9.3

CVSS4.0

CVE-2026-6942 - radare2-mcp <=1.6.0 OS Command Injection via Shell Metacharacter Bypass

radare2-mcp version 1.6.0 and earlier contains an os command injection vulnerability that allows remote attackers to execute arbitrary commands by bypassing the command filter through shell metacharacters in user-controlled input passed to r2_cmd_str(). Attackers can inject shell metacharacters thrโ€ฆ

๐Ÿ“… Published: April 23, 2026, 8:58 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 4:16 p.m.

6.9

CVSS4.0

CVE-2026-6941 - radare2 < 6.1.4 Project Notes Path Traversal via Symlink

radare2 prior to 6.1.4 contains a path traversal vulnerability in its project notes handling that allows attackers to read or write files outside the configured project directory by importing a malicious .zrp archive containing a symlinked notes.txt file. Attackers can craft a .zrp archive with a sโ€ฆ

๐Ÿ“… Published: April 23, 2026, 8:39 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 4:39 p.m.

6.9

CVSS4.0

CVE-2026-6940 - radare2 < 6.1.4 Project Deletion Path Traversal Directory Deletion

radare2 prior to 6.1.4 contains a path traversal vulnerability in project deletion that allows local attackers to recursively delete arbitrary directories by supplying absolute paths that escape the configured dir.projects root directory. Attackers can craft absolute paths to project marker files oโ€ฆ

๐Ÿ“… Published: April 23, 2026, 8:26 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 1:38 p.m.

8.7

CVSS4.0

CVE-2026-6376 - Missing authentication for critical function in SpiceJet Online Booking System

A weakness in SpiceJetโ€™s public booking retrieval page permits full passenger booking details to be accessed using only a PNR and last name, with no authentication or verification mechanisms. This results in exposure of extensive personal, travel, and booking metadata to any unauthenticated user whโ€ฆ

๐Ÿ“… Published: April 23, 2026, 8:10 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 9:16 p.m.

8.7

CVSS4.0

CVE-2026-6375 - Authorization bypass through User-Controlled key in SpiceJet Online Booking System

A vulnerability in SpiceJetโ€™s booking API allows unauthenticated users to query passenger name records (PNRs) without any access controls. Because PNR identifiers follow a predictable pattern, an attacker could systematically enumerate valid records and obtain associated passenger names. This flaw โ€ฆ

๐Ÿ“… Published: April 23, 2026, 8:07 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 6:19 p.m.

9.2

CVSS4.0

CVE-2026-41264 - Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the specific flaw exists within the run method of the CSV_Agents class. The issue results from the lack of proper sandboxing when evaluating an LLM generated python script. An attacker can leverโ€ฆ

๐Ÿ“… Published: April 23, 2026, 8 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 3:15 p.m.

9.2

CVSS4.0

CVE-2026-41265 - Flowise: Airtable_Agent Code Injection Remote Code Execution Vulnerability

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the specific flaw exists within the run method of the Airtable_Agents class. The issue results from the lack of proper sandboxing when evaluating an LLM generated python script. Using prompt injโ€ฆ

๐Ÿ“… Published: April 23, 2026, 7:58 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 3:15 p.m.

8.2

CVSS4.0

CVE-2026-41279 - Flowise: Unauthenticated TTS endpoint accepts arbitrary credential IDs โ€” enables API credit abuse vโ€ฆ

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the text-to-speech generation endpoint (POST /api/v1/text-to-speech/generate) is whitelisted (no auth) and accepts a credentialId directly in the request body. When called without a chatflowId, โ€ฆ

๐Ÿ“… Published: April 23, 2026, 7:53 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 4:31 p.m.

8.7

CVSS4.0

CVE-2026-41278 - Flowise: Public chatflow endpoints return unsanitized flowData including plaintext API keys, passwoโ€ฆ

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the GET /api/v1/public-chatflows/:id endpoint returns the full chatflow object without sanitization for public chatflows. Docker validation revealed this is worse than initially assessed: the saโ€ฆ

๐Ÿ“… Published: April 23, 2026, 7:52 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 4:31 p.m.

7.7

CVSS4.0

CVE-2026-41276 - Flowise: AccountService resetPassword Authentication Bypass Vulnerability

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, this vulnerability allows remote attackers to bypass authentication on affected installations of FlowiseAI Flowise. Authentication is not required to exploit this vulnerability. The specific flaโ€ฆ

๐Ÿ“… Published: April 23, 2026, 7:49 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 4:32 p.m.
Total resulsts: 346618
Page 44 of 34,662
ยซ previous page ยป next page
Filters