General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-11687 | A flaw was found in the gi-docgen. This vulnerability allows arbitrary JavaScript execution in the context of the page … | Medium (6.1) | 2026-01-26 | General Purpose |
| CVE-2025-11065 | A flaw was found in github.com/go-viper/mapstructure/v2, in the field processing component using mapstructure.WeakDecod… | Medium (5.3) | 2026-01-26 | General Purpose |
| CVE-2025-70368 | Worklenz version 2.1.5 contains a Stored Cross-Site Scripting (XSS) vulnerability in the Project Updates feature. An at… | Medium (5.4) | 2026-01-26 | General Purpose |
| CVE-2026-21509 | Reliance on untrusted inputs in a security decision in Microsoft Office allows an unauthorized attacker to bypass a sec… | High (7.8) | 2026-01-26 | General Purpose |
| CVE-2026-1446 | There is a Cross Site Scripting issue in Esri ArcGIS Pro versions 3.6.0 and earlier. A local attacker could supply mali… | Medium (5.0) | 2026-01-26 | General Purpose |