4.9

CVSS4.0

CVE-2026-28396 - NocoDB: Refresh Tokens Not Revoked on Password Reset

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, the password reset flow did not revoke existing refresh tokens, allowing an attacker with a previously stolen refresh token to continue minting valid JWTs after the victim resets their password. This issue has been…

πŸ“… Published: March 2, 2026, 4:18 p.m. πŸ”„ Last Modified: March 2, 2026, 5:16 p.m.

4.9

CVSS4.0

CVE-2026-28361 - NocoDB: Missing Ownership Validation in MCP Token Operations

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, the MCP token service did not validate token ownership, allowing a Creator within the same base to read, regenerate, or delete another user's MCP tokens if the token ID was known. This issue has been patched in ver…

πŸ“… Published: March 2, 2026, 4:17 p.m. πŸ”„ Last Modified: March 2, 2026, 5:16 p.m.

2.7

CVSS4.0

CVE-2026-28360 - NocoDB: Plaintext Storage of Shared View Passwords

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, shared view passwords were stored in plaintext in the database and compared using direct string equality. This issue has been patched in version 0.301.3.

πŸ“… Published: March 2, 2026, 4:17 p.m. πŸ”„ Last Modified: March 2, 2026, 5:16 p.m.

5.3

CVSS4.0

CVE-2026-28359 - NocoDB: Stored Cross-Site Scripting via Rich Text Field

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, an authenticated user with Editor role can inject arbitrary HTML into Rich Text cells by bypassing the TipTap editor and sending raw HTML via the API. This issue has been patched in version 0.301.3.

πŸ“… Published: March 2, 2026, 4:17 p.m. πŸ”„ Last Modified: March 2, 2026, 5:16 p.m.

2.7

CVSS4.0

CVE-2026-28358 - NocoDB: User Enumeration via Password Reset Endpoint

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, the password forgot endpoint returned different responses for registered and unregistered emails, allowing user enumeration. This issue has been patched in version 0.301.3.

πŸ“… Published: March 2, 2026, 4:16 p.m. πŸ”„ Last Modified: March 2, 2026, 5:16 p.m.

5.3

CVSS4.0

CVE-2026-28357 - NocoDB: Stored Cross-Site Scripting via Formula Cell

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, a stored XSS vulnerability exists in the Formula virtual cell. Formula results containing URI::() patterns are rendered via v-html without sanitization, allowing injected HTML to execute. This issue has been patche…

πŸ“… Published: March 2, 2026, 4:16 p.m. πŸ”„ Last Modified: March 2, 2026, 5:16 p.m.

5.3

CVSS3.1

CVE-2026-23865 -

An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2.

πŸ“… Published: March 2, 2026, 4:09 p.m. πŸ”„ Last Modified: March 2, 2026, 5:16 p.m.

6.9

CVSS4.0

CVE-2025-52564 - Chamilo: HTML injection via open parameter

Chamilo is a learning management system. Prior to version 1.11.30, the open parameter of help.php fails to properly sanitize user input. This allows an attacker to inject arbitrary HTML, such as underlined text, via a crafted URL. This issue has been patched in version 1.11.30.

πŸ“… Published: March 2, 2026, 3:54 p.m. πŸ”„ Last Modified: March 2, 2026, 8:29 p.m.

7

CVSS4.0

CVE-2025-52998 - Chamilo: PHAR deserialization bypass

Chamilo is a learning management system. Prior to version 1.11.30, in the application, deserialization of data is performed, the data can be spoofed. An attacker can create objects of arbitrary classes, as well as fully control their properties, and thus modify the logic of the web application's op…

πŸ“… Published: March 2, 2026, 3:54 p.m. πŸ”„ Last Modified: March 2, 2026, 8:29 p.m.

7.7

CVSS4.0

CVE-2025-50199 - Chamilo: Blind Server-Side Request Forgery (Unauth Blind SSRF)

Chamilo is a learning management system. Prior to version 1.11.30, there is a blind SSRF vulnerability in /index.php via the POST openid_url parameter. This issue has been patched in version 1.11.30.

πŸ“… Published: March 2, 2026, 3:50 p.m. πŸ”„ Last Modified: March 2, 2026, 8:29 p.m.
Total resulsts: 335425
Page 10 of 33,543
Β« previous page Β» next page
Filters