A vulnerability labeled as problematic has been found in Adobe Experience Manager. This issue affects some unknown processing of the component File System Access. Executing a manipulation of the argument pathname can lead to path traversal.
This vulnerability is handled as CVE-2026-48310. The attack can be executed remotely. There is not any exploit available.
A vulnerability marked as critical has been reported in Adobe Experience Manager. Impacted is an unknown function. The manipulation leads to server-side request forgery.
This vulnerability is uniquely identified as CVE-2026-48259. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability described as critical has been identified in Adobe Experience Manager. The affected element is an unknown function of the component XML External Entity Parser. The manipulation results in xml external entity reference.
This vulnerability was named CVE-2026-48359. The attack may be performed from remote. There is no available exploit.
A vulnerability, which was classified as problematic, was found in pyasn1 up to 0.6.3. The impacted element is the function decode of the component BER/CER/DER Decoder. Such manipulation of the argument RELATIVE-OID leads to resource consumption.
This vulnerability is documented as CVE-2026-59885. The attack can be executed remotely. There is not any exploit available.
A vulnerability was found in TecharoHQ Anubis up to 1.26.0-pre0. It has been rated as problematic. This issue affects the function PathChecker.Check of the file lib/policy/checker.go of the component Policy. Performing a manipulation results in improper input validation.
This vulnerability is cataloged as CVE-2026-62314. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in xxl-job-admin 3.0.0. It has been declared as problematic. This vulnerability affects unknown code of the component HTTP Handler. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-26719. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in Dulwich up to 1.1.0. It has been classified as critical. This affects an unknown part of the file contrib/paramiko_vendor.py. This manipulation causes Remote Code Execution.
This vulnerability is tracked as CVE-2026-38974. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability was found in xxl-job 3.0.0 and classified as problematic. Affected by this issue is some unknown functionality of the component Endpoint. The manipulation results in cross-site request forgery.
This vulnerability is identified as CVE-2026-26718. The attack can be executed remotely. There is not any exploit available.
A vulnerability has been found in Wekan up to 9.45 and classified as critical. Affected by this vulnerability is the function getRequestIp of the file server/lib/headerLoginAuth.js of the component Header-Login. The manipulation of the argument HEADER_LOGIN_ID leads to improper authentication.
This vulnerability is referenced as CVE-2026-55652. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability, which was classified as very critical, was found in MaaAssistantArknights. Affected is an unknown function of the file .github/workflows/release-preparation.yml of the component Pull Request Title Handler. Executing a manipulation of the argument pull_request.title can lead to os command injection.
The identification of this vulnerability is CVE-2026-55576. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in Wekan up to 9.36. This impacts an unknown function of the file server/permissions/cards.js of the component Permissions. Performing a manipulation of the argument boardId results in improper authorization.
This vulnerability was named CVE-2026-55234. The attack may be initiated remotely. There is no available exploit.
A vulnerability classified as problematic was found in Wekan up to 9.34. This affects the function cloneBoard of the file models/import.js of the component Board Cloning. Such manipulation of the argument sourceBoardId leads to information disclosure.
This vulnerability is uniquely identified as CVE-2026-53447. The attack can be launched remotely. No exploit exists.
A vulnerability classified as problematic has been found in Wekan up to 9.31. The impacted element is the function validateAttachmentUrl of the file models/integrations.js of the component Webhook. This manipulation causes server-side request forgery.
This vulnerability is handled as CVE-2026-53446. The attack can be initiated remotely. There is not any exploit available.
A vulnerability described as problematic has been identified in Wekan up to 9.31. The affected element is the function copyBoard of the file server/publications/boards.js of the component Copy Board. The manipulation of the argument board ID results in improper access controls.
This vulnerability is known as CVE-2026-53445. It is possible to launch the attack remotely. No exploit is available.
A vulnerability marked as critical has been reported in GPT Researcher 3.3.7. Impacted is an unknown function of the component HTML Handler. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2025-65720. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability labeled as critical has been found in AdonisJS up to 10.1.4/11.0.2. This issue affects the function Set of the component Bodyparser. Executing a manipulation can lead to use of blocking code in single-threaded, non-blocking context.
This vulnerability appears as CVE-2026-48795. The attack may be performed from remote. There is no available exploit.
A vulnerability identified as critical has been detected in Wekan up to 9.31. This vulnerability affects the function GroupRoutineOnLogin of the file packages/wekan-oidc/oidc_server.js of the component OIDC Server. Performing a manipulation results in improper authorization.
This vulnerability is reported as CVE-2026-53444. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability categorized as critical has been discovered in Wekan up to 9.31. This affects the function onCreateUser of the file server/models/users.js of the component Accounts. Such manipulation leads to improper authentication.
This vulnerability is documented as CVE-2026-52893. The attack can be executed remotely. There is not any exploit available.