E8012A4

CVE-2026-48909 — SP LMS PHP Object Injection → RCE Unauthenticated Remote Code Execution via PHP Object Injection in JoomShaper SP LMS comsplms ≤ 4...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.3 CVE-2026-12807

Edimax BR-6478AC V2 POST Request setWAN command injection_CVE-2026-12807

A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file /goform/setWAN of the component POST Request Ha...

Edimax BR-6478AC V2 1.23 CVE
MEDIUM 5.3 CVE-2026-12808

Edimax BR-6478AC V2 POST Request stainfo command injection_CVE-2026-12808

A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the file /goform/stainfo of the component POST Req...

Edimax BR-6478AC V2 1.23 CVE
HIGH 7.3 FA08775C-6E51-

Exploit for Out-of-bounds Read in Apple Ipados_FA08775C-6E51-5C9C-9DFC-21E6FEE31DC0

CVE-2026-43655: AppleM2ScalerCSCDriver shared scheduler use-after-free Public technical disclosure for CVE-2026-43655, an AppleM2ScalerCSCDriver us...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 8368E8ED-03A4-

sslpwn_8368E8ED-03A4-58E7-BF10-DEA012DCAC12

sslpwn sslpwn is a security research tool for testing web applications against eight well-known SSL/TLS vulnerabilities: - BEAST CVE-2011-3389 - TL...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.3 CVE-2026-12804

lemonldap-ng SAML Common Domain Cookie Endpoint CDC.pm redirect_CVE-2026-12804

A vulnerability was detected in lemonldap-ng up to 2.23.0. Impacted is an unknown function in the library lemonldap-ng-portal/lib/Lemonldap/NG/Port...

n/a lemonldap-ng 2.0 CVE
HIGH 8.7 CVE-2026-12806

Edimax BR-6478AC V2 POST Request formWlSiteSurvey buffer overflow_CVE-2026-12806

A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function formWlSiteSurvey of the file /goform/formWlSiteSur...

Edimax BR-6478AC V2 1.23 CVE
MEDIUM 5.3 CVE-2026-12805

OFFIS DCMTK ofxml.cc parseFile heap-based overflow_CVE-2026-12805

A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::parseFile in the library ofstd/libsrc/ofxml.cc. Exe...

OFFIS DCMTK 3.0 CVE
CRITICAL 10 6DFCF1F8-508C-

Exploit for CVE-2026-10735_6DFCF1F8-508C-5B6F-9973-9B8DDDDF9686

CVE-2026-49777-CVE-2026-10735 TELEGRAM GROUP ADRESS: https://t.me/toolsandpoc...

N/A N/A GITHUBEXPLOIT
MEDIUM 4.9 CVE-2026-56412

CVE-2026-56412_CVE-2026-56412

libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from with...

libexpat project libexpat CVE