VulnSea

CWE-863

CVEs classified under CWE-863, newest first.

874 CVEsRSS

CVE-2026-65601Medium
1mo ago

Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion

Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion

▾ SunlitTraefik · TraefikEPSS 0.51%via GHSA
CVE-2026-70490Medium· 6.3
1mo ago

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.8 until 0.11.0, the terminal WebSocket route in backend/open_webui/routers/terminals.py authenticated its own first-message JWT and never appl…

▾ Sunlitopenwebui · open_webuiEPSS 0.28%via NVD
CVE-2026-70494High· 8.1
1mo ago

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.10.0 until 0.11.0, the DELETE /api/v1/folders/{id} handler in backend/open_webui/routers/folders.py allowed a user granted write access to a sha…

▾ Twilightopenwebui · open_webuiEPSS 0.55%via NVD
CVE-2026-70484Medium· 4.3
1mo ago

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.7.0 until 0.11.0, the legacy chat-completions features block trusted a client-supplied image_generation flag and did not re-check the features.i…

▾ Sunlitopenwebui · open_webuiEPSS 0.41%via NVD
CVE-2026-70488Medium· 4.3
1mo ago

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, the sync cleanup endpoint authorized write access to the knowledge base in the URL but then acted on directory and file ids su…

▾ Sunlitopenwebui · open_webuiEPSS 0.37%via NVD
CVE-2026-70471Medium· 6.5
1mo ago

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise injects $vars into the code execution sandbox without requiring variables:view, bypassing the permission-protecte…

▾ Sunlitflowiseai · flowiseEPSS 0.41%via NVD
CVE-2026-70472High· 8.8
1mo ago

Flowise is a drag & drop user interface to build a customized large language model flow

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise openai-assistants-vector-store endpoints accept a client-controlled credential parameter and load credentials by id without …

▾ Twilightflowiseai · flowiseEPSS 0.52%via NVD
CVE-2026-70474High· 8.1
1mo ago

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise has three OAuth2 credential endpoints that look up credentials by id alone with no workspaceId filter. The author…

▾ Twilightflowiseai · flowiseEPSS 0.48%via NVD
CVE-2026-69262High· 8.1
1mo ago

Flowise is a drag & drop user interface to build a customized large language model flow

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, `DELETE /api/v1/chatflows/:id` authorized requests with checkAnyPermission('chatflows:delete,agentflows:delete'), so possession of e…

▾ Twilightflowiseai · flowiseEPSS 0.52%via NVD
CVE-2026-58139Medium· 6.5
1mo ago

The DuckDB AWS extension for DuckDB contains a security policy bypass vulnerability that allows any database user with SQL execution permissions to extract plaintext AWS credentials by calling the load_aws_credentials function with the r…

The DuckDB AWS extension for DuckDB contains a security policy bypass vulnerability that allows any database user with SQL execution permissions to extract plaintext AWS credentials by calling the load_aws_credentials function with the r…

▾ SunlitEPSS 0.51%via NVD
CVE-2026-68930Medium· 6.5
1mo ago

Russh is a Rust SSH client & server library

Russh is a Rust SSH client & server library. Prior to 0.62.5, russh dispatches channel-scoped Handler callbacks for recipient channel IDs that were never opened or confirmed in russh/src/server/encrypted.rs, server_read_authenticated, an…

▾ Sunlitrussh · russhEPSS 0.38%via NVD
CVE-2026-48113High
1mo ago

Chisel is a TCP/UDP tunnel, transported over HTTP and secured via SSH

Chisel is a TCP/UDP tunnel, transported over HTTP and secured via SSH. In versions prior to 1.11.5, authenticated clients can bypass --authfile ACL restrictions and tunnel traffic to arbitrary destinations reachable from the server. The …

▾ Twilightjpillora · github.com/jpillora/chiselEPSS 0.39%via NVD
CVE-2026-68581High· 8.1
1mo ago

Vikunja versions 0.22.0 through 2.3.0 fail to validate the principal type in API token management

Vikunja versions 0.22.0 through 2.3.0 fail to validate the principal type in API token management. Because user IDs and link-share IDs are independent numeric sequences and both resolve through a generic web.Auth.GetID() interface, a lin…

▾ TwilightEPSS 0.46%via NVD
CVE-2026-18572Medium· 6.5
1mo ago

Keycloak provides authorization services that allow administrators to restrict access to resources based on time policies (for example, only allowing access during business hours)

Keycloak provides authorization services that allow administrators to restrict access to resources based on time policies (for example, only allowing access during business hours). A flaw was discovered where a user can include a fake ti…

▾ Sunlitredhat · build_of_keycloakEPSS 0.39%via NVD
CVE-2026-67341Critical· 9.8
1mo ago

ArcadeDB versions before 26.7.2 fail to enforce scripting authorization checks on the SQL DEFINE FUNCTION statement with LANGUAGE js

ArcadeDB versions before 26.7.2 fail to enforce scripting authorization checks on the SQL DEFINE FUNCTION statement with LANGUAGE js. Attackers with database access can execute arbitrary JavaScript code by submitting DEFINE FUNCTION stat…

▾ MidnightEPSS 0.54%via NVD
CVE-2026-67310Medium· 5.4
1mo ago

OpenRemote (org.openremote:openremote) versions <= 1.26.2 contain an insecure direct object reference vulnerability in the setAssetLinks endpoint of AlarmResourceImpl

