Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-08-30 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2026-81322 | ash-project ash_cloak up to 0.3.x AshCloak.Transformers.SetUpEncryption information disclosure (EUVD-2026-68282)
A vulnerability was found in ash-project ash_cloak up to 0.3.x and classified as problematic. Affected is an unknown function of the component AshCloak.Transformers.SetUpEncryption. Executing a manipulation can lead to information disclosur
CVE-2026-81319 | ash-project ash_cloak up to 0.3.x AshCloak.Calculations.Decrypt deserialization (EUVD-2026-68281)
A vulnerability was found in ash-project ash_cloak up to 0.3.x. It has been rated as problematic. Affected is the function AshCloak.Calculations.Decrypt. The manipulation leads to deserialization. This vulnerability is uniquely identified a
CVE-2026-82556 | Forgejo up to 15.0.4 Repository Migration is_migrate_allowed.go net.LookupIP server-side request forgery (Issue 13433 / EUVD-2026-68278)
A vulnerability has been found in Forgejo up to 15.0.4 and classified as critical. This issue affects the function net.LookupIP of the file services/migrations/allowlist/is_migrate_allowed.go of the component Repository Migration Handler. P
CVE-2026-81643 | ash-project ash_graphql up to 1.10.x Subscription Batcher AshGraphql.Subscription.Batcher.do_send improper authorization (EUVD-2026-68284)
A vulnerability has been found in ash-project ash_graphql up to 1.10.x and classified as problematic. This impacts the function AshGraphql.Subscription.Batcher.do_send of the component Subscription Batcher. Performing a manipulation results
CVE-2026-82367 | ash-project ash_graphql up to 1.10.0 Subscription Batcher AshGraphql.Subscription.Batcher.do_send information disclosure (EUVD-2026-68283)
A vulnerability, which was classified as problematic, was found in ash-project ash_graphql up to 1.10.0. This affects the function AshGraphql.Subscription.Batcher.do_send of the component Subscription Batcher. Such manipulation leads to inf
CVE-2026-81633 | ash-project ash_graphql up to 1.10.x Relay Node AshGraphql.Graphql.Resolver.resolve_node input validation (EUVD-2026-68285)
A vulnerability, which was classified as critical, has been found in ash-project ash_graphql up to 1.10.x. The impacted element is the function AshGraphql.Graphql.Resolver.resolve_node of the component Relay Node. This manipulation causes i
CVE-2026-81636 | ash-project ash_graphql up to 1.10.x Query Complexity AshGraphql.Graphql.Resolver.query_complexity allocation of resources (EUVD-2026-68286)
A vulnerability described as problematic has been identified in ash-project ash_graphql up to 1.10.x. This issue affects the function AshGraphql.Graphql.Resolver.query_complexity of the component Query Complexity. Executing a manipulation c
CVE-2026-80223 | ash-project ash_graphql up to 1.10.x Subscription Resolver Ash.can privileges management (EUVD-2026-68287)
A vulnerability classified as problematic was found in ash-project ash_graphql up to 1.10.x. The affected element is the function Ash.can of the component Subscription Resolver. The manipulation results in improper privilege management. Thi
CVE-2026-78693 | ash-project ash_graphql up to 1.10.x Handler AshGraphql.Errors build_error_path information disclosure (EUVD-2026-68288)
A vulnerability classified as problematic has been found in ash-project ash_graphql up to 1.10.x. Impacted is the function build_error_path of the file AshGraphql.Errors of the component Handler. The manipulation leads to information disclo
CVE-2026-82587 | Open5GS up to 2.7.7 AMF src/amf/namf-handler.c amf_namf_comm_decode_ue_mm_context_list ueContext.mmContextList[*].allowedNssai memory corruption (Issue 4398 / EUVD-2026-68289)
A vulnerability classified as problematic has been found in Open5GS up to 2.7.7. This vulnerability affects the function amf_namf_comm_decode_ue_mm_context_list of the file src/amf/namf-handler.c of the component AMF. This manipulation of t
CVE-2026-64194 | NLNETLABS Net::DNS up to 1.55 Decode decode wire denial of service (EUVD-2026-46052)
A vulnerability marked as problematic has been reported in NLNETLABS Net::DNS up to 1.55. The affected element is the function Net::DNS::DomainName::decode of the component Decode. Performing a manipulation of the argument wire results in d
CVE-2026-56718 | AJCloud AJY IPC prior 01.10715.11.37 jdbhttpd web service path traversal (EUVD-2026-68290)
A vulnerability was found in AJCloud AJY IPC. It has been classified as problematic. Affected by this vulnerability is an unknown functionality of the component jdbhttpd web service. The manipulation leads to path traversal. This vulnerabil
CVE-2026-71954 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 formL2tpv3ConfigSetup tunnelid/sessionid command injection
A vulnerability has been found in D-Link DWR-M961 up to 1.1.5_C1_202607071107 and classified as very critical. Affected by this issue is some unknown functionality of the file /boafrm/formL2tpv3ConfigSetup of the component formL2tpv3ConfigS
CVE-2026-71955 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 Wsc interface /boafrm/formWsc localPin/targetAPSsid/peerPin/peerRptPin command injection
A vulnerability was found in D-Link DWR-M961 up to 1.1.5_C1_202607071107 and classified as very critical. This affects an unknown part of the file /boafrm/formWsc of the component Wsc interface. Executing a manipulation of the argument loca
CVE-2026-19017 | HashiCorp Consul/Consul Enterprise path traversal (Nessus ID 333566)
A vulnerability was found in HashiCorp Consul and Consul Enterprise and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation results in path traversal. This vulnerability is known as CVE-20
CVE-2026-71953 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 Ntp interface /boafrm/formNtp ntpServerIp1 command injection
A vulnerability, which was classified as very critical, was found in D-Link DWR-M961 up to 1.1.5_C1_202607071107. Affected by this vulnerability is an unknown functionality of the file /boafrm/formNtp of the component Ntp interface. Such ma
CVE-2026-71949 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 USSD Setup /boafrm/formUSSDSetup ussdValue/selectMenuValue command injection
A vulnerability described as very critical has been identified in D-Link DWR-M961 up to 1.1.5_C1_202607071107. The impacted element is an unknown function of the file /boafrm/formUSSDSetup of the component USSD Setup. Executing a manipulati
CVE-2026-71948 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 formDebugDiagnosticRun interface host command injection
A vulnerability marked as very critical has been reported in D-Link DWR-M961 up to 1.1.5_C1_202607071107. The affected element is an unknown function of the file /boafrm/formDebugDiagnosticRun of the component formDebugDiagnosticRun interfa
CVE-2026-71945 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 LtefotaUpgradeFibocom formLtefotaUpgradeFibocom fota_url command injection
A vulnerability categorized as very critical has been discovered in D-Link DWR-M961 up to 1.1.5_C1_202607071107. This vulnerability affects unknown code of the file /boafrm/formLtefotaUpgradeFibocom of the component LtefotaUpgradeFibocom. T
CVE-2026-71944 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 LTE Firmware Upgrade Interface formLtefotaUpgradeQuectel fota_url command injection (WID-SEC-2026-2706)
A vulnerability was found in D-Link DWR-M961 up to 1.1.5_C1_202607071107. It has been rated as very critical. This affects an unknown part of the file /boafrm/formLtefotaUpgradeQuectel of the component LTE Firmware Upgrade Interface. The ma
CVE-2026-66151 | SonicWall Global VPN Client up to 4.10.8.1108 Driver SWIPsec.sys out-of-bounds (WID-SEC-2026-2714)
A vulnerability, which was classified as problematic, was found in SonicWall Global VPN Client up to 4.10.8.1108. Affected by this issue is some unknown functionality of the file SWIPsec.sys of the component Driver. The manipulation results
CVE-2026-19113 | HashiCorp Consul/Consul Enterprise up to 2.0.2 HTTP API Endpoint resource consumption (Nessus ID 333557)
A vulnerability was found in HashiCorp Consul and Consul Enterprise up to 2.0.2. It has been classified as problematic. Affected by this issue is some unknown functionality of the component HTTP API Endpoint. This manipulation causes resour
Gitea-Fix gegen RCE: 8.393 exponierte Server nach CISA-Frist im Angriff
LONDON (IT BOLTWISE) – Angreifer nutzen offenbar aktiv eine kritische RCE-Schwachstelle in Gitea über den diffpatch-Endpunkt. CISA hat CVE-2026-60004 bereits am 25. August in das Known-Exploited-Vulnerabilities-Katalogwerk aufgenommen, doch
Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Unpatched Zimbra servers are falling to CVE-2026-73570 attacks At least 274 internet-facing Zimbra instances have been compromised by unknown
CVE-2026-62878: <b>Windows</b>-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider
Windows DNS Server: CVE-2026-62878 mit CVSS 9,8 gilt als wurmfähig. Fakten, betroffene Versionen und Sofortmaßnahmen für Admins. Weiterlesen
CVE-2026-62878: <b>Windows</b>-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider
Windows DNS Server: CVE-2026-62878 mit CVSS 9,8 gilt als wurmfähig. Fakten, betroffene Versionen und Sofortmaßnahmen für Admins. Weiterlesen
CVE-2026-62878: Windows-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider
CVE-2026-62878: Windows-DNS-Lücke, CVSS 9,8, wurmfähig. Elias Virtanen; August 30, 2026; Cybersicherheit · Elias ... Weiterlesen
CISA warnt: Ausnutzung kritischer ownCloud-Schwachstelle bei Datenabzug aus Forschungseinrichtungen
PHILIPPINEN / LONDON (IT BOLTWISE) – Die US-Behörde CISA hat die ownCloud-Schwachstelle CVE-2023-49105 in den Known Exploited Vulnerabilities (KEV)-Katalog aufgenommen, nachdem Berichte von aktiver Ausnutzung bekannt wurden. Die Lücke ermög
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Path Traversal Flaw Enables Remote Code Execution via Git Hooks
A critical path traversal vulnerability in Gogs, the self-hosted Git service, could let authenticated attackers achieve remote code execution by planting malicious Git hooks outside the intended repository storage directory. Tracked as CVE-
CISA nimmt ownCloud-Sicherheitslücke in KEV auf: Angriff auf PH-Labor
LONDON (IT BOLTWISE) – Die US-Behörde CISA hat die ownCloud-Schwachstelle CVE-2023-49105 in den KEV-Katalog (Known Exploited Vulnerabilities) aufgenommen. Die Lücke (CVSS 9,8) betrifft einen WebDAV-Authentifizierungs-Bypass und kann Dateien
CVE-2021-41259 | DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.
U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the
U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the
Unitree G1 EDU: Zwei RCE-Ketten per Chat-Interface und BLE bedrohen Root-Rechte
LONDON (IT BOLTWISE) – Zwei getrennte Root-Remote-Code-Execution-Ketten gefährden offenbar die Unitree G1 EDU. Eine der Routen nutzt einen netznahen Weg über chat_go und bashrunner, die andere startet über BLE-Nähe und führt später bis in d
ZBT-Router: Zwei neue Firmware-Implants geben Root-Zugriff ohne Authentifizierung
LONDON (IT BOLTWISE) – Zwei zuvor undokumentierte Firmware-Implants in ZBT-Routern ermöglichen einem Angreifer ohne Authentifizierung Root-Rechte auf betroffenen Geräten. Die Komponenten SPEAKINGSTONE und DARKLANTERN tragen die CVE-2026-742
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek. W
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek. W
CVE-2026-5953 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.
CVE-2026-5800 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 28082026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 280820
CVE-2026-82324 | A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlanes) is zero. This causes a row size mismatch that bypasses memory bounds checking, resulting in heap out-of-bounds reads. This issue can result in an application crash, leading to a denial of service or a limited informatio
A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlan
CVE-2026-15603 | morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), and U+2029 (Paragraph Separator). An unauthenticated remote client can place these characters in an attacker-controlled log token, for example a Basic auth username surfaced through the remote-user token, so that Unicode-awar
morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), an
CVE-2026-19412 | This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with access to the local network could exploit this vulnerability by obtaining the hardcoded authentication information from the firmware. Successful exploitation of this vulnerability could allow the attacker to gain unauthorize
This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with acces
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
CVE-2026-13761 | Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.
Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.
CVE-2026-58107 | CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can submit a highly compressed payload that expands to a significantly larger byte sequence. Because the entire decompressed output is materialized in memory before being written to a temporary file, a sufficiently large payload
CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can s
CVE-2026-58106 | CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size passed down is the full PATH_MAX. safe_strcpy() is strncpy(), which NUL-pads the destination out to the whole n, so this site writes 4096 bytes into the 4094 that remain — a 2-byte stack overflow on every invocation, indepe
CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size
CVE-2026-82181 | Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.
Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.
CVE-2026-82078 | An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application instantiates database driver classes based on configurable driver names without validating against an allowlist of approved drivers. If an attacker can manipulate system configuration parameters, this enables the execution of arbitrary Java bytecode residing on the application classpath under the security context of the Pap
An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application instantiates database driver classes based on configurable driver names without validating against an
CVE-2026-81578 | An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions, unauthenticated remote requests targeting administrative functions can trigger backend actions prior to the completion of access validation checks. This allows an unauthenticated remote attacker to modify certain system configurations.
An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions, unauthenticated remote requests targeting administrative functions can trigger backend actions prior
CVE-2026-82112 | A flaw has been found in houtini-ai houtini-lm up to 2.13.2. The impacted element is an unknown function of the file src/index.ts of the component code_task_files. Executing a manipulation can lead to path traversal. The attack can be launched remotely. This patch is called 35d97bca0531894da36a85aedb95312da1bd5b7a. It is best practice to apply a patch to resolve this issue.
A flaw has been found in houtini-ai houtini-lm up to 2.13.2. The impacted element is an unknown function of the file src/index.ts of the component code_task_files. Executing a manipulation can lead to path traversal. The attack can be launc
CVE-2026-5096 | The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.4.4. This is due to the `load_previous_field_value()` method in `class-evf-form-task.php` accepting arbitrary URL values from `$_POST` data for upload fields without domain restriction, which are then passed to `wp_remote_head()` in the `get_local_file_size()` method of `class-evf-form-fields-upload.php`. This makes it possible for unauth
The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.4.4. This is due to the `load_previous_field_value()` method in `class-evf-form-task.php` accepting arbitrary URL va
CVE-2026-6176 | The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the aggregated review form submission in versions up to and including 5.106.0. This is due to insufficient input sanitization and output escaping on user-supplied review comment text. The plugin accepts review submissions from unauthenticated users through the 'cr_local_forms_submit' AJAX action without sanitizing HTML content before storing it via wp_ins
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the aggregated review form submission in versions up to and including 5.106.0. This is due to insufficient input sanitization and out
CVE-2026-3423 | The Envira Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the gallery 'description' configuration field in all versions up to, and including, 1.12.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses a page displaying the gallery with a description ena
The Envira Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the gallery 'description' configuration field in all versions up to, and including, 1.12.4 due to insufficient input sanitization and output escaping.