Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.5 MEDIUM
CVE-2026-5538 — QingdaoU OnlineJudge judge_server_heartbeat Endpoint JudgeServer.service_url server-side …

A vulnerability was detected in QingdaoU OnlineJudge up to 1.6.1. Affected by this issue is the function service_url of the file JudgeServer.service_url of the component judge_server_heartbeat Endpoi…

Remote | Server-Side Request Forgery
Apr 05, 2026 Apr 24, 2026
Apr 05, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-5537 — halex CourseSEL HTTP GET Parameter IndexController.class.php check_sel sql injection

A security vulnerability has been detected in halex CourseSEL up to 1.1.0. Affected by this vulnerability is the function check_sel of the file Apps/Index/Controller/IndexController.class.php of the …

Remote | Injection
Apr 05, 2026 Apr 29, 2026
Apr 05, 2026
Apr 29, 2026
7.5 HIGH
CVE-2026-5536 — FedML-AI FedML gRPC server grpc_server.py sendMessage deserialization

A weakness has been identified in FedML-AI FedML up to 0.8.9. Affected is the function sendMessage of the file grpc_server.py of the component gRPC server. Executing a manipulation can lead to deseri…

fedml | Remote | Injection
Apr 05, 2026 Apr 30, 2026
Apr 05, 2026
Apr 30, 2026
Showing 20 of 5623 Results