CVE ID :CVE-2026-108657 Published : Oct. 10, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :JeecgBoot through 3.9.5 contains a missing authorization vulnerability in the SysTenantController passApply handler that allows any authenticated…
CVE-2026-108628 – JeecgBoot through 3.9.5 Missing Authorization via saveDeptRolePermission Endpoint
CVE ID :CVE-2026-108628 Published : Oct. 10, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :JeecgBoot through 3.9.5 contains a missing authorization vulnerability in the saveDeptRolePermission endpoint of SysDepartPermissionController that allows any…
CVE-2026-81797 – WordPress Buzz Stone | Magazine & Viral Blog WordPress Theme theme <= 1.0.2 – PHP Object Injection vulnerability
CVE ID :CVE-2026-81797 Published : Oct. 10, 2026, 8:16 p.m. | 3 hours, 13 minutes ago Description :Unauthenticated PHP Object Injection in Buzz Stone | Magazine & Viral Blog WordPress Theme Severity: 9.8 |…
CVE-2026-78535 – WordPress Photolia theme <= 1.0.3 – PHP Object Injection vulnerability
CVE ID :CVE-2026-78535 Published : Oct. 10, 2026, 8:16 p.m. | 3 hours, 13 minutes ago Description :Unauthenticated PHP Object Injection in Photolia Severity: 9.8 | CRITICAL Visit the link for more details, such…
CVE-2026-78533 – WordPress Qwery theme <= 3.6.1 – PHP Object Injection vulnerability
CVE ID :CVE-2026-78533 Published : Oct. 10, 2026, 8:16 p.m. | 3 hours, 13 minutes ago Description :Unauthenticated PHP Object Injection in Qwery Severity: 9.8 | CRITICAL Visit the link for more details, such…
CVE-2026-108474 – JetBrains Exposed SQL Injection
CVE ID :CVE-2026-108474 Published : Oct. 10, 2026, 12:17 a.m. | 1 hour, 12 minutes ago Description :In JetBrains Exposed before 1.5.1 sQL injection was possible via unescaped string arguments of several SQL functions…
CVE-2026-108269 – ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session
CVE ID :CVE-2026-108269 Published : Oct. 9, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :Remote Attestation TLS Clients provides multi-language utilities for verifying attested TLS connections. Prior to 0.5.0, the Rust…
CVE-2026-108268 – enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session
CVE ID :CVE-2026-108268 Published : Oct. 9, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :Enclave OS Virtual runs container workloads inside confidential virtual machines with end-to-end attestation. Prior to tdx-v0.2.43 and…
CVE-2026-108267 – Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session
CVE ID :CVE-2026-108267 Published : Oct. 9, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :Privasys Go is a maintained fork of the Go programming language that adds RA-TLS support to crypto/tls….
CVE-2026-22061 – CVE-2026-22061 Debug Log Information Disclosure Vulnerability in Trident
CVE ID :CVE-2026-22061 Published : Oct. 9, 2026, 10:02 p.m. | 1 hour, 27 minutes ago Description :Trident versions v25.02.1 through v26.06.1 are susceptible to a vulnerability that could allow an authenticated attacker with…