Vulnerability Digest — June 8, 2026 · 43 Critical · 4 Exploited






Vulnerability Digest — Monday, June 8, 2026


Security Report

Monday, June 8, 2026  ·  Last 7 days  ·  Min severity: MEDIUM
Total Findings
287
Critical
43
High
149
Actively Exploited
4
CISA-KEV4
NVD180
GitHub-GHSA103
Findings sorted by severity
CISA-KEV

CRITICAL
SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability
CVE-2026-28318
pkg: SolarWinds Serv-U

published: Jun 5, 2026

SolarWinds Serv-U contains an uncontrolled resource consumption vulnerability that allows specially crafted POST requests using the Content-Encoding: deflate header to crash the Serv-U service without authentication.
Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
CISA-KEV

CRITICAL
Mirasvit Full Page Cache Warmer Deserialization of Untrusted Data Vulnerability
CVE-2026-45247
pkg: Mirasvit Mirasvit Full Page Cache Warmer

published: Jun 3, 2026

Mirasvit Full Page Cache Warmer contains a deserialization of untrusted data vulnerability that could allow unauthenticated attackers to achieve remote code execution by supplying a crafted serialized PHP object in the CacheWarmer cookie.
Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
CISA-KEV

CRITICAL
Linux Kernel Improper Authentication Vulnerability
CVE-2022-0492
pkg: Linux Kernel

published: Jun 2, 2026

Linux Kernel contains an improper authentication vulnerability which could allow for privilege escalation via the cgroups v1 release_agent feature.
Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
CISA-KEV

CRITICAL
Android Framework Integer Overflow Vulnerability
CVE-2025-48595
pkg: Android Framework

published: Jun 2, 2026

Android Framework contains an integer overflow vulnerability that allows for code execution that could allow for local privilege escalation.
Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
NVD

CRITICAL
CVE-2026-46389
CVE-2026-46389
pkg: kubernetes

published: Jun 5, 2026

UDS Identity Config builds the Keycloak configuration image (realm, plugins, theme, truststore, JARs) consumed by UDS Core's Identity deployment. In versions 0.11.0 through 0.26.0, a logic error in the `client-kubernetes-secret` Keycloak client authenticator (shipped by `uds-identity-config` and con…
CWE: CWE-287, CWE-303
GitHub-GHSA

CRITICAL
DbGate: Unauthenticated Remote Code Execution via JSON Script Runner
GHSA-8v3q-9vmx-36vc
pkg: dbgate-serve
eco: npm
published: Jun 5, 2026
### Summary
DbGate's JSON script runner (`POST /runners/start`) allows remote code execution via code injection in the `functionName` parameter of JSON script `assign` commands. The `functionName` value is interpolated directly into dynamically generated JavaScript source code via string concatenati…
CVE-2026-47668
NVD

CRITICAL
CVE-2026-40965
CVE-2026-40965
pkg: jwt

published: Jun 1, 2026

Cloud Foundry UAA versions v76.12.0 through v78.12.0 are vulnerable to a private key exposure. The server contains a vulnerability where EC (Elliptic Curve) private keys are inadvertently exposed through the public /token_keys endpoint. This endpoint is designed to provide public key material for JW…
CWE: CWE-200
NVD

CRITICAL
CVE-2026-45131
CVE-2026-45131
pkg: docker

published: Jun 1, 2026

CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow (pull-request.yaml) executes attacker-controlled code from fork pull requests in a privileged context, exposing repository secrets including Docker Hub credentials and tokens witho…
CWE: CWE-94
NVD

CRITICAL
CVE-2026-43986
CVE-2026-43986
pkg: python

published: Jun 4, 2026

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 expose a public `/image/<hash>` route that resolves attacker-controlled entries from `image_hash_lookup` and replays them through the same server-side image fetch logic used by authenticated image…
CWE: CWE-918
NVD

CRITICAL
CVE-2025-71316
CVE-2025-71316
pkg: windows

published: Jun 4, 2026

SQLite 'sqldiff.exe' does not securely handle the way the Microsoft Windows C runtime converts Unicode characters to ANSI codepages. An attacker could use the '-L' option to load an arbitrary DLL with a crafted command line argument string that results in command line file arguments being misinterp…
CWE: CWE-176
GitHub-GHSA

CRITICAL
Jupyter Enterprise Gateway: ContainerProcessProxy._enforce_prohibited_ids Bypass
GHSA-chq7-94j8-cj28
pkg: jupyter_enterprise_gateway
eco: pip
published: Jun 3, 2026
### Summary

Jupyter Enterprise Gateway has a prohibited UID and GID feature that by default prevents launching kernels with UID or GID 0 (root).
This can be bypassed. It is possible to launch kernels with a prohibited UID and/or GID by using a specially crafted `KERNEL_UID` or `KERNEL_GID` value.

CVE-2026-44180
NVD

CRITICAL
CVE-2026-36576
CVE-2026-36576
pkg: docker

published: Jun 3, 2026

An OS command injection vulnerability in the app.py component of openlabs docker-wkhtmltopdf-aas up to commit 9f50579 allows attackers to execute arbitrary commands via a crafted POST request.
CWE: CWE-78
GitHub-GHSA

CRITICAL
When Vitest UI server is listening, arbitrary file can be read and executed
GHSA-5xrq-8626-4rwp
pkg: vitest
eco: npm
published: Jun 1, 2026
### Summary
Arbitrary file can be read on Windows when Vitest UI server is listening, especially when exposed to the network.

### Impact
Only users that match either of the following conditions are affected:

– explicitly exposes the Vitest UI server to the network (using `–api.host` or [`api.host…

CVE-2026-47429
NVD

CRITICAL
CVE-2026-45758
CVE-2026-45758
pkg: python

published: Jun 5, 2026

Guardrails AI is a Python framework that helps build AI applications. On May 11, 2026 at approximately 6:00 PM Pacific, an attacker published a malicious version of `guardrails-ai` (0.10.1) to PyPI. Aany user who installed `guardrails-ai==0.10.1` from PyPI on May 11, 2026 may be affected. Security r…
CWE: CWE-506
NVD

CRITICAL
CVE-2026-11112
CVE-2026-11112
pkg: linux

published: Jun 4, 2026

Insufficient validation of untrusted input in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: Medium)
CWE: CWE-20, CWE-20
NVD

CRITICAL
CVE-2026-11094
CVE-2026-11094
pkg: windows

published: Jun 4, 2026

Use after free in Codecs in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416, CWE-416
NVD

CRITICAL
CVE-2026-11070
CVE-2026-11070
pkg: windows

published: Jun 4, 2026

Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the network process to potentially perform a sandbox escape via malicious network traffic. (Chromium security severity: Medium)
CWE: CWE-20, CWE-20
NVD

CRITICAL
CVE-2026-11063
CVE-2026-11063
pkg: windows

published: Jun 4, 2026

Insufficient validation of untrusted input in WebNN in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-20, CWE-20
NVD

CRITICAL
CVE-2026-11056
CVE-2026-11056
pkg: windows

published: Jun 4, 2026

Insufficient validation of untrusted input in SiteIsolation in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-20, CWE-20
NVD

CRITICAL
CVE-2026-11052
CVE-2026-11052
pkg: windows

published: Jun 4, 2026

Type Confusion in GPU in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-843, CWE-843
NVD

CRITICAL
CVE-2026-11047
CVE-2026-11047
pkg: windows

published: Jun 4, 2026

Inappropriate implementation in Base in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-20, CWE-20
NVD

CRITICAL
CVE-2026-11009
CVE-2026-11009
pkg: windows

published: Jun 4, 2026

Use after free in USB in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

CRITICAL
CVE-2026-10972
CVE-2026-10972
pkg: google chrome, linux linux_kernel

published: Jun 4, 2026

Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416, CWE-416
NVD

CRITICAL
CVE-2026-10971
CVE-2026-10971
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Insufficient validation of untrusted input in Printing in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-20
NVD

CRITICAL
CVE-2026-10892
CVE-2026-10892
pkg: google chrome, google android

published: Jun 4, 2026

Out of bounds write in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-787, CWE-787
NVD

CRITICAL
CVE-2026-10886
CVE-2026-10886
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

CRITICAL
CVE-2026-10881
CVE-2026-10881
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Out of bounds read and write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-125, CWE-787
GitHub-GHSA

CRITICAL
Supply chain compromise via malicious @cap-js/openapi
GHSA-jpvj-wpmj-h7rv
pkg: @cap-js/openapi
eco: npm
published: Jun 4, 2026
### Impact

On May 19, 2026, a compromised version of @cap-js/openapi@1.4.1 was published.
The malicious packages harvested credentials and attempted self-propagation.
If a compromised version was installed, all credentials accessible on that machine (npm tokens, cloud provider credentials, SSH keys…

NVD

CRITICAL
CVE-2026-10840
CVE-2026-10840
pkg: tls

published: Jun 4, 2026

A flaw was found in the OpenShift Pipelines operator. The tekton-scheduler-rolebinding ClusterRoleBinding grants the system:authenticated group write access to Kueue and cert-manager custom resources via the tekton-scheduler-role ClusterRole. When Kueue or cert-manager CRDs are present on the cluste…
CWE: CWE-732
NVD

CRITICAL
CVE-2026-5241
CVE-2026-5241
pkg: huggingface transformers

published: Jun 3, 2026

A vulnerability in the LightGlue model loading path of huggingface/transformers version 5.2.0 allows an attacker-controlled model repository to execute arbitrary code during model initialization. The issue arises because the `trust_remote_code` parameter, intended to prevent remote code execution, i…
CWE: CWE-829
NVD

CRITICAL
CVE-2026-32625
CVE-2026-32625
pkg: librechat librechat

published: Jun 2, 2026

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, the Model Context Protocol (MCP) server integration resolves ${VAR} placeholders against the server's process.env during Zod schema validation of user-supplied MCP server URLs. Any auth…
CWE: CWE-200
GitHub-GHSA

CRITICAL
praisonai-platform: Any workspace member can add arbitrary user as owner via POST /workspaces/{id}/members
GHSA-8g2p-pqm3-fcfh
pkg: praisonai-platform
eco: pip
published: Jun 1, 2026
## Summary

**Type:** Privilege escalation / cross-tenant member injection. The `POST /workspaces/{workspace_id}/members` endpoint is gated only by `require_workspace_member(workspace_id)` (default `min_role="member"`) and forwards the request body's `user_id` and `role` straight into `MemberService…

CVE-2026-47413
GitHub-GHSA

CRITICAL
Vitest browser mode serves unsanitized otelCarrier query parameter as inline script
GHSA-2h32-95rg-cppp
pkg: @vitest/browser, @vitest/browser
eco: npm
published: Jun 1, 2026
## Summary

Vitest browser mode served `/__vitest_test__/` with the `otelCarrier` query parameter inserted directly into an inline module script. Because this value was treated as JavaScript source rather than data, an attacker could craft a browser-runner URL that executes arbitrary JavaScript in t…

CVE-2026-47428
NVD

CRITICAL
CVE-2026-50208
CVE-2026-50208
pkg: acer connect_m6e_5g_firmware, acer connect_m6e_5g

published: Jun 4, 2026

High-risk TrustAllCerts routines disable standard TLS certificate validation. Combined with hard-coded DES symmetric encryption keys, a Man-in-the-Middle (MITM) actor could decrypt network traffic.
CWE: CWE-330
GitHub-GHSA

CRITICAL
NASA AMMOS Instrument Toolkit: Path traversal resulting in arbitrary file append (can be triggered over the network by unauthenticated attacker)
GHSA-p462-prxw-mjx4
pkg: ait-core, ait-core
eco: pip
published: Jun 5, 2026
## 1. Summary

The Binary Stream Capture (BSC) component exposes an unauthenticated HTTP API for dynamically creating packet capture “handlers.” Because the code blindly trusts path‑related form fields, a remote client can:

– **Bypass the configured log root** and direct BSC to log to **arbit…

CVE-2026-47731
NVD

CRITICAL
CVE-2026-46266
CVE-2026-46266
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP

Yizhou Zhao reported that simply having one RAW socket on protocol
IPPROTO_RAW (255) was dangerous.

socket(AF_INET, SOCK_RAW, 255);

A malicious incoming ICMP packet c…

NVD

CRITICAL
CVE-2026-46244
CVE-2026-46244
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nft_inner: Fix IPv6 inner_thoff desync

In nft_inner_parse_l2l3(), when processing inner IPv6 packets,
ipv6_find_hdr() correctly computes the transport header offset
traversing all extension headers, but the result is im…

NVD

CRITICAL
CVE-2026-22872
CVE-2026-22872
pkg: projectcapsule capsule

published: Jun 1, 2026

Capsule is a multi-tenancy and policy-based framework for Kubernetes. The Capsule Controller runs with cluster-admin privileges. Although the TenantResource RawItems processing logic forcibly sets the namespace, this is ineffective for cluster-scoped resources. Prior to version 0.13.0, tenant admini…
CWE: CWE-20, CWE-863
GitHub-GHSA

CRITICAL
Authenticated Remote Code Execution via loadReader functionName code injection in DbGate
GHSA-wm5r-5qp3-5vxf
pkg: dbgate-api
eco: npm
published: Jun 5, 2026
### Summary

DbGate is vulnerable to authenticated Remote Code Execution (RCE). Any user with valid DbGate credentials can execute arbitrary OS commands as root by exploiting an unsanitized `functionName` parameter in the `/runners/load-reader` endpoint. The `require = null` mitigation is trivially …

CVE-2026-47670
GitHub-GHSA

CRITICAL
DbGate: Zip Slip in archive/unzip allows arbitrary file write leading to RCE
GHSA-h535-j5hr-mv56
pkg: dbgate
eco: npm
published: Jun 5, 2026
The `unzipDirectory()` function in `packages/api/src/shell/unzipDirectory.js` (line 27) does not validate that extracted file paths stay within the output directory. A malicious ZIP with `../` entries writes files anywhere on the filesystem.

