VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3816 CVEsRSS

CVE-2026-54623High· 7.1
1mo ago

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0.8, the move_plugin endpoint in cms/admin/placeholderadmin.py accepts an attacker-controlled plugin_parent value with…

▾ Twilightdjango-cms · django-cmsEPSS 0.49%via NVD
CVE-2026-54625Medium· 4.8
1mo ago

django CMS is a content management system powered by Django

django CMS is a content management system powered by Django. Prior to 5.0.8 and in 5.1.0a1, the django CMS page cache in cms/cache/page.py ignores request headers declared by plugins through get_vary_cache_on(). The _page_cache_key funct…

▾ Sunlitdjango-cms · django-cmsEPSS 0.18%via NVD
CVE-2026-67447Medium· 5.3
1mo ago

Mailpit is an email testing tool and API for developers

Mailpit is an email testing tool and API for developers. From 1.30.0 until 1.30.5, Mailpit's internal/smtpd/smtpd.go readData() function calls bufio.Reader.ReadBytes before applying the len(data)+len(line) size check to the completed SMT…

▾ Sunlitaxllent · github.com/axllent/mailpitEPSS 0.51%via NVD
CVE-2026-67448Medium· 6.5
1mo ago

Mailpit is an email testing tool and API for developers

Mailpit is an email testing tool and API for developers. From 1.29.0 until 1.30.6, Mailpit's server/server.go origin middleware checks the raw RequestURI for the /api/ prefix while Go's ServeMux routes using the percent-decoded URL path,…

▾ Sunlitaxllent · github.com/axllent/mailpitEPSS 0.22%via NVD
GHSA-5p3m-vhh6-9236Medium· 6.3
1mo ago

stigmem-node has blind SSRF via unvalidated webhook subscription delivery_address

stigmem-node has blind SSRF via unvalidated webhook subscription delivery_address

▾ Sunlitstigmem-node · stigmem-nodevia GHSA
GHSA-jgvr-6x5w-hx5wMedium
1mo ago

Zoo Design Studio: Recursive KCL parsing is vulnerable to denial-of-service

Zoo Design Studio: Recursive KCL parsing is vulnerable to denial-of-service

▾ Sunlitzoo-kcl · zoo-kclvia GHSA
GHSA-mc9m-6fm9-pghcMedium
1mo ago

Zoo Design Studio: Memory-corruption in memory handling of lib-kcl

Zoo Design Studio: Memory-corruption in memory handling of lib-kcl

▾ Sunlitzoo-kcl · zoo-kclvia GHSA
GHSA-8fxq-53rx-ph5fLow· 3.7
1mo ago

Coder: Login endpoint user enumeration via timing-defense placeholder in password comparison

Coder: Login endpoint user enumeration via timing-defense placeholder in password comparison

▾ Sunlitcoder · github.com/coder/coder/v2via GHSA
GHSA-h58c-xccx-75m3Low· 3.4
1mo ago

Coder: Stored HTML injection via unescaped ApplicationName and LogoURL appearance settings

Coder: Stored HTML injection via unescaped ApplicationName and LogoURL appearance settings

▾ Sunlitcoder · github.com/coder/coder/v2via GHSA
CVE-2026-54162Medium· 4.7
1mo ago

Ember has unneutralized terminal escape/control sequences from Caddy logs injected into the operator's TUI

Ember has unneutralized terminal escape/control sequences from Caddy logs injected into the operator's TUI

▾ Sunlitalexandre-daubois · github.com/alexandre-daubois/embervia GHSA
GHSA-22w5-2fxg-vrwxLow· 2.6
1mo ago

OpenTofu has high CPU usage when using K8S remote state backend or when parsing specifically crafted TLS certificates from untrusted or c…

OpenTofu has high CPU usage when using K8S remote state backend or when parsing specifically crafted TLS certificates from untrusted or compromised servers

▾ Sunlitopentofu · github.com/opentofu/opentofuvia OSV
CVE-2026-54259Medium· 4.3
1mo ago

Wagtail: Improper restriction handling on Documents and Images chosen endpoints

Wagtail: Improper restriction handling on Documents and Images chosen endpoints

▾ Sunlitwagtail · wagtailEPSS 0.27%via GHSA
CVE-2026-54260Medium· 4.3
1mo ago

Wagtail: Denial of service via unbounded filter specs in the image preview

Wagtail: Denial of service via unbounded filter specs in the image preview

▾ Sunlitwagtail · wagtailEPSS 0.37%via GHSA
CVE-2026-54261Medium· 6.5
1mo ago

Wagtail: Improper permission handling in image preview

Wagtail: Improper permission handling in image preview

▾ Sunlitwagtail · wagtailEPSS 0.34%via GHSA
CVE-2026-54262Medium· 4.3
1mo ago

Wagtail: Pages translations can be created without page permissions when using simple_translation

Wagtail: Pages translations can be created without page permissions when using simple_translation

