VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3820 CVEsRSS

GHSA-wg9g-w2j2-8pgrHigh· 7.8
1mo ago

MONAI: Unsafe deserialization in NumpyReader allows arbitrary code execution via malicious .npy files

MONAI: Unsafe deserialization in NumpyReader allows arbitrary code execution via malicious .npy files

▾ Twilightmonai · monaivia GHSA
CVE-2026-55224HighPoC
1mo ago

MineAdmin Vulnerable to Path Traversal via Unsanitized identifier in Plugin Install/Uninstall

MineAdmin Vulnerable to Path Traversal via Unsanitized identifier in Plugin Install/Uninstall

▾ Midnightmineadmin · mineadmin/mineadminvia GHSA
CVE-2026-54347High· 8.7
1mo ago

Froxlor is open source server administration software

Froxlor is open source server administration software. Prior to 2.3.8, DNS TXT record content accepted by lib/Froxlor/Api/Commands/DomainZones.php can contain HTML special characters, lib/Froxlor/UI/Callbacks/Text.php returns the content…

▾ Twilightfroxlor · froxlor/froxlorEPSS 0.42%via NVD
CVE-2026-54348High· 7.2
1mo ago

Froxlor is open source server administration software

Froxlor is open source server administration software. Prior to 2.3.8, the Admins.add and Admins.update endpoints in lib/Froxlor/Api/Commands/Admins.php accept an attacker-controlled ipaddress array and store it as JSON in panel_admins.i…

▾ Twilightfroxlor · froxlor/froxlorEPSS 0.66%via NVD
CVE-2026-54543Medium· 5.4
1mo ago

Froxlor is open source server administration software

Froxlor is open source server administration software. Prior to 2.3.8, the DomainZones.add API command in lib/Froxlor/Api/Commands/DomainZones.php accepts user-controlled record and type values without rejecting line delimiters, tab char…

▾ Sunlitfroxlor · froxlor/froxlorEPSS 0.45%via NVD
CVE-2026-55593Medium· 6.5
1mo ago

Froxlor is open source server administration software

Froxlor is open source server administration software. Prior to 2.3.8, the standalone lib/ajax.php entry point bypasses the centralized request validation in lib/init.php, and Ajax::handle in lib/Froxlor/Ajax/Ajax.php checks only for a v…

▾ Sunlitfroxlor · froxlor/froxlorEPSS 0.26%via NVD
CVE-2026-62988Critical· 9.0
1mo ago

Froxlor is open source server administration software

Froxlor is open source server administration software. From 2.3.7 until 2.3.8, the Customers.get, Customers.listing, Admins.get, Admins.listing, Ftps.get, and Ftps.listing API commands in lib/Froxlor/Api/Commands/Customers.php, lib/Froxl…

▾ Midnightfroxlor · froxlor/froxlorEPSS 0.63%via NVD
CVE-2026-70666High· 7.4
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. Prior to 1.9.3, an authority-role member could update acme_url through PUT /api/1/authorities/ without revalidation and direct setup_acme_client_no_retry to an attacker-controlled ACME server. ACME…

▾ Twilightlemur · lemurEPSS 0.22%via NVD
CVE-2026-70667Medium· 6.3
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_revocation_url in lemur/certificates/verify.py checked the original CRL or OCSP URL but the later request could reach a different destination. The CRL requests.get call fo…

▾ Sunlitlemur · lemurEPSS 0.18%via NVD
CVE-2026-71303High· 7.7
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_acme_url enforced ACME_DIRECTORY_HOST_ALLOWLIST when an authority was created, but PUT /api/1/authorities/ passed options to lemur/authorities/service.py without applying …

▾ Twilightlemur · lemurEPSS 0.28%via NVD
CVE-2026-71307High· 7.7
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. Prior to 1.9.3, GET /api/1/destinations and GET /api/1/destinations/ relied only on authentication while sibling write handlers required admin_permission. DestinationOutputSchema returned raw optio…

▾ Twilightlemur · lemurEPSS 0.31%via NVD
CVE-2026-71308High· 8.1
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. From 0.5.0 until 1.9.3, certificate create, upload, and edit requests accepted replaces[] or replacements identifiers that AssociatedCertificateSchema resolved with fetch_objects without a Certific…

▾ Twilightlemur · lemurEPSS 0.32%via NVD
CVE-2026-71317Medium· 6.5
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/authorities with type=subca did not require AuthorityPermission on the parent authority when ADMIN_ONLY_AUTHORITY_CREATION was false. AssociatedAuthoritySchema resolved …

▾ Sunlitlemur · lemurEPSS 0.10%via NVD
CVE-2026-71322Medium· 4.3
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. Prior to 1.9.3, CertificateExport placed its CertificatePermission ownership check inside the plugin.requires_key branch for POST /api/1/certificates//export. A plugin declaring requires_key false …

▾ Sunlitlemur · lemurEPSS 0.23%via NVD
CVE-2026-71417High· 7.3
1mo ago

Lemur manages TLS certificate creation

Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/certificates/upload allowed a non-read-only user to create a duplicate row using another certificate body, authority_id, serial, or external_id without requiring permiss…

▾ Twilightlemur · lemurEPSS 0.10%via NVD
GHSA-jf24-8g2h-2wg7Medium
1mo ago

LibreNMS Vulnerable to Remote Code Execution via AboutController

LibreNMS Vulnerable to Remote Code Execution via AboutController

▾ Sunlitlibrenms · librenms/librenmsvia GHSA
GHSA-7cj5-v4pp-v632Medium· 4.8
1mo ago