In the default Docker deployment, DbGate runs as root and…

CVE-2026-47669
GitHub-GHSA

CRITICAL
MCP-for-Stata: Command injection via log_file_name parameter in Stata command wrapper
GHSA-4p62-hqp5-g644
pkg: stata-mcp
eco: pip
published: Jun 4, 2026
### Summary
The `log_file_name` parameter in the `stata_do` API and CLI is directly interpolated into a Stata command string without sanitization. The security guard (`GuardValidator`) only scans the do-file content but does not validate this parameter. An attacker can inject arbitrary Stata command…
CVE-2026-47708
GitHub-GHSA

CRITICAL
Jupyter Enterprise Gateway: Kubernetes Manifest Injection in Jinja2 Template Rendering
GHSA-cfw7-6c5v-2wjq
pkg: jupyter_enterprise_gateway
eco: pip
published: Jun 3, 2026
### Summary

The environment variables used during the rendering of the Kubernetes manifest allow YAML injection, enabling attackers to overwrite existing keys like `securityContext` and inject multi-document YAML to create additional unintended Kubernetes resources.

### Details

The server interpo…

CVE-2026-44182
GitHub-GHSA

CRITICAL
Jupyter Enterprise Gateway: Jinja2 Template Server Side Template Injection resulting in Remote Code Execution
GHSA-f49j-v924-fx9w
pkg: jupyter_enterprise_gateway
eco: pip
published: Jun 3, 2026
### Summary

The environment variables (`KERNEL_XXX`) used during the rendering of the Kubernetes manifest are vulnerable to Server Side Template Injection (SSTI).
By including Jinja2 template expressions it is possible to execution Python code and OS Commands in the Enterprise Gateway service.
The …

CVE-2026-44181
NVD

HIGH
CVE-2026-43984
CVE-2026-43984
pkg: python

published: Jun 4, 2026

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 expose `log_js_errors` to any authenticated user, including guest users when guest access is enabled. The endpoint writes attacker-controlled strings directly into the main application log. The ad…
CWE: CWE-79
NVD

HIGH
CVE-2026-49492
CVE-2026-49492
pkg: windows

published: Jun 5, 2026

Markdown Preview Enhanced before 0.8.28 opens external files and links from the preview through a shell and does not validate untrusted inputs taken from the markdown document – the diagram filename attribute, imported file paths, and the latex_engine code-chunk attribute. On Windows, a crafted mark…
CWE: CWE-78
GitHub-GHSA

HIGH
DbGate: Remote Code Execution via functionName injection in loadReader endpoint
GHSA-hv83-ggc4-v385
pkg: dbgate-api
eco: npm
published: Jun 5, 2026
### Summary

The `POST /runners/load-reader` endpoint in DbGate accepts a `functionName` parameter that is directly interpolated into a JavaScript code template without any sanitization or validation. An authenticated user (with basic access, no special permissions required) can inject arbitrary Jav…

CVE-2026-48017
NVD

HIGH
CVE-2026-11147
CVE-2026-11147
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in WebML in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

HIGH
CVE-2026-11117
CVE-2026-11117
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in Views in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

HIGH
CVE-2026-11074
CVE-2026-11074
pkg: google chrome, linux linux_kernel

published: Jun 4, 2026

Use after free in WebRTC in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

HIGH
CVE-2026-11071
CVE-2026-11071
pkg: linux

published: Jun 4, 2026

Use after free in Base in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416, CWE-416
NVD

HIGH
CVE-2026-11060
CVE-2026-11060
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in Media in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

HIGH
CVE-2026-11055
CVE-2026-11055
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

HIGH
CVE-2026-11041
CVE-2026-11041
pkg: windows

published: Jun 4, 2026

Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-20
NVD

HIGH
CVE-2026-11028
CVE-2026-11028
pkg: google chrome, google chrome_os, linux linux_kernel

published: Jun 4, 2026

Use after free in Media in Google Chrome on Linux and ChromeOS prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

HIGH
CVE-2026-11000
CVE-2026-11000
pkg: google chrome, linux linux_kernel

published: Jun 4, 2026

Use after free in Fonts in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-416
NVD

HIGH
CVE-2026-10978
CVE-2026-10978
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10955
CVE-2026-10955
pkg: windows

published: Jun 4, 2026

Type Confusion in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-843, CWE-843
NVD

HIGH
CVE-2026-10914
CVE-2026-10914
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10913
CVE-2026-10913
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10910
CVE-2026-10910
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-843
NVD

HIGH
CVE-2026-10907
CVE-2026-10907
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Out of bounds write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-787
NVD

HIGH
CVE-2026-10904
CVE-2026-10904
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Inappropriate implementation in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-20, CWE-94, CWE-119
NVD

HIGH
CVE-2026-10903
CVE-2026-10903
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10902
CVE-2026-10902
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Ozone in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10897
CVE-2026-10897
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Inappropriate implementation in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-787, CWE-787
NVD

HIGH
CVE-2026-10896
CVE-2026-10896
pkg: google chrome, apple iphone_os

published: Jun 4, 2026

Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10895
CVE-2026-10895
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Ozone in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10893
CVE-2026-10893
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)
CWE: CWE-416, CWE-416
NVD

HIGH
CVE-2026-10891
CVE-2026-10891
pkg: google chrome, linux linux_kernel

published: Jun 4, 2026

Use after free in GFX in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10890
CVE-2026-10890
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10888
CVE-2026-10888
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Cast Streaming in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10885
CVE-2026-10885
pkg: google chrome, apple iphone_os

published: Jun 4, 2026

Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10883
CVE-2026-10883
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Type Confusion in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-787
NVD

HIGH
CVE-2026-10882
CVE-2026-10882
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-43985
CVE-2026-43985
pkg: jwt

published: Jun 4, 2026

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 expose `configUpdate` as a state-changing administrator endpoint, but the route does not enforce `POST` and does not use any anti-CSRF token. In the default form and JWT-based authentication mode,…
CWE: CWE-352
NVD

HIGH
CVE-2026-41860
CVE-2026-41860
pkg: openssl

published: Jun 4, 2026

CWE-326 in BOSH allows a local attacker to steal Basic-auth credentials or redirect UAA token requests via MITM. HttpRequestHelper#create_async_endpoint and #send_http_get_request_synchronous hard-code OpenSSL::SSL::VERIFY_NONE, enabling an attacker to intercept traffic between bosh-monitor and the …
CWE: CWE-326
GitHub-GHSA

HIGH
browserstack-runner vulnerable to Remote Code Execution via vm sandbox escape in _log HTTP handler
GHSA-6vr3-7wcx-v5g5
pkg: browserstack-runner
eco: npm
published: Jun 3, 2026
### Summary

The HTTP handler `/_log` in `lib/server.js` (lines 491–515) of browserstack-runner passes unauthenticated user-supplied data to `vm.runInNewContext()` combined with `eval()`, enabling a sandbox escape and arbitrary code execution on the host system.

### Details

When `browserstack-ru…

CVE-2026-49143
NVD

HIGH
CVE-2026-46264
CVE-2026-46264
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

drm/xe/pf: Fix sysfs initialization

In case of devm_add_action_or_reset() failure the provided cleanup
action will be run immediately on the not yet initialized kobject.
This may lead to errors like:

[ ] kobject: '(null)' (ff110…

NVD

HIGH
CVE-2026-49143
CVE-2026-49143
pkg: node

published: Jun 2, 2026

BrowserStack Runner through 0.9.5 contains a remote code execution vulnerability in the /_log HTTP handler that allows unauthenticated network-adjacent attackers to execute arbitrary code by submitting crafted JSON request bodies to the handler, which passes user-supplied data to vm.runInNewContext(…
CWE: CWE-94
GitHub-GHSA

HIGH
TinyMCE Cross-Site Scripting (XSS) vulnerability using media plugin `data-mce-object` injection
GHSA-vg35-5wq7-3x7w
pkg: tinymce, tinymce, tinymce
eco: npm
published: Jun 5, 2026
### Impact
Stored XSS vulnerability in the media plugin. Attackers can inject malicious scripts via crafted `data-mce-*` attributes, which are executed when content is rendered. Impacts users of TinyMCE with the media plugin enabled.

### Patches
This vulnerability has been patched in TinyMCE 8.5.1,…

CVE-2026-47761
GitHub-GHSA

HIGH
TinyMCE Cross-Site Scripting (XSS) vulnerability through `mce:protected` comments
GHSA-v98h-vmpc-fpqv
pkg: tinymce, tinymce, tinymce
eco: npm
published: Jun 5, 2026
### Impact
Stored XSS vulnerability via forged mce:protected comments. Allows attackers to bypass sanitization and inject scripts that execute when content is restored. Impacts users who utilize the protect option.

### Patches
Patched by validating decoded mce:protected content against configured p…

CVE-2026-47762
GitHub-GHSA

HIGH
TinyMCE Cross-Site Scripting (XSS) vulnerability using through data-mce- prefixed src, href, style attributes
GHSA-q742-qvgc-gc2f
pkg: tinymce, tinymce, tinymce
eco: npm
published: Jun 5, 2026
### Impact
Stored XSS vulnerability via unsanitized data-mce-* attributes (data-mce-href, data-mce-src, data-mce-style). Allows attackers to inject malicious values that override safe attributes during serialization, bypassing validation.

### Patches
Patched by stripping unsafe data-mce-* attribute…

CVE-2026-47759
GitHub-GHSA

HIGH
TinyMCE Cross-Site Scripting (XSS) vulnerability using sanitization bypass through nested SVGs
GHSA-mh5m-5hw4-5c69
pkg: tinymce, TinyMCE, tinymce/tinymce
eco: npm
published: Jun 5, 2026
### Impact
TinyMCE 6.8.x contains an XSS vulnerability caused by improper SVG namespace scope handling in the sanitizer. A crafted payload using nested <svg> elements can bypass attribute sanitization and execute arbitrary JavaScript.

### Patches
This issue affects TinyMCE 6.8.x-7.0.x. The vulnerab…

CVE-2026-47760
NVD

HIGH
CVE-2026-46392
CVE-2026-46392
pkg: node

published: Jun 5, 2026

HAX CMS helps manage microsite universe with PHP or NodeJs backends. Prior to version 26.0.0 of HAX CMS PHP, the `saveFile` endpoint validates upload extensions case-insensitively and writes the filename to disk verbatim, but the `.htaccess` rule that forces `Content-Disposition: attachment` on HTML…
CWE: CWE-178, CWE-434
GitHub-GHSA

HIGH
Docling Core: Unsafe remote filename resolution
GHSA-jmmv-h3mp-59v8
pkg: docling-core
eco: pip
published: Jun 3, 2026
### Impact
In versions `>= 1.5.0, < 2.74.1`, `docling-core` did not sufficiently restrict remote request destinations and could resolve a server-provided `Content-Disposition` to a local path in an unsafe manner.

