<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Oracle JDK (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/oracle-jdk.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/oracle-jdk-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Oracle JDK (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:30 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-47065 – ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via j...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47065</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47065</guid>
    <pubDate>Wed, 03 Jun 2026 11:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-47065</strong></p>
  <p>ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy   Assessment: Fully addressed.   When the serialised stream contains a TC_PROXYCLASSDESC (the marker  for a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc()  is dispatched. JDK then calls the default  ObjectInputStream.resolveProxyClass(interfaces) implementation, which  perfor…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47065">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35482 – alf.io is an open source ticket reservation system for conferences, trade shows,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35482</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35482</guid>
    <pubDate>Tue, 02 Jun 2026 23:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35482</strong></p>
  <p>alf.io is an open source ticket reservation system for conferences, trade shows, workshops, and meetups. Prior to version 2.0-M5-2606, a sandbox escape vulnerability in the alf.io extension script engine allows an authenticated administrator to execute arbitrary operating system commands on the server. The extension system is intended to execute restricted JavaScript in a sandboxed Rhino environm…</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35482">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-64390 – A privilege escalation vulnerability exists in PlayStation 4 firmware versions 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-64390</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-64390</guid>
    <pubDate>Tue, 02 Jun 2026 20:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-64390</strong></p>
  <p>A privilege escalation vulnerability exists in PlayStation 4 firmware versions 13.00 through 13.02. The BD-J (Blu-ray Disc Java) sandbox can be escaped through a malformed JAR file.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-64390">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28577 – In addWindow of WindowManagerService.java, there is a possible tapjacking issue ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28577</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28577</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28577</strong></p>
  <p>In addWindow of WindowManagerService.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-1021</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28577">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0099 – In onNullBinding of HostEmulationManager.java, there is a possible way to launch...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0099</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0099</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0099</strong></p>
  <p>In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity from the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-273</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0099">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0098 – In getCallingPackageName of Shared.java, there is a possible way to bypass activ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0098</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0098</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0098</strong></p>
  <p>In getCallingPackageName of Shared.java, there is a possible way to bypass activity start restrictions due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-441</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0098">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0096 – In getAppLabel of ForgetDeviceDialogFragment.java, there is a possible trick the...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0096</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0096</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0096</strong></p>
  <p>In getAppLabel of ForgetDeviceDialogFragment.java, there is a possible trick the user into forgetting a device due to misleading or insufficient UI. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-451</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0096">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0094 – In getApplicationLabel of KeyChainActivity.java, there is a possible way to tric...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0094</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0094</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0094</strong></p>
  <p>In getApplicationLabel of KeyChainActivity.java, there is a possible way to trick the user into approving access to certificates due to misleading or insufficient UI. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-451</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0094">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0089 – In multiple functions of PackageInstallerService.java, there is a possible way t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0089</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0089</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0089</strong></p>
  <p>In multiple functions of PackageInstallerService.java, there is a possible way to install unverified apps due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0089">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0088 – In getCallingAppLabel of CertInstaller.java, there is a possible way to hide a s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0088</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0088</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0088</strong></p>
  <p>In getCallingAppLabel of CertInstaller.java, there is a possible way to hide a sensitive security dialogue due to misleading or insufficient UI. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-451</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0088">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0087 – In approvalLevelForDomainInternal of DomainVerificationService.java, there is a ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0087</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0087</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0087</strong></p>
  <p>In approvalLevelForDomainInternal of DomainVerificationService.java, there is a possible way to hijack an arbitrary app link due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-693</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0087">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0078 – In setGlobalProxy of DevicePolicyManagerService.java, there is a possible desync...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0078</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0078</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0078</strong></p>
  <p>In setGlobalProxy of DevicePolicyManagerService.java, there is a possible desync in persistence due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0078">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0077 – In resumeConfigurationDispatch of ActivityRecord.java, there is a possible backg...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0077</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0077</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0077</strong></p>
  <p>In resumeConfigurationDispatch of ActivityRecord.java, there is a possible background application launch (bal) due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-693</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0077">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0036 – In startAnimation of StageCoordinator.java, there is a possible tapjacking issue...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0036</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0036</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0036</strong></p>
  <p>In startAnimation of StageCoordinator.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-1021</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0036">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-48570 – In multiple functions of PipTaskOrganizer.java, there is a possible way to launc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-48570</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-48570</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-48570</strong></p>
  <p>In multiple functions of PipTaskOrganizer.java, there is a possible way to launch an activity from the background due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-441</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48570">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26418 – In setUserDisclaimerAcknowledged of CarDevicePolicyService.java, there is a poss...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26418</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26418</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26418</strong></p>
