Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.1 CVE-2026-6334

OAuth authorization code client binding not enforced during token redemption in Mattermost_CVE-2026-6334

Mattermost versions 11.5.x

Mattermost Mattermost 11.5.0 CVE
LOW 3.7 CVE-2026-4273

Insufficient token rotation validation in remote cluster invite confirmation_CVE-2026-4273

Mattermost versions 11.5.x

Mattermost Mattermost 11.5.0 CVE
LOW 3.8 CVE-2026-3495

Unescaped variables during error page composition_CVE-2026-3495

Mattermost versions 11.5.x

Mattermost Mattermost 11.5.0 CVE
LOW 2.3 CVE-2026-8767

vercel ai PR Branch Name Interpolation prettier-on-automerge.yml run os command injection_CVE-2026-8767

A vulnerability has been found in vercel ai up to 3.0.97. Impacted is the function run of the file .github/workflows/prettier-on-automerge.yml of t...

vercel ai 3.0.0 CVE
LOW 2.3 CVE-2026-8741

EMQX QoS 2 PUBLISH Packet emqx_persistent_session_ds.erl race condition_CVE-2026-8741

A vulnerability has been found in EMQX up to 6.2.0. This affects an unknown function of the file apps/emqx/src/emqx_persistent_session_ds.erl of th...

n/a EMQX 6.0 CVE
LOW 2.4 CVE-2026-8736

Oinone Pamirs RestController LocalFileClient.java request.getParameter path traversal_CVE-2026-8736

A security flaw has been discovered in Oinone Pamirs up to 7.2.0. This vulnerability affects the function request.getParameter of the file LocalFil...

Oinone Pamirs 7.0 CVE
LOW 3.1 MS:CVE-2026-8536

Chromium: CVE-2026-8536 Insufficient validation of untrusted input in ReadingMode_MS:CVE-2026-8536

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-8545

Chromium: CVE-2026-8545 Object corruption in Compositing_MS:CVE-2026-8545

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-8554

Chromium: CVE-2026-8554 Type Confusion in ANGLE_MS:CVE-2026-8554

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-8553

Chromium: CVE-2026-8553 Use after free in GPU_MS:CVE-2026-8553

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE