Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-47316

Improper Check or Handling of Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47315

Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47314

Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
HIGH
Conflicts
0

CVE-2026-47313

Memory allocation with excessive size value vulnerability in Samsung Open Source Escargot allows Excessive Allocation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47312

Release of invalid pointer or reference vulnerability in Samsung Open Source Escargot allows Buffer Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47311

Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
HIGH
Conflicts
0

CVE-2026-47310

Use after free vulnerability in Samsung Open Source Escargot allows Pointer Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
HIGH
Conflicts
0

CVE-2026-4731

Integer Overflow or Wraparound vulnerability in artraweditor ART (‎rtengine‎ modules). This vulnerability is associated with program files dcraw.C. This issue affects ART: before 1.25.12.

PUBLISHED
Vendor
artraweditor
Product
ART
Provider severity
HIGH
Conflicts
0

CVE-2026-47309

Uncontrolled Recursion vulnerability in Samsung Open Source Escargot allows Oversized Serialized Data Payloads. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

PUBLISHED
Vendor
Samsung Open Source
Product
Escargot
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47308

NULL pointer dereference vulnerability in Samsung Open Source Walrus allows Pointer Manipulation. This issue affects Walrus: f339b8ee4ea701772e8ae640b3d1b12ac02b1ae9.

PUBLISHED
Vendor
Samsung Open Source
Product
Walrus
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47307

NULL pointer dereference vulnerability in Samsung Open Source Walrus allows an attacker to cause a denial of service via a crafted WebAssembly module containing deeply nested instructions. This issue affects Walrus: f339b8ee4ea701772e8ae640b3d1b12ac02b1ae9.

PUBLISHED
Vendor
Samsung Open Source
Product
Walrus
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47306

Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Oversized Serialized Data Payloads. This issue affects rlottie: before e2d19e3b150e0e4a9586fa90b56fd3061cc98945.

PUBLISHED
Vendor
Samsung Open Source
Product
rlottie
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47305

Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft Visual Studio 2022 version 17.14, Microsoft Visual Studio 2022 version 17.12, Microsoft Visual Studio 2026 version 18.7
Provider severity
HIGH
Conflicts
1

CVE-2026-47304

Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft .NET Framework 4.8.1, .NET 8.0, Microsoft .NET Framework 3.5 AND 4.8.1, Microsoft .NET Framework 3.5 AND 4.7.2, Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2, Microsoft Visual Studio 2026 version 18.5, Microsoft Visual Studio 2026 version 18.7, Microsoft Visual Studio 2019 version 16.11 (includes 16.0 - 16.10), .NET 9.0, Microsoft .NET Framework 3.5, Microsoft .NET Framework 4.8, Microsoft Visual Studio 2022 version 17.14, .NET 10.0, Microsoft Visual Studio 2022 version 17.12, Microsoft Visual Studio 2017 version 15.9 (includes 15.0 - 15.8), Microsoft .NET Framework 3.5 AND 4.8
Provider severity
HIGH
Conflicts
2

CVE-2026-47303

Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Visual Studio 2022 version 17.14, .NET 10.0, .NET 9.0, Microsoft Visual Studio 2026 version 18.7, .NET 8.0, Microsoft Visual Studio 2022 version 17.12
Provider severity
HIGH
Conflicts
2

CVE-2026-47302

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft .NET Framework 3.5 AND 4.7.2, .NET 10.0, Microsoft .NET Framework 3.5, Microsoft Visual Studio 2022 version 17.12, Microsoft .NET Framework 3.5 AND 4.8, .NET 9.0, Microsoft Visual Studio 2026 version 18.7, Microsoft .NET Framework 3.5 AND 4.8.1, .NET 8.0, Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2, Microsoft .NET Framework 4.8, Microsoft Visual Studio 2022 version 17.14
Provider severity
HIGH
Conflicts
1

CVE-2026-47301

Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft Configuration Manager 2603, Microsoft Configuration Manager, Microsoft Configuration Manager 2509
Provider severity
HIGH
Conflicts
1

CVE-2026-47300

Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
.NET 10.0, .NET 8.0, Microsoft Visual Studio 2026 version 18.7, .NET 9.0, Microsoft Visual Studio 2022 version 17.14, Microsoft Visual Studio 2022 version 17.12
Provider severity
HIGH
Conflicts
1

