VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3827 CVEsRSS

CVE-2026-48054High· 8.8
1mo ago

OpenZeppelin Contracts Wizard is a web application to interactively build a contract out of components from OpenZeppelin Contracts

OpenZeppelin Contracts Wizard is a web application to interactively build a contract out of components from OpenZeppelin Contracts. Versions prior to 0.10.9 generate a Hardhat test file (`test/test.ts`) by interpolating user-supplied `op…

▾ TwilightOpenZeppelin · contracts-wizardEPSS 0.64%via NVD
CVE-2026-55524High· 7.5
1mo ago

PraisonAI is a multi-agent teams system

PraisonAI is a multi-agent teams system. In versions prior to 1.6.58, the web_crawl tool performs its SSRF check only on the initially supplied URL, allowing the protection to be bypassed so the tool connects to attacker-chosen internal …

▾ Twilightpraisonaiagents · praisonaiagentsEPSS 0.24%via NVD
CVE-2026-55522High· 7.8
1mo ago

PraisonAI is a multi-agent teams system

PraisonAI is a multi-agent teams system. In versions 3.9.26 through 4.6.57 of praiseonai and 0.12.12 through 1.6.57 of praiseonaiagents, the workflow "include" feature is vulnerable to code execution. Workflow._execute_include() implicit…

▾ Twilightpraisonaiagents · praisonaiagentsEPSS 0.22%via NVD
CVE-2026-55523High
1mo ago

PraisonAI is a multi-agent teams system

PraisonAI is a multi-agent teams system. In versions 1.5.128 through 1.6.57, the praisonaiagents.tools.web_crawl_tools.web_crawl() function is vulnerable to server-side request forgery. While it validates the initially supplied URL and b…

▾ Twilightpraisonaiagents · praisonaiagentsEPSS 0.47%via NVD
CVE-2026-65602Medium
1mo ago

Traefik CRD IngressRouteTCP ServersTransport Cross-Provider Namespace Bypass

Traefik CRD IngressRouteTCP ServersTransport Cross-Provider Namespace Bypass

▾ Sunlittraefik · github.com/traefik/traefik/v3EPSS 0.33%via GHSA
CVE-2026-71314High· 7.5
1mo ago

Nuxt is an open-source web development framework for Vue.js

Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, an unauthenticated attacker can use a server island v-for prop, including vforToArray and , to trigger unbounded SSR memory allocation until…

▾ Twilightnuxt · nuxtEPSS 0.66%via NVD
CVE-2026-71315High· 8.2
1mo ago

Nuxt is an open-source web development framework for Vue.js

Nuxt is an open-source web development framework for Vue.js. From 3.21.7 until 3.21.10 and 4.5.1, mixed-case routeRules keys can fail to match case-folded lookups when router.options.sensitive is false and drop appMiddleware authorizatio…

▾ Twilightnuxt · nuxtEPSS 0.47%via NVD
CVE-2026-71316High· 7.5
1mo ago

Nuxt is an open-source web development framework for Vue.js

Nuxt is an open-source web development framework for Vue.js. From 4.4.0 until 4.5.1, runtime cache:nuxt:payload entries for /<page>/_payload.json can be returned before route middleware and page guards because import.meta.prerender is no…

▾ Twilightnuxt · nuxtEPSS 0.51%via NVD
CVE-2026-71318Medium· 4.8
1mo ago

Nuxt is an open-source web development framework for Vue.js

Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, an attacker can supply a top-level `as` prop to the /__nuxt_island/ endpoint and drive dynamic component resolution through <component :is>,…

▾ Sunlitnuxt · nuxtEPSS 0.32%via NVD
CVE-2026-71319Critical· 9.6
1mo ago

Nuxt is an open-source web development framework for Vue.js

Nuxt is an open-source web development framework for Vue.js. Prior to 3.3.1, Nuxt DevTools (development mode only) exposes a bidirectional RPC channel over the Vite HMR WebSocket via the nuxt:devtools:rpc plugin. On affected versions the…

▾ Midnightnuxt · @nuxt/devtoolsEPSS 0.63%via NVD
CVE-2026-71320High· 8.1
1mo ago

Nuxt is an open-source web development framework for Vue.js

Nuxt is an open-source web development framework for Vue.js. From 3.4.0 until 3.21.10 and 4.5.1, an attacker can inject a template key through /__nuxt_island/ props into a dynamic component when `vue.runtimeCompiler: true` is enabled, ca…

▾ Twilightnuxt · nuxtEPSS 0.71%via NVD
CVE-2026-71321High· 7.5
1mo ago

Nuxt is an open-source web development framework for Vue.js

Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, the internal island renderer endpoint `/__nuxt_island/...` decodes and hashes attacker-controlled JSON body input with destr and ohash befor…

▾ Twilightnuxt · nuxtEPSS 0.74%via NVD
CVE-2026-65601Medium
1mo ago

Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion

Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion

▾ SunlitTraefik · TraefikEPSS 0.51%via GHSA
GHSA-gwfq-86j8-7qhvLow· 2.7
1mo ago

rclone: Verbose Stack Trace Disclosure in RC API Error Responses

rclone: Verbose Stack Trace Disclosure in RC API Error Responses

▾ Sunlitrclone · github.com/rclone/rclonevia GHSA
GHSA-945v-v9p3-v5xwLow· 3.6
1mo ago

rclone local `--metadata` applies attacker-controlled mode/uid - setuid binary planted from an untrusted remote

rclone local `--metadata` applies attacker-controlled mode/uid - setuid binary planted from an untrusted remote

