Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.3 CVE-2026-47327

NULL pointer dereference in Ubuntu Linux AppArmor notification handling_CVE-2026-47327

Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the handling of AppArmor notifications. The bug ca...

Canonical Ubuntu Linux 6.8.0 CVE
LOW 3.7 CVE-2026-48524

PyJWT: PyJWKClient unbounded JWKS endpoint requests via attacker-controlled kid values (DoS)_CVE-2026-48524

PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient.get_signing_key() forces a fresh HTTP request to the JWKS endpoint...

jpadilla pyjwt < 2.13.0 CVE
LOW 3.7 CVE-2026-33552

CVE-2026-33552_CVE-2026-33552

Northern.tech Mender Enterprise Server before 4.1.1 has Incorrect Access Control.

n/a n/a n/a CVE
LOW 1.2 CVE-2026-9828

Logback deserialization whitelist bypass for java.lang and java.util_CVE-2026-9828

Deserialization of untrusted data vulnerability in QOS.CH Sarl logback logback-core (HardenedObjectInputStream (logback-core) modules) allows Objec...

QOS.CH Sarl logback CVE
LOW 3.1 CVE-2026-49009

CVE-2026-49009_CVE-2026-49009

Northern.tech Mender Server v4.1.0, v4.0.1 and below, and fixed in v4.1.1 and v4.0.2 allows Directory Traversal.

n/a n/a n/a CVE
LOW 3.3 06924D3E-A836-

Exploit for Missing Release of Memory after Effective Lifetime in Arm 5Th_Gen_Gpu_Architecture_Kernel_Driver_06924D3E-A836-5429-8D61-D0FACBE9E026

CVE-2023-26083 – Mali GPU Kernel Address Leak via Timeline Stream This repository contains a proof-of-concept PoC exploit for CVE-2023-26083, a vul...

N/A N/A GITHUBEXPLOIT
LOW 2.4 CVE-2025-68710

CVE-2025-68710_CVE-2025-68710

Easyelife App lock (aka Fingerprint,Applock or locker.app.safe.applocker) 1.9.2 for Android allows a local attacker with physical access to bypass ...

n/a n/a n/a CVE
LOW 2.4 CVE-2025-68711

CVE-2025-68711_CVE-2025-68711

AppLockZ App Lock and Fingerprint Lock (applock.passwordfingerprint.applockz) 4.2.11 for Android allows a local attacker with physical access to by...

n/a n/a n/a CVE
LOW 2.4 CVE-2025-68708

CVE-2025-68708_CVE-2025-68708

SailingLab AppLock (aka com.alpha.applock) 4.3.8 for Android allows a local attacker with physical access to bypass the PIN lock. The lock is imple...

n/a n/a n/a CVE
LOW 3.8 CVE-2026-9712

Insecure direct object reference_CVE-2026-9712

When creating an export through the pretix API, API clients are returned an UUID value for their export job (a long, random string like 35742818-...

pretix pretix 2024.10.0 CVE