CVE-2026-4730

The Charts Ninja: Create Beautiful Graphs & Charts and Easily Add Them to Your Website plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'chartid' shortcode attribute in all versions up to, and including, 2.1.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
commonninja
Product
Charts Ninja: Create Beautiful Graphs & Charts and Easily Add Them to Your Website
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47298

Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Server Subscription Edition, Microsoft SharePoint Server 2019, Microsoft SharePoint Enterprise Server 2016
Provider severity
HIGH
Conflicts
1

CVE-2026-47296

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft SQL Server 2025 for x64-based Systems (GDR), Microsoft SQL Server 2025 (CU 6), Microsoft SQL Server 2016 Service Pack 3 Azure Connect Feature Pack, Microsoft SQL Server 2017 (CU 31), Microsoft SQL Server 2016 Service Pack 3 (GDR), Microsoft SQL Server 2019 (CU 32), Microsoft SQL Server 2017 (GDR), Microsoft SQL Server 2022 (GDR), Microsoft SQL Server 2019 (GDR), Microsoft SQL Server 2022 for x64-based Systems (CU 25)
Provider severity
HIGH
Conflicts
1

CVE-2026-47295

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft SQL Server 2017 (GDR), Microsoft SQL Server 2022 for x64-based Systems (CU 25), Microsoft SQL Server 2025 for x64-based Systems (GDR), Microsoft SQL Server 2016 Service Pack 3 (GDR), Microsoft SQL Server 2017 (CU 31), Microsoft SQL Server 2019 (CU 32), Microsoft SQL Server 2025 (CU 6), Microsoft SQL Server 2016 Service Pack 3 Azure Connect Feature Pack, Microsoft SQL Server 2019 (GDR), Microsoft SQL Server 2022 (GDR)
Provider severity
HIGH
Conflicts
1

CVE-2026-47294

Improper neutralization of special elements used in an os command ('os command injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft
Product
Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server Subscription Edition, Microsoft SharePoint Server 2019
Provider severity
HIGH
Conflicts
1

CVE-2026-47293

Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2024, Microsoft 365 Apps for Enterprise, Microsoft Office 2019, Microsoft Office LTSC 2021
Provider severity
HIGH
Conflicts
1

CVE-2026-47292

Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to elevate privileges locally.

PUBLISHED
Vendor
Microsoft
Product
Visual Studio Code - MSSQL Extension
Provider severity
HIGH
Conflicts
1

CVE-2026-47291

Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows 11 Version 23H2, Windows 11 version 26H1, Windows 11 version 23H2, Windows 11 Version 25H2, Windows Server 2012 (Server Core installation), Windows Server 2012 R2, Windows Server 2025, Windows Server 2016 (Server Core installation), Windows 11 Version 24H2, Windows Server 2019, Windows Server 2012 R2 (Server Core installation), Windows 10 Version 1607, Windows Server 2012, Windows Server 2025 (Server Core installation), Windows 10 Version 21H2, Windows 10 Version 22H2, Windows 10 Version 1809, Windows Server 2022, Windows Server 2016, Windows Server 2019 (Server Core installation)
Provider severity
CRITICAL
Conflicts
2

CVE-2026-47290

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Microsoft Office LTSC 2021, Microsoft Office 2019, Microsoft Office 2016, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC 2024
Provider severity
HIGH
Conflicts
1

CVE-2026-4729

Memory safety bugs present in Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 149 and Thunderbird 149.

PUBLISHED
Vendor
Mozilla, Red Hat, Red Hat, Red Hat, Red Hat, Mozilla, Red Hat, Red Hat
Product
Firefox, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 9, Thunderbird, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8
Provider severity
CRITICAL, HIGH
Conflicts
3

CVE-2026-47289

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2012 R2, Windows Server 2019, Windows Server 2016 (Server Core installation), Windows Server 2012, Windows Server 2022, Windows 11 version 23H2, Windows 11 version 26H1, Windows 10 Version 22H2, Windows 10 Version 21H2, Windows 11 Version 25H2, Windows Server 2019 (Server Core installation), Windows 11 Version 23H2, Windows 10 Version 1809, Windows 10 Version 1607, Windows App Client for Windows Desktop, Windows Server 2025 (Server Core installation), Windows Server 2012 (Server Core installation), Windows Server 2012 R2 (Server Core installation), Windows Server 2025, Windows Server 2016, Windows 11 Version 24H2
Provider severity
HIGH
Conflicts
1

CVE-2026-47288

Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code over an adjacent network.

