VulnSea

CWE-1395

CVEs classified under CWE-1395, newest first.

8 CVEsRSS

CVE-2026-90455Medium· 6.3
1w ago

A prior update that raised a bundled HTTP client library to a version remediating known vulnerabilities was later reverted, reintroducing the earlier, vulnerable version into a log-processing component

A prior update that raised a bundled HTTP client library to a version remediating known vulnerabilities was later reverted, reintroducing the earlier, vulnerable version into a log-processing component. The only code path in that compone…

SunlitCISA · MalcolmEPSS 0.22%via NVD
GHSA-2xp9-vwfh-vxw4Critical
1w ago

Next.js: Unauthenticated Remote Code Execution in Image Optimization API when AVIF files are used

Next.js: Unauthenticated Remote Code Execution in Image Optimization API when AVIF files are used

Midnightnext · nextvia GHSA
CVE-2026-69713Medium· 4.4
1w ago

Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.34%via NVD
GHSA-wchh-9x6h-7f6pMedium
1mo ago

olm dependency deprecation: CVE-2022-39255 and CVE-2024-45193

olm dependency deprecation: CVE-2022-39255 and CVE-2024-45193

Sunlitmatrix-commander · matrix-commandervia GHSA
GHSA-f88m-g3jw-g9cjHigh
2mo ago

sharp inherited vulnerabilities in libvips: CVE-2026-33327, CVE-2026-33328, CVE-2026-35590, CVE-2026-35591

sharp inherited vulnerabilities in libvips: CVE-2026-33327, CVE-2026-33328, CVE-2026-35590, CVE-2026-35591

Twilightsharp · sharpvia GHSA
GHSA-q7j3-v8qv-22vqHigh· 7.5
3mo ago

OpenTofu: Possible arbitrary file read during certain git operations via a maliciously crafted URL

OpenTofu: Possible arbitrary file read during certain git operations via a maliciously crafted URL

Twilightopentofu · github.com/opentofu/opentofuvia GHSA
GHSA-6vxv-wg6j-5qwpHigh
3mo ago

Gogs: XSS in .ipynb files renderer due to outdated notebookjs

Gogs: XSS in .ipynb files renderer due to outdated notebookjs

Twilightgogs · gogs.io/gogsvia GHSA
GHSA-537c-gmf6-5ccfHigh· 7.5
3mo ago

Vulnerable OpenSSL included in cryptography wheels

Vulnerable OpenSSL included in cryptography wheels

Twilightcryptography · cryptographyvia OSV
CWE-1395 vulnerabilities (CVEs) · VulnSea