5.4

CVSS3.1

CVE-2026-40928 - AVideo: Missing CSRF Protection on State-Changing JSON Endpoints Enables Forced Comment Creation, V…

WWBN AVideo is an open source video platform. In versions 29.0 and prior, multiple AVideo JSON endpoints under `objects/` accept state-changing requests via `$_REQUEST`/`$_GET` and persist changes tied to the caller's session user, without any anti-CSRF token, origin check, or referer check. A mali…

📅 Published: April 21, 2026, 10:14 p.m. 🔄 Last Modified: April 23, 2026, 3:49 p.m.

5.3

CVSS4.0

CVE-2026-5512 - Improper authorization vulnerability in GitHub Enterprise Server allowed disclosure of private repo…

An improper authorization vulnerability was identified in GitHub Enterprise Server that allowed an authenticated attacker to determine the names of private repositories by their numeric ID. The mobile upload policy API endpoint did not perform an early authorization check, and validation error mess…

📅 Published: April 21, 2026, 10:12 p.m. 🔄 Last Modified: April 22, 2026, 5:39 p.m.

7.5

CVSS4.0

CVE-2026-4296 - Incorrect Regular Expression vulnerability in GitHub Enterprise Server allowed unauthorized access …

An incorrect regular expression vulnerability was identified in GitHub Enterprise Server that allowed an attacker to bypass OAuth redirect URI validation. An attacker with knowledge of a first-party OAuth application's registered callback URL could craft a malicious authorization link that, when cl…

📅 Published: April 21, 2026, 10:12 p.m. 🔄 Last Modified: April 22, 2026, 1:16 p.m.

7.1

CVSS3.1

CVE-2026-40926 - WWBN AVideo Vulnerable to CSRF in Admin JSON Endpoints (Category CRUD, Plugin Update Script)

WWBN AVideo is an open source video platform. In versions 29.0 and prior, three admin-only JSON endpoints — `objects/categoryAddNew.json.php`, `objects/categoryDelete.json.php`, and `objects/pluginRunUpdateScript.json.php` — enforce only a role check (`Category::canCreateCategory()` / `User::isAdmi…

📅 Published: April 21, 2026, 10:12 p.m. 🔄 Last Modified: April 23, 2026, 3:48 p.m.

8.1

CVSS4.0

CVE-2026-4821 - Proxy configuration command injection vulnerability found in GitHub Enterprise Server Management Co…

An improper neutralization of special elements vulnerability was identified in GitHub Enterprise Server that allowed an authenticated Management Console administrator to execute arbitrary OS commands via shell metacharacter injection in proxy configuration fields such as http_proxy. Exploitation of…

📅 Published: April 21, 2026, 10:12 p.m. 🔄 Last Modified: April 22, 2026, 1:17 p.m.

8.9

CVSS4.0

CVE-2026-5921 - Server-Side Request Forgery in GitHub Enterprise Server allowed extraction of sensitive environment…

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an attacker to extract sensitive environment variables from the instance through a timing side-channel attack against the notebook rendering service. When private mode was disabled, the notebo…

📅 Published: April 21, 2026, 10:11 p.m. 🔄 Last Modified: April 22, 2026, 1:18 p.m.

7.2

CVSS4.0

CVE-2026-6832 - Nesquena Hermes WebUI Arbitrary File Deletion via Unvalidated session_id

Hermes WebUI contains an arbitrary file deletion vulnerability in the /api/session/delete endpoint that allows authenticated attackers to delete files outside the session directory by supplying an absolute path or path traversal payload in the session_id parameter. Attackers can exploit unvalidated…

📅 Published: April 21, 2026, 9:44 p.m. 🔄 Last Modified: April 22, 2026, 6:11 p.m.

5.9

CVSS4.0

CVE-2026-1354 - Zero Motorcycles Firmware Key Exchange without Entity Authentication

Zero Motorcycles firmware versions 44 and prior enable an attacker to forcibly pair a device with the motorcycle via Bluetooth. Once paired, an attacker can utilize over-the-air firmware updating functionality to potentially upload malicious firmware to the motorcycle. The motorcycle must first…

📅 Published: April 21, 2026, 9:43 p.m. 🔄 Last Modified: April 22, 2026, 9:23 p.m.

4.8

CVSS4.0

CVE-2026-6830 - Nesquena Hermes WebUI Environment Variable Credential Leakage via Profile Switch

nesquena hermes-webui contains an environment variable leakage vulnerability where profile switching does not clear environment variables from the previously active profile before loading the next profile. Attackers or users can exploit additive dotenv reload behavior to access provider API keys an…

📅 Published: April 21, 2026, 9:33 p.m. 🔄 Last Modified: April 22, 2026, 11:44 a.m.

9.2

CVSS4.0

CVE-2026-40946 - Oxia: OIDC token audience validation bypass via SkipClientIDCheck

Oxia is a metadata store and coordination system. Prior to 0.16.2, the OIDC authentication provider unconditionally sets SkipClientIDCheck: true in the go-oidc verifier configuration, disabling the standard audience (aud) claim validation at the library level. This allows tokens issued for unrelate…

📅 Published: April 21, 2026, 9:18 p.m. 🔄 Last Modified: April 22, 2026, 8:28 p.m.
Total resulsts: 346260
Page 57 of 34,626
« previous page » next page
Filters