Recent Advisories

Severity ID Title Vendor Product Date Type
NONE 48F10DC4-9D51-

libssh_48F10DC4-9D51-5138-BC0B-F2167DD40640

libssh this poc CV3 2026-552oo...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 02A60410-07D8-

COM_JCE_VANDA_02A60410-07D8-5EBE-8E81-621871683186

COMJCEVANDA - CVE-2026-48907 Exploit de upload de arquivo sem autenticação no componente JCE do Joomla. Porque aparentemente aplicar patch é opcion...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 A2DC23CB-0791-

Exploit for CVE-2026-48939_A2DC23CB-0791-5A41-828F-25B34E8207C5

CVE-2026-48939 - iCagenda Unauthenticated File Upload to RCE Overview | Field | Value | |-------|-------| | CVE ID | CVE-2026-48939 | | CVSS 4.0 Sc...

N/A N/A GITHUBEXPLOIT
HIGH 7.1 CVE-2026-57346

WordPress Embed Privacy plugin <= 1.12.3 - Arbitrary File Deletion vulnerability_CVE-2026-57346

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy allows Path Traversal. This ...

Epiphyt Embed Privacy n/a CVE
HIGH 8.8 CVE-2026-25707

Handcrafted repo metadata may cause arbitrary local files to be overwritten by libzypp_CVE-2026-25707

A relative path traversal bug problem when processing repository metadata in libzypp before 17.38.10 could be used by remote attackers supplying re...

SUSE libzypp CVE
HIGH 7.1 CVE-2026-13601

Yelp: yelp-xsl: overly permissive content security policy in yelp allows host file disclosure from flatpak applications_CVE-2026-13601

A flaw was found in Yelp due to an overly permissive Content Security Policy (CSP) implementation provided by yelp-xsl. A malicious Flatpak applica...

Red Hat Red Hat Enterprise Linux 10 CVE
MEDIUM 5.3 CVE-2026-13557

itsourcecode Online Hotel Management System POST Request controller.php add cross site scripting_CVE-2026-13557

A vulnerability was identified in itsourcecode Online Hotel Management System 1.0. This vulnerability affects unknown code of the file /admin/mod_r...

itsourcecode Online Hotel Management System 1.0 CVE
MEDIUM 5.3 CVE-2026-13556

itsourcecode Online Hotel Management System POST Request controller.php edit cross site scripting_CVE-2026-13556

A vulnerability was determined in itsourcecode Online Hotel Management System 1.0. This affects an unknown part of the file /admin/mod_users/contro...

itsourcecode Online Hotel Management System 1.0 CVE
MEDIUM 6.9 CVE-2026-13555

itsourcecode Online Hotel Management System controller.php add sql injection_CVE-2026-13555

A vulnerability was found in itsourcecode Online Hotel Management System 1.0. Affected by this issue is some unknown functionality of the file /adm...

itsourcecode Online Hotel Management System 1.0 CVE
MEDIUM 5.3 CVE-2026-13554

itsourcecode Online Hotel Management System POST Request controller.php add cross site scripting_CVE-2026-13554

A vulnerability has been found in itsourcecode Online Hotel Management System 1.0. Affected by this vulnerability is an unknown functionality of th...

itsourcecode Online Hotel Management System 1.0 CVE