Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 A8E5D800-F075-

Exploit for Path Traversal in Gogs_A8E5D800-F075-509D-A604-E092148C4F7B

CVE-2025-8110 Gogs Repository Symlink Remote Code Execution Made by oguiii --- Table of Contents - Overview - Features - Requirements - Installatio...

N/A N/A GITHUBEXPLOIT
NONE 79677E22-A5F6-

HTB-Reactor_79677E22-A5F6-55B6-A58E-255AADBB6522

No description provided...

N/A N/A GITHUBEXPLOIT
NONE HACKREAD:E85A52...

Upwind Security Brings AI Visibility to the Endpoint, Unifying Cloud and Device Security_HACKREAD:E85A523C8D964703DD4FD7C9C476F559

Upwind’s AI Sensor links endpoint activity with cloud context, helping teams track MCP connections, AI actions, identities and developer risk in on...

N/A N/A HACKREAD
HIGH 7.5 CVE-2025-61028

CVE-2025-61028_CVE-2025-61028

An issue in the time_t_to_dt component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL ...

n/a n/a n/a CVE
MEDIUM 5.5 CVE-2025-60468

CVE-2025-60468_CVE-2025-60468

GPAC Multimedia Open Source Project GPAC Project/MP4Box 2.5-DEV-rev1593-gfe88c3545-master is affected by: Buffer Overflow. The impact is: cause a d...

n/a n/a n/a CVE
HIGH 7.5 CVE-2025-60474

CVE-2025-60474_CVE-2025-60474

A buffer overflow in the gf_media_import function (/media_tools/av_parsers.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Den...

n/a n/a n/a CVE
HIGH 7.5 CVE-2025-60467

CVE-2025-60467_CVE-2025-60467

A use-after-free in the gf_filter_pid_inst_swap_delete_task function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attac...

n/a n/a n/a CVE
MEDIUM 5.5 CVE-2025-60473

CVE-2025-60473_CVE-2025-60473

A NULL pointer dereference in the gf_filter_in_parent_chain function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attac...

n/a n/a n/a CVE
MEDIUM 5 CVE-2025-60466

CVE-2025-60466_CVE-2025-60466

A use-after-free in the gf_filter_pid_get_packet function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cau...

n/a n/a n/a CVE
HIGH 7.5 CVE-2026-9702

InPost PL < 1.9.1 - Unauthenticated WooCommerce Order Parcel-Locker Hijacking_CVE-2026-9702

The InPost PL WordPress plugin before 1.9.1 does not verify that the request originates from the legitimate buyer before allowing the WooCommerce o...

Unknown InPost PL CVE