VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3811 CVEsRSS

CVE-2026-58196Medium· 4.7PoC
1w ago

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers. Prior to 0.31.0, remote.Handler.Authenticate in pkg/auth/remote/handler.go invokes discovery.DetectAuthenticationFromServer…

▾ Twilightstacklok · toolhiveEPSS 0.43%via NVD
CVE-2026-54450Low· 2.9
1w ago

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers. Prior to 0.29.1, networking.IsPrivateIP in pkg/networking/utilities.go omits the IPv6 NAT64 prefixes 64:ff9b::/96 and 64:ff…

▾ Sunlitstacklok · toolhiveEPSS 0.33%via NVD
CVE-2026-54254Medium· 5.9
1w ago

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts. From 8.5.0 until 9.14.0, the Pixeldrain crawler uses substring host matching instead of requiring the input host to be an exact member of SUPPORTED_DOMAINS, and then…

▾ SunlitCyberdrop-DL · cyberdrop-dlEPSS 0.53%via NVD
CVE-2026-61549Critical· 9.0
1w ago

Woodpecker is a CI/CD engine

Woodpecker is a CI/CD engine. From 1.0.0 until 3.16.0, pipeline/backend/kubernetes/backend_options.go defines backend_options.kubernetes.serviceAccountName, and the Kubernetes backend in pipeline/backend/kubernetes/pod.go copies that pip…

▾ Midnightwoodpecker-ci · woodpeckerEPSS 0.28%via NVD
CVE-2026-44300High· 8.8
1w ago

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs. Prior to 1.121.0, the POST /serviceKey endpoint in pkg/costmodel/router.go allows a network client to invoke AddServiceKey without mandatory authentication and s…

▾ Twilightopencost · opencostEPSS 0.75%via NVD
CVE-2026-52827High· 7.1
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.59.0, the KIMAI_SESSION cookie issued after password verification but before TOTP completion is accepted by every /api route because config/packages/security.yaml protects the…

▾ Twilightkimai · kimaiEPSS 0.58%via NVD
CVE-2026-52828Medium· 5.3
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.58.0, ExportController::createExportTemplate() and ExportController::editExportTemplate() inherit only the class-level create_export permission, which ROLE_TEAMLEAD receives b…

▾ Sunlitkimai · kimaiEPSS 0.46%via NVD
CVE-2026-52819Medium· 6.3PoC
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.57.0, the GET /api/timesheets list endpoint accepts user and users[] target identifiers from a caller with view_other_timesheet but does not apply access_user or verify that a…

▾ Twilightkimai · kimaiEPSS 0.50%via NVD
CVE-2026-52820Medium· 5.3
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.57.0, PATCH /api/timesheets/{id} and POST /api/timesheets accept a user-controlled project identifier through TimesheetApiEditForm and FormTrait, and ProjectRepository::getQue…

▾ Sunlitkimai · kimaiEPSS 0.45%via NVD
CVE-2026-52821Medium· 5.3
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.57.0, GET or POST requests to /en/admin/activity/create/{project} and /en/admin/project/create/{customer} require only the generic create_activity or create_project capability…

▾ Sunlitkimai · kimaiEPSS 0.43%via NVD
CVE-2026-52822Medium· 5.3
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.58.0, PATCH /api/timesheets/{id}/restart, PATCH /api/timesheets/{id}/duplicate, and the web duplicate workflow can derive a new record from an owned historical timesheet after…

▾ Sunlitkimai · kimaiEPSS 0.46%via NVD
CVE-2026-52823Medium· 5.3
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.58.0, TimesheetController exposes GET /api/timesheets/{id}/stop and GET /api/timesheets/{id}/restart, which reuse an authenticated browser session and perform state-changing o…

▾ Sunlitkimai · kimaiEPSS 0.30%via NVD
CVE-2026-52824Critical· 9.1PoC
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.58.0, the official Docker image sets APP_SECRET to the public value change_this_to_something_unique in Dockerfile, and .docker/entrypoint.sh neither replaces nor rejects that …

▾ Abyssalkimai · kimaiEPSS 1.3%via NVD
CVE-2026-52825Medium· 5.3
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.58.0, POST /api/teams/{id}/members/{userId} and POST /api/teams/{id}/activities/{activityId} verify that a teamlead may edit the Team but do not verify access_user for the ref…

▾ Sunlitkimai · kimaiEPSS 0.45%via NVD
CVE-2026-52826Medium· 5.3
1w ago

Kimai is an open-source time tracking application

Kimai is an open-source time tracking application. Prior to 2.57.0, GET or POST requests to /en/admin/project/{id}/rate/{rate}, /en/admin/customer/{id}/rate/{rate}, and /en/admin/activity/{id}/rate/{rate} independently resolve the author…

