A vulnerability classified as very critical has been found in Imagination Graphics DDK up to 1.18 RTM2/23.2 RTM2/24.2 RTM2/25.3 RTM/26.1 RTM1. This impacts an unknown function of the component Memory Free Paths. Performing a manipulation results in double free.
This vulnerability is cataloged as CVE-2026-45202. The attack must be initiated from a local position. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability described as very critical has been identified in Imagination Graphics DDK up to 26.1 RTM1. This affects an unknown function of the component GPU Firmware. Such manipulation leads to memory corruption.
This vulnerability is listed as CVE-2026-45199. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability marked as problematic has been reported in WPForms Pro Plugin up to 2.0.0.2 on WordPress. The impacted element is the function wp_kses_allowed_html of the file view-entry.min.js of the component Input Sanitization. This manipulation of the argument data-src causes cross site scripting.
This vulnerability is tracked as CVE-2026-18409. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability labeled as critical has been found in Rocket.Chat up to 7.10.14/8.7.0. The affected element is the function dangerouslySetInnerHTML of the file InquireSidePanelItem.tsx of the component Omnichannel Queue. The manipulation of the argument Name results in injection.
This vulnerability is identified as CVE-2026-65644. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.