In applications that accept untrusted URLs, this could allow SSRF attacks targeting lo…

CVE-2026-44023
NVD

HIGH
CVE-2026-46273
CVE-2026-46273
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

ibmveth: Disable GSO for packets with small MSS

Some physical adapters on Power systems do not support segmentation
offload when the MSS is less than 224 bytes. Attempting to send such
packets causes the adapter to freeze, stoppin…

NVD

HIGH
CVE-2026-46270
CVE-2026-46270
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

power: supply: rt9455: Fix use-after-free in power_supply_changed()

Using the `devm_` variant for requesting IRQ _before_ the `devm_`
variant for allocating/registering the `power_supply` handle, means that
the `power_supply` hand…

NVD

HIGH
CVE-2026-46251
CVE-2026-46251
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

btrfs: fix block_group_tree dirty_list corruption

When the incompat flag EXTENT_TREE_V2 is set, we unconditionally add the
block group tree to the switch_commits list before calling
switch_commit_roots, as we do for the tree root …

NVD

HIGH
CVE-2025-5088
CVE-2025-5088
pkg: tls

published: Jun 5, 2026

An authenticated Redis session could be used to obtain full root access to all servers in the CVX cluster. Note that this would require an attacker to have both network access to the Redis service on a CVX server and the Redis password. Please note that all Redis communication, including authenticat…
CWE: CWE-269
GitHub-GHSA

HIGH
praisonai-platform: Agent endpoints accept any agent_id without workspace ownership check, cross-workspace read/update/delete IDOR
GHSA-7p8g-6c6g-h9w7
pkg: praisonai-platform
eco: pip
published: Jun 5, 2026
## Summary

**Type:** Insecure Direct Object Reference. The agent CRUD endpoints (`GET / PATCH / DELETE /workspaces/{workspace_id}/agents/{agent_id}`) gate access on `require_workspace_member(workspace_id)` only, then resolve `agent_id` through `AgentService.get(agent_id)` which is a primary-key loo…

CVE-2026-47419
NVD

HIGH
CVE-2026-10940
CVE-2026-10940
pkg: windows

published: Jun 4, 2026

Race in Codecs in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-362
NVD

HIGH
CVE-2026-10933
CVE-2026-10933
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in Audio in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10919
CVE-2026-10919
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10918
CVE-2026-10918
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Viz in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10917
CVE-2026-10917
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-20
NVD

HIGH
CVE-2026-10915
CVE-2026-10915
pkg: google chrome, apple iphone_os

published: Jun 4, 2026

Use after free in Core in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10911
CVE-2026-10911
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-20
NVD

HIGH
CVE-2026-10909
CVE-2026-10909
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10908
CVE-2026-10908
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Use after free in FullScreen in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10905
CVE-2026-10905
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10898
CVE-2026-10898
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Stack buffer overflow in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-121
NVD

HIGH
CVE-2026-10894
CVE-2026-10894
pkg: google chrome, linux linux_kernel

published: Jun 4, 2026

Use after free in Printing in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10889
CVE-2026-10889
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-125
NVD

HIGH
CVE-2026-10884
CVE-2026-10884
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
GitHub-GHSA

HIGH
Nuclio: Missing authorization on project write paths allows any authenticated user to modify or delete any project
GHSA-m8xg-8xg9-mxhm
pkg: github.com/nuclio/nuclio
eco: go
published: Jun 4, 2026
This vulnerability exists in Nuclio Dashboard's project management API, allowing any authenticated user (without membership in the target project) to bypass OPA authorization checks on write paths (`PUT /api/projects/{id}`, `DELETE /api/projects`) and modify or delete any project along with all its …
CVE-2026-45730
GitHub-GHSA

HIGH
praisonai-platform: Issue endpoints accept any issue_id without workspace ownership check, cross-workspace read/update/delete IDOR
GHSA-xwq8-frcg-77q8
pkg: praisonai-platform
eco: pip
published: Jun 1, 2026
## Summary

**Type:** Insecure Direct Object Reference. The issue CRUD endpoints (`GET / PATCH / DELETE /workspaces/{workspace_id}/issues/{issue_id}`) gate access on `require_workspace_member(workspace_id)` only, then resolve `issue_id` through `IssueService.get(issue_id)` which is a primary-key loo…

CVE-2026-47415
NVD

HIGH
CVE-2019-25745
CVE-2019-25745
pkg: go

published: Jun 4, 2026

WordPress Plugin Google Review Slider 6.1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'tid' parameter. Attackers can send GET requests to the admin interface with malicious 'tid' values…
CWE: CWE-89
GitHub-GHSA

HIGH
Docling: Unsafe Playwright-based HTML Rendering
GHSA-pj2v-ggqh-cmq2
pkg: docling
eco: pip
published: Jun 3, 2026
### Impact
In versions `>= 2.82.0, < 2.91.0`, if the HTML backend was explicitly configured for rendering (rendering option by default deactivated), then the Playwright-based rendering feature could allow JavaScript execution and unrestricted network access when processing untrusted HTML documents. …
CVE-2026-44016
NVD

HIGH
CVE-2026-45302
CVE-2026-45302
pkg: node

published: Jun 1, 2026

parse-nested-form-data is a tiny node module for parsing FormData by name into objects and arrays. Prior to version 1.0.1, parseFormData() walks bracket and dot-notation FormData field names into nested objects without filtering reserved property keys. A single FormData field whose name begins with …
CWE: CWE-1321
GitHub-GHSA

HIGH
DOMPurify XSS via selectedcontent re-clone
GHSA-87xg-pxx2-7hvx
pkg: dompurify
eco: npm
published: Jun 1, 2026
### Summary
DOMPurify 3.4.4 allows `selectedcontent` by default, allowing a chain in which browsers "re-clone" an XSS payload after sanitization, effectively bypassing DOMPurify.

### Details
The chain is as follows:
1. The browser parses the input and creates a `<selectedcontent>` clone from the s…

CVE-2026-47423
NVD

HIGH
CVE-2026-10887
CVE-2026-10887
pkg: google chrome, apple macos

published: Jun 4, 2026

Use after free in Chromoting in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)
CWE: CWE-416
GitHub-GHSA

HIGH
Docling Core: Insufficient validation of image reference URIs
GHSA-j5xp-7m2f-49jv
pkg: docling-core
eco: pip
published: Jun 3, 2026
### Impact
In versions `>= 2.5.0, < 2.74.1`, `docling-core` could allow local `file://` image references and accepted inline `data:` content without a decoded-size limit.

In applications that accept untrusted image references, this may allow access to local files readable by the process or excessi…

CVE-2026-44019
GitHub-GHSA

HIGH
React Router's vendored turbo-stream v2 allows arbitrary constructor invocation via TYPE_ERROR deserialization leading to Unauth RCE
GHSA-49rj-9fvp-4h2h
pkg: react-router
eco: npm
published: Jun 3, 2026
When using React Router v7 in [Framework Mode](https://reactrouter.com/start/modes#framework), there exists a combination of steps that could potentially allow unauthorized RCE through external requests. This first requires the application code to have an existing prototype pollution vulnerability.…
CVE-2026-42211
NVD

HIGH
CVE-2026-42211
CVE-2026-42211
pkg: shopify react-router

published: Jun 2, 2026

React Router is a router for React. In versions 7.0.0 through 7.14.1, when using Framework Mode, a combination of steps could potentially allow unauthorized remote code execution (RCE) through external requests. This attack requires the application code to have an existing prototype pollution vulner…
CWE: CWE-502
GitHub-GHSA

HIGH
praisonai-platform: Any workspace member can delete the entire workspace via DELETE /workspaces/{id}
GHSA-g8rr-7rj2-f627
pkg: praisonai-platform
eco: pip
published: Jun 1, 2026
## Summary

**Type:** Authorization bypass enabling destructive action. The `DELETE /workspaces/{workspace_id}` endpoint is gated only by `require_workspace_member(workspace_id)` (default `min_role="member"`). Any member of the workspace can issue a single DELETE to wipe the entire workspace, includ…

CVE-2026-47412
GitHub-GHSA

HIGH
praisonai-platform: Comment endpoints accept any issue_id without workspace ownership check, cross-workspace comment read and post IDOR
GHSA-cp4f-5m9r-5jc2
pkg: praisonai-platform
eco: pip
published: Jun 1, 2026
## Summary

**Type:** Insecure Direct Object Reference. The comment endpoints (`POST /workspaces/{workspace_id}/issues/{issue_id}/comments` and `GET …/comments`) gate access on `require_workspace_member(workspace_id)` only, then call `CommentService.create(issue_id=issue_id, …)` and `CommentServ…

CVE-2026-47417
GitHub-GHSA

HIGH
praisonai-platform: Project endpoints accept any project_id without workspace ownership check, cross-workspace read/update/delete IDOR
GHSA-943m-6wx2-rc2j
pkg: praisonai-platform
eco: pip
published: Jun 1, 2026
## Summary

**Type:** Insecure Direct Object Reference. The project CRUD endpoints (`GET / PATCH / DELETE /workspaces/{workspace_id}/projects/{project_id}` and `GET …/{project_id}/stats`) gate access on `require_workspace_member(workspace_id)` only, then resolve `project_id` through `ProjectServic…

CVE-2026-47418
NVD

HIGH
CVE-2026-45745
CVE-2026-45745
pkg: tls

published: Jun 5, 2026

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Starting in version 1.7.0, Termix Desktop (Electron) disables TLS certificate validation, allowing a machine-in-the-middle attacker to intercept and modify HTTPS traffic to the configured Te…
CWE: CWE-295
GitHub-GHSA

HIGH
React Router vulnerable to XSS in unstable RSC redirect handling via javascript: redirect targets
GHSA-8646-j5j9-6r62
pkg: react-router
eco: npm
published: Jun 3, 2026
When using React Router v7's unstable RSC APIs, there exists a potential client-side XSS issue in the RSC redirect handling if redirects are coming from untrusted sources

> [!NOTE]
> This only impacts your application if you are using the unstable RSC APIs in React Router.

CVE-2026-33245
NVD

HIGH
CVE-2026-33245
CVE-2026-33245
pkg: shopify react-router

published: Jun 2, 2026

React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Components (RSC) APIs, there is a potential client-side Cross-Site Scripting (XSS) vulnerability in the RSC redirect handling if redirects come from untrusted sources. This does not …
CWE: CWE-79
NVD

HIGH
CVE-2026-11103
CVE-2026-11103
pkg: windows

published: Jun 4, 2026

Inappropriate implementation in Installer in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: Medium)
CWE: CWE-269
NVD

HIGH
CVE-2026-10942
CVE-2026-10942
pkg: windows

published: Jun 4, 2026

Inappropriate implementation in UI in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: High)
CWE: CWE-20
NVD

HIGH
CVE-2026-41859
CVE-2026-41859
pkg: openssl

published: Jun 4, 2026

A network man-in-the-middle between nats-sync and the BOSH director can steal the director credentials (Basic auth header or UAA client secret) and can tamper with the VM list that is written into the NATS authorization file. Stolen credentials grant administrative director access. UsersSync#bosh_ap…
CWE: CWE-295
NVD

HIGH
CVE-2026-46271
CVE-2026-46271
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

wifi: ath12k: do WoW offloads only on primary link

In case of multi-link connection, WCN7850 firmware crashes due to WoW
offloads enabled on both primary and secondary links.

Change to do it only on primary link to fix it.

Teste…

NVD

HIGH
CVE-2026-46263
CVE-2026-46263
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

drm/amd/display: Fix out-of-bounds stream encoder index v3

eng_id can be negative and that stream_enc_regs[]
can be indexed out of bounds.

eng_id is used directly as an index into stream_enc_regs[], which has
only 5 entries. When…

NVD

HIGH
CVE-2026-46260
CVE-2026-46260
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

ipv6: Fix out-of-bound access in fib6_add_rt2node().

syzbot reported out-of-bound read in fib6_add_rt2node(). [0]

When IPv6 route is created with RTA_NH_ID, struct fib6_info
does not have the trailing struct fib6_nh.

The cited c…

NVD

HIGH
CVE-2026-46259
CVE-2026-46259
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

procfs: fix missing RCU protection when reading real_parent in do_task_stat()

When reading /proc/[pid]/stat, do_task_stat() accesses task->real_parent
without proper RCU protection, which leads to:

cpu 0 …

NVD

HIGH
CVE-2026-46253
CVE-2026-46253
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

pstore/ram: fix buffer overflow in persistent_ram_save_old()

persistent_ram_save_old() can be called multiple times for the same
persistent_ram_zone (e.g., via ramoops_pstore_read -> ramoops_get_next_prz
for PSTORE_TYPE_DMESG reco…

NVD

HIGH
CVE-2026-40290
CVE-2026-40290
pkg: trustedfirmware op-tee

published: Jun 3, 2026

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.16.0 and prior to 4.11.0, a user-after-free (UAF) race condition exists in the shared memory teardown logic of FF-A …
CWE: CWE-416
NVD

HIGH
CVE-2022-49036
CVE-2022-49036
pkg: openssl

published: Jun 3, 2026

An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local users to execute arbitrary code via unspecified vectors.
CWE: CWE-829
NVD

HIGH
CVE-2026-8501
CVE-2026-8501
pkg: windows

published: Jun 1, 2026

Improper access control in the PCTCore64.sys Windows kernel driver from PC Tools Internet Security allows user-mode processes to access the PCTCoreDriver WDM device interface and invoke privileged IOCTL handlers. A local attacker with the ability to access or load the affected driver can exploit thi…
CWE: CWE-782
GitHub-GHSA

HIGH
Sync-in Server: SSRF protection bypass via IPv4-mapped IPv6 addresses in regExpPrivateIP
GHSA-q4x5-8cj6-52wg
pkg: @sync-in/server
eco: npm
published: Jun 5, 2026
Summary:
The private IP blocklist regex used in the URL download feature does not match IPv4-mapped IPv6 addresses (e.g. ::ffff:127.0.0.1), allowing SSRF protection to be bypassed on dual-stack systems.

