Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.7 CVE-2026-43861

CVE-2026-43861_CVE-2026-43861

mutt before 2.3.2 does not check for '\0' in url_pct_decode.

mutt mutt CVE
LOW 3.7 CVE-2026-43860

CVE-2026-43860_CVE-2026-43860

mutt before 2.3.2 sometimes truncates the hash_passwd by one byte for IMAP auth_cram MD5 digest.

mutt mutt CVE
LOW 3.7 CVE-2026-43859

CVE-2026-43859_CVE-2026-43859

mutt before 2.3.2 sometimes uses strfcpy instead of memcpy for the IMAP auth_cram MD5 digest.

mutt mutt CVE
LOW 2.3 CVE-2026-7724

PrefectHQ prefect Webhook/Notification validate_restricted_url toctou_CVE-2026-7724

A vulnerability has been found in PrefectHQ prefect up to 3.6.28.dev1. Affected by this vulnerability is the function validate_restricted_url of th...

PrefectHQ prefect 3.6.28.dev1 CVE
LOW 2.3 CVE-2026-7688

Dolibarr ERP CRM Shipments API Endpoint expedition.class.php _checkValForAPI sql injection_CVE-2026-7688

A vulnerability was identified in Dolibarr ERP CRM up to 23.0.2. This affects the function _checkValForAPI of the file htdocs/expedition/class/expe...

Dolibarr ERP CRM 23.0.0 CVE
LOW 3.3 CVE-2026-21996

CVE-2026-21996_CVE-2026-21996

An unprivileged attacker can reliably trigger a crash of the dtrace process with a malicious ELF binary due to an integer Divide-by-Zero in Pbuild_...

Oracle Corporation Oracle Linux 8 CVE
LOW 3.1 MS:CVE-2026-7360

Chromium: CVE-2026-7360 Insufficient validation of untrusted input in Compositing_MS:CVE-2026-7360

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-7351

Chromium: CVE-2026-7351 Race in MHTML_MS:CVE-2026-7351

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 2.3 CVE-2026-33450

Out of bounds read in Secure Access MacOS clients prior to 14.50_CVE-2026-33450

CVE-2026-33450 is an out of bounds read vulnerability in the Secure Access MacOS client prior to 14.50. Attackers with control of a modified serv...

Absolute Software Secure Access CVE
LOW 2.3 CVE-2026-33449

Message handler buffer overflow in clients prior to 14.50_CVE-2026-33449

CVE-2026-33449 is a buffer overflow in a message handling function of the Secure Access client prior to 14.50. Attackers with control of a modifi...

Absolute Software Secure Access CVE