| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-9037 | Download of code without integrity check in XCharge C6 | XCharge | C6 | - | - | 2026-05-28 19:04:15 | Deep Dive |
| CVE-2026-49128 | Music Player Daemon < 0.24.11 Path Traversal via LocalStorage URI Handling | MusicPlayerDaemon | MPD | High | 7.5 | 2026-05-28 19:02:29 | Deep Dive |
| CVE-2026-49127 | Music Player Daemon < 0.24.11 Stack Buffer Overflow via pcm_unpack_24be | MusicPlayerDaemon | MPD | High | 8.6 | 2026-05-28 18:59:14 | Deep Dive |
| CVE-2026-46685 | RustFS: Reflective CORS with credentials on S3 listener; unauthenticated license metadata endpoint on console | rustfs | rustfs | - | - | 2026-05-28 18:41:36 | Deep Dive |
| CVE-2026-45039 | RustFS: Internode RPC HMAC secret falls back to public default credential, enabling peer impersonation | rustfs | rustfs | Critical | 9.8 | 2026-05-28 18:39:55 | Deep Dive |
| CVE-2026-45040 | RustFS: Sensitive Information Leakage (SessionToken and SecretAccessKey) in RustFS Logs [Debug Mode] | rustfs | rustfs | - | - | 2026-05-28 18:35:49 | Deep Dive |
| CVE-2026-45041 | RustFS: Hard-coded RSA private key in license verifier permits arbitrary license forgery | rustfs | rustfs | - | - | 2026-05-28 18:34:06 | Deep Dive |
| CVE-2026-45042 | RustFS: UploadPartCopy Does Not Enforce Destination Bucket Policy on Copy Source | rustfs | rustfs | - | - | 2026-05-28 18:32:31 | Deep Dive |
| CVE-2026-45044 | RustFS: Authentication bypass in /profile/cpu and /profile/memory allows unauthenticated access to profiling handlers | rustfs | rustfs | - | - | 2026-05-28 18:31:39 | Deep Dive |
| CVE-2026-47136 | RustFS: Unauthenticated RustFS console license endpoint exposes license metadata | rustfs | rustfs | - | - | 2026-05-28 18:30:08 | Deep Dive |
| CVE-2026-47337 | NULL pointer dereference in Ubuntu Linux AppArmor IPv4/IPv6 socket mediation | Canonical | Ubuntu Linux | Low | 3.3 | 2026-05-28 18:29:21 | Deep Dive |
| CVE-2026-47336 | Use of uninitialized value in Ubuntu Linux AppArmor IPv4/IPv6 socket mediation rules | Canonical | Ubuntu Linux | Low | 3.3 | 2026-05-28 18:29:02 | Deep Dive |
| CVE-2026-47335 | NULL pointer dereference in Ubuntu Linux AppArmor notification handling | Canonical | Ubuntu Linux | Medium | 5.5 | 2026-05-28 18:28:50 | Deep Dive |
| CVE-2026-47334 | Deadlock or kernel panic in Ubuntu Linux AppArmor notification handling | Canonical | Ubuntu Linux | Medium | 5.5 | 2026-05-28 18:28:40 | Deep Dive |
| CVE-2026-47333 | Out-of-bounds read in Ubuntu Linux AppArmor notification handling | Canonical | Ubuntu Linux | High | 7.8 | 2026-05-28 18:28:28 | Deep Dive |
| CVE-2026-47332 | Out-of-bounds read in Ubuntu Linux AppArmor notification handling | Canonical | Ubuntu Linux | Medium | 5.5 | 2026-05-28 18:28:19 | Deep Dive |
| CVE-2026-47331 | Use-after-free in Ubuntu Linux AppArmor notification handling | Canonical | Ubuntu Linux | High | 7.8 | 2026-05-28 18:28:09 | Deep Dive |
| CVE-2026-47330 | Use of uninitialized value in Ubuntu Linux AppArmor notification handling | Canonical | Ubuntu Linux | Low | 3.3 | 2026-05-28 18:27:59 | Deep Dive |
| CVE-2026-47329 | Incorrect validation of field size in Ubuntu Linux AppArmor notification responses | Canonical | Ubuntu Linux | Low | 3.3 | 2026-05-28 18:27:45 | Deep Dive |
| CVE-2026-47328 | Invalid pointer deallocation in Ubuntu Linux AppArmor notification handling | Canonical | Ubuntu Linux | Medium | 6.1 | 2026-05-28 18:27:33 | Deep Dive |