Affected components

backend/src/applications/files/services/files-manager.service.ts – downlo…

CVE-2026-47684
GitHub-GHSA

HIGH
Omni: Reader-level users can retrieve imported cluster CA keys via ResourceService
GHSA-wv8c-6mx2-xf4j
pkg: github.com/siderolabs/omni, github.com/siderolabs/omni
eco: go
published: Jun 5, 2026
## Summary

Omni supports importing standalone Talos clusters.

During this process, an ImportedClusterSecrets resource is created, which contains the full CA secrets bundle for the cluster being imported.

If these secrets are not rotated by the importing actor, an authenticated Omni user with Read…

CVE-2026-45726
NVD

HIGH
CVE-2026-41234
CVE-2026-41234
pkg: tls

published: Jun 4, 2026

Froxlor is open source server administration software. Prior to version 2.3.7, the `DomainZones.add` API endpoint does not sanitize newline characters in TXT record content. An authenticated customer with DNS editing enabled can inject newlines into TXT record values, which break out of the record l…
CWE: CWE-74
GitHub-GHSA

HIGH
Better Auth: Device authorization approve and deny accept any authenticated session while the user code is pending
GHSA-cq3f-vc6p-68fh
pkg: better-auth
eco: npm
published: Jun 4, 2026
### Am I affected?

You are affected if all of the following are true:

– You use `better-auth` at a version `>= 1.6.0, < 1.6.11`.
– The `deviceAuthorization` plugin is enabled in your auth config (`deviceAuthorization()` in your `plugins` array).
– A third party can observe a pending user code befo…

CVE-2026-45337
NVD

HIGH
CVE-2026-49494
CVE-2026-49494
pkg: windows

published: Jun 7, 2026

Comodo Internet Security's firewall driver Inspect.sys contains an integer underflow in its IPv6 packet parser. The parser decrements an unsigned 64-bit payload-length value (taken from the IPv6 fixed header's payload length field) by the size of each IPv6 extension header without validating it, so …
CWE: CWE-191
NVD

HIGH
CVE-2026-46493
CVE-2026-46493
pkg: node

published: Jun 5, 2026

HAX CMS helps manage microsite universe with PHP or NodeJs backends. Versions prior to 26.0.1 use `uniqid` for generating salts, which is unsuitable. Version 26.0.1 fixes the issue.
CWE: CWE-338
GitHub-GHSA

HIGH
Klever-Go KVM: Unauthenticated remote node crash (nil-pointer DoS) in klever-go P2P transaction interceptor (txVersionChecker nil RawData) – potential chain halt
GHSA-rm5c-5x2p-48wr
pkg: github.com/klever-io/klever-go
eco: go
published: Jun 5, 2026
## Summary
Every transaction gossiped on the klever-go P2P network is decoded and validated
synchronously inside the libp2p pubsub topic-validator callback. The validator
`txVersionChecker.CheckTxVersion` dereferences `tx.RawData.Version` with no nil
check. A protobuf `Transaction` whose embedded `R…
GitHub-GHSA

HIGH
klever-go: REST API slow-header connection exhaustion via Gin Engine.Run
GHSA-w4c6-7r69-w7j9
pkg: github.com/klever-io/klever-go
eco: go
published: Jun 5, 2026
### Summary

The Klever seednode REST API starts a Gin engine with `Engine.Run(restAPIInterface)`. In Gin v1.9.1, `Engine.Run` calls Go's default `http.ListenAndServe`, which constructs an HTTP server without application-level `ReadHeaderTimeout`, `ReadTimeout`, or `MaxHeaderBytes` limits.

An unaut…

GitHub-GHSA

HIGH
klever-go: Unbounded goroutine spawn on direct-message ingress enables peer-driven DoS
GHSA-hf2g-6j7h-98wg
pkg: github.com/klever-io/klever-go
eco: go
published: Jun 5, 2026
### Summary

`networkMessenger.directMessageHandler` in `network/p2p/libp2p/netMessenger.go` spawns a fresh goroutine for every incoming direct message before the antiflood layer makes an admission decision. There is no semaphore, throttler, or bound on concurrent in-flight spawns.

A single connect…

GitHub-GHSA

HIGH
wasmtime-wasi: WASI path_open(TRUNCATE) bypasses `FilePerms::WRITE` host restriction
GHSA-2r75-cxrj-cmph
pkg: wasmtime-wasi, wasmtime-wasi, wasmtime-wasi
eco: rust
published: Jun 5, 2026
## Summary

In `wasmtime-wasi`, when a filesystem preopen is given `DirPerms::all()` and `FilePerms::READ` without `FilePerms::WRITE`, this wasmtime-wasi enforced access control mechanism can be bypassed by using the wasip2 `descriptor.open-at` or wasip1 `path_open` interfaces by opening a file wit…

CVE-2026-47261
GitHub-GHSA

HIGH
Klever-Go KVM: Hash-array amplification in P2P resolver request handling
GHSA-w342-mj6g-v9c4
pkg: github.com/klever-io/klever-go
eco: go
published: Jun 5, 2026
### Summary
A connected peer can send a compressed `RequestDataType_HashArrayType` direct request that is only `442` bytes on the wire but expands into `200000` decoded hash entries inside the resolver path. On `klever-go` `v1.7.17`, this allows remote memory and CPU amplification against nodes that…
CVE-2026-47249
NVD

HIGH
CVE-2026-11058
CVE-2026-11058
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Integer overflow in CredentialProvider in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to perform OS-level privilege escalation via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-472
NVD

HIGH
CVE-2026-10906
CVE-2026-10906
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Use after free in WebAuthentication in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-416
NVD

HIGH
CVE-2026-10901
CVE-2026-10901
pkg: google chrome, apple macos

published: Jun 4, 2026

Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10900
CVE-2026-10900
pkg: google chrome, apple macos

published: Jun 4, 2026

Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10899
CVE-2026-10899
pkg: google chrome, linux linux_kernel

published: Jun 4, 2026

Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CWE: CWE-416
NVD

HIGH
CVE-2026-10796
CVE-2026-10796
pkg: openjsf node_version_manager

published: Jun 4, 2026

nvm (Node Version Manager) through 0.40.4 executes arbitrary commands from version strings supplied by the configured Node.js/io.js mirror. Commands such as `nvm install` read the available versions from the mirror's index.tab and use the selected version, without sanitization, to build download URL…
CWE: CWE-78
GitHub-GHSA

HIGH
Klever-Go P2P MultiDataInterceptor leaks global throttler slots on malformed compressed batches (DoS)
GHSA-74m6-4hjp-7226
pkg: github.com/klever-io/klever-go
eco: go
published: Jun 4, 2026
## Publisher note

**Fixed in `v1.7.17`.** Operators running `< v1.7.17` should upgrade. The decompression-error path in `MultiDataInterceptor.ProcessReceivedMessage` now releases the global throttler slot before returning (guarded `defer` after `StartProcessing()`, disabled when the asynchronous go…

GitHub-GHSA

HIGH
React Router vulnerable to Denial of Service via reflected user input in single-fetch
GHSA-rxv8-25v2-qmq8
pkg: react-router, turbo-stream
eco: npm
published: Jun 4, 2026
A DoS vulnerability exists in the React Router v7 [Framework Mode](https://reactrouter.com/start/modes#framework), as well as Remix v2.9.0+ with [Single Fetch](https://v2.remix.run/docs/guides/single-fetch) enabled. In some scenarios the underlying serialization algorithm can become a bottleneck whe…
CVE-2026-34077
GitHub-GHSA

HIGH
Axios: Regular Expression Denial of Service (ReDoS) via Cookie Name Injection
GHSA-hfxv-24rg-xrqf
pkg: axios, axios
eco: npm
published: Jun 4, 2026
## Summary

Axios versions before `0.32.0` on the `0.x` line and before `1.16.0` on the `1.x` line build a regular expression from the configured XSRF cookie name without escaping regex metacharacters. In standard browser environments, an attacker who can influence the cookie name passed to axios ca…

CVE-2026-44496
GitHub-GHSA

HIGH
Allocation of Resources Without Limits or Throttling in Axios
GHSA-777c-7fjr-54vf
pkg: axios
eco: npm
published: Jun 4, 2026
## Summary

Axios versions `1.7.0` through `1.15.x` did not enforce configured request and response size limits when requests were sent with the `fetch` adapter. Applications that selected `adapter: 'fetch'`, or ran in environments where axios resolved to the fetch adapter, could receive or send bod…

CVE-2026-44488
NVD

HIGH
CVE-2025-46638
CVE-2025-46638
pkg: ssl

published: Jun 4, 2026

Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to a Denial of Service (DoS).
CWE: CWE-770
GitHub-GHSA

HIGH
Axios: Proxy-Authorization header leaks to redirect target when proxy is re-evaluated to direct connection
GHSA-j5f8-grm9-p9fc
pkg: axios, axios
eco: npm
published: Jun 4, 2026
### Summary

Axios’ Node.js HTTP adapter can leak proxy credentials to a redirect target in affected versions. When a request is sent through an authenticated proxy, Axios may add a `Proxy-Authorization` header. If Axios then follows a redirect and the redirected request is no longer sent through …

CVE-2026-44486
NVD

HIGH
CVE-2026-41858
CVE-2026-41858
pkg: windows

published: Jun 4, 2026

Weak Randomness / Insecure Cryptographic Primitive (CWE-338) in Get-RandomPassword in BOSH-Ecosystem / windows-utilities-release allows a network attacker to estimate VM boot time and reconstruct a small candidate list to recover the Administrator password. The randomize_password job exists solely t…
CWE: CWE-338
GitHub-GHSA

HIGH
Docling: Unsafe XML Entity Expansion in USPTO Patent Backend
GHSA-m88r-rg27-5xfg
pkg: docling
eco: pip
published: Jun 3, 2026
### Impact
The USPTO patent XML parser used the standard `xml.sax.parseString()` without protection against XML External Entity (XXE) attacks. An attacker could craft malicious USPTO patent XML files with external entity references that could:
– Read arbitrary files from the server filesystem
– Perf…
CVE-2026-44020
GitHub-GHSA

HIGH
React Router vulnerable to DoS via unbounded path expansion in __manifest endpoint
GHSA-8x6r-g9mw-2r78
pkg: react-router, @remix-run/server-runtime
eco: npm
published: Jun 3, 2026
There exists a potential DOS attack vector in React Router Framework Mode applications (as well as Remix v2.10.0 – 2.17.4). Certain requests can be crafted to consume disproportionate resources on the server, resulting in response time degredation and/or service unavailability for end users.

> [!N…

CVE-2026-42342
GitHub-GHSA

HIGH
Docling: Unsafe Zip Extraction in EasyOCR Model Download
GHSA-cjqg-rq2h-2fvj
pkg: docling
eco: pip
published: Jun 3, 2026
### Impact
In versions `< 2.91.0`, The EasyOCR model download functionality extracted ZIP archives without validating member paths, enabling Zip Slip attacks. If an attacker could compromise the model download source (via supply chain attack, DNS spoofing, or MITM), they could write arbitrary files …
CVE-2026-44017
NVD

HIGH
CVE-2026-8888
CVE-2026-8888
pkg: securly securly

published: Jun 3, 2026

Version 3.0.7 of the Securly Chrome Extension downloads config.json over HTTP and compiles server-provided patterns as JavaScript regular expressions via new RegExp() without complexity validation. An on-path attacker can inject specific patterns to cause catastrophic backtracking, resulting in deni…
CWE: CWE-917, CWE-1333
NVD

HIGH
CVE-2026-46265
CVE-2026-46265
pkg: linux

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

RDMA/hns: Fix WQ_MEM_RECLAIM warning

When sunrpc is used, if a reset triggered, our wq may lead the
following trace:

workqueue: WQ_MEM_RECLAIM xprtiod:xprt_rdma_connect_worker [rpcrdma]
is flushing !WQ_MEM_RECLAIM hns_roce_irq_wo…

NVD

HIGH
CVE-2026-37462
CVE-2026-37462
pkg: go

published: Jun 3, 2026

An integer underflow in the BGPUpdate.DecodeFromBytes function (/bgp/bgp.go) of gobgp v4.3.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message.
CWE: CWE-190
NVD

HIGH
CVE-2026-47265
CVE-2026-47265
pkg: aiohttp aiohttp

published: Jun 2, 2026

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.14.0, cookies set with the `cookies` parameter on requests are sent after following a cross-origin redirect. If a developer uses the `cookies` parameter on a per-request basis then sensitive data might…
CWE: CWE-346
NVD

HIGH
CVE-2026-42342
CVE-2026-42342
pkg: shopify react-router, shopify remix-run\/server-runtime

published: Jun 2, 2026

React Router is a router for React. In versions 7.0.0 through 7.14.x of react-router and versions 2.10.0 through 2.17.4 of @remix-run/server-runtime, certain crafted requests can consume disproportionate server resources via unbounded path expansion in the __manifest endpoint, resulting in response …
CWE: CWE-400
NVD

HIGH
CVE-2026-34077
CVE-2026-34077
pkg: shopify react-router, turbo-stream turbo_stream

published: Jun 2, 2026

React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Components (RSC) APIs, there is a potential client-side Cross-Site Scripting (XSS) vulnerability in the RSC redirect handling if redirects come from untrusted sources. This does not …
CWE: CWE-770
NVD

HIGH
CVE-2026-45685
CVE-2026-45685
pkg: opentelemetry ebpf_instrumentation

published: Jun 2, 2026

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.1.0 to before version 0.9.0, malformed MongoDB wire messages can trigger uncaught panics in the MongoDB TCP parser, allowing a remote unauthenticated attacker to crash the telemetry a…
CWE: CWE-20, CWE-248, CWE-704
NVD

HIGH
CVE-2026-45553
CVE-2026-45553
pkg: python

published: Jun 2, 2026

NiceGUI is a Python-based UI framework. Prior to version 3.12.0, ui.restructured_text() renders reStructuredText server-side with Docutils without disabling file insertion directives. When a NiceGUI application passes attacker-controlled content to ui.restructured_text(), an attacker can use standar…
CWE: CWE-200
NVD

HIGH
CVE-2026-40964
CVE-2026-40964
pkg: jwt

published: Jun 1, 2026

Authentication Bypass in cf-auth-proxy in Cloud Foundry Foundation all installations allows an unauthenticated remote attacker to gain read access to every log and metric for every application and platform component via minting a JWT that the cf-auth-proxy accepts as a valid logs.admin token.

