Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7 CVE-2026-52972

crypto: af_alg – Cap AEAD AD length to 0x80000000_CVE-2026-52972

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Cap AEAD AD length to 0x80000000 In order to prevent arithme...

Linux Linux 400c40cf78da00c16e561a3a253ca272455c42ef CVE
HIGH 7 CVE-2026-52969

KVM: Reject wrapped offset in kvm_reset_dirty_gfn()_CVE-2026-52969

In the Linux kernel, the following vulnerability has been resolved: KVM: Reject wrapped offset in kvm_reset_dirty_gfn() kvm_reset_dirty_gfn() gua...

Linux Linux fb04a1eddb1a65b6588a021bdc132270d5ae48bb CVE
HIGH 7 CVE-2026-53196

USB: serial: io_ti: fix heap overflow in get_manuf_info()_CVE-2026-53196

In the Linux kernel, the following vulnerability has been resolved: USB: serial: io_ti: fix heap overflow in get_manuf_info() get_manuf_info() re...

Linux Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 CVE
HIGH 7 CVE-2026-53148

thunderbolt: Clamp XDomain response data copy to allocation size_CVE-2026-53148

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Clamp XDomain response data copy to allocation size tb_xdp_prope...

Linux Linux cdae7c07e3e3509eaabc18c1640a55dc5b99c179 CVE
HIGH 7 CVE-2026-53143

drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11_CVE-2026-53143

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 The...

Linux Linux cc009e613de6560eb499f8bc92c80a737752cb30 CVE
MEDIUM 5.9 CVE-2026-14160

CVE-2026-14160_CVE-2026-14160

Time-of-check time-of-use (TOCTOU) race condition vulnerability in Samsung Open Source Escargot allows Leveraging Race Conditions. This issue affe...

Samsung Open Source Escargot bab3a5797557014ce3c2e28419a6310cfba90d0d CVE
MEDIUM 4.4 CVE-2026-12114

Team Members <= 8.7 - Authenticated (Administrator+) Stored Cross-Site Scripting via 'custom_css' Parameter_CVE-2026-12114

The Team Members – Multi Language Supported Team Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all...

wpmart Team Members – Multi Language Supported Team Plugin CVE
MEDIUM 4.3 CVE-2026-8944

Plugin for Google Analytics by IO technologies <= 1.1 - Cross-Site Request Forgery via 'ga_id' Parameter_CVE-2026-8944

The Plugin for Google Analytics by IO technologies plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin...

engagementanalytics Plugin for Google Analytics by IO technologies CVE
MEDIUM 4.4 CVE-2026-12560

Editorial Rating <= 4.0.5 - Authenticated (Administrator+) Stored Cross-Site Scripting via 'Link URL' Field_CVE-2026-12560

The Editorial Rating – Product Review & Rating System plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'Link URL' Field in all...

wpqode Editorial Rating – Product Review & Rating System CVE
MEDIUM 6.5 9A0091F4-6679-

Exploit for CVE-2026-43700_9A0091F4-6679-565C-8F3F-7D6907959F22

CVE-2026-43700 WebKit WebGPU importExternalTexture cross-domain information leakage. Safari: Red/Green/Blue/White – Fixed issue = 26.5.2: PATCHED i...

N/A N/A GITHUBEXPLOIT