CVE-2026-46683 Snappy: SSRF and local file read via the xsl-style-sheet option
Information published.
Categories: Microsoft
CVE-2026-46643 Snappy: Binary path is never shell-escaped due to an inverted is_executable check
Information published.
Categories: Microsoft
CVE-2026-42012 Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans
Information published.
Categories: Microsoft
CVE-2026-5260 Gnutls: gnutls: information disclosure via heap overread in rsa key exchange
Information published.
Categories: Microsoft
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling
Information published.
Categories: Microsoft
CVE-2026-42013 Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name
Information published.
Categories: Microsoft
CVE-2026-34355 Apache HTTP Server: mod_proxy_html buffer overflow
Information published.
Categories: Microsoft
CVE-2026-44185 Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request`
Information published.
Categories: Microsoft
CVE-2026-34356 Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow
Information published.
Categories: Microsoft
CVE-2026-44186 Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp
Information published.
Categories: Microsoft
CVE-2026-42535 Apache HTTP Server: mod_dav_fs protected directory access
Information published.
Categories: Microsoft
CVE-2026-44631 Apache HTTP Server: Heap Underflow in `ap_regname` via Signed Char Overflow
Information published.
Categories: Microsoft
CVE-2026-29167 Apache HTTP Server: mod_ldap per-dir use-after-free
Information published.
Categories: Microsoft
CVE-2026-43951 Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash
Information published.
Categories: Microsoft
CVE-2026-42536 Apache HTTP Server: mod_xml2enc heap overflow
Information published.
Categories: Microsoft
CVE-2026-44119 Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules
Information published.
Categories: Microsoft
CVE-2026-48913 Apache HTTP Server: mod_http2 memory corruption when file handles exhausted
Information published.
Categories: Microsoft
CVE-2026-10846 Insufficient verification that responses belong to a query
Information published.
Categories: Microsoft
CVE-2026-11822 SQLite before 3.53.2 Memory Corruption in FTS5 Extension
Information published.
Categories: Microsoft


