Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.1 CVE-2026-9051

Authentication Bypass Vulnerability in NI SystemLink Enterprise_CVE-2026-9051

There is an authentication bypass vulnerability in the NI SystemLink Enterprise Dashboard application that may allow an unauthenticated remote atta...

NI SystemLink Enterprise CVE
CRITICAL 9.9 CVE-2026-47744

Shopper: Authorization bypass and RBAC privilege escalation in team settings_CVE-2026-47744

Shopper is a Headless e-commerce Admin Panel. Prior to 2.8.0, two distinct authorization defects in the team settings allowed any authenticated pan...

shopperlabs shopper < 2.8.0 CVE
CRITICAL 9.1 CVE-2026-44650

SillyTavern: Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’)_CVE-2026-44650

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engine...

SillyTavern SillyTavern < 1.18.0 CVE
CRITICAL 9.8 CVE-2026-44649

SillyTavern: Authentication Bypass via SSO Header Injection_CVE-2026-44649

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engine...

SillyTavern SillyTavern < 1.18.0 CVE
CRITICAL 9.1 PACKETSTORM:222181

📄 MeiG Smart FORGE_SLT711 Command Injection_PACKETSTORM:222181

MeiG Smart FORGESLT711 proof of concept remote command injection exploit...

N/A N/A PACKETSTORM
CRITICAL 10 3D6FBB98-36AB-

Exploit for CVE-2026-46840_3D6FBB98-36AB-5F6C-BD65-545B7A10A138

CVE-2026-46840 - Oracle ORDS Unauthenticated RCE via REST Backend Overview Remote code execution in Oracle REST Data Services ORDS Backend-as-a-Ser...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.6 CVE-2026-9967

CVE-2026-9967_CVE-2026-9967

Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted...

Google Chrome 148.0.7778.216 CVE
CRITICAL 9.6 CVE-2026-9918

CVE-2026-9918_CVE-2026-9918

Inappropriate implementation in Tint in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via...

Google Chrome 148.0.7778.216 CVE
CRITICAL 9 CVE-2026-9891

CVE-2026-9891_CVE-2026-9891

Use after free in Extensions in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potenti...

Google Chrome 148.0.7778.216 CVE
CRITICAL 9.6 CVE-2026-9886

CVE-2026-9886_CVE-2026-9886

Use after free in Base in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a craf...

Google Chrome 148.0.7778.216 CVE