OpenRemote (org.openremote:openremote) versions <= 1.26.2 contain an insecure direct object reference vulnerability in the setAssetLinks endpoint of AlarmResourceImpl. The realm access check validates only a single realm obtained via rea…

▾ SunlitEPSS 0.24%via NVD
CVE-2026-2411Medium· 6.5
1mo ago

Zephyr's Bluetooth host declares a GATT characteristic as two consecutive attributes: a Characteristic Declaration whose permission is hard-coded to BT_GATT_PERM_READ, and a Characteristic Value attribute that carries the application-spe…

Zephyr's Bluetooth host declares a GATT characteristic as two consecutive attributes: a Characteristic Declaration whose permission is hard-coded to BT_GATT_PERM_READ, and a Characteristic Value attribute that carries the application-spe…

▾ SunlitEPSS 0.18%via NVD
CVE-2026-14538High· 7.7
1mo ago

An improper authorization and security-boundary bypass vulnerability in the bigquery-execute-sql tool component of Google mcp-toolbox versions 0.16.1 through 1.4.0 allows an authenticated attacker to bypass allowedDatasets validation che…

An improper authorization and security-boundary bypass vulnerability in the bigquery-execute-sql tool component of Google mcp-toolbox versions 0.16.1 through 1.4.0 allows an authenticated attacker to bypass allowedDatasets validation che…

▾ Twilightgoogle · mcp_toolbox_for_databasesEPSS 0.20%via NVD
CVE-2026-14537Critical· 9.8
1mo ago

Incorrect Authorization in the direct HTTP API tool invocation endpoint in Google mcp-toolbox versions v1.3.0 and v1.4.0 allows an unauthenticated attacker to invoke tools protected by the scopeRequired feature via sending tool invocatio…

Incorrect Authorization in the direct HTTP API tool invocation endpoint in Google mcp-toolbox versions v1.3.0 and v1.4.0 allows an unauthenticated attacker to invoke tools protected by the scopeRequired feature via sending tool invocatio…

▾ Midnightgoogle · mcp_toolbox_for_databasesEPSS 0.25%via NVD
CVE-2026-18203Medium· 6.5
1mo ago

A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution

A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution. When a group policy is set to extend permissions to child groups, the system incorrectly uses a simple text-based prefix check…

▾ SunlitEPSS 0.31%via NVD
CVE-2026-54707Medium· 5.4
1mo ago

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Prior to 2.6.4, OnionShare CLI/Desktop does not enforce the Receive mode disable_files sett…

▾ Sunlitonionshare-cli · onionshare-cliEPSS 0.40%via NVD
CVE-2026-65835Medium· 6.6
1mo ago

Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation)

Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation)

▾ Sunlitprojectcapsule · github.com/projectcapsule/capsuleEPSS 0.33%via GHSA
CVE-2026-55499Medium· 4.3
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, a single-file share event-stream subscription resolves the share root to the owner’s parent folder and subscribes to that folder topic, allowing an authentic…

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.33%via NVD
CVE-2026-55502High· 7.1
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, POST /api/v4/admin/policy/oauth/signin requires only Admin.Read even though GetOauthRedirectService persists caller-supplied OneDrive secret and app_id value…

▾ Twilightcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.34%via NVD
CVE-2026-62323Medium· 6.3
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, ViewerSessionValidation uses only the session-id prefix of a WOPI access token and does not enforce the requested viewer action, allowing a malicious or comp…

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.31%via NVD
CVE-2026-10031Medium· 4.2
1mo ago

SFTPGo prior to 2.7.4 contains a permission bypass vulnerability that allows authenticated users to circumvent per-directory access controls by creating symbolic links in a permitted directory that point to files in directories where dow…

SFTPGo prior to 2.7.4 contains a permission bypass vulnerability that allows authenticated users to circumvent per-directory access controls by creating symbolic links in a permitted directory that point to files in directories where dow…

▾ SunlitEPSS 0.29%via NVD
CVE-2026-41187Medium· 6.5
1mo ago

Calico's apiserver wraps tier-scoped resources so that every operation runs through AuthorizeTierOperation, but the Delete override on NetworkPolicy, GlobalNetworkPolicy, and their staged variants is not invoked for DeleteCollection requ…

Calico's apiserver wraps tier-scoped resources so that every operation runs through AuthorizeTierOperation, but the Delete override on NetworkPolicy, GlobalNetworkPolicy, and their staged variants is not invoked for DeleteCollection requ…

▾ Sunlittigera · calicoEPSS 0.39%via NVD
CVE-2026-67528Medium· 4.3
1mo ago

OpenProject is open-source, web-based project management software

OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/custom_options/:id resolved CustomOption records by global numeric id and allowed UserCustomField and GroupCustomField options without checki…

▾ SunlitEPSS 0.36%via NVD
CVE-2026-67439Medium· 4.3
1mo ago

OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output

OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output

▾ SunlitOliveTin · github.com/OliveTin/OliveTinEPSS 0.43%via GHSA
CVE-2026-16751Medium· 6.5
2mo ago

Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and ta…

Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and ta…

▾ SunlitEnte · Museum ServerEPSS 0.42%via NVD
CWE-863 vulnerabilities (CVEs) — page 19 · VulnSea