Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.5 MEDIUM
CVE-2026-7183 — aligungr UERANSIM Radio Link Simulation Layer rls_pdu.cpp DecodeRlsMessage uncaught excep…

A vulnerability has been found in aligungr UERANSIM up to 3.2.7. The affected element is the function rls::DecodeRlsMessage in the library src/lib/rls/rls_pdu.cpp of the component Radio Link Simulati…

Remote | Memory Corruption
Apr 27, 2026 Apr 28, 2026
Apr 27, 2026
Apr 28, 2026
5.3 MEDIUM
CVE-2026-7179 — OSPG binwalk WinCE Extraction Plugin winceextract.py read_null_terminated_string path tra…

A security vulnerability has been detected in OSPG binwalk up to 2.4.3. This vulnerability affects the function read_null_terminated_string of the file src/binwalk/plugins/winceextract.py of the comp…

| Path Traversal
Apr 27, 2026 Apr 29, 2026
Apr 27, 2026
Apr 29, 2026
9.1 CRITICAL
CVE-2026-40971 — Spring Boot RabbitMQ SSL Hostname Verification Bypass

When configured to use an SSL bundle, Spring Boot's RabbitMQ auto-configuration does not perform hostname verification when connecting to the RabbitMQ broker. Affected: Spring Boot 4.0.0–4.0.5 (fix …

spring_boot | Remote | Misconfiguration
Apr 27, 2026 May 14, 2026
Apr 27, 2026
May 14, 2026
7.3 HIGH
CVE-2026-28747 — Milesight Cameras Authorization Bypass Through User-Controlled Key

A weak key generation vulnerability exists in specific firmware versions of Milesight AIOT cameras allows authorization to be bypassed.

| Authentication
Apr 27, 2026 Apr 28, 2026
Apr 27, 2026
Apr 28, 2026
Showing 20 of 6604 Results