Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.5 CVE-2026-54822

WordPress SALESmanago & Leadoo plugin <= 3.11.2 - SQL Injection vulnerability_CVE-2026-54822

Subscriber SQL Injection in SALESmanago & Leadoo

SALESmanago SALESmanago & Leadoo n/a CVE
HIGH 7.4 CVE-2026-54821

WordPress Visual Link Preview plugin <= 2.3.1 - Sensitive Data Exposure vulnerability_CVE-2026-54821

Subscriber Sensitive Data Exposure in Visual Link Preview

Bootstrapped Ventures Visual Link Preview n/a CVE
HIGH 7.1 CVE-2026-4526

Global ZCL command parser missing minimum-length validation in EmberZNet v9.0.2_CVE-2026-4526

In EmberZNet v9.0.2 and earlier, malformed global ZCL messages can trigger out-of-bounds reads in framework parsing logic and terminate the process...

Silicon Labs EmberZNet CVE
HIGH 7.2 CVE-2026-49506

CVE-2026-49506_CVE-2026-49506

Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'...

Dell Wyse Management Suite CVE
HIGH 7.1 CVE-2026-47154

Simple Metering GetProfileResponse interval-bounds bug in EmberZNet v9.0.2_CVE-2026-47154

In EmberZNet v9.0.2 and earlier, a malformed GetProfileResponse message can trigger out-of-bounds reads while iterating interval entries and termin...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47153

Level Control Step With On/Off divide-by-zero in EmberZNet v9.0.2_CVE-2026-47153

In EmberZNet v9.0.2 and earlier, a malformed Level Control Step command can terminate the process through a divide-by-zero fault. This command must...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47152

Level Control Move divide-by-zero in EmberZNet v9.0.2_CVE-2026-47152

In EmberZNet v9.0.2 and earlier, a malformed Level Control Move command can terminate the process through a divide-by-zero fault. This command must...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47151

Door Lock ClearWeekdaySchedule invalid table index and write in EmberZNet v9.0.2_CVE-2026-47151

In EmberZNet v9.0.2 and earlier, malformed ClearWeekdaySchedule messages can trigger out-of-bounds writes into Door Lock schedule state. The size a...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47150

IAS Zone enroll invalid table index and write in EmberZNet 9.0.2_CVE-2026-47150

In EmberZNet v9.0.2 and earlier, malformed IAS Zone enrollment messages can trigger an out-of-bounds state-table write and terminate the process. T...

Silicon Labs EmberZNet CVE
HIGH 7.1 CVE-2026-47149

Door Lock GetUserType invalid table index in EmberZNet v9.0.2_CVE-2026-47149

In EmberZNet v9.0.2 and earlier, malformed or out-of-range Door Lock user identifiers can trigger out-of-bounds table reads and terminate the proce...

Silicon Labs EmberZNet CVE