PUBLISHED
Vendor
Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft, Microsoft
Product
Windows Server 2019 (Server Core installation), Windows Server 2012 (Server Core installation), Windows Server 2019, Windows Server 2016, Windows Server 2022, Windows Server 2012 R2, Windows Server 2016 (Server Core installation), Windows Server 2025 (Server Core installation), Windows Server 2012, Windows Server 2012 R2 (Server Core installation), Windows Server 2025
Provider severity
HIGH
Conflicts
1

CVE-2026-47287

Relative path traversal in Visual Studio Code allows an unauthorized attacker to perform tampering over a network.

PUBLISHED
Vendor
Microsoft
Product
Visual Studio Code
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47284

Exposure of sensitive information to an unauthorized actor in Visual Studio Code allows an unauthorized attacker to disclose information over a network.

PUBLISHED
Vendor
Microsoft
Product
Visual Studio Code
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47282

Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.

PUBLISHED
Vendor
Microsoft
Product
Visual Studio Code
Provider severity
MEDIUM
Conflicts
1

CVE-2026-47281

Missing authorization in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft
Product
Visual Studio Code
Provider severity
CRITICAL
Conflicts
1

CVE-2026-47280

Improper authentication in Azure Resource Manager (ARM) allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Vendor
Microsoft
Product
Azure Resource Manager
Provider severity
CRITICAL
Conflicts
0

CVE-2026-4728

Spoofing issue in the Privacy: Anti-Tracking component. This vulnerability was fixed in Firefox 149 and Thunderbird 149.

PUBLISHED
Vendor
Mozilla, Mozilla
Product
Thunderbird, Firefox
Provider severity
MEDIUM
Conflicts
1

CVE-2026-47279

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the public shared-view relation endpoints accepted a caller-supplied column ID without verifying that the column was visible in the shared view, so anyone holding a share UUID could read links from any LTAR column on the view's table — including columns the view owner had hidden. publicMmList, publicHmList, and relDataList already ensured that the requested column belonged to the view's model, but did not check the vi

PUBLISHED
Vendor
nocodb
Product
nocodb
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47277

Runtipi is a personal homeserver orchestrator. In versions 4.9.1 through 4.9.3, Runtipi serves marketplace app logos from files inside cloned app-store repositories through an unauthenticated endpoint, which leads to arbitrary file read through app-store logo symlinks. The path guard checks only the lexical path before Node reads the file, so a Git app store that contains metadata/logo.jpg as a symbolic link can cause Runtipi to read and return the symlink target. Because the endpoint is public

PUBLISHED
Vendor
runtipi
Product
runtipi
Provider severity
MEDIUM
Conflicts
1

CVE-2026-47276

In nanomq versions 0.24.11 and earlier, a NULL pointer dereference in `properties_parse()` allows an authenticated attacker to crash the NanoMQ broker by sending a POST request to `/api/v4/mqtt/publish` with `user_properties` as a JSON array instead of a JSON object. The crash occurs because `strlen()` is called on a NULL `item->string` pointer when iterating over array elements. An authenticated attacker can exploit this to crash the NanoMQ broker process. This is patched in version 0.24.14.

PUBLISHED
Vendor
nanomq
Product
nanomq
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47275

In nanomq versions 0.24.11 and earlier, a NULL pointer dereference in `nni_mqttv5_msg_decode_connect()` allows a malicious MQTT broker to crash any connecting NanoMQ MQTTv5 client (including bridge mode) with a single packet, causing remote denial of service via SIGSEGV. In `nni_mqttv5_msg_decode_connect()` (`mqtt_codec.c:1863`), the code iterates over CONNECT properties using variable `prop` when it should use `will_prop`. When a CONNECT packet has no connect-level properties (`prop == NULL`) b

PUBLISHED
Vendor
nanomq
Product
nanomq
Provider severity
LOW
Conflicts
0

CVE-2026-47274

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, multiple pam_usb helper tools resolved external binaries through the PATH environment variable rather than using absolute paths. An attacker who can influence the process environment during PAM authentication or tool execution could substitute malicious binaries. The affected tools are pamusb-check (src/tmux.c), pamusb-conf (tools/pamusb-conf), and pamusb-keyring-unlock-gnome (tools/pamusb-keyring-

PUBLISHED
Vendor
mcdope
Product
pam_usb
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47273

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, pam_usb builds XPath expressions from user-supplied identifiers (PAM username, service name) and device-supplied identifiers (USB device serial, model, vendor) to query /etc/pamusb.conf. These identifiers were not validated for XPath metacharacters, allowing injection of arbitrary XPath predicates. This vulnerability is fixed in 0.9.0.

