Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
57083
Total
4536
Critical
16949
High
16800
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-91983 | MEDIUM | 4.3 | Vikunja before 2.6.0 contains an API token scope bypass vulnerability in task read endpoints where authorization fails to inspect query string parameters. Attackers with limited … | Sep 15, 2026 |
| CVE-2026-91982 | MEDIUM | 4.3 | Vikunja before 2.6.0 continues to expose the raw TOTP shared secret after enrollment through the GET /api/v1/user/settings/totp and /api/v1/user/settings/totp/qrcode endpoints without re-authentication. Attackers with a … | Sep 15, 2026 |
| CVE-2026-91981 | MEDIUM | 4.3 | Vikunja versions before 2.6.0 fail to properly validate link-share tokens in the v2 API user search endpoints. Attackers with a read-only share link can enumerate … | Sep 15, 2026 |
| CVE-2026-91980 | MEDIUM | 4.3 | vikunja before 2.6.0 fails to validate team access when attaching teams to projects, allowing authenticated users to enumerate all teams and members. Attackers can attach … | Sep 15, 2026 |
| CVE-2026-91979 | MEDIUM | 6.5 | Vikunja before 2.6.0 fails to limit archive expansion during data import, allowing authenticated users to cause denial of service. Attackers can upload highly compressed files … | Sep 15, 2026 |
| CVE-2026-91973 | HIGH | 7.5 | Vikunja before 2.6.0 contains an authentication bypass vulnerability in CalDAV BasicAuth endpoints that lack rate limiting protection. Remote unauthenticated attackers can issue unbounded credential-guessing requests … | Sep 15, 2026 |
| CVE-2026-91972 | HIGH | 7.5 | Vikunja versions before 2.6.0 fail to apply rate limiting to /api/v2 public authentication endpoints including login, register, password-reset, and OAuth token routes. Remote unauthenticated attackers … | Sep 15, 2026 |
| CVE-2026-91971 | MEDIUM | 6.5 | Vikunja before 2.6.0 fails to apply pixel decode limits to avatar and project-background upload endpoints, allowing authenticated users to upload crafted images that decode to … | Sep 15, 2026 |
| CVE-2026-91970 | MEDIUM | 6.5 | Vikunja versions before 2.6.0 contain a resource exhaustion vulnerability in the Planka migrator that fails to enforce aggregate memory budgets during migration jobs. Authenticated attackers … | Sep 15, 2026 |
| CVE-2026-91969 | MEDIUM | 6.5 | vikunja versions before 2.6.0 contain a resource exhaustion vulnerability in the POST /api/v2/migration/csv/migrate endpoint that fails to limit parsed row cardinality. Authenticated attackers can upload … | Sep 15, 2026 |
| CVE-2026-91968 | MEDIUM | 6.5 | vikunja versions before 2.6.0 contain a resource exhaustion vulnerability in the task-filter endpoint that accepts deeply nested filter expressions without recursion depth limits. Authenticated attackers … | Sep 15, 2026 |
| CVE-2026-91967 | MEDIUM | 5.0 | AVideo through 29.0 contains a blind server-side request forgery vulnerability in the getHeaderContentTypeFromURL function that issues get_headers() calls guarded only by format validation. Authenticated users … | Sep 15, 2026 |
| CVE-2026-91966 | MEDIUM | 5.8 | AVideo through 29.0 contains an unauthenticated server-side request forgery vulnerability in the check_site_availability function that accepts attacker-controlled HTTP Host headers. Attackers can send requests to … | Sep 15, 2026 |
| CVE-2026-91965 | HIGH | 7.5 | WWBN AVideo through 29.0 fails to enforce user-group restrictions in the plugin/Live/stats.json.php and plugin/Live/calendar.json.php endpoints. Unauthenticated attackers can retrieve restricted live transmission details including stream … | Sep 15, 2026 |
| CVE-2026-91964 | HIGH | 8.8 | FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server … | Sep 15, 2026 |
| CVE-2026-91963 | MEDIUM | 6.5 | FreeRDP versions before 3.31.0 contain an uninitialized heap memory disclosure vulnerability in the urbdrc USB redirection channel. A malicious RDP server can induce failing USB … | Sep 15, 2026 |
| CVE-2026-91962 | MEDIUM | 6.3 | FreeRDP before 3.31.0 contains an integer overflow in the audin Apple backends when processing FramesPerPacket values from MSG_SNDIN_OPEN messages. Attackers can supply crafted FramesPerPacket values … | Sep 15, 2026 |
| CVE-2026-91961 | MEDIUM | 6.5 | FreeRDP before 3.31.0 contains a denial-of-service vulnerability in the URBDRC control-transfer request path that fails to validate OutputBufferSize before forwarding to the libusb backend. A … | Sep 15, 2026 |
| CVE-2026-91960 | MEDIUM | 6.5 | FreeRDP versions before 3.31.0 contain an integer overflow in WinPR's Stream_EnsureRemainingCapacity function that allows remote attackers to cause denial of service. A malicious RD Gateway … | Sep 15, 2026 |
| CVE-2026-91959 | MEDIUM | 6.5 | FreeRDP before 3.31.0 contains a buffer over-read vulnerability in the rts_read_result function within the RPC gateway transport parser. Attackers can send a malicious BIND_ACK PDU … | Sep 15, 2026 |
| CVE-2026-91958 | MEDIUM | 6.6 | FreeRDP versions before 3.31.0 fail to validate MonitorIds array values when parsing RDP connection files, allowing unbounded array indexing in xf_detect_monitors. Attackers can craft a … | Sep 15, 2026 |
| CVE-2026-91957 | LOW | 3.1 | FreeRDP before 3.31.0 contains a use-after-free vulnerability in the smartcard RDPDR device handler when worker thread creation fails after device registration. Attackers can trigger thread … | Sep 15, 2026 |
| CVE-2026-91956 | MEDIUM | 6.5 | FreeRDP before 3.31.0 contains an out-of-bounds read vulnerability in the URBDRC channel's func_get_ep_desc function that indexes interface arrays by position instead of protocol field InterfaceNumber. … | Sep 15, 2026 |
| CVE-2026-91955 | HIGH | 7.5 | FreeRDP before 3.31.0 fails to validate client-supplied DesktopWidth and DesktopHeight values during GCC negotiation, allowing remote attackers to crash the server. Attackers can send crafted … | Sep 15, 2026 |
| CVE-2026-91954 | MEDIUM | 6.5 | FreeRDP before 3.31.0 contains a null pointer dereference vulnerability in gdi_surface_bits when processing Surface Bits commands with NSCodec codec ID. A malicious RDP server can … | Sep 15, 2026 |