CVE ID : CVE-2026-2871 Published : Feb. 21, 2026, 4:16 p.m. | 28 minutes ago Description : A weakness has been identified in Tenda A21 1.0.0.0. This affects the function fromSetIpMacBind of the…
CVE-2026-2870 – Tenda A21 formSetQosBand set_qosMib_list stack-based overflow
CVE ID : CVE-2026-2870 Published : Feb. 21, 2026, 3:15 p.m. | 1 hour, 29 minutes ago Description : A security flaw has been discovered in Tenda A21 1.0.0.0. Affected by this issue is…
CVE-2026-27574 – OneUptime: node:vm sandbox escape in probe allows any project member to achieve RCE
CVE ID : CVE-2026-27574 Published : Feb. 21, 2026, 11:15 a.m. | 1 hour, 28 minutes ago Description : OneUptime is a solution for monitoring and managing online services. In versions 9.5.13 and below,…
CVE-2026-27470 – ZoneMinder: Second-Order SQL Injection in `getNearEvents()` via Stored Event Name and Cause Fields
CVE ID : CVE-2026-27470 Published : Feb. 21, 2026, 8:16 a.m. | 28 minutes ago Description : ZoneMinder is a free, open source closed-circuit television software application. In versions 1.36.37 and below and…
CVE-2026-27471 – ERP: Document access through endpoints due to missing validation
CVE ID : CVE-2026-27471 Published : Feb. 21, 2026, 7:16 a.m. | 1 hour, 28 minutes ago Description : ERP is a free and open source Enterprise Resource Planning tool. In versions up to…
CVE-2026-27458 – LinkAce: Stored XSS in Atom Feed via CDATA Escape in List Description
CVE ID : CVE-2026-27458 Published : Feb. 21, 2026, 7:16 a.m. | 1 hour, 28 minutes ago Description : LinkAce is a self-hosted archive to collect website links. Versions 2.4.2 and below have a…
CVE-2026-27452 – ASN.1 TypeScript Library: Decoding an INTEGER could leak the underlying ArrayBuffer
CVE ID : CVE-2026-27452 Published : Feb. 21, 2026, 7:16 a.m. | 1 hour, 28 minutes ago Description : ASN.1 TypeScript ESM library, including codecs for Basic Encoding Rules (BER) and Distinguished Encoding Rules…
CVE-2026-27206 – Zumba Json Serializer has a potential PHP Object Injection via Unrestricted @type in unserialize()
CVE ID : CVE-2026-27206 Published : Feb. 21, 2026, 7:16 a.m. | 1 hour, 28 minutes ago Description : Zumba Json Serializer is a library to serialize PHP variables in JSON format. In versions…
CVE-2026-27212 – Swiper has a Prototype Pollution Vulnerability
CVE ID : CVE-2026-27212 Published : Feb. 21, 2026, 6:17 a.m. | 27 minutes ago Description : Swiper is a free and mobile touch slider with hardware accelerated transitions and native behavior. Versions…
CVE-2026-27211 – Cloud Hypervisor: Host File Exfiltration via QCOW Backing File Abuse
CVE ID : CVE-2026-27211 Published : Feb. 21, 2026, 6:17 a.m. | 27 minutes ago Description : Cloud Hypervisor is a Virtual Machine Monitor for Cloud workloads. Versions 34.0 through 50.0 arevulnerable to…