Total CVEs

140,315

Critical Severity

3,712

High Severity

13,361

Last 7 Days

1,805
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 561 - 580 of 36,720 CVEs

ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.178-lts, any authenticated user with builder role (free tier) can overwrite a globally-shared marketplace plugin with arbitrary JavaScript that executes serve...

Vendor: ToolJet
Product: ToolJet
Published: Jun 25, 2026
Source: NVD
CVE-2026-55412 HIGH - 8.3

ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.178-lts, there's an SSRF in the RestAPI data source component. The RestAPI data source executes HTTP requests server-side, and its private IP filter only...

Vendor: ToolJet
Product: ToolJet
Published: Jun 25, 2026
Source: NVD
CVE-2026-55411 MEDIUM - 6.8

ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.1780-lts, the authenticated endpoint POST /api/data-sources/decrypt returns the decrypted plaintext for any credential whose credential_id is supplied in the ...

Vendor: ToolJet
Product: ToolJet
Published: Jun 25, 2026
Source: NVD
CVE-2026-55092 HIGH - 7.5

Trivy is a security scanner. Prior to 0.71.1, when Trivy downloads an OCI artifact, it uses the org.opencontainers.image.title annotation from the artifact manifest as the destination filename without validation. An attacker who can make Trivy fetch an attacker-controlled artifact can supply a craft...

Vendor: aquasecurity
Product: trivy
Published: Jun 25, 2026
Source: NVD

Outline is a service that allows for collaborative documentation. Prior to 1.8.0, the AuthenticationHelper.canAccess function uses ctx.originalUrl to verify if an API key or OAuth token has the required scopes for a request. It extracts the resource by splitting the URL by / and taking the last segm...

Vendor: outline
Product: outline
Published: Jun 25, 2026
Source: NVD
CVE-2026-54448 MEDIUM - 6.5

Trivy is a security scanner. Prior to 0.71.0, when Trivy scans a Helm chart archive (.tgz), its custom tar unpacker reads each entry with io.ReadAll(tr) and no size limit. An attacker who can place a malicious .tgz file in the scanned path can craft a small compressed archive that decompresses to gi...

Vendor: aquasecurity
Product: trivy
Published: Jun 25, 2026
Source: NVD
CVE-2026-54040 MEDIUM - 5.9

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the POST /api/auth/2fa/backup/regenerate endpoint regenerates all 2FA backup codes without requiring any TOTP token or existing backup code verification. An attacker with a stolen session token can silent...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-54037 MEDIUM - 6.5

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the fix for CVE-2025-7105 added forkIpLimiter and forkUserLimiter rate limiters to POST /api/convos/fork to prevent rapid-fire conversation duplication. However, the POST /api/convos/duplicate endpoint โ€” ...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-54033 HIGH - 7.7

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, LibreChat allows users to configure custom OpenAI-compatible API endpoints by setting a baseURL. This URL is used to construct HTTP requests without any SSRF validation โ€” no private IP check, no scheme re...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-54030 HIGH - 8.0

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.5, LibreChat's MCP OAuth implementation does not validate that the resource parameter from OAuth Protected Resource metadata (RFC 9728) matches the configured MCP server URL, allowing a malicious MCP server...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-54029 MEDIUM - 5.3

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the DELETE /api/messages/:conversationId/:messageId endpoint allows any authenticated user to delete any other user's messages. The validateMessageReq middleware only validates that the conversationI...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-54027 MEDIUM - 6.5

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the POST /api/files/images endpoint allows any authenticated user to upload files into any agent's tool_resources (e.g., context, execute_code) without verifying ownership or EDIT permission on the t...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-54025 MEDIUM - 5.4

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, there is a vulnerability in LibreChat's markdown artifact preview pipeline. The marked library v15.0.12 does not HTML-escape double-quote characters in image alt text when a custom renderer falls thr...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-54024 MEDIUM - 6.5

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the fix for CVE-2024-11171 (commit bb58a2d0) added limits: { fileSize } to createMulterInstance() in the file upload routes. However, the POST /api/convos/import endpoint uses a separate multer instance t...

Vendor: danny-avila
Product: LibreChat
Published: Jun 25, 2026
Source: NVD
CVE-2026-45233 HIGH - 8.1

HTMLy CMS through 3.1.1 contains a path traversal vulnerability that allows low-privileged authenticated attackers to relocate arbitrary files by supplying directory traversal sequences in the oldfile parameter at the admin autosave endpoint. Attackers can pass unsanitized traversal sequences direct...

Vendor: danpros
Product: htmly
Published: Jun 25, 2026
Source: NVD
CVE-2026-13351 HIGH - 7.5

Zephyr's IPv6 network stack can be prevented from receiving or processing future incoming packets by sending a small number of maliciously fragmented IPv6 packets. When such a packet is handled by the fragment-header processing path, the associated RX network packet buffer (allocated from a mem...

Vendor: zephyrproject-rtos
Product: Zephyr
Published: Jun 25, 2026
Source: NVD

Permissions where checked incorrectly during room creation, allowing attackers to create rooms of types they shouldn't be allowed to create.

Vendor: pretix
Product: Venueless
Published: Jun 25, 2026
Source: NVD

OpenAM Arbitrary OAuth Token Minting via Push Registration

Vendor: maven
Product: org.openidentityplatform.openam:openam-oauth2
Published: Jun 25, 2026
Source: GitHub

@anthropic-ai/claude-code has an Insecure Temporary File in /copy Command that Enables Response Disclosure and Symlink-Based File Write

Vendor: npm
Product: @anthropic-ai/claude-code
Published: Jun 25, 2026
Source: GitHub

OpenAM has Unsafe Java Deserialization via SNS

Vendor: maven
Product: org.openidentityplatform.openam:openam-push-notification
Published: Jun 25, 2026
Source: GitHub