CVE-2026-5281
A use-after-free vulnerability exists in the Dawn component of Google Chrome. This flaw allows attackers to potentially execute arbitrary code or cause a denial-of-service via a crafted HTML page.
Critical vulnerabilities, curated daily for security professionals
See how vulnerabilities affect your specific environment
CRS uses the System Security Context Vector (SSCV) Framework v1.0 to adjust CVSS scores based on your system's exposure level, network position, and business criticality. Learn more about SSCV Framework
Yesterday's disclosures include a CVSS 10.0 vulnerability in the Sonos Era 300 (CVE-2026-4149) alongside two critical AWS flaws affecting AWS CLI and aws-mcp-server (CVE-2026-5059, CVE-2026-5058), both scoring 9.8. Critical CVEs dropped to 9, down 55% from the prior day's 20, while high-priority disclosures fell 26% to 74. Five separate critical vulnerabilities (CVE-2026-6112 through CVE-2026-6116) target the Totolink A7100RU router, all rated CVSS 9.8, indicating a broad attack surface in that device. Two vulnerabilities are under active exploitationβGoogle Dawn (CVE-2026-5281) and TrueConf Client (CVE-2026-3502)βboth rated 9.5. No patches are currently available for any of the 83 disclosed CVEs, requiring defenders to rely on compensating controls and network-level mitigations.
Immediate action: Prioritize network segmentation and access restrictions for Sonos Era 300 devices, Totolink A7100RU routers, and any systems using AWS CLI or aws-mcp-server. With zero patches available across all disclosures, apply compensating controls such as WAF rules, network isolation, and enhanced monitoring for exploitation indicators on Google Dawn and TrueConf Client.
A use-after-free vulnerability exists in the Dawn component of Google Chrome. This flaw allows attackers to potentially execute arbitrary code or cause a denial-of-service via a crafted HTML page.
TrueConf Client Download of Code Without Integrity Check Vulnerability - Active in CISA KEV catalog.
A reflected XSS vulnerability in the Rukovoditel CRM Zadarma telephony API allows unauthenticated attackers to execute malicious scripts.
The aws-mcp-server is vulnerable to remote code execution via AWS CLI command injection, allowing attackers to execute arbitrary system commands without authentication.
The Sonos Era 300 is vulnerable to remote code execution due to an out-of-bounds memory access issue within SMB response handling.
The aws-mcp-server is vulnerable to remote code execution via command injection due to improper validation of user-supplied input in the allowed commands list.
A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the maxRtrAdvInterval argument.
A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the ttyEnable argument.
A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the proto argument.
A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the enable argument.
A remote OS command injection vulnerability exists in the Totolink A7100RU CGI handler via the ip argument.
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CactusThemes VideoPro allows PHP Local File Inclusion
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Case Themes Case Theme User allows PHP Local File Inclusion
PraisonAI is a multi-agent teams system
The Gravity SMTP plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 2
PraisonAI is a multi-agent teams system
The BuddyPress Groupblog plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1
A vulnerability exists in Chartbrew, an open-source web application for database and API data visualization.
Adobe Acrobat Reader is vulnerable to prototype pollution, which can result in arbitrary code execution when a victim opens a malicious file.
A vulnerability exists in Saltcorn, an extensible, open-source, no-code database application builder.
Chamilo LMS is a learning management system
A plaintext storage of a password vulnerability in Synology SSL VPN Client before 1
Chamilo LMS is a learning management system
The Optimole β Optimize Images | Convert WebP & AVIF | CDN & Lazy Load | Image Optimization plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4
The wpForo Forum plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to and including 3
Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Client, Apache ActiveMQ Broker, Apache ActiveMQ
Chamilo LMS is a learning management system
Chamilo LMS is a learning management system
Arcane is an interface for managing Docker containers, images, networks, and volumes
Chamilo LMS is a learning management system
Chamilo LMS is a learning management system
KeePassXC OpenSSL Configuration Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
A remote code execution (RCE) vulnerability exists in the ChargePoint Home Flex revssh service via command injection.
A vulnerability was found in code-projects Vehicle Showroom Management System 1
A vulnerability was determined in code-projects Vehicle Showroom Management System 1
A vulnerability was identified in code-projects Vehicle Showroom Management System 1
Local privilege escalation due to improper handling of environment variables
NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
A vulnerability was detected in Tenda F451 1
A flaw has been found in Tenda F451 1
A vulnerability has been found in Tenda F451 1
GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability
GIMP ANI File Parsing Integer Overflow Remote Code Execution Vulnerability
GIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
GIMP XPM File Parsing Integer Overflow Remote Code Execution Vulnerability
Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Labcenter Electronics Proteus PDSPRJ File Parsing Type Confusion Remote Code Execution Vulnerability
A flaw was found in odh-dashboard in Red Hat Openshift AI
A stack-based buffer overflow vulnerability exists in the ChargePoint Home Flex OCPP getpreq function, leading to RCE.
LiteLLM through 2026-04-08 allows remote attackers to execute arbitrary code via bytecode rewriting at the /guardrails/test_custom_code URI
A local privilege escalation vulnerability in NoMachine allows attackers to perform external control of file paths.
A heap buffer overflow in the Netwide Assembler (NASM) obj_directive() function arises from insufficient bounds checking.
A stack-based buffer overflow in the NASM disasm() function allows out-of-bounds writes via malicious input.
An authentication bypass vulnerability in OpenClaw Canvas allows unauthorized access to the application.
OpenClaw before 2026
OpenClaw before 2026
OpenClaw before 2026
OpenClaw before 2026
A privilege escalation vulnerability in CouchCMS allows authenticated Admin-level users to create SuperAdmin accounts.
Vikunja is an open-source self-hosted task management platform
Postiz is an AI social media scheduling tool
A Cross-site Scripting (XSS) vulnerability was identified in the `from_dict` method of the `AppLollmsMessage` class in parisneo/lollms prior to version 2
OpenClaw before 2026
OpenClaw before 2026
An issue was discovered in musl libc 0
OpenClaw before 2026
OpenClaw before 2026
Chamilo LMS is a learning management system
goshs is a SimpleHTTPServer written in Go
OpenClaw before 2026
Chamilo LMS is a learning management system
ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulnerability
Vikunja is an open-source self-hosted task management platform
A security vulnerability has been detected in perfree go-fastdfs-web up to 1
A vulnerability was identified in FoundationAgents MetaGPT up to 0
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zootemplate Cerato allows Reflected XSS
Chamilo LMS is a learning management system
Chamilo LMS is a learning management system
Bugsink is a self-hosted error tracking tool
Chamilo LMS is a learning management system
TREK is a collaborative travel planner
NoMachine External Control of File Path Arbitrary File Deletion Vulnerability