Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.7 CVE-2026-40686

CVE-2026-40686_CVE-2026-40686

In Exim before 4.99.2, when utf8 operators are enabled, there is an out-of-bounds read if large UTF-8 trailing characters are present (malformed UT...

Exim Exim CVE
LOW 2.1 CVE-2026-7429

SSCMS v7.4.0 Reflected Cross-Site Scripting via STL Processing_CVE-2026-7429

SSCMS v7.4.0 contains a reflected cross-site scripting vulnerability in the STL processing endpoint that allows attackers to execute arbitrary Java...

siteserver SSCMS 7.4.0 CVE
LOW 2.3 CVE-2026-33447

CVE-2026-33447_CVE-2026-33447

CVE-2026-33447 is a buffer overflow in a message parsing function of the Secure Access client prior to 14.50. Attackers with control of a modifie...

Absolute Software Secure Access CVE
LOW 2.3 CVE-2026-33446

Buffer overflow in client authentication prior to version 14.50_CVE-2026-33446

CVE-2026-33446 is a buffer overflow in the authentication sub-system of the Secure Access client prior to 14.50. Attackers with control of a modi...

Absolute Software Secure Access CVE
LOW 3.7 CVE-2026-3832

Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response_CVE-2026-3832

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol...

Red Hat Red Hat Enterprise Linux 10 CVE
LOW 3.1 CVE-2026-22741

Static resource cache poisoning in Spring MVC and WebFlux_CVE-2026-22741

Spring MVC and WebFlux applications are vulnerable to cache poisoning when resolving static resources. More precisely, an application can be vuln...

VMware Spring Framework 7.0.0 CVE
LOW 3.1 CVE-2026-7360

CVE-2026-7360_CVE-2026-7360

Insufficient validation of untrusted input. in Compositing in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised t...

Google Chrome 147.0.7727.138 CVE
LOW 3.1 CVE-2026-7351

CVE-2026-7351_CVE-2026-7351

Race in MHTML in Google Chrome prior to 147.0.7727.138 allowed an attacker who convinced a user to install a malicious extension to leak cross-orig...

Google Chrome 147.0.7727.138 CVE
LOW 2.3 CVE-2026-7317

Grav CMS Cache Value FileCache.php doGet deserialization_CVE-2026-7317

A vulnerability was found in Grav CMS up to 1.7.49.5/2.0.0-beta.1. Affected by this vulnerability is the function FileCache::doGet of the file syst...

Grav CMS 1.7.49.0 CVE
LOW 2.3 CVE-2026-42421

OpenClaw < 2026.4.8 - WebSocket Session Persistence via Shared Gateway Token Rotation_CVE-2026-42421

OpenClaw before 2026.4.8 contains a session management vulnerability where existing WebSocket sessions survive shared gateway token rotation. Attac...

OpenClaw OpenClaw CVE