CVE ID :CVE-2026-5747 Published : April 8, 2026, 12:16 a.m. | 22 minutes ago Description :An out-of-bounds write issue in the virtio PCI transport in Amazon Firecracker 1.13.0 through 1.14.3 and 1.15.0 on…
CVE-2026-1342 – Security Vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
CVE ID :CVE-2026-1342 Published : April 8, 2026, 12:16 a.m. | 22 minutes ago Description :IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and…
CVE-2026-39937 – Global vanishing does not completely remove user email
CVE ID :CVE-2026-39937 Published : April 7, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :Improper removal of sensitive information before storage or transfer vulnerability in The Wikimedia Foundation Mediawiki – CentralAuth…
CVE-2026-39933 – Multiple XSS vulnerabilities in GlobalWatchlist
CVE ID :CVE-2026-39933 Published : April 7, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :Improper neutralization of input during web page generation (‘cross-site scripting’) vulnerability in The Wikimedia Foundation Mediawiki –…
CVE-2026-39847 – Emmett has a path traversal in internal assets handler
CVE ID :CVE-2026-39847 Published : April 7, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :Emmett is a full-stack Python web framework designed with simplicity. From 2.5.0 to before 2.8.1, the RSGI…
CVE-2026-5709 – AWS Research and Engineering Studio (RES) FileBrowser Command Injection
CVE ID :CVE-2026-5709 Published : April 6, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :Unsanitized input in the FileBrowser API in AWS Research and Engineering Studio (RES) version 2024.10 through 2025.12.01…
CVE-2026-5708 – Improper Control of User-Modifiable Attributes in RES CreateSession API
CVE ID :CVE-2026-5708 Published : April 6, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :Unsanitized control of user-modifiable attributes in the session creation component in AWS Research and Engineering Studio (RES)…
CVE-2026-5707 – Command Injection via Virtual Desktop Session Name in AWS Research and Engineering Studio (RES)
CVE ID :CVE-2026-5707 Published : April 6, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :Unsanitized input in an OS command in the virtual desktop session name handling in AWS Research and…
CVE-2026-5687 – Tenda CX12L NatStaticSetting fromNatStaticSetting stack-based overflow
CVE ID :CVE-2026-5687 Published : April 6, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :A weakness has been identified in Tenda CX12L 16.03.53.12. This issue affects the function fromNatStaticSetting of the…
CVE-2026-5686 – Tenda CX12L RouteStatic fromRouteStatic stack-based overflow
CVE ID :CVE-2026-5686 Published : April 6, 2026, 10:16 p.m. | 2 hours, 22 minutes ago Description :A security flaw has been discovered in Tenda CX12L 16.03.53.12. This vulnerability affects the function fromRouteStatic of…