Common Vulnerabilities and Exposures (CVE)

CVE-2025-59504

Feb 13, 2026 20:45:40 UTC

Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally.

CVE-2025-64656

Feb 13, 2026 20:45:39 UTC

Out-of-bounds read in Application Gateway allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-20045

Feb 13, 2026 20:33:31 UTC

A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P), Ci...

CVE-2026-20620

Feb 13, 2026 20:15:40 UTC

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Tahoe 26.3, macOS Sonoma 14.8.4. An attacker may be able to cause unexpected system termination or read kernel memo...

CVE-2023-23915

Feb 13, 2026 20:09:56 UTC

A cleartext transmission of sensitive information vulnerability exists in curl <v7.88.0 that could cause HSTS functionality to behave incorrectly when multiple URLs are requested in parallel. Using its HSTS support, curl can be instructed t...

CVE-2023-27533

Feb 13, 2026 20:09:17 UTC

A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and "telnet options" during server negotiation. The lack of proper input s...

CVE-2020-6096

Feb 13, 2026 20:07:01 UTC

An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter r...

CVE-2026-20636

Feb 13, 2026 20:05:45 UTC

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, Safari 26.3, macOS Tahoe 26.3, visionOS 26.3. Processing maliciously crafted web content may lead to an unexpected process crash.

CVE-2026-25964

Feb 13, 2026 20:01:40 UTC

Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. Prior to 2.5.1, a Path Traversal vulnerability in the RecipeImport workflow of Tandoor Recipes allows authenticated users with import permi...

CVE-2021-35942

Feb 13, 2026 20:00:38 UTC

The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclo...

CVE-2026-25991

Feb 13, 2026 19:58:00 UTC

Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. Prior to 2.5.1, there is a Blind Server-Side Request Forgery (SSRF) vulnerability in the Cookmate recipe import feature of Tandoor Recipes....

CVE-2019-12749

Feb 13, 2026 19:57:55 UTC

dbus before 1.10.28, 1.12.x before 1.12.16, and 1.13.x before 1.13.12, as used in DBusServer in Canonical Upstart in Ubuntu 14.04 (and in some, less common, uses of dbus-daemon), allows cookie spoofing because of symlink mishandling in the ...

CVE-2025-21245

Feb 13, 2026 19:56:58 UTC

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21409

Feb 13, 2026 19:56:58 UTC

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21223

Feb 13, 2026 19:56:57 UTC

Windows Telephony Service Remote Code Execution Vulnerability