▾ Sunlitrclone · github.com/rclone/rclonevia GHSA
CVE-2026-71309High
1mo ago

rclone is a command-line program to sync files and directories to and from different cloud storage providers

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.40.0 until 1.75.0, rclone serve restic does not correctly reject URL paths beginning with ../ in cmd/serve/restic/restic…

▾ Twilightrclone · github.com/rclone/rcloneEPSS 0.46%via NVD
CVE-2026-54572High· 7.5
1mo ago

rclone: Unvalidated symlink target in local `--links` — arbitrary file write from an untrusted remote

rclone: Unvalidated symlink target in local `--links` — arbitrary file write from an untrusted remote

▾ Twilightrclone · github.com/rclone/rcloneEPSS 0.40%via GHSA
CVE-2026-71310Medium· 5.9
1mo ago

rclone is a command-line program to sync files and directories to and from different cloud storage providers

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0, the shared HTTP CONNECT helper in lib/proxy/http.go parses proxy CONNECT responses with http.ReadResponse over…

▾ Sunlitrclone · github.com/rclone/rcloneEPSS 0.61%via NVD
GHSA-3x6r-wxxg-53vvMedium· 5.3
1mo ago

rclone: Infinite Scale TUS Creation Transport Error Causes a Nil-Response Panic

rclone: Infinite Scale TUS Creation Transport Error Causes a Nil-Response Panic

▾ Sunlitrclone · github.com/rclone/rclonevia GHSA
GHSA-8v25-v8p6-qf7vMedium· 6.5
1mo ago

rclone: Path traversal in serve s3 allows reading and overwriting root-level files

rclone: Path traversal in serve s3 allows reading and overwriting root-level files

▾ Sunlitrclone · github.com/rclone/rclonevia GHSA
GHSA-8mxv-9xhp-86h4Medium· 5.3
1mo ago

rclone: S3 Redirect Sanitization Omits IBM IAM Bearer Tokens and SSE-C Keys

rclone: S3 Redirect Sanitization Omits IBM IAM Bearer Tokens and SSE-C Keys

▾ Sunlitrclone · github.com/rclone/rclonevia GHSA
CVE-2026-71311Medium· 6.4
1mo ago

rclone is a command-line program to sync files and directories to and from different cloud storage providers

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0, a valid but nondefault FTP filename encoding in backend/ftp/ftp.go can restore raw CR/LF immediately before an…

▾ Sunlitrclone · github.com/rclone/rcloneEPSS 0.39%via NVD
GHSA-h4mf-4v27-hggjMedium· 5.3
1mo ago

rclone: WebDAV Credentials Survive a Same-Host HTTPS-to-HTTP Redirect

rclone: WebDAV Credentials Survive a Same-Host HTTPS-to-HTTP Redirect

▾ Sunlitrclone · github.com/rclone/rclonevia GHSA
CVE-2026-71312High· 8.0
1mo ago

rclone is a command-line program to sync files and directories to and from different cloud storage providers

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v1.75.0, rclone interpolates remote SFTP paths into PowerShell hash commands in backend/sftp/sftp.go, and quoteOrEscap…

▾ Twilightrclone · github.com/rclone/rcloneEPSS 0.49%via NVD
CVE-2026-59733High· 8.8
1mo ago

rclone `serve restic --private-repos` authorization bypass: `..` in the URL path lets an authenticated user read, overwrite and delete other users' repositories

rclone `serve restic --private-repos` authorization bypass: `..` in the URL path lets an authenticated user read, overwrite and delete other users' repositories

▾ Twilightrclone · github.com/rclone/rcloneEPSS 0.55%via GHSA
GHSA-gx4c-2hqx-cw2rLow· 3.1
1mo ago

rclone: S3 backend does not strip X-Amz-Security-Token on a same-host HTTPS->HTTP redirect

rclone: S3 backend does not strip X-Amz-Security-Token on a same-host HTTPS->HTTP redirect

▾ Sunlitrclone · github.com/rclone/rclonevia GHSA
CVE-2026-59732Medium· 5.0
1mo ago

rclone archive extract allows S3 destination prefix escape via crafted archive paths

rclone archive extract allows S3 destination prefix escape via crafted archive paths

▾ Sunlitrclone · github.com/rclone/rcloneEPSS 0.20%via OSV
CVE-2026-71313Medium· 6.9
1mo ago

rclone is a command-line program to sync files and directories to and from different cloud storage providers

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.go relies on the configurable filename encoder to prevent …

▾ Sunlitrclone · github.com/rclone/rcloneEPSS 0.37%via NVD
CVE-2026-70612Medium· 5.4
1mo ago

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8, 40.9.0, 41.2.1, and 42.0.0-beta.3, requests to open external protocol URLs from web content did not take iframe sand…

▾ Sunlitelectron · electronEPSS 0.44%via NVD
CVE-2026-70608High· 7.2
1mo ago

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10, 41.10.3, and 42.0.1, a sandboxed iframe without the allow-popups keyword could still open a new window or trigger s…

▾ Twilightelectron · electronEPSS 0.45%via NVD
CVEs tagged “ghsa” — page 52 · VulnSea