Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-08-30 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2026-79671 | lin-snow Ech0 up to 4.2.1 Webhook webhook_setting_service.go validateWebhookURL server-side request forgery
A vulnerability categorized as problematic has been discovered in lin-snow Ech0 up to 4.2.1. Affected by this vulnerability is the function validateWebhookURL of the file webhook_setting_service.go of the component Webhook. Executing a mani
CVE-2026-79671 | lin-snow Ech0 up to 4.2.1 Webhook webhook_setting_service.go validateWebhookURL server-side request forgery
A vulnerability categorized as problematic has been discovered in lin-snow Ech0 up to 4.2.1. Affected by this vulnerability is the function validateWebhookURL of the file webhook_setting_service.go of the component Webhook. Executing a mani
CVE-2026-6464 | PostgreSQL up to 18.4 COPY injection (Nessus ID 341035 / WID-SEC-2026-2844)
A vulnerability classified as critical has been found in PostgreSQL up to 14.23/15.18/16.14/17.10/18.4. This issue affects some unknown processing of the component COPY. This manipulation causes injection. This vulnerability is tracked as C
CVE-2026-6464 | PostgreSQL up to 18.4 COPY injection (Nessus ID 341035 / WID-SEC-2026-2844)
A vulnerability classified as critical has been found in PostgreSQL up to 14.23/15.18/16.14/17.10/18.4. This issue affects some unknown processing of the component COPY. This manipulation causes injection. This vulnerability is tracked as C
CVE-2026-16445 | Red Hat Enterprise Linux NetworkManager command injection
A vulnerability labeled as very critical has been found in Red Hat Enterprise Linux, Hardened Images and OpenShift Container Platform. This affects an unknown part of the component NetworkManager. Executing a manipulation can lead to comman
CVE-2026-6471 | PostgreSQL up to 18.4 Logical Decoding improper authorization (Nessus ID 339174 / WID-SEC-2026-2844)
A vulnerability, which was classified as critical, was found in PostgreSQL up to 14.23/15.18/16.14/17.10/18.4. The impacted element is an unknown function of the component Logical Decoding. Executing a manipulation can lead to improper auth
CVE-2026-77915 | rConfig up to 8.2.12 Registration routes/web.php Auth::routes improper authentication (EUVD-2026-64955)
A vulnerability identified as critical has been detected in rConfig up to 8.2.12. Affected by this issue is the function Auth::routes of the file routes/web.php of the component Registration. Performing a manipulation results in improper au
CVE-2026-6469 | PostgreSQL up to 18.4 privileges management (Nessus ID 341035 / WID-SEC-2026-2844)
A vulnerability classified as problematic was found in PostgreSQL up to 14.23/15.18/16.14/17.10/18.4. Impacted is an unknown function. Such manipulation leads to improper privilege management. This vulnerability is listed as CVE-2026-6469.
CVE-2026-6470 | PostgreSQL up to 18.4 authorization (Nessus ID 341035 / WID-SEC-2026-2844)
A vulnerability categorized as problematic has been discovered in PostgreSQL up to 14.23/15.18/16.14/17.10/18.4. Affected is an unknown function. Such manipulation leads to missing authorization. This vulnerability is uniquely identified as
CVE-2026-77850 | ash-project ash_admin up to 1.3.0 Typeahead Phoenix.HTML.raw cross site scripting (EUVD-2026-68326)
A vulnerability was found in ash-project ash_admin up to 1.3.0. It has been declared as problematic. This issue affects the function Phoenix.HTML.raw of the component Typeahead. Such manipulation leads to cross site scripting. This vulnerab
CVE-2026-77850 | ash-project ash_admin up to 1.3.0 Typeahead Phoenix.HTML.raw cross site scripting (EUVD-2026-68326)
A vulnerability was found in ash-project ash_admin up to 1.3.0. It has been declared as problematic. This issue affects the function Phoenix.HTML.raw of the component Typeahead. Such manipulation leads to cross site scripting. This vulnerab
CVE-2026-75757 | ash-project ash_admin up to 1.3.0 Cookie improper authorization (EUVD-2026-68324)
A vulnerability has been found in ash-project ash_admin up to 1.3.0 and classified as problematic. Affected by this issue is some unknown functionality of the component Cookie. The manipulation leads to improper authorization. This vulnerab
CVE-2026-75757 | ash-project ash_admin up to 1.3.0 Cookie improper authorization (EUVD-2026-68324)
A vulnerability has been found in ash-project ash_admin up to 1.3.0 and classified as problematic. Affected by this issue is some unknown functionality of the component Cookie. The manipulation leads to improper authorization. This vulnerab
CVE-2026-82722 | ash-project ash_admin up to 1.3.0 LiveView Event AshAdmin.Components.Resource.Show Module.concat/String.to_atom allocation of resources (EUVD-2026-68325)
A vulnerability, which was classified as problematic, was found in ash-project ash_admin up to 1.3.0. Affected by this vulnerability is the function Module.concat/String.to_atom of the file AshAdmin.PageLive/AshAdmin.Components.Resource.Sho
CVE-2026-82605 | BareBones BBEdit up to 15.5.5 Lasso Language Tokenizer infinite loop (EUVD-2026-68323)
A vulnerability labeled as problematic has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. This vulnerability is d
CVE-2026-82722 | ash-project ash_admin up to 1.3.0 LiveView Event AshAdmin.Components.Resource.Show Module.concat/String.to_atom allocation of resources (EUVD-2026-68325)
A vulnerability, which was classified as problematic, was found in ash-project ash_admin up to 1.3.0. Affected by this vulnerability is the function Module.concat/String.to_atom of the file AshAdmin.PageLive/AshAdmin.Components.Resource.Sho
CVE-2026-82605 | BareBones BBEdit up to 15.5.5 Lasso Language Tokenizer infinite loop (EUVD-2026-68323)
A vulnerability labeled as problematic has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. This vulnerability is d
CVE-2026-82607 | Cozmoslabs Profile Builder Plugin up to 3.16.1 on WordPress Avatar Simple Upload AJAX /wp-admin/admin-ajax.php wppb_ajax_simple_avatar unrestricted upload (EUVD-2026-68329)
A vulnerability marked as critical has been reported in Cozmoslabs Profile Builder Plugin up to 3.16.1 on WordPress. The impacted element is the function wppb_ajax_simple_avatar of the file /wp-admin/admin-ajax.php of the component Avatar S
CVE-2026-81852 | ash-project ash_admin up to 1.3.0 CSP Nonce Generation AshAdmin.Router.ash_admin csp_nonce_assign_key random values (EUVD-2026-68328)
A vulnerability was found in ash-project ash_admin up to 1.3.0. It has been classified as problematic. This vulnerability affects the function AshAdmin.Router.ash_admin of the component CSP Nonce Generation. This manipulation of the argumen
CVE-2026-82607 | Cozmoslabs Profile Builder Plugin up to 3.16.1 on WordPress Avatar Simple Upload AJAX /wp-admin/admin-ajax.php wppb_ajax_simple_avatar unrestricted upload (EUVD-2026-68329)
A vulnerability marked as critical has been reported in Cozmoslabs Profile Builder Plugin up to 3.16.1 on WordPress. The impacted element is the function wppb_ajax_simple_avatar of the file /wp-admin/admin-ajax.php of the component Avatar S
CVE-2026-81852 | ash-project ash_admin up to 1.3.0 CSP Nonce Generation AshAdmin.Router.ash_admin csp_nonce_assign_key random values (EUVD-2026-68328)
A vulnerability was found in ash-project ash_admin up to 1.3.0. It has been classified as problematic. This vulnerability affects the function AshAdmin.Router.ash_admin of the component CSP Nonce Generation. This manipulation of the argumen
CVE-2026-82681 | ash-project ash_admin up to 1.3.0 Table/DataTable/Show injection (EUVD-2026-68327)
A vulnerability was found in ash-project ash_admin up to 1.3.0 and classified as problematic. This affects an unknown part of the component Table/DataTable/Show. The manipulation results in injection. This vulnerability is reported as CVE-2
CVE-2026-82681 | ash-project ash_admin up to 1.3.0 Table/DataTable/Show injection (EUVD-2026-68327)
