Common Vulnerabilities and Exposures (CVE)

CVE-2026-45301

May 19, 2026 03:55:28 UTC

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.3.16, a missing permission check in all files related API endpoints allows any authenticated user to list, access and delete every...

CVE-2026-6345

May 19, 2026 03:55:27 UTC

Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13, 11.4.x <= 11.4.3 fail prevent disclosure of created user password which allows a malicious attacker to impersonate a user via the use of some of those passwords.. Mattermost Advisor...

CVE-2026-31635

May 19, 2026 03:55:26 UTC

In the Linux kernel, the following vulnerability has been resolved: rxrpc: fix oversized RESPONSE authenticator length check rxgk_verify_response() decodes auth_len from the packet and is supposed to verify that it fits in the remaining b...

CVE-2026-41119

May 19, 2026 03:55:25 UTC

Dell Live Optics Windows and Personal Edition collectors contain an improper certificate validation vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability leading to loss of confidentiality and integri...

CVE-2026-44194

May 19, 2026 03:55:23 UTC

OPNsense is a FreeBSD based firewall and routing platform. Prior to 26.1.8, an authenticated Remote Code Execution (RCE) vulnerability in the OPNsense core allows a user with user-management privileges to execute arbitrary system commands a...

CVE-2026-33565

May 19, 2026 03:08:47 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

CVE-2026-28733

May 19, 2026 03:08:41 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution.

CVE-2026-27766

May 19, 2026 03:08:39 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak.

CVE-2026-25850

May 19, 2026 03:08:35 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak

CVE-2026-25781

May 19, 2026 03:08:30 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered.

CVE-2026-28751

May 19, 2026 02:59:07 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

CVE-2026-27781

May 19, 2026 02:59:03 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

CVE-2026-27648

May 19, 2026 02:58:59 UTC

in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps.

CVE-2026-25110

May 19, 2026 02:58:56 UTC

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

CVE-2026-24792

May 19, 2026 02:58:50 UTC

in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps.