|
1031
|
6.5 |
MEDIUM
Network
|
-
|
-
|
LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the POST /api/files/images endpoint allows any authenticated user to upload files into any agent's tool…
|
CWE-862
Missing Authorization
|
CVE-2026-54027
|
2026-06-27 01:16 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1032
|
6.5 |
MEDIUM
Local
|
-
|
-
|
Mattermost versions 10.11.x <= 10.11.18, 11.6.x <= 11.6.3, 11.5.x <= 11.5.6 fail to validate attachment URLs against internal or private IP ranges in the Mattermost Agents plugin MCP server which all…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-4339
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1033
|
7.5 |
HIGH
Network
|
-
|
-
|
A flaw in Node.js WebCrypto implementation can crash the process if the input of `subtle.encrypt()` is a multiple of 2GiB.
This vulnerability affects all supported release lines: **Node.js 22**, *…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-48933
|
2026-06-27 01:16 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1034
|
7.7 |
HIGH
Network
|
-
|
-
|
A flaw in Node.js TLS hostname handling can cause Node.js unicode dot separator handling can lead to tls wildcard-depth authentication bypass due to resolver and verifier hostname normalization misma…
|
CWE-176
Improper Handling of Unicode Encoding
|
CVE-2026-48618
|
2026-06-27 01:16 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1035
|
7.1 |
HIGH
Network
|
-
|
-
|
Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. Prior to 2.94.0, the HTML backend has unsafe URI and path handling. This…
|
CWE-73 CWE-400
External Control of File Name or Path Uncontrolled Resource Consumption
|
CVE-2026-47214
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1036
|
- |
|
-
|
-
|
rtk filters and compresses command outputs before they reach your LLM context. Prior to 0.32.0, RTK (Rust Token Killer) improperly trusts project-local configuration files. RTK automatically loads .r…
|
CWE-345 CWE-426
Insufficient Verification of Data Authenticity Untrusted Search Path
|
CVE-2026-45792
|
2026-06-27 01:16 |
2026-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1037
|
3.5 |
LOW
Network
|
-
|
-
|
Mattermost versions 10.11.x <= 10.11.18, 11.6.x <= 11.6.3, 11.5.x <= 11.5.6 fail to properly apply markdown image rendering restrictions to AI bot tool result posts, which allows an authenticated att…
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-3472
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1038
|
6.5 |
MEDIUM
Network
|
-
|
-
|
The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'after' parameter in all versions up to, and including, 4.5.4 due to in…
|
CWE-89
SQL Injection
|
CVE-2026-13226
|
2026-06-27 01:16 |
2026-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1039
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Contributor Cross Site Scripting (XSS) in Image Carousel <= 1.0.0.41 versions.
|
CWE-79
Cross-site Scripting
|
CVE-2025-68074
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1040
|
7.5 |
HIGH
Network
|
-
|
-
|
Contributor Local File Inclusion in Goya Core < 1.0.9.4 versions.
|
CWE-98
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
|
CVE-2025-68064
|
2026-06-27 01:16 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|