  <p>In setUserDisclaimerAcknowledged of CarDevicePolicyService.java, there is a possible way to bypass the user dialog when adding an account to a managed device due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26418">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-22426 – In many functions of ComputerEngine.java, there is a possible way to access URIs...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-22426</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-22426</guid>
    <pubDate>Mon, 01 Jun 2026 22:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-22426</strong></p>
  <p>In many functions of ComputerEngine.java, there is a possible way to access URIs across users due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-22426">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-37579 – An issue in SMSGate sms-core&lt;=2.1.13.6 allows a remote attacker to execute arbit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-37579</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-37579</guid>
    <pubDate>Thu, 28 May 2026 14:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-37579</strong></p>
  <p>An issue in SMSGate sms-core<=2.1.13.6 allows a remote attacker to execute arbitrary code via the Cmpp7FDeliverRequestMessageCodec.java component</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-37579">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-38807 – Insecure Permissions vulnerability in kvf-admin v1.0.0 allows a remote attacker ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-38807</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-38807</guid>
    <pubDate>Wed, 27 May 2026 18:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-38807</strong></p>
  <p>Insecure Permissions vulnerability in kvf-admin v1.0.0 allows a remote attacker to escalate privileges via the UserController.java component</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-38807">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-38945 – Command injection in Raynet rvia version 12.6 Update 8 and previous versions all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-38945</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-38945</guid>
    <pubDate>Wed, 27 May 2026 17:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-38945</strong></p>
  <p>Command injection in Raynet rvia version 12.6 Update 8 and previous versions allows adversaries to execute arbitrary code via a crafted path that matches the improperly terminated search criteria of rvia's Java search using the find command.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-38945">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45574 – epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrast...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45574</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45574</guid>
    <pubDate>Tue, 26 May 2026 22:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45574</strong></p>
  <p>epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.2, an attacker on the network path between the ePA service and the Konnektor can present any TLS certificate (self-signed, expired, wrong CN) and intercept all SOAP traffic. This includes patient identifiers (KVNR), SMC-B card operations (authentication, signing), document content, and credential…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45574">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44900 – epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrast...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44900</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44900</guid>
    <pubDate>Tue, 26 May 2026 22:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44900</strong></p>
  <p>epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.1, in  SignedPublicKeysTrustValidatorImpl.isTrusted(), the ECDSA signature verification at line 45 discards the boolean return value of Signature.verify(). The method performs certificate chain validation, OCSP check, and signature algorithm setup, but never checks whether the signature actually m…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44900">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45575 – epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrast...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45575</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45575</guid>
    <pubDate>Tue, 26 May 2026 21:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45575</strong></p>
  <p>epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.2, an attacker who can MITM the TLS connection between the client and the IDP (within the TI network) can substitute a forged discovery document. The forged document redirects uri_puk_idp_enc and uri_puk_idp_sig to attacker-controlled URLs. The client then encrypts the SMC-B-signed challenge respo…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45575">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42785 – OpenKM 6.3.12 contains a remote code execution vulnerability that allows authent...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42785</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42785</guid>
    <pubDate>Tue, 26 May 2026 15:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42785</strong></p>
  <p>OpenKM 6.3.12 contains a remote code execution vulnerability that allows authenticated administrators to execute arbitrary Java/BeanShell code through the /admin/Scripting endpoint. Attackers can submit malicious script content with an action=Evaluate parameter to execute operating system commands in the context of the OpenKM application server.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42785">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6009 – Java Deserialisation Vulnerability in Jaspersoft Reports Library leads to Remote...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6009</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6009</guid>
    <pubDate>Tue, 19 May 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6009</strong></p>
  <p>Java Deserialisation Vulnerability in Jaspersoft Reports Library leads to Remote Code Execution (RCE), potentially allowing code execution on the affected system</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6009">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7504 – A flaw was found in Keycloak's URL validation logic during redirect operations. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7504</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7504</guid>
    <pubDate>Tue, 19 May 2026 12:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7504</strong></p>
  <p>A flaw was found in Keycloak's URL validation logic during redirect operations. By crafting a malicious request, an attacker could bypass validation to redirect users to unauthorized URLs, potentially leading to the exposure of sensitive information within the domain or facilitating further attacks. This vulnerability specifically affects Keycloak clients configured with a wildcard (*) in the "Va…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7504">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8771 – A security flaw has been discovered in linlinjava litemall up to 1.8.0. This imp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8771</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8771</guid>
    <pubDate>Mon, 18 May 2026 00:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8771</strong></p>
  <p>A security flaw has been discovered in linlinjava litemall up to 1.8.0. This impacts the function list of the file litemall-wx-api/src/main/java/org/linlinjava/litemall/wx/web/WxGoodsController.java of the component Front-end WeChat API. Performing a manipulation results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used fo…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8771">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8759 – A vulnerability was identified in xiandafu beetl up to 3.20.2. Affected is an un...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8759</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8759</guid>
    <pubDate>Sun, 17 May 2026 15:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8759</strong></p>
  <p>A vulnerability was identified in xiandafu beetl up to 3.20.2. Affected is an unknown function of the file beetl-classic-integration/beetl-spring-classic/src/main/java/org/beetl/ext/spring/SpELFunction.java of the component SpELFunction. The manipulation leads to improper neutralization of special elements used in an expression language statement. Remote exploitation of the attack is possible. Th…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8759">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8751 – A security flaw has been discovered in h2oai h2o-3 up to 7402. This affects the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8751</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8751</guid>
    <pubDate>Sun, 17 May 2026 12:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8751</strong></p>
  <p>A security flaw has been discovered in h2oai h2o-3 up to 7402. This affects the function importBinaryModel of the file h2o-core/src/main/java/hex/Model.java of the component JAR Handler. Performing a manipulation results in deserialization. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early abo…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8751">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44714 – The bitcoinj library is a Java implementation of the Bitcoin protocol. Prior to ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44714</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44714</guid>
    <pubDate>Fri, 15 May 2026 17:16:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44714</strong></p>
  <p>The bitcoinj library is a Java implementation of the Bitcoin protocol. Prior to 0.17.1, ScriptExecution.correctlySpends() contains two fast-path verification bugs for standard P2PKH and native P2WPKH spends in core/src/main/java/org/bitcoinj/script/ScriptExecution.java. In both branches, bitcoinj verifies an attacker-controlled signature/public-key pair but fails to verify that the public key is…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44714">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41258 – OpenMRS is an open source electronic medical record system platform. From 2.7.0 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41258</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41258</guid>
    <pubDate>Fri, 15 May 2026 17:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41258</strong></p>
  <p>OpenMRS is an open source electronic medical record system platform. From 2.7.0 to before 2.7.9 and 2.8.6, the ConceptReferenceRangeUtility.evaluateCriteria() method in OpenMRS Core evaluates database-stored criteria strings as Apache Velocity templates without any sandbox configuration. The VelocityEngine is initialized with only logging properties and noSecureUberspector, leaving the default Ub…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41258">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35194 – Code injection in SQL code generation in Apache Flink 1.15.0 through 1.20.x and ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35194</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35194</guid>
    <pubDate>Fri, 15 May 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35194</strong></p>
  <p>Code injection in SQL code generation in Apache Flink 1.15.0 through 1.20.x and 2.0.0 through 2.x allows authenticated users with query submission privileges to execute arbitrary code on TaskManagers via maliciously crafted SQL queries. The vulnerability affects JSON functions (1.15.0+) and LIKE expressions with ESCAPE clauses (1.17.0+). User-controlled strings are interpolated into generated Jav…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35194">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-42555 – Valtimo is an open-source business process automation platform. com.ritense.valt...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42555</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42555</guid>
    <pubDate>Thu, 14 May 2026 17:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-42555</strong></p>
  <p>Valtimo is an open-source business process automation platform. com.ritense.valtimo:document from 12.0.0 to before 12.32.0, com.ritense.valtimo:case from 13.0.0 to before 13.23.0, and com.ritense.valtimo:contract from 13.4.0 to before 13.23.0 evaluate Spring Expression Language (SpEL) expressions from user-supplied input using StandardEvaluationContext, which provides unrestricted access to Java…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42555">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44503 – The RedirectHandler middleware in microsoft/kiota-java (com.microsoft.kiota:micr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44503</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44503</guid>
    <pubDate>Thu, 14 May 2026 16:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44503</strong></p>
  <p>The RedirectHandler middleware in microsoft/kiota-java (com.microsoft.kiota:microsoft-kiota-http-okHttp v1.9.0) and other Kiota libraries fails to strip sensitive HTTP headers when following 3xx redirects to a different host or scheme. Only the Authorization header is removed; Cookie, Proxy-Authorization, and all custom headers are forwarded to the redirect target.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44503">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46419 – Yubico webauthn-server-core (aka java-webauthn-server) 2.8.0 before 2.8.2 incorr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46419</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46419</guid>
    <pubDate>Thu, 14 May 2026 02:17:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46419</strong></p>
  <p>Yubico webauthn-server-core (aka java-webauthn-server) 2.8.0 before 2.8.2 incorrectly checks a function's return value in the second factor flow, leading to impersonation.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-253</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46419">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-37430 – An arbitrary file upload vulnerability in the ShopOrderImportController.java com...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-37430</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-37430</guid>
    <pubDate>Wed, 13 May 2026 14:17:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-37430</strong></p>
  <p>An arbitrary file upload vulnerability in the ShopOrderImportController.java component of qihang-wms commit 75c15a allows attackers to execute arbitrary code via uploading a crafted file.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-37430">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41901 – Thymeleaf is a server-side Java template engine for web and standalone environme...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41901</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41901</guid>
    <pubDate>Tue, 12 May 2026 23:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41901</strong></p>
  <p>Thymeleaf is a server-side Java template engine for web and standalone environments. Prior to 3.1.5.RELEASE, a security bypass vulnerability exists in the expression execution mechanisms of Thymeleaf. Although the library provides mechanisms to avoid the execution of potentially dangerous expressions in some specific sandboxed (restricted) contexts, it fails to properly neutralize specific constr…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-917</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41901">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44241 – Micronaut Framework is a JVM-based full stack Java framework designed for buildi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44241</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44241</guid>
    <pubDate>Tue, 12 May 2026 22:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44241</strong></p>
  <p>Micronaut Framework is a JVM-based full stack Java framework designed for building modular, easily testable JVM applications. From 4.3.0 to before 4.10.22, TimeConverterRegistrar caches DateTimeFormatter instances in an unbounded ConcurrentHashMap<String, DateTimeFormatter> whose key is derived from the @Format annotation pattern concatenated with the locale from the HTTP Accept-Language header.…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44241">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33117 – The Java Key Vault Keys library in the Azure SDK for Java contains an issue in t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33117</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33117</guid>
    <pubDate>Tue, 12 May 2026 18:17:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33117</strong></p>
  <p>The Java Key Vault Keys library in the Azure SDK for Java contains an issue in the local cryptographic verification path where authentication tag comparison was implemented incorrectly. In affected applications that use the vulnerable local cryptography path, specially crafted encrypted input may bypass integrity verification checks. Operations delegated to the Key Vault service are not affected.…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33117">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-45091 – sealed-env is a cross-stack, zero-trust secret management library for Node.js an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45091</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45091</guid>
    <pubDate>Tue, 12 May 2026 14:17:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-45091</strong></p>
  <p>sealed-env is a cross-stack, zero-trust secret management library for Node.js and Java/Spring Boot. In sealed-env enterprise mode, versions 0.1.0-alpha.1 through 0.1.0-alpha.3 embedded the operator's literal TOTP secret in the JWS payload of every minted unseal token. JWS payload is base64-encoded JSON, NOT encrypted. Any party who could observe a minted token (CI build logs, container env dumps,…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45091">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8216 – A vulnerability was identified in Industrial Application Software IAS Canias ERP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8216</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8216</guid>
    <pubDate>Sun, 10 May 2026 01:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8216</strong></p>
  <p>A vulnerability was identified in Industrial Application Software IAS Canias ERP 8.03. This issue affects the function iasServerRemoteInterface.doAction of the component Java RMI Session Management. Such manipulation leads to improper authentication. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8216">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41586 – Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framew...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41586</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41586</guid>
    <pubDate>Thu, 07 May 2026 06:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41586</strong></p>
  <p>Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications. From versions 1.0.0 to 2.2.26, Channel.java implements readObject() and exposes deSerializeChannel() which call ObjectInputStream.readObject() on untrusted byte arrays without configuring an ObjectInputFilter. This is a classic Java deserialization RCE pattern. At time of…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41586">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39852 – Quarkus is a Java framework for building cloud-native applications. In versions ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39852</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39852</guid>
    <pubDate>Tue, 05 May 2026 21:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39852</strong></p>
  <p>Quarkus is a Java framework for building cloud-native applications. In versions prior to 3.20.6.1, 3.27.3.1, 3.33.1.1, 3.35.1.1, 3.34.7, and 3.35.2, a path normalization inconsistency between the security layer and the routing layer allows unauthenticated or lower-privileged users to bypass HTTP path-based authorization policies. Quarkus's security layer performs authorization checks on the raw U…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39852">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7412 – In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, the Opera...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7412</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7412</guid>
    <pubDate>Tue, 05 May 2026 16:16:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7412</strong></p>
  <p>In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, the Operation Delegation feature fails to validate the destination URI of delegated requests. An unauthenticated remote attacker can exploit this design flaw to force the BaSyx server to execute blind HTTP POST requests to arbitrary internal or external targets. This allows an attacker to bypass network segmentation and pivot…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7412">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-7411 – In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, inadequat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7411</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7411</guid>
    <pubDate>Tue, 05 May 2026 16:16:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-7411</strong></p>
  <p>In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, inadequate path normalization in the Submodel HTTP API allows an unauthenticated remote attacker to perform a path traversal attack. By supplying a maliciously crafted fileName parameter during a file upload operation, an attacker can bypass intended storage boundaries and write arbitrary files to any location on the host file…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7411">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-54342 – Eclipse Equinox OSGi versions 3.8 through 3.18 contain a remote code execution v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-54342</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-54342</guid>
    <pubDate>Tue, 05 May 2026 12:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-54342</strong></p>
  <p>Eclipse Equinox OSGi versions 3.8 through 3.18 contain a remote code execution vulnerability in the console interface that allows unauthenticated attackers to execute arbitrary code by exploiting the fork command functionality. Attackers can establish a telnet connection to the OSGi console, perform a telnet handshake, and send fork commands to download and execute malicious Java code, establishi…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-54342">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7710 – A security flaw has been discovered in YunaiV yudao-cloud up to 3.8.0. This affe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7710</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7710</guid>
    <pubDate>Mon, 04 May 2026 00:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7710</strong></p>
  <p>A security flaw has been discovered in YunaiV yudao-cloud up to 3.8.0. This affects the function doFilterInternal of the file JwtAuthenticationTokenFilter.java of the component Ruoyi-Vue-Pro. Performing a manipulation of the argument mock-token results in improper authentication. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7710">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7679 – A security flaw has been discovered in YunaiV yudao-cloud up to 2026.01. This im...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7679</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7679</guid>
    <pubDate>Sun, 03 May 2026 05:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7679</strong></p>
  <p>A security flaw has been discovered in YunaiV yudao-cloud up to 2026.01. This impacts the function getAccessToken of the file yudao-module-system-biz/src/main/java/io/github/ruoyi/common/oauth2/service/impl/OAuth2TokenServiceImpl.java. Performing a manipulation results in improper authentication. The attack can be initiated remotely. The exploit has been released to the public and may be used for…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7679">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-27172 – The ConsulRegistry in the camel-consul component (class org.apache.camel.compone...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27172</guid>
    <pubDate>Mon, 27 Apr 2026 11:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-27172</strong></p>
  <p>The ConsulRegistry in the camel-consul component (class org.apache.camel.component.consul.ConsulRegistry and its inner ConsulRegistryUtils.deserialize method) read Java-serialized values from the Consul KV store and passed them to ObjectInputStream.readObject() without configuring an ObjectInputFilter. An attacker who can write to the Consul KV store backing a Camel ConsulRegistry instance could…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40858 – The camel-infinispan component's ProtoStream-based remote aggregation repository...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40858</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40858</guid>
    <pubDate>Mon, 27 Apr 2026 10:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40858</strong></p>
  <p>The camel-infinispan component's ProtoStream-based remote aggregation repository deserializes data read from a remote Infinispan cache using java.io.ObjectInputStream without applying any ObjectInputFilter. An attacker who can write to the Infinispan cache used by a Camel application can inject a crafted serialized Java object that, when read during normal aggregation repository operations such a…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40858">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40473 – The camel-mina component's MinaConverter.toObjectInput(IoBuffer) type converter ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40473</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40473</guid>
    <pubDate>Mon, 27 Apr 2026 09:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40473</strong></p>
  <p>The camel-mina component's MinaConverter.toObjectInput(IoBuffer) type converter wraps an IoBuffer in a java.io.ObjectInputStream without applying any ObjectInputFilter or class-loading restrictions. When a Camel route uses camel-mina as a TCP or UDP consumer and requests conversion to ObjectInput (for example via getBody(ObjectInput.class) or @Body ObjectInput), an attacker sending a crafted seri…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40473">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40048 – The Camel-PQC FileBasedKeyLifecycleManager class deserializes the contents of `&lt;...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40048</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40048</guid>
    <pubDate>Mon, 27 Apr 2026 09:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40048</strong></p>
  <p>The Camel-PQC FileBasedKeyLifecycleManager class deserializes the contents of `<keyId>.key` files in the configured key directory using java.io.ObjectInputStream without applying any ObjectInputFilter or class-loading restrictions. The cast to `java.security.KeyPair` is evaluated only after `readObject()` has already returned, so any `readObject()` side effects in the deserialized object run befo…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40048">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7060 – A vulnerability was determined in liyupi yu-picture up to a053632c41340152bf75b6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7060</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7060</guid>
    <pubDate>Sun, 26 Apr 2026 22:17:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7060</strong></p>
  <p>A vulnerability was determined in liyupi yu-picture up to a053632c41340152bf75b66b3c543d129123d8ec. This impacts the function PageRequest of the file yu-picture-backend/src/main/java/com/yupi/yupicturebackend/service/impl/PictureServiceImpl.java of the component MyBatis-Plus. Executing a manipulation of the argument sortField can lead to sql injection. The attack can be launched remotely. The exp…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7060">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41433 – OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the Op...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41433</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41433</guid>
    <pubDate>Fri, 24 Apr 2026 20:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41433</strong></p>
  <p>OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From 0.4.0 to before 0.8.0, a flaw in the Java agent injection path allows a local attacker controlling a Java workload to overwrite arbitrary host files when Java injection is enabled and OBI is running with elevated privileges. The injector trusted TMPDIR from the target process and used unsafe…</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41433">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-39920 – BridgeHead FileStore versions prior to 24A (released in early 2024) expose the A...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39920</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39920</guid>
    <pubDate>Fri, 24 Apr 2026 16:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-39920</strong></p>
  <p>BridgeHead FileStore versions prior to 24A (released in early 2024) expose the Apache Axis2 administration module on network-accessible endpoints with default credentials that allows unauthenticated remote attackers to execute arbitrary OS commands. Attackers can authenticate to the admin console using default credentials, upload a malicious Java archive as a web service, and execute arbitrary co…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-1188</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39920">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35229 – Vulnerability in the Java VM component of Oracle Database Server.  Supported ver...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35229</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35229</guid>
    <pubDate>Tue, 21 Apr 2026 21:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35229</strong></p>
  <p>Vulnerability in the Java VM component of Oracle Database Server.  Supported versions that are affected are 19.3-19.30 and  21.3-21.21. Easily exploitable vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Java VM.  Successful attacks of this vulnerability can result in  unauthorized access to critical data or complete access to all Java VM accessible d…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35229">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34282 – Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34282</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34282</guid>
    <pubDate>Tue, 21 Apr 2026 21:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34282</strong></p>
  <p>Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking).  Supported versions that are affected are Oracle Java SE: 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalVM for JDK: 17.0.18 and  21.0.10; Oracle GraalVM Enterprise Edition: 21.3.17. Easily exploitable vulnerability allows unauthenticate…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34282">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-22016 – Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Ente...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-22016</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-22016</guid>
    <pubDate>Tue, 21 Apr 2026 21:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-22016</strong></p>
  <p>Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP).  Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalVM for JDK: 17.0.18 and  21.0.10; Oracle GraalVM Enterprise Edition: 21.3.17. Easily exploitable vulnerability allows un…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22016">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39973 – Apktool is a tool for reverse engineering Android APK files. In versions 3.0.0 a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39973</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39973</guid>
    <pubDate>Tue, 21 Apr 2026 02:16:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39973</strong></p>
  <p>Apktool is a tool for reverse engineering Android APK files. In versions 3.0.0 and 3.0.1, a path traversal vulnerability in `brut/androlib/res/decoder/ResFileDecoder.java` allows a maliciously crafted APK to write arbitrary files to the filesystem during standard decoding (`apktool d`). This is a security regression introduced in commit e10a045 (PR #4041, December 12, 2025), which removed the `Br…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39973">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-32613 – Spinnaker is an open source, multi-cloud continuous delivery platform. Echo like...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32613</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32613</guid>
    <pubDate>Mon, 20 Apr 2026 21:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-32613</strong></p>
  <p>Spinnaker is an open source, multi-cloud continuous delivery platform. Echo like some other services, uses SPeL (Spring Expression Language) to process information - specifically around expected artifacts. In versions prior to 2026.1.0, 2026.0.1, 2025.4.2, and 2025.3.2, unlike orca, it was NOT restricting that context to a set of trusted classes, but allowing FULL JVM access. This enabled a user…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32613">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6625 – A security vulnerability has been detected in moxi624 Mogu Blog v2 up to 5.2. Af...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6625</guid>
    <pubDate>Mon, 20 Apr 2026 10:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6625</strong></p>
  <p>A security vulnerability has been detected in moxi624 Mogu Blog v2 up to 5.2. Affected by this vulnerability is the function LocalFileServiceImpl.uploadPictureByUrl of the file mogu_picture/src/main/java/com/moxi/mogublog/picture/service/impl/LocalFileServiceImpl.java of the component Picture Storage Service. The manipulation leads to server-side request forgery. It is possible to initiate the at…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-40478 – Thymeleaf is a server-side Java template engine for web and standalone environme...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40478</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40478</guid>
    <pubDate>Fri, 17 Apr 2026 22:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-40478</strong></p>
  <p>Thymeleaf is a server-side Java template engine for web and standalone environments. Versions 3.1.3.RELEASE and prior contain a security bypass vulnerability in the the expression execution mechanisms. Although the library provides mechanisms to prevent expression injection, it fails to properly neutralize specific syntax patterns that allow for the execution of unauthorized expressions. If an ap…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-917</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40478">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-40477 – Thymeleaf is a server-side Java template engine for web and standalone environme...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40477</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40477</guid>
    <pubDate>Fri, 17 Apr 2026 22:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-40477</strong></p>
  <p>Thymeleaf is a server-side Java template engine for web and standalone environments. Versions 3.1.3.RELEASE and prior contain a security bypass vulnerability in the expression execution mechanisms. Although the library provides mechanisms to prevent expression injection, it fails to properly restrict the scope of accessible objects, allowing specific potentially sensitive objects to be reached fr…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-917</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40477">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33207 – DataEase is an open-source data visualization and analytics platform. Versions 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33207</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33207</guid>
    <pubDate>Thu, 16 Apr 2026 20:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33207</strong></p>
