CVE-2026-56819 Netty is a network application framework for development of protocol servers and clients. In versions https://t.co/IT5dn0aaGN through https://t.co/4inkJVKZkj and https://t.co/XeMaa81IQH through 4.1.135… https://t.co/gnYlFWlHF0
CVE-2026-56820 Netty is a network application framework for development of protocol servers and clients. In versions https://t.co/IT5dn0aaGN through https://t.co/4inkJVKZkj and prior to https://t.co/UyOmq7K0AD, `Oc… https://t.co/FkTx44CeLi
CVE-2026-63144 Uncontrolled Recursion (CWE-674) in Elasticsearch can lead to denial of service via a specially crafted search request submitted by a low-privileged authenticated use… https://t.co/wVAl3ixIns
CVE-2026-63145 Incorrect Authorization (CWE-863) in Kibana can lead to integrity compromise of Machine Learning audit and notification records via Accessing Functionality Not Proper… https://t.co/7jB9KHwWVa
CVE-2026-63259 Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana can lead to information disclosure via user-supplied identifiers that reference scheduled query r… https://t.co/8omAM1RrGI
CVE-2026-16517 A signed integer overflow vulnerability was found in libarchive's ZIP writer. In the archive_write_zip_header function in archive_write_set_format_zip.c, when ZIP enc… https://t.co/WzRmnsIKjW
CVE-2026-16486 A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSIS.php. Performing a manipulation of th… https://t.co/UySJ7wFbsd
CVE-2026-63260 Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated attacker with low-privilege… https://t.co/0rMzCAWOGW
CVE-2026-63261 Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). A low-privileged authenticated user can send… https://t.co/gMuAHiQx6Z
CVE-2026-63262 Missing Authorization (CWE-862) in Kibana can lead to unauthorized cross-space information disclosure via user-supplied input that circumvents space-level access cont… https://t.co/1iWDtRoIEH
CVE-2026-63263 Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead to denial of service via Exponential Data Expansion (CAPEC-197). An authenticated user may submi… https://t.co/x9EWnD2Qui
CVE-2026-47178 libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.19.0 through 1.21.2, a crafted HEIF file (uncompressed `unci` codec, tiled, component-interl… https://t.co/NaZiBT41cU
CVE-2026-8985 Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed on TCP port 9002. An unauthenticated attacker ca… https://t.co/x1rxvGz981
CVE-2026-8986 Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagnostics requests. A malicious or compromised OCPP … https://t.co/NIlHO66vuZ
CVE-2026-47247 libheif is a HEIF and AVIF file format decoder and encoder. Prior to version 1.22.0, two bugs in libheif chain to leak process heap memory as visible pixel values in … https://t.co/ZCi03PQ4Tn
CVE-2026-65315 Ollama (HEAD f0078ae) contains an uncontrolled memory allocation vulnerability in the GGUF metadata parser that allows remote attackers to crash the server by supplyi… https://t.co/eRKFwb8ORa
CVE-2026-8987 Autel Maxi Charger Single firmware through V1.03.51 contains a heap-based buffer overflow in the set_ap_param command handled by the /localcfg endpoint. An authenticate… https://t.co/rJEy8E6KiX
CVE-2026-47251 libheif is a HEIF and AVIF file format decoder and encoder. The fix for CVE-2026-3949 (commit `b97c8b5`, PR #1712) introduced an integer overflow in the very security… https://t.co/Qov8RGl9oe
CVE-2026-47254 libheif is a HEIF and AVIF file format decoder and encoder. Prior to version 1.22.0, `Track::init_sample_timing_table()` in `libheif/sequences/track.cc` stores an out… https://t.co/aIhkAV9lj7
CVE-2026-8988 Autel Maxi Charger Single firmware through V1.03.51 exposes an accessible UART interface that permits interruption of the boot process and access to the U-Boot bootload… https://t.co/Qj0hCXBlsk