PUBLISHED
Vendor
mcdope
Product
pam_usb
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47272

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, the pusb_pad_compare() function in src/pad.c only verified that the user-side pad (~/.pamusb/device.pad) could be read, but did not enforce that the system-side pad (the pad file on the USB device) was also present and readable. If the user-side pad was deleted or unreadable, the function returned a failure that was treated as non-fatal in certain code paths, allowing authentication to succeed with

PUBLISHED
Vendor
mcdope
Product
pam_usb
Provider severity
HIGH
Conflicts
1

CVE-2026-47271

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, src/mem.c implemented out-of-memory guards for xmalloc(), xrealloc(), and xstrdup() using assert(data != NULL). The C standard specifies that all assert() expressions are compiled out when NDEBUG is defined at build time. NDEBUG is commonly defined in release and packaging builds (Debian, Fedora, Arch package flags all define it via -DNDEBUG in CFLAGS). With the guard removed, xmalloc/xrealloc/xstr

PUBLISHED
Vendor
mcdope
Product
pam_usb
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47270

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, pam_usb is a PAM module loaded into the host process (sudo, login, GDM, GNOME Shell). Display managers such as GDM run multiple concurrent authentication threads. Three functions used by the deny_remote feature called the non-reentrant strtok(), which stores state in a single global pointer. If two authentications race, one thread's strtok() call can overwrite the other's in-progress tokenisation p

PUBLISHED
Vendor
mcdope
Product
pam_usb
Provider severity
MEDIUM
Conflicts
0

CVE-2026-4727

Denial-of-service in the Libraries component in NSS. This vulnerability was fixed in Firefox 149 and Thunderbird 149.

PUBLISHED
Vendor
Mozilla, Mozilla
Product
Thunderbird, Firefox
Provider severity
HIGH
Conflicts
1

CVE-2026-47269

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, pam_usb's deny_remote feature checks utmpx ut_addr_v6 to detect whether an authentication request originates from a remote session. The outer guard was if (utent->ut_addr_v6[0] != 0), which only tests the first 32-bit word of the 128-bit address field. IPv4-mapped IPv6 addresses (::ffff:x.x.x.x) store the IPv4 address in ut_addr_v6[3] with ut_addr_v6[0] == 0. On systems where the SSH daemon listen

PUBLISHED
Vendor
mcdope
Product
pam_usb
Provider severity
HIGH
Conflicts
0

CVE-2026-47268

Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 0.20.0 to before version 2.0.10, an authenticated Nezha dashboard user can create or update a DDNS profile with provider webhook and configure an arbitrary webhook_url, HTTP method, request body, and headers. When DDNS is triggered for a server that uses that profile, the dashboard process sends the configured request with utils.HttpClient without the SSRF protections used by notification

PUBLISHED
Vendor
nezhahq
Product
nezha
Provider severity
MEDIUM
Conflicts
0

CVE-2026-47267

Gogs is an open source self-hosted Git service. Prior to 0.14.3, the fix for CVE-2022-1285 prevents adding webooks or running webhooks with URLs with a hostname that resolves in localCIDRs. However, webhooks still follow redirects allowing to access hostname inside localCIDRs. This vulnerability is fixed in 0.14.3.

PUBLISHED
Vendor
gogs
Product
gogs
Provider severity
HIGH
Conflicts
0

CVE-2026-47266

Formie is a Craft CMS plugin for creating forms. Prior to 2.2.21 and 3.1.26, unauthenticated users could modify existing submissions by posting a known or guessed submission ID to formie/submissions/save-submission. This vulnerability is fixed in 2.2.21 and 3.1.26.

PUBLISHED
Vendor
verbb
Product
formie
Provider severity
HIGH
Conflicts
0