▾ Sunlitwagtail · wagtailEPSS 0.27%via GHSA
CVE-2026-54263High· 7.3
1mo ago

Wagtail: Reflected XSS in dynamic image URL generator view

Wagtail: Reflected XSS in dynamic image URL generator view

▾ Twilightwagtail · wagtailEPSS 0.36%via GHSA
CVE-2026-54622Medium· 6.5
1mo ago

django CMS: Clipboard copy IDOR discloses unauthorized plugin content

django CMS: Clipboard copy IDOR discloses unauthorized plugin content

▾ Sunlitdjango-cms · django-cmsEPSS 0.41%via OSV
CVE-2026-54624Medium· 6.5
1mo ago

django CMS: Structure endpoint bypasses page-view permission

django CMS: Structure endpoint bypasses page-view permission

▾ Sunlitdjango-cms · django-cmsEPSS 0.41%via OSV
GHSA-ghvf-qf6h-g8x5High
1mo ago

NocoBase: Arbitrary File Write chained with Local file Inclusion leads to Remote code execution

NocoBase: Arbitrary File Write chained with Local file Inclusion leads to Remote code execution

▾ Twilightnocobase · @nocobase/servervia GHSA
CVE-2026-55468Medium· 4.3
1mo ago

Wagtail: Improper restriction handling on Pages admin API

Wagtail: Improper restriction handling on Pages admin API

▾ Sunlitwagtail · wagtailEPSS 0.34%via OSV
CVE-2026-75526Medium· 4.4
1mo ago

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. From 5.0.8 until 5.0.9, ContentRenderer.render_placeholder in cms/plugin_rendering.py can pass stored, attacker-controlled values…

▾ Sunlitdjango-cms · django-cmsEPSS 0.26%via NVD
CVE-2026-63003Medium· 6.5
1mo ago

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0.9, page duplication lacks an object-level authorization check on the source page. In cms/admin/forms.py, DuplicatePa…

▾ Sunlitdjango-cms · django-cmsEPSS 0.41%via NVD
CVE-2026-61663Medium· 4.3
1mo ago

django CMS: Missing authorization in `render_object_structure` discloses non-PageContent placeholder structure to low-privileged staff

django CMS: Missing authorization in `render_object_structure` discloses non-PageContent placeholder structure to low-privileged staff

▾ Sunlitdjango-cms · django-cmsEPSS 0.34%via OSV
CVE-2026-61798High· 8.1
1mo ago

netty-incubator-codec-ohttp: BoringSSL HPKE private key bytes exposed through toString() and exception messages

netty-incubator-codec-ohttp: BoringSSL HPKE private key bytes exposed through toString() and exception messages

▾ Twilightnetty · io.netty.incubator:netty-incubator-codec-ohttp-hpke-classes-boringsslvia GHSA
CVE-2026-61799Medium· 5.3
1mo ago

netty-incubator-codec-ohttp: Binary HTTP parser unchecked varint length overflow causes decoder crash

netty-incubator-codec-ohttp: Binary HTTP parser unchecked varint length overflow causes decoder crash

▾ Sunlitnetty · io.netty.incubator:netty-incubator-codec-bhttpvia GHSA
CVE-2026-63124High· 7.5
1mo ago

netty-incubator-codec-ohttp: Binary HTTP parser infinite loop on known-length field section boundary

netty-incubator-codec-ohttp: Binary HTTP parser infinite loop on known-length field section boundary

▾ Twilightnetty · io.netty.incubator:netty-incubator-codec-bhttpvia GHSA
CVE-2026-61827High
1mo ago

netty-incubator-codec-ohttp: BinaryHttpParser should enforce limits for variable lengths fields

netty-incubator-codec-ohttp: BinaryHttpParser should enforce limits for variable lengths fields

▾ Twilightnetty · io.netty.incubator:netty-incubator-codec-bhttpvia GHSA
CVE-2026-63202High· 7.5
1mo ago

netty-incubator-codec-ohttp BinaryHttpParser: Unauthenticated CPU-exhaustion DoS via infinite loop in field-section decoding

netty-incubator-codec-ohttp BinaryHttpParser: Unauthenticated CPU-exhaustion DoS via infinite loop in field-section decoding

▾ Twilightnetty · io.netty.incubator:netty-incubator-codec-bhttpvia GHSA
GHSA-2223-f22x-24cqMedium· 4.9
1mo ago

Winter: Local File Inclusion through =include directives in JavaScript asset compilation

Winter: Local File Inclusion through =include directives in JavaScript asset compilation

▾ Sunlitwinter · winter/wn-system-modulevia GHSA
GHSA-8cfw-pcwh-v63wHigh· 8.4
1mo ago

Winter: Authenticated Twig sandbox escape in CMS SecurityPolicy (bypass of CVE-2024-54149)

Winter: Authenticated Twig sandbox escape in CMS SecurityPolicy (bypass of CVE-2024-54149)

▾ Twilightwinter · winter/wn-system-modulevia GHSA
CVEs tagged “ghsa” — page 37 · VulnSea