CVE ID : CVE-2026-26334 Published : Feb. 13, 2026, 9:16 p.m. | 45 minutes ago Description : Calero VeraSMART versions prior to 2026 R1 contain hardcoded static AES encryption keys within Veramark.Framework.dll (Veramark.Core.Config class)….
CVE-2026-26333 – Calero VeraSMART < 2022 R1 .NET Remoting Arbitrary File Read Leading to ViewState RCE
CVE ID : CVE-2026-26333 Published : Feb. 13, 2026, 9:16 p.m. | 45 minutes ago Description : Calero VeraSMART versions prior to 2022 R1 expose an unauthenticated .NET Remoting HTTP service on TCP port…
CVE-2026-2441 – Google Chrome Use After Free Vulnerability in CSS
CVE ID : CVE-2026-2441 Published : Feb. 13, 2026, 7:17 p.m. | 2 hours, 44 minutes ago Description : Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker…
CVE-2026-26190 – Milvus Allows Unauthenticated Access to Restful API on Metrics Port (9091) Leads to Critical System Compromise
CVE ID : CVE-2026-26190 Published : Feb. 13, 2026, 7:17 p.m. | 44 minutes ago Description : Milvus is an open-source vector database built for generative AI applications. Prior to 2.5.27 and 2.6.10,…
CVE-2026-26187 – lakeFS vulnerable to path traversal in local block adapter allow cross-namespace and sibling directory access
CVE ID : CVE-2026-26187 Published : Feb. 13, 2026, 7:17 p.m. | 44 minutes ago Description : lakeFS is an open-source tool that transforms object storage into a Git-like repositories. Prior to 1.77.0,…
CVE-2025-69770 – MojoPortal CMS Zip Slip Remote Command Execution Vulnerability
CVE ID : CVE-2025-69770 Published : Feb. 13, 2026, 6:16 p.m. | 1 hour, 45 minutes ago Description : A zip slip vulnerability in the /DesignTools/SkinList.aspx endpoint of MojoPortal CMS v2.9.0.1 allows attackers to…
CVE-2026-26268 – Cursor sandbox escape via Git hooks
CVE ID : CVE-2026-26268 Published : Feb. 13, 2026, 5:16 p.m. | 45 minutes ago Description : Cursor is a code editor built for programming with AI. Sandbox escape via writing .git configuration…
CVE-2026-26221 – Hyland OnBase Timer Services Unauthenticated .NET Remoting RCE
CVE ID : CVE-2026-26221 Published : Feb. 13, 2026, 3:21 p.m. | 40 minutes ago Description : Hyland OnBase contains an unauthenticated .NET Remoting exposure in the OnBase Workflow Timer Service (Hyland.Core.Workflow.NTService.exe) and…
CVE-2026-1619 – IDOR in Universal Sotware’s FlexCity/Kiosk
CVE ID : CVE-2026-1619 Published : Feb. 13, 2026, 1:20 p.m. | 41 minutes ago Description : Authorization Bypass Through User-Controlled Key vulnerability in Universal Software Inc. FlexCity/Kiosk allows Exploitation of Trusted Identifiers.This…
CVE-2026-1618 – Admin Account Takeover in Universal Sotware’s FlexCity/Kiosk
CVE ID : CVE-2026-1618 Published : Feb. 13, 2026, 1:14 p.m. | 47 minutes ago Description : Authentication Bypass Using an Alternate Path or Channel vulnerability in Universal Software Inc. FlexCity/Kiosk allows Privilege…