CVE-2026-8328 FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address

Information published.


CVE-2026-7246 Pallets Click contains a command injection via Unsanitized Filename "click.edit()"

Information published.


CVE-2026-43443 ASoC: amd: acp-mach-common: Add missing error check for clock acquisition

Information published.


CVE-2026-44662 rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding

Information published.


CVE-2026-6210 Type confusion and heap-buffer-overflow in Qt SVG marker handling causing application crash

Information published.


CVE-2026-42154 Prometheus: remote read endpoint allows denial of service via crafted snappy payload

Information published.


CVE-2026-42898 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability

Acknowledgement Updated


CVE-2026-42833 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability

Updated the fixed version number. This is an informational change only.


CVE-2026-41636 Apache Thrift: Node.js skip() recursion

Information published.


CVE-2026-41605 Apache Thrift: Swift Compact Protocol integer overflow

Information published.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge