🛡️ CVE Vulnerability Database
CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia
| CVE ID | Title / Description | Severity | CVSS | Status | Published |
|---|---|---|---|---|---|
| CVE-2026-26027 |
GLPI is a free asset and IT management software package. From 11.0.0 to before 11.0.6, an unauthenti…
|
HIGH |
7.5
|
— | Apr 6, 2026 |
| CVE-2026-29047 |
GLPI is a free asset and IT management software package. From 10.0.0 to before 10.0.24 and 11.0.6, a…
|
HIGH |
7.2
|
— | Apr 6, 2026 |
| CVE-2026-33510 |
Homarr is an open-source dashboard. Prior to 1.57.0, a DOM-based Cross-Site Scripting (XSS) vulnerab…
|
HIGH |
8.8
|
⚡ | Apr 6, 2026 |
| CVE-2026-34217 |
SandboxJS is a JavaScript sandboxing library. Prior to 0.8.36, a scope modification vulnerability ex…
|
HIGH |
7.2
|
⚡ | Apr 6, 2026 |
| CVE-2026-34588 |
OpenEXR provides the specification and reference implementation of the EXR file format, an image sto…
|
HIGH |
7.8
|
⚡ | Apr 6, 2026 |
| CVE-2026-35020 |
Anthropic Claude Code CLI and Claude Agent SDK contain an OS command injection vulnerability in the …
|
HIGH |
8.4
|
— | Apr 6, 2026 |
| CVE-2026-35021 |
Anthropic Claude Code CLI and Claude Agent SDK contain an OS command injection vulnerability in the …
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2026-35029 |
LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.83.…
|
HIGH |
8.8
|
— | Apr 6, 2026 |
| CVE-2026-35389 |
Bulwark Webmail is a self-hosted webmail client for Stalwart Mail Server. Prior to 1.4.11, S/MIME si…
|
HIGH |
7.5
|
— | Apr 6, 2026 |
| CVE-2026-35391 |
Bulwark Webmail is a self-hosted webmail client for Stalwart Mail Server. Prior to 1.4.11, the getCl…
|
HIGH |
7.5
|
— | Apr 6, 2026 |
| CVE-2026-35394 |
Mobile Next is an MCP server for mobile development and automation. Prior to 0.0.50, the mobile_open…
|
HIGH |
8.3
|
⚡ ✅ | Apr 6, 2026 |
| CVE-2024-14032 |
Twitch Studio version 0.114.8 and prior contain a privilege escalation vulnerability in its privileg…
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2025-47389 |
Memory corruption when buffer copy operation fails due to integer overflow during attestation report…
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2025-47390 |
Memory corruption while preprocessing IOCTL request in JPEG driver.
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2025-47391 |
Memory corruption while processing a frame request from user.
|
HIGH |
7.8
|
✅ | Apr 6, 2026 |
| CVE-2025-47392 |
Memory corruption when decoding corrupted satellite data files with invalid signature offsets.
|
HIGH |
8.8
|
AI | Apr 6, 2026 |
| CVE-2025-47400 |
Cryptographic issue while copying data to a destination buffer without validating its size.
|
HIGH |
7.1
|
— | Apr 6, 2026 |
| CVE-2026-21367 |
Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes durin…
|
HIGH |
7.6
|
— | Apr 6, 2026 |
| CVE-2026-21371 |
Memory Corruption when retrieving output buffer with insufficient size validation.
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2026-21372 |
Memory Corruption when sending IOCTL requests with invalid buffer sizes during memcpy operations.
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2026-21373 |
Memory Corruption when accessing an output buffer without validating its size during IOCTL processin…
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2026-21374 |
Memory Corruption when processing auxiliary sensor input/output control commands with insufficient b…
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2026-21375 |
Memory Corruption when accessing an output buffer without validating its size during IOCTL processin…
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2026-21376 |
Memory Corruption when accessing an output buffer without validating its size during IOCTL processin…
|
HIGH |
7.8
|
— | Apr 6, 2026 |
| CVE-2026-21378 |
Memory Corruption when accessing an output buffer without validating its size during IOCTL processin…
|
HIGH |
7.8
|
— | Apr 6, 2026 |