CVE-2026-862895.3Medium—5.3MediumOllama GGUF Decoder gguf.go readGGUFV1String integer overflowollama25 MIN AGO
CVE-2026-841866.9Medium—6.9MediumIncorrect access control in PrestaShopprestashop prestashop30 MIN AGO
CVE-2026-863326.5Medium—6.5MediumOdh-dashboard: odh-dashboard: nim credential secret readable by any authenticated userred hat red hat openshift ai (rhoai)31 MIN AGO
CVE-2026-862885.3Medium—5.3MediumModelCloud GPTQModel Triton dequantization kernel tritonv2.py out-of-boundsmodelcloud gptqmodel40 MIN AGO
CVE-2026-847328.7High—8.7HighRetransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflowopenvpn openvpn53 MIN AGO
CVE-2026-862855.3Medium—5.3MediumBookStack Attachment Edit Endpoint AttachmentController.php getUpdateForm access controlbookstack55 MIN AGO
CVE-2026-187966.8Medium—6.8MediumQSPI flash encryption side-channel leakagenordic semiconductor asa nrf53401 HR AGO
CVE-2026-142978.7High—8.7HighThe Continuous Glucose Monitoring Service's Record Access Control Point (RACP) write handler `memcpy`s the entire attacker-supplied ATT write value into a fixed 20-byte BSS buffer.nordic semiconductor asa nrf connect sdk1 HR AGO
CVE-2026-862846.9Medium—6.9Mediumjaychouchannel Tourism-Management-System CommonController.java getOption information disclosurejaychouchannel tourism-management-system1 HR AGO
CVE-2026-142967.5High—7.5HighnRF54H20: MCUBoot can be tricked to executing unauthenticated codenordic semiconductor asa nrf54h201 HR AGO
CVE-2026-842567.7High—7.7HighAn argument parsing issue in OpenVPN 2.1_rc10 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows remote authenticated users to execute arbitrary commands via a crafted certificate subjectopenvpn openvpn1 HR AGO
CVE-2026-842268.5High—8.5HighOpenVPN version 2.5.0 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows local authenticated users to perform a binary planting attack during network configuration stepsopenvpn openvpn1 HR AGO
CVE-2026-862826.9Medium—6.9Mediumjaychouchannel Tourism-Management-System CommonDao CommonController.java sql injectionjaychouchannel tourism-management-system1 HR AGO
CVE-2026-78254—Unrated——UnratedApache Ant: Path traversal in ftp and scp tasks allows arbitrary file writeapache software foundation apache ant1 HR AGO
CVE-2026-823121.8Low—1.8LowOpenVPN 2.0.0 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows local authenticated users to cause a denial of service via a NULL DACL on named IPC objectsopenvpn openvpn1 HR AGO