VulnSea

fabric vulnerabilities

CVEs whose affected-version data names the fabric package (npm, pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

6 CVEsRSS

CVE-2026-69843Critical· 10.0
4d ago

Authentication bypass by spoofing in Microsoft Fabric allows an unauthorized attacker to elevate privileges over a network.

Authentication bypass by spoofing in Microsoft Fabric allows an unauthorized attacker to elevate privileges over a network.

MidnightMicrosoft · Microsoft FabricEPSS 0.62%via NVD
CVE-2026-70178High· 8.5
2w ago

Missing authorization in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.

Missing authorization in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.

Twilightmicrosoft · fabricEPSS 0.43%via NVD
CVE-2026-63509Critical· 9.9
1mo ago

Microsoft Fabric Elevation of Privilege Vulnerability

Relative path traversal in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.

MidnightMicrosoft · Microsoft FabricEPSS 0.62%via CVEORG
CVE-2026-44311Medium· 5.4
3mo ago

Fabric.js improper escaping in fabric.Gradient colorStops leads to XSS in SVG serialization

Fabric.js improper escaping in fabric.Gradient colorStops leads to XSS in SVG serialization

Sunlitfabric · fabricEPSS 0.27%via GHSA
CVE-2026-41586Critical· 9.8
4mo ago

Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications

Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications. From versions 1.0.0 to 2.2.26, Channel.java implements readObject() and exposes deSerializeChannel() which cal…

Midnighthyperledger · fabricEPSS 0.53%via NVD
CVE-2011-2185Medium
4y ago

Fabric vulnerable to symlink attack on tmp files

Fabric vulnerable to symlink attack on tmp files

Sunlitfabric · fabricEPSS 0.33%via OSV
fabric vulnerabilities (CVEs) · VulnSea