Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 4 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-24055 Langfuse Slack OAuth Installation Endpoint Lacks Authentication, Enabling Arbitrary Project Linking langfuselangfuse--2026-01-22 03:07:04 Deep Dive
CVE-2025-65107 Langfuse SSO Account Takeover via CSRF or phishing attack langfuselangfuse Medium 6.5 2025-11-21 21:49:19 Deep Dive
CVE-2025-64504 Langfuse vulnerable to cross‑organization enumeration of member & invitation lists via project membership APIs langfuselangfuse Medium 5.0 2025-11-10 21:51:37 Deep Dive
CVE-2025-9799 Langfuse Webhook promptRouter.ts promptChangeEventSourcing server-side request forgery -Langfuse Medium 5.0 2025-09-01 22:02:09 Deep Dive