Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.6 CVE-2026-11120

CVE-2026-11120_CVE-2026-11120

Insufficient validation of untrusted input in Enterprise Reporting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compro...

Google Chrome 149.0.7827.53 CVE
CRITICAL 9.6 CVE-2026-11021

CVE-2026-11021_CVE-2026-11021

Insufficient validation of untrusted input in GPU in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised ...

Google Chrome 149.0.7827.53 CVE
CRITICAL 9.5 CVE-2026-47430

Cordova Plugin InAppBrowser: iOS: Arbitrary Cordova callback IDs can be dispatched without validation from InAppBrowser WebViews_CVE-2026-47430

## Summary The iOS implementation of `cordova-plugin-inappbrowser` passes the `id` field from a `WKScriptMessage` body to `commandDelegate sendPlu...

Apache Software Foundation Cordova Plugin InAppBrowser 3.1.0 CVE
CRITICAL 9.3 CVE-2026-11499

Tenda HG7HG9/HG10 formDOMAINBLK stack-based overflow_CVE-2026-11499

A vulnerability was determined in Tenda HG7HG9 and HG10 300001138_en_xpon. This affects the function formDOMAINBLK of the file /boaform/formDOMAINB...

Tenda HG7HG9, HG10 300001138_en_xpon CVE
CRITICAL 9.6 CVE-2026-11009

CVE-2026-11009_CVE-2026-11009

Use after free in USB in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a cr...

Google Chrome 149.0.7827.53 CVE
CRITICAL 9.8 0CDEBDFC-50F8-

Exploit for CVE-2026-3844_0CDEBDFC-50F8-59DC-B9F7-A7A24E92F353

CVE-2026-3844 – Breeze Cache WordPress Plugin Unauthenticated RCE -red?style=flat-square CVE-2026-3844 is a critical unauthenticated arbitrary file...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.6 THN:28ECB8D8884...

AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs_THN:28ECB8D88842DE5F9553D37CC071ED99

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiyg1vRQART17ZjJXANnrQ8Vtn7h_tM5IihGJ4LnxbGTDFL1QSvR_lEDmVm7bsO84br04_oM-RM9ZgX-6b5yV...

N/A N/A THN
CRITICAL 9.9 B89B9C6A-46E4-

Exploit for Path Traversal in Open-Emr Openemr_B89B9C6A-46E4-5543-976C-1B968B942D25

CVE-2026-24849 OpenEMR Authenticated Arbitrary File Read EtherFax disposeDoc Proof-of-concept exploit for CVE-2026-24849, an authenticated path-tra...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.6 MS:CVE-2026-11250

Chromium: CVE-2026-11250 Inappropriate implementation in DevTools_MS:CVE-2026-11250

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
CRITICAL 9.6 MS:CVE-2026-11088

Chromium: CVE-2026-11088 Integer overflow in ANGLE_MS:CVE-2026-11088

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE