Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.8 CVE-2026-13574

llvm llvm-project Bitcode File IntrinsicInst.cpp getBasePtr heap-based overflow_CVE-2026-13574

A vulnerability was determined in llvm llvm-project up to 22.1.6. This impacts the function GCRelocateInst::getBasePtr in the library llvm/lib/IR/I...

llvm llvm-project 22.1.0 CVE
MEDIUM 4.8 CVE-2026-13573

llvm llvm-project ValueSymbolTable ValueSymbolTable.cpp insert stack-based overflow_CVE-2026-13573

A vulnerability was found in llvm llvm-project up to 22.1.6. This affects the function llvm::StringMap::insert in the library /lib/IR/ValueSymbolTa...

llvm llvm-project 22.1.0 CVE
MEDIUM 5.3 CVE-2026-13572

itsourcecode Hospital Management System insertbillingrecord.php sql injection_CVE-2026-13572

A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /insertbilli...

itsourcecode Hospital Management System 1.0 CVE
MEDIUM 6.9 CVE-2026-13571

SourceCodester Simple Food Ordering System cart.php logic error_CVE-2026-13571

A flaw has been found in SourceCodester Simple Food Ordering System 1.0. The affected element is an unknown function of the file /cart.php. Executi...

SourceCodester Simple Food Ordering System 1.0 CVE
HIGH 7.5 CVE-2026-36478

CVE-2026-36478_CVE-2026-36478

An issue in Technitium DNS Server v.14.3 and before allows a remote attacker to cause a denial of service via the DnsServerApp.exe, DnsServerApp.dl...

n/a n/a n/a CVE
MEDIUM 4.6 CVE-2026-38571

CVE-2026-38571_CVE-2026-38571

Cleartext storage and exposure of WPA2 credentials, and missing authentication on the rr/wr memory read/write commands, in the unauthenticated UART...

n/a n/a n/a CVE
HIGH 8.8 D785B7F1-5FCD-

Exploit for Improper Access Control in Graylog_D785B7F1-5FCD-57AF-BA95-D33887F2F1C7

Exploiting Arbitrary Class Loading on the JVM This repository contains the proof-of-concept exploit presented in my talk: Exploiting Arbitrary Clas...

N/A N/A GITHUBEXPLOIT
NONE HACKREAD:BA2D89...

Cybersecurity Firm Cyberbit Shuts Down Israel Operations_HACKREAD:BA2D89DD60D937B43EB12201579B673B

Cyberbit is closing its Israeli operations and laying off local staff as the former Elbit Systems spin-off grows mainly in the US after buying Rang...

N/A N/A HACKREAD
HIGH 7.5 7CABEA7D-2DC5-

Exploit for Uncontrolled Resource Consumption in Github Cmark-Gfm_7CABEA7D-2DC5-58B7-AF42-1DF51CCE3D29

graylog-cve-2023-24824-exploit Proof-of-concept exploit for CVE-2023-24824 demonstrating how an arbitrary class loading primitive can be transforme...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 CVE-2026-46604

Panic decoding image with out-of-bounds strip offset in x/image/tiff in golang.org/x/image_CVE-2026-46604

The TIFF decoder can panic when decoding an invalid image with an out-of-bounds strip offset.

golang.org/x/image golang.org/x/image/tiff CVE