Affec…

CWE: CWE-287
NVD

HIGH
CVE-2026-37226
CVE-2026-37226
pkg: mosaic5g flexric

published: Jun 1, 2026

FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST referencing a non-existent E2 Node. The lookup function returns NULL, which is enforced by assert() in Debug builds (SIGABRT) and dereferenced in Release builds (SIGSEGV). A remote unauthenticated attacker can crash the iA…
CWE: CWE-476
NVD

HIGH
CVE-2026-37224
CVE-2026-37224
pkg: node

published: Jun 1, 2026

FlexRIC v2.0.0 crashes when receiving a duplicate E2_SETUP_REQUEST from the same or spoofed E2 Node. The iApp registry enforces node ID uniqueness via assert() rather than graceful rejection. A remote unauthenticated attacker can crash the iApp process (port 36421) by sending two E2_SETUP_REQUESTs w…
CWE: CWE-617
NVD

HIGH
CVE-2026-37223
CVE-2026-37223
pkg: node

published: Jun 1, 2026

FlexRIC v2.0.0 contains a reachable assertion in the iApp message dispatcher. The dispatcher validates incoming E2AP messages against a 9-entry whitelist using assert(). A remote unauthenticated attacker can send any decodable E2AP PDU with a message type not in the whitelist to crash the iApp proce…
CWE: CWE-617
NVD

HIGH
CVE-2026-37220
CVE-2026-37220
pkg: node

published: Jun 1, 2026

FlexRIC v2.0.0 crashes when an SCTP association is closed before an E2_SETUP_REQUEST is sent. The near-RT RIC assumes a mapping between SCTP association and E2 node always exists in the cleanup path and enforces this via assert(). A remote unauthenticated attacker can crash the near-RT RIC (port 364…
CWE: CWE-617
NVD

HIGH
CVE-2026-10968
CVE-2026-10968
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Insufficient validation of untrusted input in Dawn in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-20, CWE-20
NVD

HIGH
CVE-2026-44393
CVE-2026-44393
pkg: ssl

published: Jun 4, 2026

An issue was discovered in OpenStack oslo.messaging 1.0.0 through 17.3.0. The oslo.messaging RabbitMQ driver does not perform TLS hostname verification when connecting to the message broker. When ssl_ca_file is configured, the driver enables certificate chain validation but does not pass the expecte…
CWE: CWE-297
NVD

HIGH
CVE-2022-4991
CVE-2022-4991
pkg: openssl

published: Jun 1, 2026

Tychon includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory that may be controllable by an unprivileged user on Windows. Tychon contains a privileged service that uses this OpenSSL component. A user who can place a specially-crafted openssl.cnf file at an appropriate…
NVD

HIGH
CVE-2026-11115
CVE-2026-11115
pkg: windows

published: Jun 4, 2026

Use after free in Updater in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: Medium)
CWE: CWE-416, CWE-416
NVD

HIGH
CVE-2026-46250
CVE-2026-46250
pkg: tls

published: Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved:

MIPS: Work around LLVM bug when gp is used as global register variable

On MIPS, __current_thread_info is defined as global register variable
locating in $gp, and is simply assigned with new address during kernel
relocation.

This …

NVD

HIGH
CVE-2026-10617
CVE-2026-10617
pkg: go

published: Jun 2, 2026

A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. This affects the function resolveAuth of the file internal/http/auth.go of the component Webhook Verification Handler. The manipulation leads to missing authentication. Remote exploitation of the attack is possible. …
CWE: CWE-287, CWE-306
NVD

HIGH
CVE-2026-41567
CVE-2026-41567
pkg: docker

published: Jun 5, 2026

Moby is an open source container framework. In versions prior to 29.5.1 and in moby/moby v2 prior to v2.0.0-beta.14, when a compressed archive is uploaded to a container via `PUT /containers/{id}/archive` or piped through `docker cp -`, the daemon resolves decompression binaries (such as `xz` or `un…
CWE: CWE-427
GitHub-GHSA

HIGH
Docling: Unsafe URI and Path Handling in HTML Backend
GHSA-q29v-xc37-wh5m
pkg: docling
eco: pip
published: Jun 3, 2026
### Impact
The HTML backend did not perform sufficient validation during resource handling:
– Accepted `file://` URIs enabling local file system access when `enable_local_fetch=True`
– Path resolution allowed traversal outside intended directories via `../` sequences and absolute paths
– Did not blo…
CVE-2026-47214
NVD

HIGH
CVE-2026-8874
CVE-2026-8874
pkg: securly securly

published: Jun 3, 2026

Version 3.0.7 of the Securly Chrome Extension downloads JSON files containing crisis alert keywords and filtering rules over unencrypted HTTP via the Fetch API. Other endpoints in the same extension correctly fetch IWF and CIPA data over HTTPS, demonstrating an inconsistent implementation of TLS.
CWE: CWE-319
NVD

HIGH
CVE-2026-8036
CVE-2026-8036
pkg: ni ni-pal, linux linux_kernel, microsoft windows

published: Jun 2, 2026

Improper input validation in NI-PAL may allow a local authenticated user to access arbitrary system memory, potentially leading to privilege escalation. This vulnerability affects NI-PAL 26.3.0 and prior versions on Windows and Linux.
CWE: CWE-1285
NVD

HIGH
CVE-2026-8035
CVE-2026-8035
pkg: ni ni-pal, linux linux_kernel, microsoft windows

published: Jun 2, 2026

Improper input validation in the NI-PAL kernel driver may allow a local authenticated user to cause a denial of service by triggering a crash due to a NULL pointer dereference. This vulnerability affects NI-PAL 26.3.0 and prior versions on Windows and Linux.
CWE: CWE-476
NVD

HIGH
CVE-2026-46243
CVE-2026-46243
pkg: linux

published: Jun 1, 2026

In the Linux kernel, the following vulnerability has been resolved:

smb: client: reject userspace cifs.spnego descriptions

cifs.spnego key descriptions contain authority-bearing fields such as
pid, uid, creduid, and upcall_target that cifs.upcall treats as
kernel-originating inputs. However, users…

CWE: CWE-20
GitHub-GHSA

HIGH
Nezha's authenticated agents can forge service-monitor results for other users' services
GHSA-4g6j-g789-rghm
pkg: github.com/nezhahq/nezha, github.com/nezhahq/nezha
eco: go
published: Jun 1, 2026
#### Summary

Nezha accepts service-monitor `TaskResult` messages from an authenticated agent based only on whether the reported service ID exists. The dashboard authenticates the agent and derives the reporter server ID from the gRPC stream, but the service-monitor result worker does not verify tha…

CVE-2026-48119
GitHub-GHSA

HIGH
Omni has a TOCTOU race condition that allows multiple concurrent uses of a single-use SAML session token
GHSA-5x9f-6vg5-qg4m
pkg: github.com/siderolabs/omni, github.com/siderolabs/omni
eco: go
published: Jun 5, 2026
## Summary

`SAML.getSession` (`internal/pkg/auth/interceptor/saml.go`) checks the `Used` flag on a `SAMLAssertion` resource and then marks it used in two separate state operations. Because the check and the update are not atomic, concurrent requests carrying the same `saml-session` token can both o…

CVE-2026-45720
GitHub-GHSA

HIGH
browserstack-runner has an unauthenticated arbitrary file read via path traversal in HTTP server
GHSA-8rpw-6cqh-2v9h
pkg: browserstack-runner
eco: npm
published: Jun 3, 2026
## Summary

The HTTP server in browserstack-runner serves files from the project directory via the `_default` handler. This handler uses `path.join(process.cwd(), uri)` to resolve file paths but does not validate that the resulting path stays within the project root. Combined with the server binding…

CVE-2026-49144
GitHub-GHSA

HIGH
skillctl: Path traversal and symlink-follow in skillctl allow arbitrary file disclosure and deletion
GHSA-wx3m-whqv-xv47
pkg: skillctl
eco: rust
published: Jun 5, 2026
## Impact

`skillctl` 0.1.0 and 0.1.1 contained four path-safety vulnerabilities that, in combination, allowed an attacker to:

1. **Exfiltrate arbitrary files on the operator's machine** by publishing a malicious skills library containing a symlink inside a skill folder (e.g. `niania → /home/user…

GitHub-GHSA

HIGH
NocoDB: Stored Cross-Site Scripting via Form View Redirect URL
GHSA-hj85-ph9q-78jg
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary

The shared form-view submit handler in NocoDB writes the form's `redirect_url` to `window.location.href` after a same-host check that does not validate the URL scheme. A user with `editor` role (or above) on any base can plant a `javascript:` URL in the form's `redirect_url`; when an au…

CVE-2026-47387
GitHub-GHSA

HIGH
NocoDB: Stored Cross-Site Scripting via Row Comments
GHSA-jf3g-4gwg-4h66
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
An authenticated commenter could store HTML in row comments that executed as script
when other users hovered over the comment in the expanded form view.

### Details
The comment write paths persisted the raw comment body with no server-side sanitisation;
the expanded-form sidebar then re…

CVE-2026-47383
GitHub-GHSA

HIGH
Axios: Proxy-Authorization Credential Leak to Origin Server Across HTTP-to-HTTPS Redirect in Axios Node.js HTTP Adapter
GHSA-p92q-9vqr-4j8v
pkg: axios, axios
eco: npm
published: Jun 4, 2026
## Summary

Axios’s Node.js HTTP adapter may forward a `Proxy-Authorization` header to a redirected origin during specific proxy-to-direct redirect flows.

This affects Node.js usage, where an initial HTTP request is sent through an authenticated HTTP proxy, redirects are followed, and the redirec…

CVE-2026-44487
GitHub-GHSA

HIGH
launch-editor vulnerable to command injection via the crafted request on Windows
GHSA-c27g-q93r-2cwf
pkg: launch-editor, vite
eco: npm
published: Jun 3, 2026
### Summary
Due to the insufficient sanitization of the `file` argument in the `launchEditor`, an attacker can execute arbitrary commands on Windows by supplying a filename that contains special characters.