LibreNMS: Stored XSS via graph_descr admin config settings echoed without escaping to all authenticated users

LibreNMS: Stored XSS via graph_descr admin config settings echoed without escaping to all authenticated users

▾ Sunlitlibrenms · librenms/librenmsvia GHSA
GHSA-7gww-x7fh-jf9jHigh· 8.1
1mo ago

LibreNMS: SSRF-driven stored XSS via Oxidized API response fields in device showconfig page

LibreNMS: SSRF-driven stored XSS via Oxidized API response fields in device showconfig page

▾ Twilightlibrenms · librenms/librenmsvia GHSA
CVE-2026-17106High· 7.8PoC
1mo ago

github.com/moby/go-archive: moby/go-archive: Arbitrary file write via link following in tar extraction (CVE-2026-17106)

A flaw was found in moby/go-archive. The tar extraction routines in the component do not properly restrict filesystem operations to the intended destination directory. An attacker who controls the contents of an archive can exploit this by…

▾ MidnightRed Hat · Red Hat Edge Manager 1.2EPSS 0.44%via CSAF
CVE-2026-73974Medium· 5.5
1mo ago

linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations, and Linuxfabrik Monitoring Plugins uses its shared testing helper across check plugins

linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations, and Linuxfabrik Monitoring Plugins uses its shared testing helper across check plugins. Prior to linuxfabrik-lib 6.1.0 and Linux…

▾ Sunlitlinuxfabrik-lib · linuxfabrik-libEPSS 0.17%via NVD
GHSA-c7hr-448w-65pxHigh· 8.3
1mo ago

MeshCentral has unsanitized data fields

MeshCentral has unsanitized data fields

▾ Twilightmeshcentral · meshcentralvia GHSA
CVE-2026-55107Critical· 10.0
1mo ago

kobako Sandbox Escape: guest eval reaches host RCE via method_missing → public_send (any bound Service)

kobako Sandbox Escape: guest eval reaches host RCE via method_missing → public_send (any bound Service)

▾ Midnightkobako · kobakovia GHSA
CVE-2026-53423Medium
1mo ago

membrane_mp4_plugin has an unauthenticated denial-of-service via BEAM atom table exhaustion

membrane_mp4_plugin has an unauthenticated denial-of-service via BEAM atom table exhaustion

▾ Sunlitmembrane_mp4_plugin · membrane_mp4_pluginEPSS 0.18%via GHSA
CVE-2026-63641Low
1mo ago

MagicMirror² is an open source modular smart mirror platform

MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, MagicMirror applies ipWhitelist only as Express middleware, while the Socket.IO server in js/server.js is attached directly to the HTTP server without equival…

▾ Sunlitmagicmirror · magicmirrorEPSS 0.43%via NVD
CVE-2026-63642MediumPoC
1mo ago

MagicMirror² is an open source modular smart mirror platform

MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, checkArticleUrl in defaultmodules/newsfeed/node_helper.js accepts the CHECK_ARTICLE_URL notification through the unauthenticated Socket.IO namespace /newsfeed…

▾ Twilightmagicmirror · magicmirrorEPSS 0.50%via NVD
CVE-2026-63643Medium
1mo ago

MagicMirror² is an open source modular smart mirror platform

MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, the ADD_CALENDAR handler in defaultmodules/calendar/node_helper.js accepts an attacker-controlled URL, authentication data, and selfSignedCert setting through…

▾ Sunlitmagicmirror · magicmirrorEPSS 0.66%via NVD
CVE-2026-63640Medium· 4.3
1mo ago

MagicMirror² is an open source modular smart mirror platform

MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, when hideConfigSecrets is enabled, the catch-all socket dispatcher in js/node_helper.js passes every inbound object payload through replaceSecretPlaceholder i…

▾ Sunlitmagicmirror · magicmirrorEPSS 0.30%via NVD
CVE-2026-68924Medium· 4.9
1mo ago

MobSF is a mobile application security testing tool used

MobSF is a mobile application security testing tool used. Prior to 4.5.1, the unzip function in mobsf/StaticAnalyzer/views/common/shared_func.py logs that an archive member exceeding ZIP_MAX_UNCOMPRESSED_FILE_SIZE is being skipped but do…

▾ Sunlitmobsf · mobsfEPSS 0.59%via NVD
CVE-2026-68927Low· 3.0
1mo ago

MobSF is a mobile application security testing tool used

MobSF is a mobile application security testing tool used. Prior to 4.5.1, get_browsable_activities in mobsf/StaticAnalyzer/views/android/manifest_analysis.py validates only an Android manifest android:host value with valid_host before ap…

▾ Sunlitmobsf · mobsfEPSS 0.33%via NVD
CVE-2026-68923Medium· 6.5
1mo ago

MobSF is a mobile application security testing tool used

MobSF is a mobile application security testing tool used. Prior to 4.5.1, mobsf/MobSF/settings.py places django.middleware.csrf.CsrfViewMiddleware only in the deprecated MIDDLEWARE_CLASSES setting and omits it from the active MIDDLEWARE …

▾ Sunlitmobsf · mobsfEPSS 0.26%via NVD
CVEs tagged “ghsa” — page 42 · VulnSea