A vulnerability was found in ash-project ash_admin up to 1.3.0 and classified as problematic. This affects an unknown part of the component Table/DataTable/Show. The manipulation results in injection. This vulnerability is reported as CVE-2
CVE-2026-82673 | ash-project ash_admin 0.13.7/1.3.0 File Upload client_name path traversal (EUVD-2026-68331)
A vulnerability categorized as problematic has been discovered in ash-project ash_admin 0.13.7/1.3.0. The affected element is the function AshAdmin.Components.Resource.Form.consume_file_uploads of the component File Upload. Executing a mani
CVE-2026-82673 | ash-project ash_admin 0.13.7/1.3.0 File Upload client_name path traversal (EUVD-2026-68331)
A vulnerability categorized as problematic has been discovered in ash-project ash_admin 0.13.7/1.3.0. The affected element is the function AshAdmin.Components.Resource.Form.consume_file_uploads of the component File Upload. Executing a mani
CVE-2026-81853 | ash-project ash_admin up to 1.3.0 Helpers AshAdmin.Helpers.decode_primary_key authorization (EUVD-2026-68330)
A vulnerability was found in ash-project ash_admin up to 1.3.0. It has been rated as problematic. Impacted is the function AshAdmin.Helpers.decode_primary_key of the component Helpers. Performing a manipulation results in authorization bypa
CVE-2026-81853 | ash-project ash_admin up to 1.3.0 Helpers AshAdmin.Helpers.decode_primary_key authorization (EUVD-2026-68330)
A vulnerability was found in ash-project ash_admin up to 1.3.0. It has been rated as problematic. Impacted is the function AshAdmin.Helpers.decode_primary_key of the component Helpers. Performing a manipulation results in authorization bypa
CVE-2026-82608 | Kamailio up to 5.5.0/6.0.7 AVP cxdx_avp.c get_4bytes out-of-bounds (Issue 4816 / EUVD-2026-68332)
A vulnerability described as critical has been identified in Kamailio up to 5.5.0/6.0.7. This affects the function get_4bytes of the file src/modules/ims_registrar_scscf/cxdx_avp.c of the component AVP Handler. Executing a manipulation can
CVE-2026-82608 | Kamailio up to 5.5.0/6.0.7 AVP cxdx_avp.c get_4bytes out-of-bounds (Issue 4816 / EUVD-2026-68332)
A vulnerability described as critical has been identified in Kamailio up to 5.5.0/6.0.7. This affects the function get_4bytes of the file src/modules/ims_registrar_scscf/cxdx_avp.c of the component AVP Handler. Executing a manipulation can
CVE-2026-62878: <b>Windows</b>-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider
Windows DNS Server: CVE-2026-62878 mit CVSS 9,8 gilt als wurmfähig. Fakten, betroffene Versionen und Sofortmaßnahmen für Admins. Weiterlesen
CVE-2026-62878: <b>Windows</b>-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider
Windows DNS Server: CVE-2026-62878 mit CVSS 9,8 gilt als wurmfähig. Fakten, betroffene Versionen und Sofortmaßnahmen für Admins. Weiterlesen
Black Hat Asia 2026 | LLM-Empowered Differential Testing for the Ethereum Infrastructure
YouTube VideoSecuring over $380 billion in digital assets, the Ethereum ecosystem relies entirely on clients to bridge users and the blockchain network. However, this infrastructure remains perilously fragile: the infamous CVE-2020-26241, a
Black Hat Asia 2026 | LLM-Empowered Differential Testing for the Ethereum Infrastructure
YouTube VideoSecuring over $380 billion in digital assets, the Ethereum ecosystem relies entirely on clients to bridge users and the blockchain network. However, this infrastructure remains perilously fragile: the infamous CVE-2020-26241, a
CVE-2021-41259 | DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.
Eight stable kernels with fix for a single vulnerability
Greg Kroah-Hartman has announced the release of the 7.2.2, 7.1.12, 6.18.48, 6.12.107, 6.6.155, 6.1.186, 5.15.219, and 5.10.268 stable kernels. Each of these contains a single fix for a vulnerability (CVE-2026-80590) that allows marking IPv4
CVE-2026-5953 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.
