Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56672
Total
4490
Critical
16802
High
16633
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-92576 | HIGH | 8.6 | HKUDS nanobot before 0.3.0 contains a server-side request forgery vulnerability in the WebFetchTool component where the _validate_url() function fails to block internal IP ranges and … | Sep 16, 2026 |
| CVE-2026-89034 | MEDIUM | 6.5 | TCH QRing smart ring model R20_B006 running firmware RT09R20_1.00.00_250318 contains an unauthenticated Bluetooth Low Energy access vulnerability that allows any nearby attacker to connect to … | Sep 16, 2026 |
| CVE-2026-85469 | HIGH | 8.0 | A flaw was found in quay-builder-qemu. A remote attacker could exploit this by compromising the upstream `Noelware/docker-manifest-action` used in the release workflow, which is pinned … | Sep 16, 2026 |
| CVE-2026-64684 | MEDIUM | 6.8 | RMCP is an official Rust SDK for the Model Context Protocol. Prior to 2.1.0, the rmcp crate's StreamableHttpClientTransport in crates/rmcp/src/transport/common/reqwest/streamable_http_client.rs builds its default_http_client with reqwest's … | Sep 16, 2026 |
| CVE-2026-61597 | UNKNOWN | — | djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, many djust built-in component template tags (`djust.components.templatetags.*`) render a … | Sep 16, 2026 |
| CVE-2026-61594 | CRITICAL | 9.1 | djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the live (WebSocket) transport authorizes a mount via `check_view_auth`, … | Sep 16, 2026 |
| CVE-2026-61592 | HIGH | 7.4 | djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, SSE sessions were keyed solely by a client-chosen `session_id` … | Sep 16, 2026 |
| CVE-2026-61591 | HIGH | 8.1 | djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, for views that opt into state snapshots, the snapshot … | Sep 16, 2026 |
| CVE-2026-92816 | HIGH | 7.8 | ComfyUI before 0.30.0 fails to sanitize folder_name input in dataset save nodes, allowing attackers to write files to arbitrary paths outside the output directory. Attackers … | Sep 16, 2026 |
| CVE-2026-92815 | HIGH | 7.5 | changedetection.io through 0.60.6 fails to validate the Goto URL action in browser steps, allowing unauthenticated attackers to access internal addresses. Attackers can supply arbitrary internal … | Sep 16, 2026 |
| CVE-2026-92814 | MEDIUM | 4.2 | changedetection.io through 0.60.6 fails to escape the scraped page title in HTML notifications, allowing arbitrary markup injection. Attackers can place malicious markup in monitored page … | Sep 16, 2026 |
| CVE-2026-92813 | MEDIUM | 4.9 | Metabase through 0.63.18 fails to properly validate the unspecified address 0.0.0.0 in custom GeoJSON URLs, allowing unauthenticated attackers to reach loopback services. Attackers can save … | Sep 16, 2026 |
| CVE-2026-92812 | MEDIUM | 6.8 | decap-server contains a path traversal vulnerability in the local proxy containment guard that uses plain string prefix comparison without path separator validation. Attackers can access … | Sep 16, 2026 |
| CVE-2026-92811 | MEDIUM | 6.5 | browserless versions 1.44.0 through 2.56.7 fail to enforce file protocol restrictions in Playwright websocket endpoints, allowing authenticated token holders to read arbitrary files. Attackers can … | Sep 16, 2026 |
| CVE-2026-92810 | MEDIUM | 4.3 | PrestaShop blockwishlist through 3.0.2 fails to validate wishlist ownership in the getUrlByIdWishListAction method, allowing authenticated customers to retrieve share tokens for any wishlist by identifier. … | Sep 16, 2026 |
| CVE-2026-92809 | MEDIUM | 4.3 | PrestaShop psgdpr versions through 1.4.3 fail to validate that GDPR consent log entries are attributed to the authenticated customer. Authenticated attackers can submit arbitrary customer … | Sep 16, 2026 |
| CVE-2026-92806 | HIGH | 8.1 | phpList versions before 3.6.17 fail to validate cross-site request forgery tokens in the mass subscriber removal form handler. Attackers can induce logged-in administrators to visit … | Sep 16, 2026 |
| CVE-2026-92805 | CRITICAL | 9.8 | UVdesk Community Skeleton through 1.1.8 fails to authenticate or validate installation state on wizard endpoints in ConfigureHelpdesk controller actions. Unauthenticated attackers can repoint the database … | Sep 16, 2026 |
| CVE-2026-92804 | HIGH | 7.1 | Nango through 0.70.4 fails to validate caller-supplied connection configuration values interpolated into provider token and proxy URL templates. Authenticated attackers can supply malicious configuration values … | Sep 16, 2026 |
| CVE-2026-92803 | MEDIUM | 5.3 | LibreTranslate through 1.9.6 omits the access_check decorator from the download_file route, allowing unauthenticated access to translated files. Attackers can bypass API key requirements and abuse … | Sep 16, 2026 |
| CVE-2026-92802 | MEDIUM | 4.3 | kan through 0.6.0 fails to properly validate board creation permissions in the GitHub project import endpoint, allowing guests to create boards despite lacking board:create permission. … | Sep 16, 2026 |
| CVE-2026-92801 | HIGH | 8.8 | cc-connect through 1.5.0 fails to enforce per-user allowlist filtering in the onCardAction handler for Feishu interactive card callbacks. Attackers can dispatch agent commands by triggering … | Sep 16, 2026 |
| CVE-2026-92800 | MEDIUM | 6.8 | Docs before 5.4.1 fails to properly revoke websocket collaboration connections when access is revoked at parent documents. Attackers with revoked access can retain real-time read … | Sep 16, 2026 |
| CVE-2026-92796 | HIGH | 8.8 | Manticore Search versions 27.0.0 before 28.4.4 fail to validate permissions for all statements in multi-statement SQL requests, allowing read-only users to execute unauthorized queries. Attackers … | Sep 16, 2026 |
| CVE-2026-92795 | MEDIUM | 6.5 | Coze Studio through 0.5.1 fails to restrict the server URL supplied when registering plugin tools, allowing authenticated users to make the backend fetch internal services. … | Sep 16, 2026 |