  <p>DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below contain a SQL injection vulnerability in the /datasource/getTableField endpoint. The getTableFiledSql method in CalciteProvider.java incorporates the tableName parameter directly into SQL query strings using String.format without parameterization or sanitization. Although DatasourceServer.java validat…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33207">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5598 – Covert timing channel vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5598</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5598</guid>
    <pubDate>Wed, 15 Apr 2026 10:16:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5598</strong></p>
  <p>Covert timing channel vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA core on all (core modules).   This vulnerability is associated with program files FrodoEngine.Java.    This issue affects BC-JAVA: from 1.71 before 1.80.2, from 1.81 before 1.80.1, from 1.82 before 1.84.</p>
  <p><strong>CVSS:</strong> 8.9 · <strong>CWE:</strong> CWE-385</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5598">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-3505 – Allocation of resources without limits or throttling, Uncontrolled Resource Cons...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3505</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3505</guid>
    <pubDate>Wed, 15 Apr 2026 10:16:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-3505</strong></p>
  <p>Allocation of resources without limits or throttling, Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpg on all (pg modules).   This vulnerability is associated with program files AEADEncDataPacket.Java, BcAEADUtil.Java, JceAEADUtil.Java, OperatorHelper.Java.    This issue affects BC-JAVA: from 1.74 before 1.80.2, from 1.81 before 1.81.1, from 1.82 be…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3505">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-14813 – : Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14813</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14813</guid>
    <pubDate>Wed, 15 Apr 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-14813</strong></p>
  <p>: Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (core modules).   This vulnerability is associated with program files G3413CTRBlockCipher.    This issue affects BC-JAVA: from 1.59 before 1.80.2, from 1.81 before 1.81.1, from 1.82 before 1.84.</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14813">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6105 – A security vulnerability has been detected in perfree go-fastdfs-web up to 1.3.7...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6105</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6105</guid>
    <pubDate>Sat, 11 Apr 2026 22:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6105</strong></p>
  <p>A security vulnerability has been detected in perfree go-fastdfs-web up to 1.3.7. This affects an unknown part of the file src/main/java/com/perfree/controller/InstallController.java of the component doInstall Interface. The manipulation leads to improper authorization. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early ab…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6105">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40180 – Quarkus OpenAPI Generator is Quarkus' extensions for generation of Rest Clients ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40180</guid>
    <pubDate>Fri, 10 Apr 2026 20:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40180</strong></p>
  <p>Quarkus OpenAPI Generator is Quarkus' extensions for generation of Rest Clients and server stubs generation. Prior to 2.16.0 and 2.15.0-lts, the unzip() method in ApicurioCodegenWrapper.java extracts ZIP entries without validating that the resolved file path stays within the intended output directory. At line 101, the destination is constructed as new File(toOutputDir, entry.getName()) and the co…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33439 – Open Access Management (OpenAM) is an access management solution. Prior to 16.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33439</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33439</guid>
    <pubDate>Tue, 07 Apr 2026 21:17:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33439</strong></p>
  <p>Open Access Management (OpenAM) is an access management solution. Prior to 16.0.6, OpenIdentityPlatform OpenAM is vulnerable to pre-authentication Remote Code Execution (RCE) via unsafe Java deserialization of the jato.clientSession HTTP parameter. This bypasses the WhitelistObjectInputStream mitigation that was applied to the jato.pageSession parameter after CVE-2021-35464. An unauthenticated at…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33439">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5736 – A vulnerability was identified in PowerJob 5.1.0/5.1.1/5.1.2. Impacted is an unk...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5736</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5736</guid>
    <pubDate>Tue, 07 Apr 2026 19:16:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5736</strong></p>
  <p>A vulnerability was identified in PowerJob 5.1.0/5.1.1/5.1.2. Impacted is an unknown function of the file powerjob-server/powerjob-server-starter/src/main/java/tech/powerjob/server/web/controller/InstanceController.java of the component detailPlus Endpoint. The manipulation of the argument customQuery leads to sql injection. Remote exploitation of the attack is possible. The project was informed…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5736">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31272 – MRCMS 3.1.2 contains an access control vulnerability. The save() method in src/m...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31272</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31272</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31272</strong></p>
  <p>MRCMS 3.1.2 contains an access control vulnerability. The save() method in src/main/java/org/marker/mushroom/controller/UserController.java lacks proper authorization validation, enabling direct addition of super administrator accounts without authentication.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31272">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31271 – megagao production_ssm v1.0 contains an authorization bypass vulnerability in th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31271</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31271</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31271</strong></p>
  <p>megagao production_ssm v1.0 contains an authorization bypass vulnerability in the user addition functionality. The insert() method in UserController.java lacks authentication checks, allowing unauthenticated attackers to create super administrator accounts by directly accessing the /user/insert endpoint. This leads to complete system compromise.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-288</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31271">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35554 – A race condition in the Apache Kafka Java producer client’s buffer pool manageme...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35554</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35554</guid>
    <pubDate>Tue, 07 Apr 2026 14:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35554</strong></p>
  <p>A race condition in the Apache Kafka Java producer client’s buffer pool management can cause messages to be silently delivered to incorrect topics.  When a produce batch expires due to delivery.timeout.ms while a network request containing that batch is still in flight, the batch’s ByteBuffer is prematurely deallocated and returned to the buffer pool. If a subsequent producer batch—potentially de…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35554">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5616 – A security vulnerability has been detected in JeecgBoot 3.9.0/3.9.1. The impacte...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5616</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5616</guid>
    <pubDate>Mon, 06 Apr 2026 04:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5616</strong></p>
  <p>A security vulnerability has been detected in JeecgBoot 3.9.0/3.9.1. The impacted element is an unknown function of the file jeecg-boot/jeecg-module-system/jeecg-system-biz/src/main/java/org/jeecg/modules/airag/JeecgBizToolsProvider.java of the component AI Chat Module. Such manipulation leads to missing authentication. The attack can be executed remotely. The name of the patch is b7c9aeba7aefda9…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5616">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5418 – A vulnerability was identified in appsmithorg appsmith up to 1.97. Impacted is t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5418</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5418</guid>
    <pubDate>Thu, 02 Apr 2026 19:21:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5418</strong></p>
