cve 8
- CVE-2026-53622: HTTP/3 mTLS bypass in Traefik router TLSOptions selection
- CVE-2026-49980: rclone rc --rc-serve inline remote backend instantiation
- CVE-2026-49284: ExpectedIssuer and InResponseTo binding bypass in SimpleSAMLphp
- CVE-2026-49283: HTTP-Artifact TLS validator confusion in SimpleSAMLphp SAML2
- CVE-2026-48774: MCP run_sql_readonly multi-statement bypass in ProxySQL
- CVE-2026-48773: pre-auth first-packet heap overflow in ProxySQL
- CVE-2026-48491: Domain-fronted mTLS bypass in Traefik SNICheck wildcard TLSOptions
- CVE-2026-46491: Path traversal in SimpleSAMLphp casserver FileSystemTicketStore