CVE-2026-21662
Unrestricted upload of file with dangerous type vulnerability in Johnson Controls FM Systems Employee...
CVE-2026-34490
Cleartext storage of sensitive information vulnerability in Johnson Controls XAAP Application on Android...
CVE-2026-34495
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in...
CVE-2026-34497
Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Johnson...
9.6 CVE-2026-54725
vault-secrets-webhook is a Kubernetes mutating webhook that makes direct secret injection into Pods...
CVE-2026-54729
DSSRF is a Node.js library that provides a wide range of utilities and advanced SSRF defense checks....
7.3 CVE-2026-54737
@phun-ky/defaults-deep is a library like lodash defaultsDeep with array preservation and no lodash dependency....
CVE-2026-55100
hashi-vault-js is a Node.js module for interacting with the HashiCorp Vault API. Prior to 0.5.2, src/Vault.js...
4.7 CVE-2026-18321
Buffer overflow in NTPsec's Zyfer refclock allows local attacker to crash ntpd
7.3 CVE-2026-18481
Stored cross-site scripting in the participant URL handling in AWS Ops
Wheel before PR #168 might allow...
3.7 CVE-2026-25552
Ghost CLI before 1.30.1 contains an IP spoofing vulnerability that allows unauthenticated remote attackers...
8.2 CVE-2026-53500
Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, the ALLOWED_SOURCES...
8.2 CVE-2026-53501
Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor’s HMAC...
CVE-2026-53502
Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, file_loader decodes...
7.5 CVE-2026-53503
Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor's filters:convolution(<matrix>,...
7.5 CVE-2026-53504
Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, the convolution filter...
7.5 CVE-2026-53505
Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor's filters:proportion(<value>)...
2.6 CVE-2026-55824
Contao is an Open Source CMS. In versions 4.13.40 through 5.3.46 and 5.7.0-RC1 through 5.7.6, the crawler...
3.1 CVE-2026-57232
Contao is an Open Source CMS. From 5.3.35 through 5.3.47 and from 5.7.0-RC1 through 5.7.8, the Feed...
7.4 CVE-2026-18394
Incorrect authorization in the http_request tool in Strands Agents Tools before 0.8.2 might allow remote...
CVE-2026-38711
TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000...