  <p>A vulnerability was identified in appsmithorg appsmith up to 1.97. Impacted is the function computeDisallowedHosts of the file app/server/appsmith-interfaces/src/main/java/com/appsmith/util/WebClientUtils.java of the component Dashboard. Such manipulation leads to server-side request forgery. The attack may be launched remotely. The exploit is publicly available and might be used. Upgrading to ve…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5418">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34361 – HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34361</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34361</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34361</strong></p>
  <p>HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to version 6.9.4, the FHIR Validator HTTP service exposes an unauthenticated "/loadIG" endpoint that makes outbound HTTP requests to attacker-controlled URLs. Combined with a startsWith() URL prefix matching flaw in the credential provider (ManagedWebAccessUtils.getServer()), an attacker…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-552</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34361">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34359 – HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34359</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34359</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34359</strong></p>
  <p>HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to version 6.9.4, ManagedWebAccessUtils.getServer() uses String.startsWith() to match request URLs against configured server URLs for authentication credential dispatch. Because configured server URLs (e.g., http://tx.fhir.org) lack a trailing slash or host boundary check, an attacker-co…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-346</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34359">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28228 – OpenOlat is an open source web-based e-learning platform for teaching, learning,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28228</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28228</guid>
    <pubDate>Mon, 30 Mar 2026 21:17:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28228</strong></p>
  <p>OpenOlat is an open source web-based e-learning platform for teaching, learning, assessment and communication. Prior to versions 19.1.31, 20.1.18, and 20.2.5, an authenticated user with the Author role can inject Velocity directives into a reminder email template. When the reminder is processed (either triggered manually or via the daily cron job), the injected directives are evaluated server-sid…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-1336</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28228">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-20227 – JAD Java Decompiler 1.5.8e-1kali1 and prior contains a stack-based buffer overfl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-20227</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-20227</guid>
    <pubDate>Sat, 28 Mar 2026 12:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-20227</strong></p>
  <p>JAD Java Decompiler 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying overly long input that exceeds buffer boundaries. Attackers can craft malicious input passed to the jad command to overflow the stack and execute a return-oriented programming chain that spawns a shell.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-20227">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4953 – A weakness has been identified in mingSoft MCMS up to 5.5.0. This issue affects ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4953</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4953</guid>
    <pubDate>Fri, 27 Mar 2026 15:17:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4953</strong></p>
  <p>A weakness has been identified in mingSoft MCMS up to 5.5.0. This issue affects the function catchImage of the file net/mingsoft/cms/action/BaseAction.java of the component Editor Endpoint. Executing a manipulation of the argument catchimage can lead to server-side request forgery. It is possible to launch the attack remotely. The exploit has been made available to the public and could be used fo…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4953">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33728 – dd-trace-java is a Datadog APM client for Java. In versions of dd-trace-java 0.4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33728</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33728</guid>
    <pubDate>Fri, 27 Mar 2026 01:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33728</strong></p>
  <p>dd-trace-java is a Datadog APM client for Java. In versions of dd-trace-java 0.40.0 through prior to 1.60.2, the RMI instrumentation registered a custom endpoint that deserialized incoming data without applying serialization filters. On JDK version 16 and earlier, an attacker with network access to a JMX or RMI port on an instrumented JVM could exploit this to potentially achieve remote code exec…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33728">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33701 – OpenTelemetry Java Instrumentation provides OpenTelemetry auto-instrumentation a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33701</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33701</guid>
    <pubDate>Fri, 27 Mar 2026 01:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33701</strong></p>
  <p>OpenTelemetry Java Instrumentation provides OpenTelemetry auto-instrumentation and instrumentation libraries for Java. In versions prior to 2.26.1, the RMI instrumentation registered a custom endpoint that deserialized incoming data without applying serialization filters. On JDK version 16 and earlier, an attacker with network access to a JMX or RMI port on an instrumented JVM could exploit this…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33701">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4860 – A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. Th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4860</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4860</guid>
    <pubDate>Thu, 26 Mar 2026 09:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4860</strong></p>
  <p>A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. This affects the function GenericFastJsonRedisSerializer of the file src/main/java/com/genersoft/iot/vmp/conf/redis/RedisTemplateConfig.java of the component API Endpoint. The manipulation results in deserialization. It is possible to launch the attack remotely. The exploit has been released to the public and may be use…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4860">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-70952 – pf4j before 20c2f80 has a path traversal vulnerability in the extract() function...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-70952</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-70952</guid>
    <pubDate>Wed, 25 Mar 2026 19:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-70952</strong></p>
  <p>pf4j before 20c2f80 has a path traversal vulnerability in the extract() function of Unzip.java, where improper handling of zip entry names can allow directory traversal or Zip Slip attacks, due to a lack of proper path normalization and validation.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-70952">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32948 – sbt is a build tool for Scala, Java, and others. From version 0.9.5 to before ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32948</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32948</guid>
    <pubDate>Tue, 24 Mar 2026 20:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32948</strong></p>
  <p>sbt is a build tool for Scala, Java, and others. From version 0.9.5 to before version 1.12.7, on Windows, sbt uses Process("cmd", "/c", ...) to run VCS commands (git, hg, svn). The URI fragment (branch, tag, revision) is user-controlled via the build definition and passed to these commands without validation. Because cmd /c interprets &, |, and ; as command separators, a malicious fragment can ex…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32948">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4741 – Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4741</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4741</guid>
    <pubDate>Tue, 24 Mar 2026 04:17:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4741</strong></p>
  <p>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TeamJCD JoyConDroid (app/src/main/java/com/rdapps/gamepad/util modules). This vulnerability is associated with program files UnzipUtil.Java‎.  This issue affects JoyConDroid: through 1.0.93.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4741">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4735 – Deserialization of Untrusted Data vulnerability in DTStack chunjun (‎chunjun-cor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4735</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4735</guid>
    <pubDate>Tue, 24 Mar 2026 04:17:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4735</strong></p>
