VulnSea

CWE-863

CVEs classified under CWE-863, newest first.

876 CVEsRSS

GHSA-wcr3-9x4c-f5gjHigh
3mo ago

Blnk has an API key authorization bypass in owner and scope enforcement

Blnk has an API key authorization bypass in owner and scope enforcement

▾ Twilightblnkfinance · github.com/blnkfinance/blnkvia GHSA
CVE-2026-48794Low
3mo ago

Authelia has an Edge Case Access Control Rule Mismatch

Authelia has an Edge Case Access Control Rule Mismatch

▾ Sunlitauthelia · github.com/authelia/authelia/v4EPSS 0.41%via GHSA
CVE-2026-53521Medium· 6.4
3mo ago

Nezha Monitoring: Stored future DDNS profile ID allows unauthorized use of another user's DDNS profile context

Nezha Monitoring: Stored future DDNS profile ID allows unauthorized use of another user's DDNS profile context

▾ Sunlitnezhahq · github.com/nezhahq/nezhaEPSS 0.31%via GHSA
CVE-2026-54244Low· 3.5
3mo ago

Statamic CMS's incorrect authorization lets view-only users submit Live Preview content reserved for editors

Statamic CMS's incorrect authorization lets view-only users submit Live Preview content reserved for editors

▾ Sunlitstatamic · statamic/cmsEPSS 0.30%via GHSA
CVE-2026-48776Medium· 4.2
3mo ago

LangGraph SDK has unsafe URL path construction

LangGraph SDK has unsafe URL path construction

▾ Sunlitlanggraph-sdk · langgraph-sdkEPSS 0.29%via GHSA
CVE-2026-49219Medium· 5.5
3mo ago

ImageMagick: Policy Bypass can read disallowed files via symlink

ImageMagick: Policy Bypass can read disallowed files via symlink

▾ SunlitMagick · Magick.NET-Q16-AnyCPUEPSS 0.17%via GHSA
CVE-2026-56694Medium· 5.4
3mo ago

NanoClaw before 2.1.0 contains a privilege escalation vulnerability in the channel-registration approval flow where handleChannelApprovalResponse fails to validate admin privileges over target agent groups

NanoClaw before 2.1.0 contains a privilege escalation vulnerability in the channel-registration approval flow where handleChannelApprovalResponse fails to validate admin privileges over target agent groups. Scoped admins can submit forge…

▾ Sunlitnanocoai · nanoclawEPSS 0.29%via NVD
CVE-2026-49983Medium· 5.2
3mo ago

Deno is a JavaScript, TypeScript, and WebAssembly runtime

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.1, environment access is gated by the env permission. You can deny it with --deny-env, or restrict it to a specific allowlist with --allow-env=FOO,BAR. The expectati…

▾ SunlitEPSS 0.14%via NVD
CVE-2026-52808High· 7.1
3mo ago

Gogs's write-level collaborators can mutate admin-only repository settings via API

Gogs's write-level collaborators can mutate admin-only repository settings via API

▾ Twilightgogs · gogs.io/gogsEPSS 0.48%via GHSA
CVE-2026-54518Medium· 6.5
3mo ago

jackson-databind: jackson-databind: Information disclosure and data manipulation via view-based access control bypass (CVE-2026-54518)

A flaw was found in jackson-databind. This vulnerability allows a remote attacker to bypass security view restrictions by sending specially crafted JSON (JavaScript Object Notation) data. The UnwrappedPropertyHandler component, which proce…

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.35%via CSAF
CVE-2026-54517Medium· 5.3
3mo ago

jackson-databind: jackson-databind: Information disclosure via improper JsonView filter application (CVE-2026-54517)

A flaw was found in jackson-databind. A remote attacker can exploit this vulnerability due to an issue in how active-view (@JsonView) filters are applied. Specifically, setterless collections annotated with a restricted @JsonView can be po…

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.38%via CSAF
CVE-2026-48493Medium· 5.5
3mo ago

Snipe-IT Vulnerable to Privilege Escalation for self via API Permissions Assignment

Snipe-IT Vulnerable to Privilege Escalation for self via API Permissions Assignment

▾ Sunlitsnipe · snipe/snipe-itEPSS 0.31%via GHSA
CVE-2026-48507High· 7.1
3mo ago

Snipe-IT: Bulk editing users allowed `ldap_import` and `activated_in` bulk editing users

Snipe-IT: Bulk editing users allowed `ldap_import` and `activated_in` bulk editing users

▾ Twilightsnipe · snipe/snipe-itEPSS 0.42%via GHSA
CVE-2026-8823Low· 3.8
3mo ago

Mattermost has an Incorrect Authorization issue

Mattermost has an Incorrect Authorization issue

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.32%via OSV
CVE-2026-8074Low· 3.8
3mo ago

Mattermost doesn't enforce bot-specific permission checks on the user active status endpoint

Mattermost doesn't enforce bot-specific permission checks on the user active status endpoint

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.32%via OSV
CVE-2026-44911Low
3mo ago

Apache NiFi allows read-only users to submit component configuration verification request

Apache NiFi allows read-only users to submit component configuration verification request

▾ Sunlitapache · org.apache.nifi:nifi-web-apiEPSS 0.52%via GHSA
CVE-2026-41048High· 7.1
3mo ago

Incorrect caching of authentication between different polkit methods in qSnapper before version 1.3.3 allowed a local attacker to use functions like "restore from snapshot" even if only allowed to do "delete snapshot".

