Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.1 MS:CVE-2026-7968

Chromium: CVE-2026-7968 Insufficient validation of untrusted input in CORS_MS:CVE-2026-7968

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-7937

Chromium: CVE-2026-7937 Insufficient policy enforcement in DevTools_MS:CVE-2026-7937

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-7945

Chromium: CVE-2026-7945 Insufficient validation of untrusted input in COOP_MS:CVE-2026-7945

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-7949

Chromium: CVE-2026-7949 Out of bounds read in Skia_MS:CVE-2026-7949

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.7 CVE-2026-44603

CVE-2026-44603_CVE-2026-44603

Tor before 0.4.9.7 has an out-of-bounds read by one byte via a malformed BEGIN cell, aka TROVE-2026-007.

torproject Tor CVE
LOW 3.7 CVE-2026-44602

CVE-2026-44602_CVE-2026-44602

Tor before 0.4.9.7 has a NULL pointer dereference when a CERT cell is received out of order, aka TROVE-2026-006.

torproject Tor CVE
LOW 3.7 CVE-2026-44601

CVE-2026-44601_CVE-2026-44601

Tor before 0.4.9.7, when circuit queue memory pressure exists, can experience a client crash because of a double close of a circuit, aka TROVE-2026...

torproject Tor CVE
LOW 3.5 CVE-2026-41663

Admidio: CSRF on Admin Preferences Triggers Unauthorized Backup, .htaccess Write, and Email Send_CVE-2026-41663

Admidio is an open-source user management solution. Prior to version 5.0.9, several administrative operations in Admidio's preferences module (data...

Admidio admidio < 5.0.9 CVE
LOW 2.7 CVE-2026-41659

Admidio: Hidden Profile Field Values Leaked via Blind Search Oracle in Member Assignment_CVE-2026-41659

Admidio is an open-source user management solution. Prior to version 5.0.9, the member assignment DataTables endpoint (members_assignment_data.php)...

Admidio admidio < 5.0.9 CVE
LOW 3.7 CVE-2026-44597

CVE-2026-44597_CVE-2026-44597

Tor before 0.4.9.7 has an out-of-bounds read when an END, a TRUNCATE, or a TRUNCATED cell lacks a reason in its payload, aka TROVE-2026-011.

torproject Tor CVE