| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-44217 | sse-channel: SSE Injection via unsanitized event fields | rexxars | sse-channel | - | - | 2026-05-12 19:51:07 | Deep Dive |
| CVE-2026-34656 | Adobe Commerce | Improper Authorization (CWE-285) | Adobe | Adobe Commerce | Medium | 4.3 | 2026-05-12 19:50:35 | Deep Dive |
| CVE-2026-34658 | Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) | Adobe | Adobe Commerce | Medium | 4.8 | 2026-05-12 19:50:34 | Deep Dive |
| CVE-2026-34650 | Adobe Commerce | Uncontrolled Resource Consumption (CWE-400) | Adobe | Adobe Commerce | High | 7.5 | 2026-05-12 19:50:34 | Deep Dive |
| CVE-2026-34686 | Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) | Adobe | Adobe Commerce | High | 8.7 | 2026-05-12 19:50:33 | Deep Dive |
| CVE-2026-34647 | Adobe Commerce | Server-Side Request Forgery (SSRF) (CWE-918) | Adobe | Adobe Commerce | High | 7.4 | 2026-05-12 19:50:32 | Deep Dive |
| CVE-2026-34685 | Adobe Commerce | Improper Input Validation (CWE-20) | Adobe | Adobe Commerce | Low | 3.4 | 2026-05-12 19:50:31 | Deep Dive |
| CVE-2026-34653 | Adobe Commerce | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) | Adobe | Adobe Commerce | High | 8.7 | 2026-05-12 19:50:30 | Deep Dive |
| CVE-2026-34652 | Adobe Commerce | Dependency on Vulnerable Third-Party Component (CWE-1395) | Adobe | Adobe Commerce | High | 7.5 | 2026-05-12 19:50:29 | Deep Dive |
| CVE-2026-34645 | Adobe Commerce | Incorrect Authorization (CWE-863) | Adobe | Adobe Commerce | High | 7.5 | 2026-05-12 19:50:28 | Deep Dive |
| CVE-2026-34648 | Adobe Commerce | Uncontrolled Resource Consumption (CWE-400) | Adobe | Adobe Commerce | High | 7.5 | 2026-05-12 19:50:27 | Deep Dive |
| CVE-2026-34649 | Adobe Commerce | Uncontrolled Resource Consumption (CWE-400) | Adobe | Adobe Commerce | High | 7.5 | 2026-05-12 19:50:26 | Deep Dive |
| CVE-2026-34655 | Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) | Adobe | Adobe Commerce | Medium | 4.8 | 2026-05-12 19:50:25 | Deep Dive |
| CVE-2026-34654 | Adobe Commerce | Dependency on Vulnerable Third-Party Component (CWE-1395) | Adobe | Adobe Commerce | Medium | 5.3 | 2026-05-12 19:50:24 | Deep Dive |
| CVE-2026-34651 | Adobe Commerce | Uncontrolled Resource Consumption (CWE-400) | Adobe | Adobe Commerce | High | 7.5 | 2026-05-12 19:50:24 | Deep Dive |
| CVE-2026-34646 | Adobe Commerce | Incorrect Authorization (CWE-863) | Adobe | Adobe Commerce | High | 7.5 | 2026-05-12 19:50:23 | Deep Dive |
| CVE-2026-42338 | ip-address: XSS in Address6 HTML-emitting methods | beaugunderson | ip-address | - | - | 2026-05-12 19:43:16 | Deep Dive |
| CVE-2026-44219 | ciguard: SCA HTTP client reads response body without size cap | Jo-Jo98 | ciguard | Low | 3.7 | 2026-05-12 19:40:29 | Deep Dive |
| CVE-2026-44218 | ciguard: Container image runs as root (no USER directive) | Jo-Jo98 | ciguard | Low | 3.0 | 2026-05-12 19:39:17 | Deep Dive |
| CVE-2026-44220 | ciguard: discover_pipeline_files follows symlinks out of scan root | Jo-Jo98 | ciguard | Low | 3.2 | 2026-05-12 19:37:22 | Deep Dive |