CVE-2026-34477
Medium Severity
Description
The fix for CVE-2025-68161 https://logging.apache.org/security.html#CVE-2025-68161 was incomplete: it addressed hostname verification only when enabled via the...
Related Vulnerabilities
- CVE-2026-33784: A Use of Default Password vulnerability in the Juniper Networks
Support Insights (JSI)
Virtual L CRITICAL
- CVE-2026-4305: The Royal WordPress Backup & Restore Plugin plugin for WordPress is vulnerable to Reflected Cross-Si MEDIUM
- CVE-2026-40194: phpseclib has a variable-time HMAC comparison in SSH2::get_binary_packet() using != instead of hash_ LOW
- CVE-2026-40258: gramps-webapi: Zip Slip Path Traversal in Media Archive Import CRITICAL
- CVE-2026-6035: A vulnerability has been found in code-projects Vehicle Showroom Management System 1.0. The affected MEDIUM
Related Coverage
Threat Actors