### Impact
If the following conditions are met, an attacker can execute arbitrary commands o…

CVE-2024-52011
GitHub-GHSA

HIGH
@agenticmail/mcp Missing Authentication for Critical Function
GHSA-63gr-g7jc-v8rg
pkg: @agenticmail/mcp
eco: npm
published: Jun 1, 2026
# AgenticMail MCP HTTP authorization bypass

## Summary

`@agenticmail/mcp` exposes a Streamable HTTP transport when started with
`–http` or `MCP_HTTP=1`. In that mode, the `/mcp` endpoint accepts requests
without any HTTP authentication layer. A remote client can initialize a
session and call tool…

NVD

MEDIUM
CVE-2026-11218
CVE-2026-11218
pkg: google chrome, microsoft windows

published: Jun 4, 2026

Inappropriate implementation in PlatformIntegration in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a malicious file. (Chromium security severity: Low)
CWE: CWE-20, CWE-94
NVD

MEDIUM
CVE-2026-0048
CVE-2026-0048
pkg: google android

published: Jun 1, 2026

In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE: CWE-269
NVD

MEDIUM
CVE-2025-59612
CVE-2025-59612
pkg: qualcomm cologne_firmware, qualcomm cologne, qualcomm fastconnect_6700_firmware

published: Jun 1, 2026

Memory corruption in windows drivers while sending incorrect trusted application request
CWE: CWE-121
NVD

MEDIUM
CVE-2026-46397
CVE-2026-46397
pkg: node

published: Jun 5, 2026

HAX CMS helps manage microsite universe with PHP or NodeJs backends. Prior to version 26.0.0, an Authenticated Local File Inclusion (LFI) vulnerability in the HAXCMS saveOutline endpoint allows a low-privileged user to read arbitrary files on the server by manipulating the location field written int…
CWE: CWE-22, CWE-73
NVD

MEDIUM
CVE-2026-46357
CVE-2026-46357
pkg: node

published: Jun 5, 2026

HAX CMS helps manage microsite universe with PHP or NodeJs backends. Prior to version 26.0.0, the HAX CMS NodeJS application crashes when an authenticated attacker sends a specially crafted site creation request to the createSite endpoint. A single request is sufficient to take the entire applicatio…
CWE: CWE-20
NVD

MEDIUM
CVE-2026-37737
CVE-2026-37737
pkg: express

published: Jun 5, 2026

sanic-cors version 2.2.0 and prior contains an improper regular expression in the try_match() function in sanic_cors/core.py that uses re.match without end-anchoring. This allows an attacker to bypass CORS origin allowlists by registering a domain that begins with a trusted origin string, to gain un…
CWE: CWE-346, CWE-625
NVD

MEDIUM
CVE-2026-11268
CVE-2026-11268
pkg: windows

published: Jun 5, 2026

Uninitialized Use in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)
CWE: CWE-457, CWE-457
NVD

MEDIUM
CVE-2026-11143
CVE-2026-11143
pkg: linux

published: Jun 4, 2026

Out of bounds read in Extensions in Google Chrome on Linux prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information from process memory via a crafted Chrome Extension. (Chromium security severity: Medium)
CWE: CWE-122, CWE-122
NVD

MEDIUM
CVE-2026-11101
CVE-2026-11101
pkg: windows

published: Jun 4, 2026

Uninitialized Use in Dawn in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-457, CWE-457
NVD

MEDIUM
CVE-2026-11051
CVE-2026-11051
pkg: linux

published: Jun 4, 2026

Out of bounds read in ANGLE in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-125, CWE-125
NVD

MEDIUM
CVE-2026-10999
CVE-2026-10999
pkg: google chrome

published: Jun 4, 2026

Integer overflow in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)
CWE: CWE-190
NVD

MEDIUM
CVE-2026-10912
CVE-2026-10912
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-20, CWE-20
GitHub-GHSA

MEDIUM
epa4all-client: Unauthenticated REST API for Patient Record Writes
GHSA-c82x-f4xr-qv33
pkg: com.oviva.telematik:epa4all-rest-service
eco: maven
published: Jun 4, 2026
### Impact
Any network-reachable caller can write arbitrary documents to any patient's electronic
health record accessible by the institution's SMC-B card. In a misconfigured deployment
(e.g., following the production Docker example in the README), this is exploitable from
the local network without …
CVE-2026-47672
GitHub-GHSA

MEDIUM
Starlette has missing Host header validation that poisons request.url.path, bypassing path-based security checks
GHSA-86qp-5c8j-p5mr
pkg: starlette
eco: pip
published: Jun 4, 2026
### Summary
In affected versions, the HTTP `Host` request header was not validated before being used to reconstruct `request.url`. Because the routing algorithm relies on the raw HTTP path while `request.url` is rebuilt from the `Host` header, a malformed header could make `request.url.path` differ …
CVE-2026-48710
NVD

MEDIUM
CVE-2026-44653
CVE-2026-44653
pkg: librechat librechat

published: Jun 2, 2026

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, users with only `VIEW` access to an MCP server can retrieve the server's decrypted admin-managed secrets through `GET /api/mcp/servers` and `GET /api/mcp/servers/:serverName`. The retur…
CWE: CWE-201
NVD

MEDIUM
CVE-2026-42073
CVE-2026-42073
pkg: gitlawb openclaude

published: Jun 2, 2026

OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the OpenClaude MCP authentication flow starts a temporary local HTTP server to handle OAuth callbacks. To prevent CSRF attacks, the server validates a state parameter against…
CWE: CWE-352, CWE-400
NVD

MEDIUM
CVE-2026-44740
CVE-2026-44740
pkg: go

published: Jun 1, 2026

Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may improperly handle crafted or malformed input, resulting in panics, infinite loops, uncontrolled recursion, or excessive resource consumption. These issues arise from insufficient v…
CWE: CWE-674, CWE-835
GitHub-GHSA

MEDIUM
praisonai-platform: Any workspace member can rewrite workspace name, description, and settings via PATCH /workspaces/{id}
GHSA-rcmc-q9rj-4wmq
pkg: praisonai-platform
eco: pip
published: Jun 1, 2026
## Summary

**Type:** Authorization bypass enabling workspace metadata + settings tampering. The `PATCH /workspaces/{workspace_id}` endpoint is gated only by `require_workspace_member(workspace_id)` (default `min_role="member"`). Any member can rewrite the workspace's `name`, `description`, and the …

CVE-2026-47411
NVD

MEDIUM
CVE-2026-8893
CVE-2026-8893
pkg: express

published: Jun 6, 2026

The Express Payment For Stripe plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'type' attribute of the [stripe-express] shortcode in versions up to, and including, 1.28.0. This is due to insufficient input sanitization and output escaping on the shortcode attribute value, w…
CWE: CWE-79
GitHub-GHSA

MEDIUM
AIOHTTP is Vulnerable to Deserialization of Untrusted Data
GHSA-jg22-mg44-37j8
pkg: aiohttp
eco: pip
published: Jun 3, 2026
### Summary

Using “CookieJar.load()“ with untrusted input may allow arbitrary code execution.

### Impact

Most applications using this function will be doing so with the user's own data, so this is unlikely to affect many applications.

### Workaround

If an application does allow attacker contr…

CVE-2026-34993
NVD

MEDIUM
CVE-2026-34993
CVE-2026-34993
pkg: aiohttp aiohttp

published: Jun 2, 2026

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.14.0, using “CookieJar.load()“ with untrusted input may allow arbitrary code execution. Most applications using this function will be doing so with the user's own data, so this is unlikely to affect …
CWE: CWE-502
NVD

MEDIUM
CVE-2026-5066
CVE-2026-5066
pkg: tls

published: Jun 4, 2026

A potential out-of-bounds write/read exists in the TLS socket connect path of the network sockets subsystem (subsys/net/lib/sockets/sockets_tls.c). When the TLS session cache is enabled, tls_session_store() and tls_session_restore() memcpy the caller-supplied address into a fixed-size buffer using t…
CWE: CWE-787
NVD

MEDIUM
CVE-2026-21404
CVE-2026-21404
pkg: windows

published: Jun 4, 2026

NAVTOR NavBox through version 4.16.1.20 contains hard-coded credentials within its Windows Communication Foundation (SOAP) implementation. If the SOAP functionality is enabled, a local attacker can extract credentials to bypass the intended transfer workflow. Successful authentication against the SO…
CWE: CWE-798
GitHub-GHSA

MEDIUM
malla: Stored XSS via Meshtastic node names in multiple frontend pages
GHSA-ch57-39q2-4crm
pkg: malla
eco: pip
published: Jun 3, 2026
Node names (long_name, short_name) received via MQTT are stored in SQLite without sanitization and rendered into the DOM without escaping.
Any participant on a public Meshtastic MQTT broker can set a malicious node name that executes JavaScript in the browser of every Malla dashboard visitor.

Affec…

CVE-2026-43980
NVD

MEDIUM
CVE-2026-49943
CVE-2026-49943
pkg: express

published: Jun 2, 2026

CZ.NIC BIRD Internet Routing Daemon through 2.19.0 contains a stack-based buffer overflow in the BGP AS_PATH mask matching implementation in nest/a-path.c. The as_path_match() function uses a fixed-size stack array of 2048 + 1 pm_pos entries, while parse_path() expands AS_PATH segments from a receiv…
CWE: CWE-121
NVD

MEDIUM
CVE-2026-45157
CVE-2026-45157
pkg: go

published: Jun 1, 2026

Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.9, and 33.0.0 to before 33.0.3, when a malicious user has access to a file share of a user, they could use this share token to also access the chunking upload directly and see temporar…
CWE: CWE-284
NVD

MEDIUM
CVE-2026-10274
CVE-2026-10274
pkg: axios

published: Jun 1, 2026

A vulnerability was determined in indrasishbanerjee aem-mcp-server up to b5f833aef9b5dfd17a5991b3b18a8a11edbdc583. This impacts the function getAssetMetadata of the file src/mcp-server.ts of the component Axios Request Flow. Executing a manipulation of the argument assetPath can lead to server-side …
CWE: CWE-918
GitHub-GHSA

MEDIUM
MCP Server Kubernetes: kubectl-generic flag injection enables Kubernetes bearer token exfiltration
GHSA-6mx4-4h42-r8vh
pkg: mcp-server-kubernetes
eco: npm
published: Jun 5, 2026
### Summary
The `kubectl_generic` tool in `mcp-server-kubernetes` passes user-supplied flags directly to kubectl without any allowlist, enabling a **privilege escalation attack** within Kubernetes environments. An attacker who already has limited cluster or codebase access, for example, a developer …
CVE-2026-47250
NVD

MEDIUM
CVE-2026-10916
CVE-2026-10916
pkg: google chrome, apple macos, linux linux_kernel

published: Jun 4, 2026

Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High)
CWE: CWE-20, CWE-20
GitHub-GHSA

MEDIUM
WebOb: Location header normalization during redirect leads to open redirect – again
GHSA-fh3h-vg37-cc95
pkg: webob
eco: pip
published: Jun 4, 2026
### Impact

When WebOb normalizes the HTTP Location header to include the request hostname, it does so by parsing the URL that the user is to be redirected to with Python's `urllib.parse`, and joining it to the base URL. `urlsplit` (called internally by `urljoin`) however treats a `//` at the start …

CVE-2026-44889
NVD

MEDIUM
CVE-2026-40181
CVE-2026-40181
pkg: shopify react-router

published: Jun 2, 2026

React Router is a router for React. In versions 7.0.0 through 7.14.0 and 6.7.0 through 6.30.3, certain URLs passed to the redirect function can trigger an open redirect to an external domain due to path values starting with // being reinterpreted as protocol-relative URLs. The level of impact depend…
CWE: CWE-601
GitHub-GHSA

MEDIUM
NocoDB: Postgres SQL Injection in Formula `ARRAYSORT`
GHSA-cxv7-gmmp-228p
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary

An authenticated user with `columnAdd` permission on a Postgres-backed base can inject arbitrary SQL into the formula engine via the optional `direction` argument of `ARRAYSORT(…)`. The value is unrestricted by formula validation and embedded into a `knex.raw` `ORDER BY` clause, execu…

CVE-2026-47375
GitHub-GHSA

MEDIUM
Klever-Go KVM: Throttler slot leak in trie account-data sync causes epoch bootstrap / state sync DoS
GHSA-fw38-pc54-jvx9
pkg: github.com/klever-io/klever-go
eco: go
published: Jun 5, 2026
## Summary

The account-data trie syncers leak bounded throttler slots on error paths in `syncDataTrie()`. Each failed trie sync permanently consumes one slot from
the `NumGoRoutinesThrottler`, and the slot is never returned unless the sync succeeds or the root hash was already present.