  <p>Deserialization of Untrusted Data vulnerability in DTStack chunjun (‎chunjun-core/src/main/java/com/dtstack/chunjun/util modules). This vulnerability is associated with program files GsonUtil.Java.  This issue affects chunjun: before 1.16.1.</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4735">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33306 – bcrypt-ruby is a Ruby binding for the OpenBSD bcrypt() password hashing algorith...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33306</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33306</guid>
    <pubDate>Tue, 24 Mar 2026 01:17:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33306</strong></p>
  <p>bcrypt-ruby is a Ruby binding for the OpenBSD bcrypt() password hashing algorithm. Prior to version 3.1.22, an integer overflow in the Java BCrypt implementation for JRuby can cause zero iterations in the strengthening loop.  Impacted applications must be setting the cost to 31 to see this happen. The JRuby implementation of bcrypt-ruby (`BCrypt.java`) computes the key-strengthening round count a…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33306">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4594 – A vulnerability has been found in erupts erupt up to 1.13.3. Affected by this is...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4594</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4594</guid>
    <pubDate>Mon, 23 Mar 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4594</strong></p>
  <p>A vulnerability has been found in erupts erupt up to 1.13.3. Affected by this issue is the function geneEruptHqlOrderBy of the file erupt-data/erupt-jpa/src/main/java/xyz/erupt/jpa/dao/EruptJpaUtils.java. Such manipulation of the argument sort.field leads to sql injection hibernate. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The ven…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4594">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33180 – HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33180</guid>
    <pubDate>Fri, 20 Mar 2026 23:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33180</strong></p>
  <p>HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to version 6.9.0, when setting headers in HTTP requests, the internal HTTP client sends headers first to the host in the initial URL but also, if asked to follow redirects and a 30X HTTP response code is returned, to the host mentioned in URL in the Location: response header value. Sendi…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33013 – Micronaut Framework is a JVM-based full stack Java framework designed for buildi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33013</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33013</guid>
    <pubDate>Fri, 20 Mar 2026 05:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33013</strong></p>
  <p>Micronaut Framework is a JVM-based full stack Java framework designed for building modular, easily testable JVM applications. Versions prior to both 4.10.16 and 3.10.5 do not correctly handle descending array index order during form-urlencoded body binding in theJsonBeanPropertyBinder::expandArrayToThreshold, which allows remote attackers to cause a DoS (non-terminating loop, CPU exhaustion, and…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33013">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33012 – Micronaut Framework is a JVM-based full stack Java framework designed for buildi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33012</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33012</guid>
    <pubDate>Fri, 20 Mar 2026 05:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33012</strong></p>
  <p>Micronaut Framework is a JVM-based full stack Java framework designed for building modular, easily testable JVM applications.  Versions 4.7.0 through 4.10.16 used an unbounded ConcurrentHashMap cache with no eviction policy in its DefaultHtmlErrorResponseBodyProvider. If the application throws an exception whose message may be influenced by an attacker, (for example, including request query value…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33012">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32939 – DataEase is an open source data visualization analysis tool. Versions 2.10.19 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32939</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32939</guid>
    <pubDate>Fri, 20 Mar 2026 04:16:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32939</strong></p>
  <p>DataEase is an open source data visualization analysis tool. Versions 2.10.19 and below have inconsistent Locale handling between the JDBC URL validation logic and the H2 JDBC engine's internal parsing. DataEase uses String.toUpperCase() without specifying an explicit Locale, causing its security checks to rely on the JVM's default runtime locale, while H2 JDBC always normalizes URLs using Locale…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-178</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32939">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-3511 – Improper Restriction of XML External Entity Reference vulnerability in XMLUtils...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3511</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3511</guid>
    <pubDate>Thu, 19 Mar 2026 12:16:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-3511</strong></p>
  <p>Improper Restriction of XML External Entity Reference vulnerability in XMLUtils.java in Slovensko.Digital Autogram allows remote unauthenticated attacker to conduct SSRF (Server Side Request Forgery) attacks and obtain unauthorized access to local files on filesystems running the vulnerable application. Successful exploitation requires the victim to visit a specially crafted website that sends re…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-611</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3511">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-3207 – Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3207</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3207</guid>
    <pubDate>Tue, 17 Mar 2026 19:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-3207</strong></p>
  <p>Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise version 4.x allows unauthorised access.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3207">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-25534 – ### Impact
Spinnaker updated URL Validation logic on user input to provide sanit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25534</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25534</guid>
    <pubDate>Tue, 17 Mar 2026 18:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-25534</strong></p>
  <p>### Impact Spinnaker updated URL Validation logic on user input to provide sanitation on user inputted URLs for clouddriver.  However, they missed that Java URL objects do not correctly handle underscores on parsing.  This led to a bypass of the previous CVE (CVE-2025-61916) through the use of carefully crafted URLs.  Note, Spinnaker found this not just in that CVE, but in the existing URL valida…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25534">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4201 – A weakness has been identified in glowxq glowxq-oj up to 6f7c723090472057252040f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4201</guid>
    <pubDate>Mon, 16 Mar 2026 14:20:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4201</strong></p>
  <p>A weakness has been identified in glowxq glowxq-oj up to 6f7c723090472057252040fd2bbbdaa1b5ed2393. This vulnerability affects the function Upload of the file business/business-system/src/main/java/com/glowxq/system/admin/controller/SysFileController.java. Executing a manipulation can lead to unrestricted upload. The attack can be launched remotely. The exploit has been made available to the publi…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4200 – A security flaw has been discovered in glowxq glowxq-oj up to 6f7c72309047205725...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4200</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4200</guid>
    <pubDate>Mon, 16 Mar 2026 14:20:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4200</strong></p>
  <p>A security flaw has been discovered in glowxq glowxq-oj up to 6f7c723090472057252040fd2bbbdaa1b5ed2393. This affects the function uploadTestcaseZipUrl of the file business/business-oj/src/main/java/com/glowxq/oj/problem/controller/ProblemCaseController.java. Performing a manipulation results in server-side request forgery. The attack can be initiated remotely. The exploit has been released to the…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4200">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-48611 – In DeviceId of DeviceId.java, there is a possible desync in persistence due to a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-48611</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-48611</guid>
    <pubDate>Tue, 10 Mar 2026 20:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-48611</strong></p>
  <p>In DeviceId of DeviceId.java, there is a possible desync in persistence due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48611">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