CVE-2026-5800 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 28082026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 280820
CVE-2026-82324 | A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlanes) is zero. This causes a row size mismatch that bypasses memory bounds checking, resulting in heap out-of-bounds reads. This issue can result in an application crash, leading to a denial of service or a limited informatio
A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlan
CVE-2026-15603 | morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), and U+2029 (Paragraph Separator). An unauthenticated remote client can place these characters in an attacker-controlled log token, for example a Basic auth username surfaced through the remote-user token, so that Unicode-awar
morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), an
CVE-2026-19412 | This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with access to the local network could exploit this vulnerability by obtaining the hardcoded authentication information from the firmware. Successful exploitation of this vulnerability could allow the attacker to gain unauthorize
This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with acces
CVE-2026-13761 | Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.
Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.
CVE-2026-58107 | CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can submit a highly compressed payload that expands to a significantly larger byte sequence. Because the entire decompressed output is materialized in memory before being written to a temporary file, a sufficiently large payload
CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can s
CVE-2026-58106 | CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size passed down is the full PATH_MAX. safe_strcpy() is strncpy(), which NUL-pads the destination out to the whole n, so this site writes 4096 bytes into the 4094 that remain — a 2-byte stack overflow on every invocation, indepe
CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size
CVE-2026-82181 | Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.
Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.
CVE-2026-82078 | An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application instantiates database driver classes based on configurable driver names without validating against an allowlist of approved drivers. If an attacker can manipulate system configuration parameters, this enables the execution of arbitrary Java bytecode residing on the application classpath under the security context of the Pap
An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application instantiates database driver classes based on configurable driver names without validating against an
CVE-2026-81578 | An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions, unauthenticated remote requests targeting administrative functions can trigger backend actions prior to the completion of access validation checks. This allows an unauthenticated remote attacker to modify certain system configurations.
An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions, unauthenticated remote requests targeting administrative functions can trigger backend actions prior
CVE-2026-82112 | A flaw has been found in houtini-ai houtini-lm up to 2.13.2. The impacted element is an unknown function of the file src/index.ts of the component code_task_files. Executing a manipulation can lead to path traversal. The attack can be launched remotely. This patch is called 35d97bca0531894da36a85aedb95312da1bd5b7a. It is best practice to apply a patch to resolve this issue.
A flaw has been found in houtini-ai houtini-lm up to 2.13.2. The impacted element is an unknown function of the file src/index.ts of the component code_task_files. Executing a manipulation can lead to path traversal. The attack can be launc
CVE-2026-5096 | The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.4.4. This is due to the `load_previous_field_value()` method in `class-evf-form-task.php` accepting arbitrary URL values from `$_POST` data for upload fields without domain restriction, which are then passed to `wp_remote_head()` in the `get_local_file_size()` method of `class-evf-form-fields-upload.php`. This makes it possible for unauth
The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.4.4. This is due to the `load_previous_field_value()` method in `class-evf-form-task.php` accepting arbitrary URL va
CVE-2026-6176 | The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the aggregated review form submission in versions up to and including 5.106.0. This is due to insufficient input sanitization and output escaping on user-supplied review comment text. The plugin accepts review submissions from unauthenticated users through the 'cr_local_forms_submit' AJAX action without sanitizing HTML content before storing it via wp_ins
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the aggregated review form submission in versions up to and including 5.106.0. This is due to insufficient input sanitization and out
CVE-2026-3423 | The Envira Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the gallery 'description' configuration field in all versions up to, and including, 1.12.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses a page displaying the gallery with a description ena
The Envira Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the gallery 'description' configuration field in all versions up to, and including, 1.12.4 due to insufficient input sanitization and output escaping.
