Vulnerability Notes
- CVE-2026-55848 - mapfish-print: XXE on MapFish Print allows reading arbitrary files of certain types
- CVE-2026-55764 - Klever-Go: SFT add-quantity `int64` overflow bypasses a finite per-nonce MaxSupply
- CVE-2026-81532 - BI Connector ODBC Driver Improper Bounds Checking on Cursor Name Leading to Memory Corruption
- CVE-2026-75118 - http_gdpr_decrypt Pre-Authentication Stack-Based Buffer Overflow
- CVE-2026-55763 - Klever-Go: Percentage-transfer royalty skips the source debit at exactly-100% splits
- CVE-2026-3627 - Multiple Vulnerabilities in IBM Concert Software
- CVE-2026-18904 - Langflow is affected by multiple authentication bypass, path traversal, authorization, and server-side request forgery vulnerabilities
- CVE-2026-18527 - IBM Application Runtime Expert (ARE) for IBM i is vulnerable to a user gaining elevated privileges and sensitive information [, ].
- CVE-2026-82329 - Potential authentication bypass leading to administrative access in Artifactory
- CVE-2026-82286 - gpt-crawler Arbitrary File Write via outputFileName Parameter
- CVE-2026-82279 - HyperDX Team Management Operations Missing Role-Based Access Control
- CVE-2026-82277 - Argo Rollouts Dashboard Unauthenticated Mutating Operations
- CVE-2026-82266 - Redpanda Admin API Unauthenticated Superuser Access via Default Configuration