|
251
|
6.5 |
MEDIUM
Network
|
-
|
-
|
LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the POST /api/files/images endpoint allows any authenticated user to upload files into any agent's tool…
New
|
CWE-862
Missing Authorization
|
CVE-2026-54027
|
2026-06-27 01:16 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252
|
6.5 |
MEDIUM
Local
|
-
|
-
|
Mattermost versions 10.11.x <= 10.11.18, 11.6.x <= 11.6.3, 11.5.x <= 11.5.6 fail to validate attachment URLs against internal or private IP ranges in the Mattermost Agents plugin MCP server which all…
New
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-4339
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253
|
7.5 |
HIGH
Network
|
-
|
-
|
A flaw in Node.js WebCrypto implementation can crash the process if the input of `subtle.encrypt()` is a multiple of 2GiB.
This vulnerability affects all supported release lines: **Node.js 22**, *…
New
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-48933
|
2026-06-27 01:16 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254
|
7.7 |
HIGH
Network
|
-
|
-
|
A flaw in Node.js TLS hostname handling can cause Node.js unicode dot separator handling can lead to tls wildcard-depth authentication bypass due to resolver and verifier hostname normalization misma…
New
|
CWE-176
Improper Handling of Unicode Encoding
|
CVE-2026-48618
|
2026-06-27 01:16 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255
|
7.1 |
HIGH
Network
|
-
|
-
|
Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. Prior to 2.94.0, the HTML backend has unsafe URI and path handling. This…
New
|
CWE-73 CWE-400
External Control of File Name or Path Uncontrolled Resource Consumption
|
CVE-2026-47214
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256
|
- |
|
-
|
-
|
rtk filters and compresses command outputs before they reach your LLM context. Prior to 0.32.0, RTK (Rust Token Killer) improperly trusts project-local configuration files. RTK automatically loads .r…
New
|
CWE-345 CWE-426
Insufficient Verification of Data Authenticity Untrusted Search Path
|
CVE-2026-45792
|
2026-06-27 01:16 |
2026-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257
|
- |
|
-
|
-
|
Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory read or write outside the permitted range of memory for the host kernel.
A…
New
|
CWE-280
Improper Handling of Insufficient Permissions or Privileges
|
CVE-2026-45195
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.45.0 until 2.91.0, the METS-GBS backend's XML parsing and the inp…
New
|
CWE-409 CWE-611 CWE-776
Improper Handling of Highly Compressed Data (Data Amplification) XXE XML Entity Expansion
|
CVE-2026-44018
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
259
|
3.5 |
LOW
Network
|
-
|
-
|
Mattermost versions 10.11.x <= 10.11.18, 11.6.x <= 11.6.3, 11.5.x <= 11.5.6 fail to properly apply markdown image rendering restrictions to AI bot tool result posts, which allows an authenticated att…
New
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-3472
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
260
|
- |
|
-
|
-
|
A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shader compiler library. On certain platforms, wh…
New
|
CWE-823
Use of Out-of-range Pointer Offset
|
CVE-2026-21734
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|