Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.1 CVE-2026-9959

CVE-2026-9959_CVE-2026-9959

Race in WebRTC in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Ch...

Google Chrome 148.0.7778.216 CVE
LOW 3.1 CVE-2026-9950

CVE-2026-9950_CVE-2026-9950

Insufficient validation of untrusted input in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who had compromised the...

Google Chrome 148.0.7778.216 CVE
LOW 3.1 CVE-2026-9944

CVE-2026-9944_CVE-2026-9944

Uninitialized Use in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to leak cros...

Google Chrome 148.0.7778.216 CVE
LOW 3.1 CVE-2026-9920

CVE-2026-9920_CVE-2026-9920

Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to ...

Google Chrome 148.0.7778.216 CVE
LOW 3.1 CVE-2026-10011

CVE-2026-10011_CVE-2026-10011

Inappropriate implementation in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to...

Google Chrome 148.0.7778.216 CVE
LOW 3.3 CVE-2026-49383

CVE-2026-49383_CVE-2026-49383

In JetBrains IntelliJ IDEA before 2026.1 xXE in the UI Designer form parser was possible

JetBrains IntelliJ IDEA CVE
LOW 3.4 CVE-2026-49381

CVE-2026-49381_CVE-2026-49381

In JetBrains TeamCity before 2026.1 stored XSS on the SAML login page was possible

JetBrains TeamCity CVE
LOW 3.1 CVE-2026-49380

CVE-2026-49380_CVE-2026-49380

In JetBrains TeamCity before 2026.1 open redirect in the SAML plugin was possible

JetBrains TeamCity CVE
LOW 3.4 CVE-2026-49370

CVE-2026-49370_CVE-2026-49370

In JetBrains YouTrack before 2026.1.13162 information disclosure was possible on fetchApp requests

JetBrains YouTrack CVE
LOW 2.3 CVE-2026-34507

OpenClaw < 2026.4.29 - Policy Bypass in QQBot Admin Commands via DM-only and allowFrom Checks_CVE-2026-34507

OpenClaw before 2026.4.29 contains a policy bypass vulnerability in QQBot admin commands that allows authenticated senders to skip DM-only and allo...

OpenClaw OpenClaw CVE