6.5

CVSS3.1

CVE-2026-35034 - Jellyfin: Potential Application DoS from excessively large SyncPlay group names

Jellyfin is an open source self hosted media server. Versions prior to 10.11.7 contain a denial of service vulnerability in the SyncPlay group creation endpoint (POST /SyncPlay/New), where an authenticated user can create groups with names of unlimited size due to insufficient input validation. By …

πŸ“… Published: April 14, 2026, 10:31 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

9.3

CVSS4.0

CVE-2026-35033 - Jellyfin: Potential SSRF + Arbitrary file read via stream argument injection

Jellyfin is an open source self hosted media server. Versions prior to 10.11.7 contain an unauthenticated arbitrary file read vulnerability via ffmpeg argument injection through the StreamOptions query parameter parsing mechanism. The ParseStreamOptions method in StreamingHelpers.cs adds any lowerc…

πŸ“… Published: April 14, 2026, 10:28 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

8.6

CVSS4.0

CVE-2026-35032 - Jellyfin: Potential SSRF + Arbitrary file read via LiveTV M3U tuner

Jellyfin is an open source self hosted media server. Versions prior to 10.11.7 contain a vulnerability chain in the LiveTV M3U tuner endpoint (POST /LiveTv/TunerHosts), where the tuner URL is not validated, allowing local file read via non-HTTP paths and Server-Side Request Forgery (SSRF) via HTTP …

πŸ“… Published: April 14, 2026, 10:25 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

10

CVSS3.1

CVE-2026-35031 - Jellyfin: Potential RCE via subtitle upload path traversal + .strm chain

Jellyfin is an open source self hosted media server. Versions prior to 10.11.7 contain a vulnerability chain in the subtitle upload endpoint (POST /Videos/{itemId}/Subtitles), where the Format field is not validated, allowing path traversal via the file extension and enabling arbitrary file write. …

πŸ“… Published: April 14, 2026, 10:18 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

9.1

CVSS3.1

CVE-2026-34457 - OAuth2 Proxy: Health Check User-Agent Matching Bypasses Authentication in auth_request Mode

OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. Versions prior to 7.15.2 contain a configuration-dependent authentication bypass in deployments where OAuth2 Proxy is used with an auth_request-style integration (such as nginx auth_request) and either --ping-user-…

πŸ“… Published: April 14, 2026, 10:14 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

3.5

CVSS3.1

CVE-2026-34454 - OAuth2 Proxy: Session cookie not cleared when rendering sign-in page

OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. A regression introduced in 7.11.0 prevents OAuth2 Proxy from clearing the session cookie when rendering the sign-in page. In deployments that rely on the sign-in page as part of their logout flow, a user may be sho…

πŸ“… Published: April 14, 2026, 10:10 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

7.8

CVSS3.1

CVE-2026-33023 - libsixel: Use-after-free in load_with_gdkpixbuf()

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. In versions 1.8.7 and prior, when built with the --with-gdk-pixbuf2 option, a use-after-free vulnerability exists in load_with_gdkpixbuf() in loader.c. The cleanup path manually frees the sixel_frame_t object and its int…

πŸ“… Published: April 14, 2026, 10:05 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

7.3

CVSS3.1

CVE-2026-33021 - libsixel: Use-after-free in sixel_encoder_encode_bytes()

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a use-after-free vulnerability in sixel_encoder_encode_bytes() because sixel_frame_init() stores the caller-owned pixel buffer pointer directly in frame->pixels without making a defensive…

πŸ“… Published: April 14, 2026, 9:57 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

7.7

CVSS3.1

CVE-2026-34619 - ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)

ColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access unauthorized files or directories o…

πŸ“… Published: April 14, 2026, 9:53 p.m. πŸ”„ Last Modified: April 16, 2026, 2:28 p.m.

2.4

CVSS3.1

CVE-2026-27308 - ColdFusion | Uncontrolled Resource Consumption (CWE-400)

ColdFusion versions 2023.18, 2025.6 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. A high-privileged attacker could exploit this vulnerability and exhaust system resources, reducing application speed. Exploitation of …

πŸ“… Published: April 14, 2026, 9:53 p.m. πŸ”„ Last Modified: April 16, 2026, 2:40 p.m.
Total resulsts: 345135
Page 56 of 34,514
Β« previous page Β» next page
Filters