Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.2 HIGH
CVE-2026-44855 — Authenticated Stack-Based Buffer Overflow in PAPI Services

Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authent…

Remote | Memory Corruption
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
7.2 HIGH
CVE-2026-44854 — Authenticated Remote Code Execution via Arbitrary File Write in AOS-8 and AOS-10 Web-Base…

Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arb…

Remote | Injection
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
7.2 HIGH
CVE-2026-44853 — Authenticated Remote Code Execution via Arbitrary File Write in AOS-8 and AOS-10 Web-Base…

Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arb…

Remote | Injection
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
7.2 HIGH
CVE-2026-44852 — Authenticated Remote Code Execution via Arbitrary File Overwrite in the AOS-8 and AOS-10 …

An authenticated remote code execution vulnerability exists in the AOS-8 and AOS-10 web-based management interface. A vulnerability in the certificate download functionality could allow an authentica…

Remote | Path Traversal
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
9.3 CRITICAL
CVE-2026-44225 — Pulpy: Incomplete filesystem sandbox in pulpy.fs bridge allows packaged web apps to read …

Pulpy is a lightweight, cross-platform desktop application packager for web apps. Prior to 0.1.1, Pulpy injects a pulpy.fs JavaScript API into every packaged web application, giving it access to the …

Remote | Path Traversal
May 12, 2026 May 12, 2026
May 12, 2026
May 12, 2026
6.5 MEDIUM
CVE-2026-44223 — vLLM: extract_hidden_states speculative decoding crashes server on any request with penal…

vLLM is an inference and serving engine for large language models (LLMs). From to before 0.20.0, the extract_hidden_states speculative decoding proposer in vLLM returns a tensor with an incorrect sh…

vllm | Remote | Denial of Service
May 12, 2026 May 12, 2026
May 12, 2026
May 12, 2026
6.5 MEDIUM
CVE-2026-44222 — vLLM: Remote DoS via Special-Token Placeholders

vLLM is an inference and serving engine for large language models (LLMs). From 0.6.1 to before 0.20.0, there is a a Token Injection vulnerability in vLLM’s multimodal processing. Unauthenticated, tex…

vllm | Remote | Injection
May 12, 2026 May 12, 2026
May 12, 2026
May 12, 2026
9.0 CRITICAL
CVE-2026-44221 — ArcadeDB: Cross-database authorization bypass and unsecured newly-created databases

ArcadeDB is a Multi-Model DBMS. Prior to 2.6.4, authenticated users and API tokens scoped to a specific database could read, write, and mutate schema on any other database on the same server. Two dis…

Remote | Authorization
May 12, 2026 May 12, 2026
May 12, 2026
May 12, 2026
3.2 LOW
CVE-2026-44220 — ciguard: discover_pipeline_files follows symlinks out of scan root

ciguard is a static security auditor for CI/CD pipelines. From 0.8.0 to 0.8.1 , the discover_pipeline_files() function in src/ciguard/discovery.py walks a directory tree following symlinks, with cycl…

| Path Traversal
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
3.7 LOW
CVE-2026-44219 — ciguard: SCA HTTP client reads response body without size cap

ciguard is a static security auditor for CI/CD pipelines. From 0.6.0 to 0.8.1, both SCA HTTP clients (src/ciguard/analyzer/sca/osv.py and src/ciguard/analyzer/sca/endoflife.py) call payload = json.lo…

Remote | Memory Corruption
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
3.0 LOW
CVE-2026-44218 — ciguard: Container image runs as root (no USER directive)

ciguard is a static security auditor for CI/CD pipelines. From 0.1.0 to 0.8.1, the published ghcr.io/jo-jo98/ciguard container image inherits the default root user because the Dockerfile lacks a USER…

| Misconfiguration
May 12, 2026 May 12, 2026
May 12, 2026
May 12, 2026
6.6 MEDIUM
CVE-2026-44217 — sse-channel: SSE Injection via unsanitized event fields

sse-channel is an SSE-implementation which can be used to any node.js http request/response stream. Prior to 4.0.1, implementations that allow user-provided values to be passed to event, retry or id …

Remote | Injection
May 12, 2026 May 12, 2026
May 12, 2026
May 12, 2026
4.4 MEDIUM
CVE-2026-44215 — NanaZip: Heap out-of-bounds write in NanaZip UFS directory parser

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a one-byte heap out-of-bounds null write exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is …

| Memory Corruption
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
9.1 CRITICAL
CVE-2026-42889 — Relay Server WebSocket authentication bypass when token is omitted

Relay adds real-time collaboration to Obsidian. Relay Server versions 0.9.0 through 0.9.6 contain an authentication bypass in the multi-document WebSocket endpoints. When authentication is configured…

Remote | Authentication
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
4.4 MEDIUM
CVE-2026-42446 — NanaZip: Stack out-of-bounds read in NanaZip ZealFS bitmap parser

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a stack-based out-of-bounds read exists in the ZealFS filesystem image parser in NanaZip. The vulnerability is triggered …

| Memory Corruption
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
3.3 LOW
CVE-2026-42445 — NanaZip: Uncontrolled recursion in NanaZip UFS directory traversal causes stack exhaustion

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an uncontrolled recursion vulnerability exists in the UFS/UFS2 filesystem image parser in NanaZip. The function GetAllPat…

| Memory Corruption
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
3.3 LOW
CVE-2026-42444 — NanaZip: Unbounded resource consumption in NanaZip littlefs parser via attacker-controlle…

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a denial-of-service vulnerability exists in the littlefs filesystem image parser in NanaZip. The handler's Open method re…

| Denial of Service
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
3.3 LOW
CVE-2026-42443 — NanaZip: Integer divide-by-zero in NanaZip UFS inode offset calculation

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an integer divide-by-zero exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is triggered when …

| Denial of Service
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
3.3 LOW
CVE-2026-42442 — NanaZip: Null-pointer dereference in NanaZip UFS parser when root inode is a symlink

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a null-pointer dereference exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is triggered when…

| Memory Corruption
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
3.3 LOW
CVE-2026-42355 — NanaZip: Uncontrolled recursion in NanaZip Electron ASAR parser causes stack exhaustion

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an uncontrolled recursion vulnerability exists in the Electron Archive (ASAR) parser in NanaZip. When opening a crafted .…

| Denial of Service
May 12, 2026 May 13, 2026
May 12, 2026
May 13, 2026
Showing 20 of 6337 Results