Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

56672
Total
4490
Critical
16802
High
16633
Medium
CVE ID Severity Score Description Published
CVE-2026-92576 HIGH 8.6 HKUDS nanobot before 0.3.0 contains a server-side request forgery vulnerability in the WebFetchTool component where the _validate_url() function fails to block internal IP ranges and … Sep 16, 2026
CVE-2026-89034 MEDIUM 6.5 TCH QRing smart ring model R20_B006 running firmware RT09R20_1.00.00_250318 contains an unauthenticated Bluetooth Low Energy access vulnerability that allows any nearby attacker to connect to … Sep 16, 2026
CVE-2026-85469 HIGH 8.0 A flaw was found in quay-builder-qemu. A remote attacker could exploit this by compromising the upstream `Noelware/docker-manifest-action` used in the release workflow, which is pinned … Sep 16, 2026
CVE-2026-64684 MEDIUM 6.8 RMCP is an official Rust SDK for the Model Context Protocol. Prior to 2.1.0, the rmcp crate's StreamableHttpClientTransport in crates/rmcp/src/transport/common/reqwest/streamable_http_client.rs builds its default_http_client with reqwest's … Sep 16, 2026
CVE-2026-61597 UNKNOWN — djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, many djust built-in component template tags (`djust.components.templatetags.*`) render a … Sep 16, 2026
CVE-2026-61594 CRITICAL 9.1 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the live (WebSocket) transport authorizes a mount via `check_view_auth`, … Sep 16, 2026
CVE-2026-61592 HIGH 7.4 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, SSE sessions were keyed solely by a client-chosen `session_id` … Sep 16, 2026
CVE-2026-61591 HIGH 8.1 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, for views that opt into state snapshots, the snapshot … Sep 16, 2026
CVE-2026-92816 HIGH 7.8 ComfyUI before 0.30.0 fails to sanitize folder_name input in dataset save nodes, allowing attackers to write files to arbitrary paths outside the output directory. Attackers … Sep 16, 2026
CVE-2026-92815 HIGH 7.5 changedetection.io through 0.60.6 fails to validate the Goto URL action in browser steps, allowing unauthenticated attackers to access internal addresses. Attackers can supply arbitrary internal … Sep 16, 2026
CVE-2026-92814 MEDIUM 4.2 changedetection.io through 0.60.6 fails to escape the scraped page title in HTML notifications, allowing arbitrary markup injection. Attackers can place malicious markup in monitored page … Sep 16, 2026
CVE-2026-92813 MEDIUM 4.9 Metabase through 0.63.18 fails to properly validate the unspecified address 0.0.0.0 in custom GeoJSON URLs, allowing unauthenticated attackers to reach loopback services. Attackers can save … Sep 16, 2026
CVE-2026-92812 MEDIUM 6.8 decap-server contains a path traversal vulnerability in the local proxy containment guard that uses plain string prefix comparison without path separator validation. Attackers can access … Sep 16, 2026
CVE-2026-92811 MEDIUM 6.5 browserless versions 1.44.0 through 2.56.7 fail to enforce file protocol restrictions in Playwright websocket endpoints, allowing authenticated token holders to read arbitrary files. Attackers can … Sep 16, 2026
CVE-2026-92810 MEDIUM 4.3 PrestaShop blockwishlist through 3.0.2 fails to validate wishlist ownership in the getUrlByIdWishListAction method, allowing authenticated customers to retrieve share tokens for any wishlist by identifier. … Sep 16, 2026
CVE-2026-92809 MEDIUM 4.3 PrestaShop psgdpr versions through 1.4.3 fail to validate that GDPR consent log entries are attributed to the authenticated customer. Authenticated attackers can submit arbitrary customer … Sep 16, 2026
CVE-2026-92806 HIGH 8.1 phpList versions before 3.6.17 fail to validate cross-site request forgery tokens in the mass subscriber removal form handler. Attackers can induce logged-in administrators to visit … Sep 16, 2026
CVE-2026-92805 CRITICAL 9.8 UVdesk Community Skeleton through 1.1.8 fails to authenticate or validate installation state on wizard endpoints in ConfigureHelpdesk controller actions. Unauthenticated attackers can repoint the database … Sep 16, 2026
CVE-2026-92804 HIGH 7.1 Nango through 0.70.4 fails to validate caller-supplied connection configuration values interpolated into provider token and proxy URL templates. Authenticated attackers can supply malicious configuration values … Sep 16, 2026
CVE-2026-92803 MEDIUM 5.3 LibreTranslate through 1.9.6 omits the access_check decorator from the download_file route, allowing unauthenticated access to translated files. Attackers can bypass API key requirements and abuse … Sep 16, 2026
CVE-2026-92802 MEDIUM 4.3 kan through 0.6.0 fails to properly validate board creation permissions in the GitHub project import endpoint, allowing guests to create boards despite lacking board:create permission. … Sep 16, 2026
CVE-2026-92801 HIGH 8.8 cc-connect through 1.5.0 fails to enforce per-user allowlist filtering in the onCardAction handler for Feishu interactive card callbacks. Attackers can dispatch agent commands by triggering … Sep 16, 2026
CVE-2026-92800 MEDIUM 6.8 Docs before 5.4.1 fails to properly revoke websocket collaboration connections when access is revoked at parent documents. Attackers with revoked access can retain real-time read … Sep 16, 2026
CVE-2026-92796 HIGH 8.8 Manticore Search versions 27.0.0 before 28.4.4 fail to validate permissions for all statements in multi-statement SQL requests, allowing read-only users to execute unauthorized queries. Attackers … Sep 16, 2026
CVE-2026-92795 MEDIUM 6.5 Coze Studio through 0.5.1 fails to restrict the server URL supplied when registering plugin tools, allowing authenticated users to make the backend fetch internal services. … Sep 16, 2026