General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-22748 | Vulnerability in Spring Spring Security. When an application configures JWT decoding with NimbusJwtDecoder or NimbusRe… | Medium (5.3) | 2026-04-22 | General Purpose |
| CVE-2026-22747 | Vulnerability in Spring Spring Security. SubjectX500PrincipalExtractor does not correctly handle certain malformed X.50… | Medium (6.8) | 2026-04-22 | General Purpose |
| CVE-2026-22746 | Vulnerability in Spring Spring Security. If an application is using the UserDetails#isEnabled, #isAccountNonExpired, or… | Low (3.7) | 2026-04-22 | General Purpose |
| CVE-2026-6386 | In order to apply a particular protection key to an address range, the kernel must update the corresponding page table … | Medium (6.2) | 2026-04-22 | General Purpose |
| CVE-2026-4821 | An improper neutralization of special elements vulnerability was identified in GitHub Enterprise Server that allowed an… | Unknown | 2026-04-21 | General Purpose |