Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2026-7724

PrefectHQ prefect Webhook/Notification validate_restricted_url toctou_CVE-2026-7724

A vulnerability has been found in PrefectHQ prefect up to 3.6.28.dev1. Affected by this vulnerability is the function validate_restricted_url of th...

PrefectHQ prefect 3.6.28.dev1 CVE
LOW 2.3 CVE-2026-7688

Dolibarr ERP CRM Shipments API Endpoint expedition.class.php _checkValForAPI sql injection_CVE-2026-7688

A vulnerability was identified in Dolibarr ERP CRM up to 23.0.2. This affects the function _checkValForAPI of the file htdocs/expedition/class/expe...

Dolibarr ERP CRM 23.0.0 CVE
LOW 3.3 CVE-2026-21996

CVE-2026-21996_CVE-2026-21996

An unprivileged attacker can reliably trigger a crash of the dtrace process with a malicious ELF binary due to an integer Divide-by-Zero in Pbuild_...

Oracle Corporation Oracle Linux 8 CVE
LOW 3.1 MS:CVE-2026-7360

Chromium: CVE-2026-7360 Insufficient validation of untrusted input in Compositing_MS:CVE-2026-7360

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 3.1 MS:CVE-2026-7351

Chromium: CVE-2026-7351 Race in MHTML_MS:CVE-2026-7351

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
LOW 2.3 CVE-2026-33450

Out of bounds read in Secure Access MacOS clients prior to 14.50_CVE-2026-33450

CVE-2026-33450 is an out of bounds read vulnerability in the Secure Access MacOS client prior to 14.50. Attackers with control of a modified serv...

Absolute Software Secure Access CVE
LOW 2.3 CVE-2026-33449

Message handler buffer overflow in clients prior to 14.50_CVE-2026-33449

CVE-2026-33449 is a buffer overflow in a message handling function of the Secure Access client prior to 14.50. Attackers with control of a modifi...

Absolute Software Secure Access CVE
LOW 3.7 CVE-2026-40686

CVE-2026-40686_CVE-2026-40686

In Exim before 4.99.2, when utf8 operators are enabled, there is an out-of-bounds read if large UTF-8 trailing characters are present (malformed UT...

Exim Exim CVE
LOW 2.1 CVE-2026-7429

SSCMS v7.4.0 Reflected Cross-Site Scripting via STL Processing_CVE-2026-7429

SSCMS v7.4.0 contains a reflected cross-site scripting vulnerability in the STL processing endpoint that allows attackers to execute arbitrary Java...

siteserver SSCMS 7.4.0 CVE
LOW 2.3 CVE-2026-33447

CVE-2026-33447_CVE-2026-33447

CVE-2026-33447 is a buffer overflow in a message parsing function of the Secure Access client prior to 14.50. Attackers with control of a modifie...

Absolute Software Secure Access CVE