In fluent-plugin-opentelemetry component for Fluentd versions prior to 0.5.3 a medium severity vulnerability CVE-2026-44163 was detected. This vulnerability allows attackers to cause resource exhaustion by sending a large, compressed payload. To address this issue, users should upgrade fluent-plugin-opentelemetry to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-44163.
Read more Data AnalyticsIn Kimai versions prior to 2.58.0 a medium severity vulnerability CVE-2026-52823 was detected. This vulnerability allows an attacker to perform unauthorized actions by tricking an authenticated user into visiting a malicious link. To address this issue, users should upgrade Kimai to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-52823.
Read more Project ManagementIn ngx_http_v3_module component for NGINX in certain versions a medium severity vulnerability CVE-2026-90439 was detected. This vulnerability allows for a potential limited heap buffer overflow while processing a TLS handshake. To address this issue, users should upgrade NGINX to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-90439.
Read more Application DevelopmentIn Google Cloud Gemini Enterprise Agent Platform SDK for Python versions prior to 1.166.1 a high severity vulnerability CVE-2026-19407 was detected. This vulnerability allows an attacker to achieve Remote Code Execution (RCE) and tenant-project token theft. To address this issue, users should upgrade the Google Cloud Gemini Enterprise Agent Platform SDK for Python to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-19407.
Read more Application DevelopmentIn MotoPress Hotel Booking plugin component for WordPress versions 6.2.4 and earlier a high severity vulnerability CVE-2026-90650 was detected. This vulnerability allows unauthenticated attackers to inject arbitrary web scripts. To address this issue, users should upgrade MotoPress Hotel Booking plugin to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-90650.
Read more CMSIn Open Notebook versions before 1.11.0 a high severity vulnerability CVE-2026-90769 was detected. This vulnerability allows authenticated users to perform server-side requests to internal services. To address this issue, users should upgrade Open Notebook to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-90769.
Read more Communication