I con…

CVE-2026-49343
NVD

MEDIUM
CVE-2026-36610
CVE-2026-36610
pkg: tls

published: Jun 3, 2026

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 transmits DDNS credentials over plaintext HTTP with only Base64 encoding. The firmware contains no TLS implementation, allowing man-in-the-middle interception of DDNS service credentials.
CWE: CWE-319, CWE-523
NVD

MEDIUM
CVE-2026-0061
CVE-2026-0061
pkg: google android

published: Jun 1, 2026

In multiple functions of WindowState.java, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE: CWE-1021
NVD

MEDIUM
CVE-2026-46447
CVE-2026-46447
pkg: openstack ironic

published: Jun 3, 2026

OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if the attacker can set node.driver_info or node.instance_info.
CWE: CWE-669
GitHub-GHSA

MEDIUM
Docling: Potential Path Traversal via LaTeX \includegraphics and \input Commands
GHSA-2j5p-7p5m-cvqr
pkg: docling
eco: pip
published: Jun 3, 2026
### Impact
The LaTeX backend's handling of `\includegraphics`, `\input`, and `\include` commands lacked path containment validation. Attackers could craft malicious LaTeX documents with path traversal sequences (e.g., `../../../etc/passwd`) to:
– Read arbitrary files from the file system accessible …
CVE-2026-44022
GitHub-GHSA

MEDIUM
Docling: Unsafe Archive Extraction and XML Parsing in METS-GBS Backend
GHSA-r3xg-rg9j-67fv
pkg: docling
eco: pip
published: Jun 3, 2026
### Impact
The METS-GBS backend's XML parsing and the input document format detection lacked security controls, enabling:
– XML External Entity (XXE) attacks to read local files or cause denial of service
– Decompression bombs (zip bombs) to exhaust memory and disk space
– Unbounded archive extracti…
CVE-2026-44018
GitHub-GHSA

MEDIUM
Nhost CLI local configserver allows cross-origin unauthenticated read/write access to local development configuration and secrets
GHSA-64cj-qvx5-m4f3
pkg: github.com/nhost/nhost
eco: go
published: Jun 4, 2026
### Summary

The hidden `nhost configserver` used by `nhost dev` exposes the Mimir GraphQL API with dummy authorization directives and permissive CORS. When a developer is running the local development environment, any process that can reach the developer's localhost service, including a web page lo…

CVE-2026-47671
GitHub-GHSA

MEDIUM
React Router has stored XSS via unescaped Location header in prerendered redirect HTML
GHSA-f22v-gfqf-p8f3
pkg: react-router
eco: npm
published: Jun 3, 2026
When using React Router v7 [Framework Mode](https://reactrouter.com/start/modes#framework) with [Pre-rendering](https://reactrouter.com/how-to/pre-rendering) enabled, an improper neutralization of the HTTP `Location` header value can permit Cross-Site Scripting (XSS) in statically generated HTML fil…
CVE-2026-33244
NVD

MEDIUM
CVE-2026-33244
CVE-2026-33244
pkg: shopify react-router

published: Jun 2, 2026

React Router is a router for React. In versions 7.5.1 through 7.13.1, when using Framework Mode with pre-rendering enabled, improper neutralization of the HTTP `Location` header value can permit Cross-Site Scripting (XSS) in the statically generated HTML files if the redirect location comes from an …
CWE: CWE-79
NVD

MEDIUM
CVE-2026-34460
CVE-2026-34460
pkg: oauth

published: Jun 2, 2026

NamelessMC is website software for Minecraft servers. In versions 2.2.4 and prior, the OAuth callback handling does not validate the state parameter server-side before exchanging the authorization code. This allows an attacker to capture a valid OAuth callback URL for their own account and cause a v…
CWE: CWE-302, CWE-346, CWE-352
NVD

MEDIUM
CVE-2026-7792
CVE-2026-7792
pkg: react

published: Jun 6, 2026

The WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More plugin for WordPress is vulnerable to Insufficient Verification of Data Authenticity in versions up to and including 1.10.0.1. This is due to the PayPal Commerce webhook endpoint processing unauthentica…
CWE: CWE-345
NVD

MEDIUM
CVE-2026-40898
CVE-2026-40898
pkg: quic-go_project quic-go

published: Jun 4, 2026

quic-go is an implementation of the QUIC protocol in Go. Prior to version 0.59.1, an attacker can cause excessive memory allocation in quic-go's HTTP/3 client and server implementations by sending a QPACK-encoded HEADERS frame that decodes into a large trailer field section with many unique field na…
CWE: CWE-770
GitHub-GHSA

MEDIUM
Hono: app.mount() strips mount prefix using undecoded path, causing incorrect routing for percent-encoded paths
GHSA-2gcr-mfcq-wcc3
pkg: hono
eco: npm
published: Jun 4, 2026
### Summary

`app.mount()` strips the mount prefix from the incoming request path using the raw URL pathname, while route matching is performed against the percent-decoded path. This inconsistency causes the prefix to be stripped at the wrong position when the path contains percent-encoded multi-byt…

CVE-2026-47676
GitHub-GHSA

MEDIUM
Hono: IP Restriction bypasses static deny rules for non-canonical IPv6
GHSA-xrhx-7g5j-rcj5
pkg: hono
eco: npm
published: Jun 4, 2026
### Summary

The `ip-restriction` middleware (`hono/ip-restriction`) compares incoming IP addresses against configured deny and allow rules using string equality after partial normalization. Non-canonical IPv6 representations of an address already listed in a static rule — such as compressed forms…

CVE-2026-47674
NVD

MEDIUM
CVE-2026-41178
CVE-2026-41178
pkg: go

published: Jun 4, 2026

OpenTelemetry-Go is the Go implementation of OpenTelemetry. Versions 1.41.0 and 1.43.0 removed raw-length rejection and it causes `Parse` to process arbitrarily large/invalid baggage headers and log errors, enabling DoS via oversized inputs. Versions 1.42.0 and 1.44.0 fix the issue.
CWE: CWE-789
GitHub-GHSA

MEDIUM
Strawberry GraphQL's Bypass of MaxAliasesLimiter via Fragment Spreads leading to GraphQL Alias Amplification
GHSA-fr49-mhgj-crfc
pkg: strawberry-graphql
eco: pip
published: Jun 4, 2026
### Summary
The MaxAliasesLimiter extension in Strawberry fails to account for the multiplicative/amplification effect of FragmentSpreadNode. While it correctly counts static aliases within the AST it does not consider how many times a fragments internal aliases are expanded during execution. this a…
CVE-2026-47707
GitHub-GHSA

MEDIUM
Strawberry GraphQL has a Circular Fragment Reference DOS
GHSA-qfwv-87qj-98xq
pkg: strawberry-graphql
eco: pip
published: Jun 4, 2026
### Summary
The QueryDepthLimiter extension is vulnerable to an Application-level DOS due to a lack of cycle detection in fragment spreads. When a query contains circular fragment references the determine_depth function enters an infinite recursion, leading to a RecursionError and crashing the valid…
CVE-2026-47706
GitHub-GHSA

MEDIUM
quic-go: HTTP/3 QPACK Trailer Expansion Memory Exhaustion
GHSA-vvgj-x9jq-8cj9
pkg: github.com/quic-go/quic-go
eco: go
published: Jun 3, 2026
## Summary

An attacker can cause excessive memory allocation in quic-go's HTTP/3 client and server implementations by sending a QPACK-encoded HEADERS frame that decodes into a large trailer field section with many unique field names and/or large values. The implementation builds an `http.Header` fo…

CVE-2026-40898
NVD

MEDIUM
CVE-2026-45554
CVE-2026-45554
pkg: python

published: Jun 2, 2026

NiceGUI is a Python-based UI framework. Prior to version 3.12.0, two FastAPI routes that serve per-component static assets in NiceGUI accept a sub-path parameter that may resolve to a directory rather than a file. Requests that resolve to a directory raise an unhandled RuntimeError inside Starlette'…
CWE: CWE-248, CWE-770
NVD

MEDIUM
CVE-2026-45682
CVE-2026-45682
pkg: opentelemetry ebpf_instrumentation

published: Jun 2, 2026

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the custom CappedConcurrentHashMap introduced for Java TLS state tracking never removes keys from its insertion-order queue when entries are deleted. In long-running instrume…
CWE: CWE-401, CWE-770
NVD

MEDIUM
CVE-2026-11281
CVE-2026-11281
pkg: windows

published: Jun 5, 2026

Integer overflow in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to obtain potentially sensitive information from process memory via a crafted ETW event. (Chromium security severity: Low)
CWE: CWE-472, CWE-190
NVD

MEDIUM
CVE-2026-10533
CVE-2026-10533
pkg: kubernetes

published: Jun 1, 2026

A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQuota pod limits, and Kubernetes events are not quota-scoped. A non-privileged user who can create pods in a namespace can exploit this to generate a large volume of events that acc…
CWE: CWE-770
GitHub-GHSA

MEDIUM
matrix-sdk-ui: Incomplete edit validation
GHSA-h97m-27fx-42rx
pkg: matrix-sdk-ui
eco: rust
published: Jun 4, 2026
### Impact
The message edit validation logic in the `matrix-sdk-ui` crate before 0.16.1 is missing a check: when replacing an encrypted event, the replacement event itself is not required to be encrypted. This enables a malicious homeserver administrator (or an actor with equivalent power) to imper…
CVE-2026-45057
GitHub-GHSA

MEDIUM
Hono: JWT middleware accepts any Authorization scheme, not only Bearer
GHSA-f577-qrjj-4474
pkg: hono
eco: npm
published: Jun 4, 2026
### Summary

The `jwt` and `jwk` middlewares do not verify that the `Authorization` header value uses the`Bearer` scheme. Any two-part header value — regardless of the scheme name in the first position — proceeds to JWT verification. A request presenting a valid JWT under a non-`Bearer` scheme i…

CVE-2026-47673
GitHub-GHSA

MEDIUM
Singluarity: Incorrect path matching for 'limit container paths' directive
GHSA-wqcr-7rf3-f64m
pkg: github.com/sylabs/singularity/v4, github.com/sylabs/singularity
eco: go
published: Jun 4, 2026
### Impact

The `limit container paths` directive in `singularity.conf` is intended to allow a system administrator limit the paths from which containers can be run, under setuid mode. Due to incorrect matching of a path string, sibling directories with similar names may incorrectly be allowed.

For…

CVE-2026-47215
NVD

MEDIUM
CVE-2026-45614
CVE-2026-45614
pkg: trustedfirmware op-tee

published: Jun 3, 2026

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Prior to version 4.11.0, on many of the ECDH shared secret paths, the public key isn't verified to be a point on the correct curve. By pas…
CWE: CWE-347
NVD

MEDIUM
CVE-2026-10583
CVE-2026-10583
pkg: go

published: Jun 2, 2026

A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. Affected by this issue is the function Import of the file internal/http/tts_config.go of the component TTS Configuration Endpoint. The manipulation leads to server-side request forgery. It is possible to initiate the…
CWE: CWE-918
NVD

MEDIUM
CVE-2026-45702
CVE-2026-45702
pkg: trustedfirmware op-tee

published: Jun 3, 2026

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 4.3.0 and prior to version 4.11.0, a type confusion vulnerability exists in OP-TEE OS when processing an FFA_MEM_SHARE…
CWE: CWE-843
NVD

MEDIUM
CVE-2026-11477
CVE-2026-11477
pkg: oauth

published: Jun 8, 2026

A vulnerability was detected in hs-web hsweb-framework up to 5.0.1. This affects the function OAuth2Client of the file hsweb-authorization/hsweb-authorization-oauth2/src/main/java/org/hswebframework/web/oauth2/server/OAuth2Client.java of the component OAuth2 Client. The manipulation results in open …
CWE: CWE-601
GitHub-GHSA

MEDIUM
Bugsink: DOS using large numbers of event tags
GHSA-5×67-j5xg-c5gj
pkg: bugsink
eco: pip
published: Jun 5, 2026
### Summary

In affected versions, Bugsink stores every tag supplied with an incoming event. An event with an unusually large number
of custom (i.e. supplied by an attacker) tags can therefore make ingestion spend more time than intended writing tag rows.

Bugsink uses a single-writer database archi…

GitHub-GHSA

MEDIUM
Bugsink: Project scoping missing in sourcemap and debug-file lookup
GHSA-5389-f7vh-wxj8
pkg: bugsink
eco: pip
published: Jun 5, 2026
### Summary

Bugsink before 2.2.0 resolved sourcemaps and debug files by debug ID without scoping that lookup to the project that owned the uploaded metadata. An authenticated user with access to one project could cause event processing in that project to use sourcemap/debug-file metadata uploaded f…

CVE-2026-47728
NVD

MEDIUM
CVE-2026-48092
CVE-2026-48092
pkg: node

published: Jun 5, 2026

7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain a heap memory disclosure via SquashFS fragment offset integer overflow on 32-bit builds. 32-bit integer overflow in the SquashFS ReadBlock function allows an attacker-controlled node.Offset value to bypass th…
CWE: CWE-125
GitHub-GHSA

MEDIUM
Hono: Cookie helper does not sanitize sameSite and priority, allowing Set-Cookie injection
GHSA-3hrh-pfw6-9m5x
pkg: hono
eco: npm
published: Jun 4, 2026
### Summary

The `serialize()` function in `hono/cookie` validates `domain` and `path` options against characters that corrupt `Set-Cookie` header syntax (`;`, `\r`, `\n`), but does not apply the same validation to `sameSite` and `priority`. An application that passes user-controlled input into eith…

CVE-2026-47675
NVD

MEDIUM
CVE-2026-10692
CVE-2026-10692
pkg: express

published: Jun 3, 2026

A weakness has been identified in johnhuang316 code-index-mcp up to 2.14.0. Affected is the function is_safe_regex_pattern of the component search_code_advanced. Executing a manipulation of the argument regex can lead to inefficient regular expression complexity. It is possible to launch the attack …
CWE: CWE-400, CWE-1333
NVD

