CVE ID : CVE-2019-25333 Published : Feb. 12, 2026, 11:16 p.m. | 46 minutes ago Description : Bullwark Momentum Series JAWS 1.0 contains a directory traversal vulnerability that allows unauthenticated attackers to access…
CVE-2026-1358 – Airleader Master Unrestricted Upload of File with Dangerous Type
CVE ID : CVE-2026-1358 Published : Feb. 12, 2026, 9:24 p.m. | 37 minutes ago Description : Airleader Master versions 6.381 and prior allow for file uploads without restriction to multiple webpages running…
CVE-2026-26020 – AutoGPT Affected by Remote Code Execution via Dynamic Module Import in Block Loading (__import__)
CVE ID : CVE-2026-26020 Published : Feb. 12, 2026, 9:16 p.m. | 46 minutes ago Description : AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents…
CVE-2026-26011 – Critical Heap Out-of-bounds Access in `pf_cluster_stats()` via Malicious /initialpose Covariance — Potential Remote Code Execution
CVE ID : CVE-2026-26011 Published : Feb. 12, 2026, 9:16 p.m. | 46 minutes ago Description : navigation2 is a ROS 2 Navigation Framework and System. In 1.3.11 and earlier, a critical heap…
CVE-2026-25922 – authentik has a Signature Verification Bypass via SAML Assertion Wrapping
CVE ID : CVE-2026-25922 Published : Feb. 12, 2026, 8:16 p.m. | 1 hour, 45 minutes ago Description : authentik is an open-source identity provider. Prior to 2025.8.6, 2025.10.4, and 2025.12.4, when using a…
CVE-2026-25767 – LavinMQ has incomplete shovel configuration validation
CVE ID : CVE-2026-25767 Published : Feb. 12, 2026, 8:16 p.m. | 1 hour, 45 minutes ago Description : LavinMQ is a high-performance message queue & streaming server. Before 2.6.8, an authenticated user, with…
CVE-2026-26219 – newbee-mall Unsalted MD5 Password Hashing Enables Offline Credential Cracking
CVE ID : CVE-2026-26219 Published : Feb. 12, 2026, 7:15 p.m. | 46 minutes ago Description : newbee-mall stores and verifies user passwords using an unsalted MD5 hashing algorithm. The implementation does not…
CVE-2026-26218 – newbee-mall Default Seeded Administrator Credentials Allow Account Takeover
CVE ID : CVE-2026-26218 Published : Feb. 12, 2026, 7:15 p.m. | 46 minutes ago Description : newbee-mall includes pre-seeded administrator accounts in its database initialization script. These accounts are provisioned with a…
CVE-2019-25345 – RTK IIS Codec Service 6.4.10041.133 – ‘RtkI2SCodec’ Unquote Service Path
CVE ID : CVE-2019-25345 Published : Feb. 12, 2026, 7:02 p.m. | 59 minutes ago Description : Realtek IIS Codec Service 6.4.10041.133 contains an unquoted service path vulnerability that allows local attackers to…
CVE-2019-25344 – MobileGo 8.5.0 – Insecure File Permissions
CVE ID : CVE-2019-25344 Published : Feb. 12, 2026, 7:02 p.m. | 59 minutes ago Description : Wondershare MobileGo 8.5.0 contains an insecure file permissions vulnerability that allows local users to modify executable…