CVE-2026-5934 | The WP Rocket plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.21.0.1. This is due to insufficient input sanitization and output escaping of user-supplied data via the rocket_beacon AJAX endpoint. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
The WP Rocket plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.21.0.1. This is due to insufficient input sanitization and output escaping of user-supplied data via the rocket_beacon AJAX
CVE-2026-75758 | Uncontrolled Recursion vulnerability in the Elixir standard library allows an attacker who controls a list passed to inspect/1, List.to_string/1, or List.to_charlist/1 to exhaust a BEAM node's memory. Inspect.List's charlist branch in lib/elixir/lib/inspect.ex classifies a list as a charlist using List.ascii_printable?/2, which examines only the first :printable_limit (4096 by default) elements, and then calls IO.chardata_to_string/1 on the whole term. A lis
Uncontrolled Recursion vulnerability in the Elixir standard library allows an attacker who controls a list passed to inspect/1, List.to_string/1, or List.to_charlist/1 to exhaust a BEAM node's memory. Inspect.List's charlist branch in lib/
CVE-2026-82111 | A vulnerability was detected in iswalle getnote-mcp up to 1.5.0. The affected element is the function fs.readFileSync of the file src/index.ts of the component upload_image. Performing a manipulation of the argument image_path results in path traversal. The attack can be initiated remotely. The exploit is now public and may be used. Upgrading to version 1.5.1 is sufficient to fix this issue. The patch is named 7f9a215e03575c650d38c8f87fc6d8d363fed80d. Upgradi
A vulnerability was detected in iswalle getnote-mcp up to 1.5.0. The affected element is the function fs.readFileSync of the file src/index.ts of the component upload_image. Performing a manipulation of the argument image_path results in pa
CVE-2026-82260 | SvelteKit (@sveltejs/kit) versions >=2.49.0 and <=2.52.1 with experimental remote functions (experimental.remoteFunctions) and form enabled contain a memory exhaustion vulnerability in remote form deserialization. Malformed form data can cause excessive memory allocation, crashing the server process and resulting in denial of service. Fixed in 2.52.2.
SvelteKit (@sveltejs/kit) versions >=2.49.0 and
CVE-2026-82258 | SvelteKit versions from 2.38.0 before 2.60.1 contain a race condition in query.batch that allows concurrent requests from different users to merge under a single request context. Attackers can exploit specific timing conditions to access sensitive data from other users' concurrent requests.
SvelteKit versions from 2.38.0 before 2.60.1 contain a race condition in query.batch that allows concurrent requests from different users to merge under a single request context. Attackers can exploit specific timing conditions to access se
CVE-2026-82259 | SvelteKit versions from 2.49.0 through 2.53.2 (fixed in 2.53.3) contain a deserialization expansion issue in the experimental form remote function. When an application enables experimental.remoteFunctions and uses the form function to process the files array without validating files.length or individual file sizes, an attacker can submit relatively small inputs that expand into very large file arrays, leading to expensive processing and denial of service.
SvelteKit versions from 2.49.0 through 2.53.2 (fixed in 2.53.3) contain a deserialization expansion issue in the experimental form remote function. When an application enables experimental.remoteFunctions and uses the form function to proce
CVE-2026-82257 | SvelteKit versions before 2.69.1 contain a prototype pollution vulnerability in remote form functions with file input fields that accept arbitrary user-controlled path names. Attackers can manipulate the deletion path to remove methods on the prototype, potentially disabling application functionality.
SvelteKit versions before 2.69.1 contain a prototype pollution vulnerability in remote form functions with file input fields that accept arbitrary user-controlled path names. Attackers can manipulate the deletion path to remove methods on t
CVE-2026-82255 | gitoxide versions from 0.25.4 contain an HTTP credential leak vulnerability in the curl-based transport backend where credentials are sent to attacker-controlled servers after HTTP redirects. The vulnerability occurs because credential validation checks the original URL instead of the effective URL after redirect, allowing attackers to steal authentication tokens through cross-domain redirects or HTTPS-to-HTTP downgrades.
gitoxide versions from 0.25.4 contain an HTTP credential leak vulnerability in the curl-based transport backend where credentials are sent to attacker-controlled servers after HTTP redirects. The vulnerability occurs because credential vali
CVE-2026-82254 | gitoxide before 0.69.0 contains unchecked array indexing in delta application and uncapped allocation from attacker-controlled size headers in gix-pack. Attackers can send crafted pack data during clone or fetch operations to trigger panics or out-of-memory process kills.
gitoxide before 0.69.0 contains unchecked array indexing in delta application and uncapped allocation from attacker-controlled size headers in gix-pack. Attackers can send crafted pack data during clone or fetch operations to trigger panics
CVE-2026-82253 | gitoxide (Rust crates gix <= 0.72.0 and gix-validate <= 0.10.0) contains a path traversal vulnerability. The submodule name validation function in gix-validate only checks the first occurrence of '..' via name.find(b".."), allowing crafted names such as 'a..b/../../../.git/' to bypass the check; additionally this validation is never invoked in production code paths. Combined with a trust inheritance flaw in Submodule::open(), where the parent repository's git
gitoxide (Rust crates gix