Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Cookiejack15

#19022of 53,625
14.1Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-39941
8.8
2026-05-12
Axis Communications · Axis · CVE-2026-1185
**Name of the Vulnerable Software and Affected Versions** Axis (affected versions not specified) **Description** Improper input validation in a configuration file on the local file system could allow code execution and potentially lead to privilege escalation. This issue can only be exploited if an attacker has SSH access to the Axis device. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2026-28368
5.3
2026-01-01
Dovecot · Dovecot · CVE-2026-27860
**Name of the Vulnerable Software and Affected Versions** Dovecot versions prior to 2.4.3 **Description** If the `auth username chars` setting is empty, an attacker can inject arbitrary LDAP filters into Dovecot's LDAP authentication process. This can bypass restrictions and allow probing of the LDAP structure. No publicly available exploits are known. **Recommendations** Do not clear out the `auth username chars` setting. Install version 2.4.3 or later.