MEDIUM
CVE-2026-10691
CVE-2026-10691
pkg: express

published: Jun 3, 2026

A security flaw has been discovered in wonderwhy-er DesktopCommanderMCP up to 0.2.38. This impacts an unknown function of the file src/search-manager.ts of the component start_search. Performing a manipulation of the argument SearchResult[] results in inefficient regular expression complexity. It is…
CWE: CWE-400, CWE-1333
NVD

MEDIUM
CVE-2026-10616
CVE-2026-10616
pkg: go

published: Jun 2, 2026

A weakness has been identified in nextlevelbuilder GoClaw up to 3.11.3. The impacted element is the function TeamTasksTool.executeComplete of the file internal/tools/team_tasks_lifecycle.go of the component Team Task Completion Handler. Executing a manipulation can lead to missing authorization. The…
CWE: CWE-862, CWE-863
NVD

MEDIUM
CVE-2026-9723
CVE-2026-9723
pkg: go

published: Jun 2, 2026

The Google Plus One Bottom plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.0.2. This is due to missing or incorrect nonce validation on the googlePlusOneAdmin function. This makes it possible for unauthenticated attackers to modify the plugin'…
CWE: CWE-352
NVD

MEDIUM
CVE-2026-9048
CVE-2026-9048
pkg: oauth

published: Jun 2, 2026

The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Exposure in versions 7.0.0 – 7.0.14, via the 'slider.get.full' AJAX Action. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive data including raw social me…
CWE: CWE-863
NVD

MEDIUM
CVE-2026-10291
CVE-2026-10291
pkg: express

published: Jun 1, 2026

A security vulnerability has been detected in Enderfga claw-orchestrator up to 3.7.0. The impacted element is the function validateRegex of the file claw-orchestrator/src/embedded-server.ts of the component Session Grep Endpoint. The manipulation of the argument body.pattern leads to inefficient reg…
CWE: CWE-400, CWE-1333
NVD

MEDIUM
CVE-2026-48104
CVE-2026-48104
pkg: node

published: Jun 5, 2026

7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain an uninitialized heap read in the SquashFS archive handler caused by a sparsely populated index array. In the SquashFS handler, _blockToNode is allocated with capacity for every metadata block but populated o…
CWE: CWE-125, CWE-908
GitHub-GHSA

MEDIUM
Improper Access Control in vantage6 node
GHSA-x9f6-9rvm-mmrg
pkg: vantage6
eco: pip
published: Jun 5, 2026
### Impact
Malicious algorithms can potentially access other algorithms input and output files.

### Patches
Todo

### Workarounds
Verify and restrict the algorithm containers that are allowed to run on your node. See [here](https://docs.vantage6.ai/usage/running-the-node/security) on how to do this…

GitHub-GHSA

MEDIUM
Vantage6: Set admin user and password from environment or configuration
GHSA-fgmc-2hqj-86v4
pkg: vantage6
eco: pip
published: Jun 5, 2026
### Impact
Vantage6 currently provides an initial user with username `root` and password `root`. This is not ideal for the following reasons:
– Attackers know that almost all vantage6 servers have a user with username `root` that probably has admin rights
– The initial password is very weak and it i…
GitHub-GHSA

MEDIUM
NocoDB: OAuth Tokens Persist Through Security Events
GHSA-g72g-r7m4-9x4g
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
OAuth access and refresh tokens were not revoked when the user changed, reset, or
recovered their password, leaving an attacker-issued OAuth grant valid after the user
believed they had locked the attacker out.

### Details
`revokeAllOAuthTokensByUser` in the users service was an empty s…

GitHub-GHSA

MEDIUM
Source controller: Improper path handling allows traversal
GHSA-jjrm-hr5f-673x
pkg: github.com/fluxcd/source-controller
eco: go
published: Jun 5, 2026
### Impact

An actor with the ability to influence the contents of a bucket referenced by a `Bucket` resource can cause source-controller to write fetched object data to paths outside the per-reconciliation working directory.

The corruption surface is bounded by source-controller's own and downstre…

CVE-2026-47680
GitHub-GHSA

MEDIUM
NocoDB: OAuth Authorization Code Race Condition
GHSA-8m7c-hf24-5g47
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
Two concurrent token-exchange requests using the same OAuth authorization code could
each mint a distinct valid `(access_token, refresh_token)` pair, breaking the
single-use guarantee that PKCE relies on.

### Details
The token-exchange flow read `is_used` and called `markAsUsed` as an u…

CVE-2026-47386
GitHub-GHSA

MEDIUM
NocoDB: Path Traversal via SQLite Source Filename
GHSA-wvqj-9wv4-7ff5
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
An authenticated user with base-create permission can attach a SQLite source pointing at
an arbitrary file on the NocoDB host, including NocoDB's own internal databases.

### Details
The SQLite client and the base/integration create services accepted a caller-supplied
filename and passed…

CVE-2026-47385
GitHub-GHSA

MEDIUM
NocoDB: SQL Injection via Column Title in Bulk GroupBy
GHSA-p8wx-5f39-w3x4
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
An authenticated user with column-create permission can inject SQL into the bulk groupBy
endpoint by setting a column's title to a SQL fragment.

### Details
The bulk groupBy path in `group-by.ts` builds three database-specific `knex.raw()`
aggregations that interpolate the request's `co…

CVE-2026-47384
GitHub-GHSA

MEDIUM
NocoDB: Server-Side Request Forgery via Database Connection Host
GHSA-w43h-r5m5-p832
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
The connection-test endpoint opened a raw TCP socket to the user-supplied database
host without resolving and range-checking the destination, so private and link-local
addresses (including IPv4-mapped IPv6 forms and `localhost`) reached the driver.

### Details
A new `validateDbConnectio…

CVE-2026-47382
GitHub-GHSA

MEDIUM
NocoDB: Cross-Workspace Integration Use in Connection Test
GHSA-96fh-m4r8-6v9v
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
A user in one workspace could exercise another workspace's integration through the
`testConnection` endpoint by supplying its ID, because the integration was fetched in
a bypass scope and the caller's permission check matched any base in any workspace.

### Details
The connection-test en…

CVE-2026-47381
GitHub-GHSA

MEDIUM
NocoDB: Plaintext Password Comparison in Shared Views
GHSA-qhxg-623c-cfjm
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
The shared-view password check fell back to strict-equality (`===`) comparison for
legacy plaintext passwords, leaking the password's length and per-character prefix
through response timing.

### Details
The bcrypt branch (hashes starting with `$2a$`/`$2b$`) was unaffected. The legacy
fa…

CVE-2026-47379
GitHub-GHSA

MEDIUM
NocoDB: Hidden Column Exposure in Public Shared View Endpoints
GHSA-4w6r-5c2j-qf5f
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
Public shared-view endpoints exposed values from columns that the view owner had
hidden, via three independent paths: groupBy returned raw values for any column
named in the request, filter and sort arrays operated on hidden columns enabling
boolean-blind extraction, and the related-data…
CVE-2026-47378
GitHub-GHSA

MEDIUM
NocoDB: Open Redirect via Hash Fragment in hashRedirect Plugin
GHSA-rvp5-9p55-f5rp
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary

The client-side `hashRedirect` plugin called `window.location.replace()` on a path extracted from the URL hash fragment after only checking `hashPath.startsWith('/')`. Protocol-relative URLs (`//attacker.com/…`) also satisfy that check, so a crafted link such as `https://nocodb.exampl…

CVE-2026-47377
GitHub-GHSA

MEDIUM
NocoDB: Reflected Cross-Site Scripting via Password Reset Token
GHSA-6xcx-7qmg-vjfq
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary

The password-reset page rendered the URL token directly into a JavaScript string literal in a server-rendered EJS template. EJS `<%= %>` HTML-entity-encodes a fixed set of characters but does not escape single quotes or backslashes, so a crafted token could break out of the JS string co…

CVE-2026-47376
GitHub-GHSA

MEDIUM
NocoDB: Hidden LTAR Column Exposure in Public Shared-View Relation Endpoints
GHSA-9wgh-m22w-9xj8
pkg: nocodb
eco: npm
published: Jun 5, 2026
### Summary
The public shared-view relation endpoints accepted a caller-supplied column
ID without verifying that the column was visible in the shared view, so
anyone holding a share UUID could read links from any LTAR column on the
view's table — including columns the view owner had hidden.

### …

CVE-2026-47279
GitHub-GHSA

MEDIUM
Vantage6: 2FA can be circumvented with hacked email access
GHSA-4c5c-2vc3-x5w2
pkg: vantage6
eco: pip
published: Jun 5, 2026
### Impact
If an attacker hacks into a vantage6 user's email account, they can 1) reset the password via email and then 2) reset the 2FA token via email. This way they reduce 2FA to 1FA (email access).

Note that most email providers require 2FA to access email, so this issue is not very likely to …

CVE-2024-27928
GitHub-GHSA

MEDIUM
AdGuard Home: DoQ-to-UDP State Reduction and Source-Port Oracle
GHSA-xgx4-4h9w-53pv
pkg: github.com/AdguardTeam/AdGuardHome, github.com/AdguardTeam/dnsproxy
eco: go
published: Jun 4, 2026
## Summary

This report covers the client-triggered DoQ forwarding path in:

– `dnsproxy` `v0.81.2` (`adguard/dnsproxy:v0.81.2`)
– `AdGuard Home` `v0.107.74` (`adguard/adguardhome:latest`, image version label `v0.107.74`)

The issue was reproduced on `2026-04-25` with the products configured through…

CVE-2026-47703
GitHub-GHSA

MEDIUM
Spree: CSV Formula Injection in Customer Export
GHSA-xf4v-w5x5-pv79
pkg: spree, spree, spree
eco: rubygems
published: Jun 4, 2026
### Summary

CSV formula injection (also known as formula injection or CSV injection) affects customer export. User-controlled values customer names, email addresses, and shipping addresses. When an administrator opens a crafted
Export in Microsoft Excel or LibreOffice Calc, formulas embedded in use…

GitHub-GHSA

MEDIUM
OpenMeter: SQL injection through meter creation
GHSA-wc3v-3457-c8cm
pkg: github.com/openmeterio/openmeter
eco: go
published: Jun 4, 2026
### Summary

An authenticated tenant can inject arbitrary SQL through the `valueProperty` or `groupBy` fields of `POST /api/v1/meters`. The injection passes the application's JSONPath validation check and executes against the shared ClickHouse database, which contains event data for all tenants with…

CVE-2026-8462
GitHub-GHSA

MEDIUM
Matrix Rust SDK: Sender-binding gaps in to-device and room-key attribution
GHSA-wfq4-36m3-9g42
pkg: matrix-sdk-crypto
eco: rust
published: Jun 4, 2026
### Impact

The `matrix-sdk-crypto` crate before 0.16.1 is missing a check for the sender's user ID when decrypting an Olm-encrypted to-device message containing the `sender_device_keys` property.

This could be exploited to spoof the sender of an encrypted to-device message, but only if the attacke…

CVE-2026-45056
GitHub-GHSA

MEDIUM
Doorkeeper Openid Connect: Dynamic Client Registration feature creates public clients with client_secret
GHSA-m6vc-f87m-cc2h
pkg: doorkeeper-openid_connect
eco: rubygems
published: Jun 4, 2026
### Impact

The `DynamicClientRegistrationController#register` action hard-codes `confidential: false` when creating applications (dynamic_client_registration_controller.rb:18-25), yet the response includes a client_secret and advertises `token_endpoint_auth_methods_supported: ["client_secret_basic"…

CVE-2026-44476
GitHub-GHSA

MEDIUM
AIOHTTP is vulnerable to cross-origin redirect with per-request cookies
GHSA-hg6j-4rv6-33pg
pkg: aiohttp
eco: pip
published: Jun 3, 2026
### Summary

Cookies set with the `cookies` parameter on requests are sent after following a cross-origin redirect.

### Impact

If a developer uses the `cookies` parameter on a per-request basis then sensitive data might be leaked to an attacker if they manage to control a redirect.

### Workaround…

CVE-2026-47265
GitHub-GHSA

MEDIUM
React Router's same-origin redirect with path starting // causes open redirect via protocol-relative URL reinterpretation
GHSA-2j2x-hqr9-3h42
pkg: react-router, react-router
eco: npm
published: Jun 3, 2026
Certain URLs passed to the `redirect` function can trigger an open redirect to an external domain depending on the level of validation done by the application prior to returning the `redirect`.

> [!NOTE]
> This does not impact your React Router application if you are using [Declarative Mode](https:…

CVE-2026-40181
GitHub-GHSA

MEDIUM
rattler has an entry-point path traversal in noarch:python install (arbitrary file write)
GHSA-q53q-5r4j-5729
pkg: rattler
eco: rust
published: Jun 1, 2026
## Summary

`EntryPoint::FromStr` in `rattler_conda_types` performs only `.trim()` on the `command` field before the linker joins it onto the install prefix and writes an executable Python script. A malicious `noarch:python` package can ship an `info/link.json` with an entry-point name containing `.…

CVE-2026-47425