Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 4D212348-0CE4-

Exploit for Argument Injection in Gnu Inetutils_4D212348-0CE4-5BBD-86E0-05C3D2BF492E

CVE-2026-24061 — Reproduction Lab ⚠️ For educational purposes only. Isolated lab environment. Français ci-dessous --- Summary Critical authenticati...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 MSSECURE:00B5F0...

Beyond the benchmark: Advancing security at AI speed_MSSECURE:00B5F0DA128161763042D52D4210A2E0

In this article 1. From the lab into the pipeline 2. This month’s set of discoveries 3. Beyond the headline: What the engineering work taugh...

N/A N/A MSSECURE
CRITICAL 9.8 515FB960-2EB4-

Exploit for OS Command Injection in Buffalo Open_Xdmod_515FB960-2EB4-5167-8796-0AA62D6B62A4

CVE-2026-45777 CVE-2026-45777 PoC...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 CVE-2026-36418

CVE-2026-36418_CVE-2026-36418

JimuReport versions 2.3.4 and below are vulnerable to remote code execution due to improper handling of Aviator expressions. The /jmreport/executeS...

n/a n/a n/a CVE
CRITICAL 9.3 CVE-2026-53805

NVIDIA SIL GEN3C Unauthenticated RCE via Pickle Deserialization in Inference API_CVE-2026-53805

NVIDIA Spatial Intelligence Lab's (SIL) GEN3C contains an unauthenticated remote code execution vulnerability in the inference API server where the...

nv-tlabs GEN3C CVE
CRITICAL 9.2 CVE-2026-3894

Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers._CVE-2026-3894

Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.This issue affects Connext Professional: from...

RTI Connext Professional 7.4.0 CVE
CRITICAL 9.2 CVE-2026-2467

Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags._CVE-2026-2467

Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext...

RTI Connext Professional 7.4.0 CVE
CRITICAL 9.1 CVE-2026-20266

OS Command Injection in the btool Configuration Helper in Splunk AI Toolkit_CVE-2026-20266

In Splunk AI Toolkit versions below 5.7.4, a user who holds the "admin" Splunk role could execute arbitrary OS commands on the host running the Spl...

Splunk Splunk AI Toolkit 5.7 CVE
CRITICAL 9.1 CVE-2026-55196

Hermes WebUI < 0.51.409 - Unauthenticated Passkey Registration via Authentication Bypass_CVE-2026-55196

Hermes WebUI before 0.51.409 contains an authentication bypass vulnerability in passkey registration endpoints that allows unauthenticated remote a...

hermes-webui hermes-webui CVE
CRITICAL 9.1 PACKETSTORM:223728

📄 Grav CMS Remote Code Execution_PACKETSTORM:223728

This Python exploit targets a vulnerability in Grav CMS versions prior to 2.0.0-beta.2 by abusing the administrative Direct Install plugin feature ...

N/A N/A PACKETSTORM