Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Vulnerability List - Page 61

CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-47327 NULL pointer dereference in Ubuntu Linux AppArmor notification handling CanonicalUbuntu Linux Low 3.3 2026-05-28 18:27:21 Deep Dive
CVE-2026-47326 Memory leak in Ubuntu Linux AppArmor large notification response allocation CanonicalUbuntu Linux Medium 5.5 2026-05-28 18:26:58 Deep Dive
CVE-2026-45332 Automad Broken Access Control: unauthenticated exposure of administrator bcrypt password hashes and TOTP secrets via public API endpoint marcantondahmenautomad High 7.5 2026-05-28 18:22:12 Deep Dive
CVE-2026-4944 Hardcoded trust_remote_code=True in vllm-project/vllm Bypasses User Security Control vllm-projectvllm-project/vllm--2026-05-28 18:04:05 Deep Dive
CVE-2026-43979 Local Deep Research: HTML Injection via Unescaped User Input in PDF Export (`pdf_service.py:_markdown_to_html`) LearningCircuitlocal-deep-research Medium 5.0 2026-05-28 17:59:19 Deep Dive
CVE-2026-46526 Local Deep Research: SSRF bypass in `safe_get` LearningCircuitlocal-deep-research Medium 5.0 2026-05-28 17:58:23 Deep Dive
CVE-2026-46509 deepobj: Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') ranfdevdeepobj High 8.2 2026-05-28 17:52:52 Deep Dive
CVE-2026-43898 SandboxJS: Sandbox escape via Function.caller leakage of internal call op nyarivSandboxJS Critical 10.0 2026-05-28 17:50:32 Deep Dive
CVE-2026-45307 Speakr: Open redirect in is_safe_url via parser mismatch on next parameter murtaza-nasirspeakr Medium 6.1 2026-05-28 17:47:22 Deep Dive
CVE-2026-45021 Kuma: Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin kumahqkuma--2026-05-28 17:45:14 Deep Dive
CVE-2026-45311 CodeWhale: run_tests Tool Enables RCE via Malicious Repository Without Approval HmbownCodeWhale Critical 9.6 2026-05-28 17:32:27 Deep Dive
CVE-2026-45310 CodeWhale: SSRF via HTTP Redirect Bypass in fetch_url Tool HmbownCodeWhale High 7.4 2026-05-28 17:30:10 Deep Dive
CVE-2026-45373 CodeWhale: SSRF‌ IPV6 bypass HmbownCodeWhale High 7.4 2026-05-28 17:27:59 Deep Dive
CVE-2026-45374 CodeWhale: task_create Insecure Defaults Enable RCE via Prompt Injection in Project Files HmbownCodeWhale Critical 9.6 2026-05-28 17:26:43 Deep Dive
CVE-2026-45058 electerm: Import unsafe bookmark data could lead to unsafe operation when click local type bookmark electermelecterm--2026-05-28 17:20:42 Deep Dive
CVE-2026-45353 electerm: Local code through electerm's single-instance socket electermelecterm--2026-05-28 17:19:17 Deep Dive
CVE-2026-45787 electerm's encrypt method not safe enough electermelecterm--2026-05-28 17:17:56 Deep Dive
CVE-2026-45306 pyLoad: Incomplete Fix for CVE-2026-33509 -storage_folder Bypass via Session Directory pyloadpyload Medium 6.5 2026-05-28 17:13:00 Deep Dive
CVE-2026-45348 pyLoad: Stored XSS in Downloads view via unsanitized link URL in packages.js template literal pyloadpyload High 8.7 2026-05-28 17:12:20 Deep Dive
CVE-2026-46561 pyLoad: SSRF via HTTP Redirect Bypass in parse_urls API pyloadpyload Medium 5.0 2026-05-28 17:11:29 Deep Dive