▾ Sunlitkimai · kimaiEPSS 0.43%via NVD
CVE-2026-61667Critical· 9.9
1w ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, DataManagementSystem/Service/FileCatalogHandler.py checkDataset forwards an authenticated caller-controlled data…

▾ MidnightDIRACGrid · DIRACEPSS 1.2%via NVD
CVE-2026-61668High· 8.1
1w ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, WorkloadManagementSystem/Utilities/PilotWrapper.py pilotWrapperScript uses ssl._create_unverified_context to dow…

▾ TwilightDIRACGrid · DIRACEPSS 0.40%via NVD
CVE-2026-45579Critical· 9.9
1w ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, the RequestManagementSystem/Service/ReqManagerHandler.py export_getRequestCountersWeb function passes an authent…

▾ MidnightDIRACGrid · DIRACEPSS 0.86%via NVD
CVE-2026-48737Medium· 4.9PoC
1w ago

pyLoad is a free and open-source download manager written in Python

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev101, is_global_address in src/pyload/core/utils/web/check.py relies on Python's global-address classification without examining IPv4 destinations em…

▾ Twilightpyload · pyloadEPSS 0.29%via NVD
CVE-2026-48987Medium· 6.5PoC
1w ago

pyLoad is a free and open-source download manager written in Python

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev101, EventManager in src/pyload/core/managers/event_manager.py appends a Client object to the clients list for each unique uuid submitted to the aut…

▾ Twilightpyload · pyloadEPSS 0.44%via NVD
CVE-2026-47780Medium· 6.9PoC
1w ago

free5GC is an open-source implementation of the 5G core network

free5GC is an open-source implementation of the 5G core network. In 4.2.3 and earlier, HandleCreateEeSubscriptions and HandleQueryeesubscriptions in free5gc/udr internal/sbi/api_datarepository.go validate the ueId path value with a regul…

▾ Twilightfree5gc · free5gcEPSS 0.54%via NVD
CVE-2026-55630Low· 0.0
1w ago

Kiwi TCMS is an open source test management system

Kiwi TCMS is an open source test management system. Prior to 16.1, TestCase.extra_link and TestPlan.extra_link accepted unsanitized user input and rendered stored values verbatim, creating an opportunity for cross-site scripting. Officia…

▾ Sunlitkiwitcms · KiwiEPSS 0.42%via NVD
CVE-2026-54724Medium· 6.1
1w ago

Kiwi TCMS is an open source test management system

Kiwi TCMS is an open source test management system. Prior to 16.1, the account confirmation endpoint accepted an unvalidated next parameter, allowing an unauthenticated attacker to create a URL on a trusted Kiwi TCMS hostname that redire…

▾ Sunlitkiwitcms · KiwiEPSS 0.35%via NVD
CVE-2026-54637Medium· 5.5PoC
1w ago

Dragonfly is an open source P2P-based file distribution and image acceleration system

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.4.4-rc.3, the scheduler's default unauthenticated v1 gRPC flow accepts attacker-controlled PeerHost.Ip and PeerHost.DownPort values through…

▾ Twilightdragonflyoss · dragonflyEPSS 0.80%via NVD
CVE-2026-49254Low· 2.9
1w ago

Dragonfly is an open source P2P-based file distribution and image acceleration system

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.4.4, manager/router/router.go registers GET /api/v1/oauth and GET /api/v1/oauth/:id without jwt.MiddlewareFunc() or RBAC(), while manager/h…

▾ Sunlitdragonflyoss · dragonflyEPSS 0.48%via NVD
CVE-2026-47424High· 7.5
1w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, GroovySandboxValueFilter permits an authenticated server-side script author to escape the scripting sandbox despite the default class allow and deny lists…

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.48%via NVD
CVE-2026-47426High· 7.6
1w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the private_key_jwt client authentication path uses ClientJwksResolverCache without reliably binding a cached jwks_uri resolver and verified assertion to …

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.55%via NVD
CVE-2026-48717Critical· 9.1
1w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, AuthorizationCodeGrantTypeHandler requires a code_verifier only when the realm-wide codeVerifierEnforced setting is enabled, even when an authorization co…

▾ MidnightOpenIdentityPlatform · OpenAMEPSS 0.53%via NVD
CVE-2026-55636Medium· 5.7
1w ago

Capsule is a multi-tenancy and policy-based framework for Kubernetes

Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.6, charts/capsule/templates/configuration.yaml configures the validating webhook with namespace/finalize instead of the Kubernetes resource name…

▾ Sunlitprojectcapsule · capsuleEPSS 0.39%via NVD
CVE-2026-55225High· 8.0
1w ago

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. In Strimzi 1.0.0 and earlier, an attacker who can create a Kafka custom resource can set Kafka.spec.entityOperator wat…

▾ Twilightstrimzi · strimzi-kafka-operatorEPSS 0.29%via NVD
CVEs tagged “ghsa” — page 14 · VulnSea