Incorrect caching of authentication between different polkit methods in qSnapper before version 1.3.3 allowed a local attacker to use functions like "restore from snapshot" even if only allowed to do "delete snapshot".

▾ Twilightpresire · qsnapperEPSS 0.18%via NVD
CVE-2026-50559High· 7.5
3mo ago

Quarkus is a Java framework for building cloud-native applications

Quarkus is a Java framework for building cloud-native applications. Prior to versions 3.37.0, 3.36.3, 3.33.2.1, 3.33.3, 3.27.4.1, 3.27.5, and 3.20.6.2, Quarkus HTTP path-based authorization policies can be bypassed using encoded semicolo…

▾ Twilightquarkus · quarkusEPSS 0.67%via NVD
GHSA-x44p-gg67-52fcMedium· 5.5
3mo ago

Duplicate Advisory: PraisonAI: Coarse-Grained Tool Approval Cache Bypasses Per-Invocation Consent for Shell Commands

Duplicate Advisory: PraisonAI: Coarse-Grained Tool Approval Cache Bypasses Per-Invocation Consent for Shell Commands

▾ Sunlitpraisonai · praisonaivia GHSA
CVE-2026-50008Medium
3mo ago

parse-server: Server option routeAllowList is bypassable through batch sub-requests

parse-server: Server option routeAllowList is bypassable through batch sub-requests

▾ Sunlitparse-server · parse-serverEPSS 0.60%via GHSA
GHSA-xhv3-q4xx-349rHigh
3mo ago

stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)

stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)

▾ Twilightstigmem-node · stigmem-nodevia GHSA
GHSA-6gqw-jqv7-v88mHigh
3mo ago

stigmem-node: decay sweep expires and counts facts across all tenants (cross-tenant BOLA)

stigmem-node: decay sweep expires and counts facts across all tenants (cross-tenant BOLA)

▾ Twilightstigmem-node · stigmem-nodevia GHSA
GHSA-hv6h-hc26-q48pMedium· 4.3
3mo ago

SurrealDB: Field-level SELECT permissions bypassed via graph and reference traversals

SurrealDB: Field-level SELECT permissions bypassed via graph and reference traversals

▾ Sunlitsurrealdb · surrealdbvia GHSA
CVE-2026-53843High· 8.8
3mo ago

OpenClaw: Pairing-scoped device session could restore revoked node token authority

OpenClaw: Pairing-scoped device session could restore revoked node token authority

▾ Twilightopenclaw · openclawEPSS 0.49%via GHSA
CVE-2026-55672High· 7.4
3mo ago

ZITADEL: Missing client_id binding in OIDC authorization code exchange and refresh token flows (RFC 6749 Section 4.1.3 violation)

ZITADEL: Missing client_id binding in OIDC authorization code exchange and refresh token flows (RFC 6749 Section 4.1.3 violation)

▾ Twilightzitadel · github.com/zitadel/zitadelEPSS 0.43%via GHSA
GHSA-8579-rgg5-ph2mHigh· 8.8
3mo ago

PraisonAI DiscordApproval accepts unrelated channel messages as dangerous-tool approvals

PraisonAI DiscordApproval accepts unrelated channel messages as dangerous-tool approvals

▾ Twilightpraisonai · praisonaivia GHSA
GHSA-qvpf-j64c-jmhrHigh· 8.3
3mo ago

PraisonAI Slack app_mention bypasses configured user/channel authorization

PraisonAI Slack app_mention bypasses configured user/channel authorization

▾ Twilightpraisonai · praisonaivia GHSA
GHSA-v847-hxxw-3pxgHigh· 7.8
3mo ago

PraisonAI recipe.run_stream skips dangerous-tool policy enforcement

PraisonAI recipe.run_stream skips dangerous-tool policy enforcement

▾ Twilightpraisonai · praisonaivia GHSA
GHSA-w6h2-fr4q-xvxvHigh· 8.8
3mo ago

PraisonAI: Compute-bridged file tools allow shell command injection

PraisonAI: Compute-bridged file tools allow shell command injection

▾ Twilightpraisonai · praisonaivia GHSA
GHSA-4869-x4pr-q22xCritical· 9.8
3mo ago

PraisonAI: Unauthenticated RCE via Jobs API + Approval Bypass

PraisonAI: Unauthenticated RCE via Jobs API + Approval Bypass

▾ Midnightpraisonai · praisonaivia GHSA
CWE-863 vulnerabilities (CVEs) — page 25 · VulnSea