4
CVE-2026-28550 -
Race condition vulnerability in the security control module.Β Impact: Successful exploitation of this vulnerability may affect availability.
5.9
CVE-2026-28545 -
Race condition vulnerability in the printing module.Β Impact: Successful exploitation of this vulnerability may affect availability.
6.2
CVE-2026-28544 -
Race condition vulnerability in the printing module.Β Impact: Successful exploitation of this vulnerability may affect availability.
8.1
CVE-2026-1321 - Membership Plugin β Restrict Content <= 3.2.20 - Unauthenticated Privilege Escalation via 'rcp_leveβ¦
The Membership Plugin β Restrict Content plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.2.20. This is due to the `rcp_setup_registration_init()` function accepting any membership level ID via the `rcp_level` POST parameter without validating that β¦
6.5
CVE-2026-2893 - Page and Post Clone <= 6.3 - Authenticated (Contributor+) SQL Injection via 'meta_key' Parameter
The Page and Post Clone plugin for WordPress is vulnerable to SQL Injection via the 'meta_key' parameter in the content_clone() function in all versions up to, and including, 6.3. This is due to insufficient escaping on the user-supplied meta_key value and insufficient preparation on the existing Sβ¦
3.3
CVE-2026-21786 - HCL Sametime for iOS is affected by sensitive information disclosure
HCL Sametime for iOS is impacted by a sensitive information disclosure. Hostnames information is written in application logs and certain URLs.
5.1
CVE-2026-28537 -
Double free vulnerability in the window module.Β Impact: Successful exploitation of this vulnerability may affect availability.
9.6
CVE-2026-28536 -
Authentication bypass vulnerability in the device authentication module. Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
7.3
CVE-2026-25702 - nftables disabled due to incorrect kernel backport
A Improper Access Control vulnerability in the kernel of SUSE SUSE Linux Enterprise Server 12 SP5 breaks nftables, causing firewall rules applied via nftables to not be effective.This issue affects SUSE Linux Enterprise Server: from 9e6d9d4601768c75fdb0bad3fbbe636e748939c2 before 9c294edb7085fb9165β¦
10
CVE-2026-2743 - SEPPmail User Web Interface Arbitrary File Write to RCE
Arbitrary File Write via Path Traversal upload to Remote Code Execution in SeppMail User Web Interface. The affected feature is the large file transfer (LFT). This issue affects SeppMail: 15.0.2.1 and before