最新漏洞情报100

CVE & PoC Alerts in Real Time

praisonai-platform: Any workspace member can delete the entire workspace via DELETE /workspaces/{id}

CVE-2026-47412RCE2026-06-01

praisonai-platform: Issue endpoints accept any issue_id without workspace ownership check, cross-workspace read/update/delete IDOR

CVE-2026-47415RCE2026-06-01

praisonai-platform: Any workspace member can add arbitrary user as owner via POST /workspaces/{id}/members

CVE-2026-47413RCE2026-06-01

praisonai-platform: Comment endpoints accept any issue_id without workspace ownership check, cross-workspace comment read and post IDOR

CVE-2026-47417RCE2026-06-01

praisonai-platform: Project endpoints accept any project_id without workspace ownership check, cross-workspace read/update/delete IDOR

CVE-2026-47418RCE2026-06-01

Vitest browser mode serves unsanitized otelCarrier query parameter as inline script

CVE-2026-47428RCE2026-06-01

When Vitest UI server is listening, arbitrary file can be read and executed

CVE-2026-47429RCE2026-06-01

DOMPurify XSS via selectedcontent re-clone

CVE-2026-47423RCE2026-06-01

Nezha's authenticated agents can forge service-monitor results for other users' services

CVE-2026-48119RCE2026-06-01

@agenticmail/mcp Missing Authentication for Critical Function

RCE2026-06-01

pip 安全漏洞

CVE-2026-86432026-05-30

WordPress plugin Spectra Gutenberg Blocks 安全漏洞

2026-05-30

praisonai-platform: Any workspace member can promote themselves or others to owner via PATCH /workspaces/{id}/members/{user_id}

CVE-2026-47416RCE2026-05-29

praisonai-platform: Missing authorization on member removal enables full workspace takeover by any user regardless of role

CVE-2026-47409RCE2026-05-29

praisonai-platform: Label endpoints' unchecked label_id/issue_id enable cross-workspace label IDOR (edit, delete, link)

CVE-2026-47414RCE2026-05-29

praisonai-platform: IDOR in dependency endpoints allows cross-workspace issue linking, reading, and deletion due to missing ownership checks

CVE-2026-47406RCE2026-05-29

praisonai-platform: JWT signing key defaults to hardcoded "dev-secret-change-me", allowing token forgery for any user when PLATFORM_ENV is unset

CVE-2026-47410RCE2026-05-29

PraisonAI Platform: Missing role checks let any workspace member become owner and control workspace membership

CVE-2026-47405RCE2026-05-29

PraisonAI Platform workspace-scoped routes allow cross-workspace object access by global object ID

CVE-2026-47399RCE2026-05-29

PraisonAI Platform has a cross-workspace IDOR + member-role privilege escalation

CVE-2026-47407RCE2026-05-29

PraisonAI has Cross-Workspace IDOR and Privilege Escalation via Platform API

CVE-2026-48169RCE2026-05-29

PraisonAI has an Arbitrary File Write in Python API

CVE-2026-47397RCE2026-05-29

PraisonAI's unauthenticated A2A official example can reach real LLM-driven `eval()` tool execution

CVE-2026-47391RCE2026-05-29

PraisonAI vulnerable to unauthenticated arbitrary file read via MCP workflow.show, workflow.validate, deploy.validate

CVE-2026-47394RCE2026-05-29

PraisonAI vulnerable to sandbox escape via `print.__self__` builtins module leak in `execute_code` (subprocess mode)

CVE-2026-47392RCE2026-05-29

PraisonAI `deploy --type api` emits a Flask server with authentication disabled by default

CVE-2026-47393RCE2026-05-29

PraisonAI call server exposes unauthenticated agent listing, invocation, and deletion when CALL_SERVER_TOKEN is unset

CVE-2026-47396RCE2026-05-29

PraisonAI: Arbitrary code execution via unguarded `spec.loader.exec_module` in `agents_generator.py` - sibling of CVE-2026-44334

CVE-2026-47398RCE2026-05-29

formie's unauthenticated front-end submission editing can overwrite existing submissions

CVE-2026-47266RCE2026-05-29

stigmem-node's federation peer registration lacked explicit out-of-band approval

RCE2026-05-29

stigmem-node's unsigned plugin override could be enabled without a second explicit acknowledgment

RCE2026-05-29

stigmem-node's federation insecure transport settings may allow non-loopback cleartext federation

RCE2026-05-29

stigmem-node's Postgres schema identifier handling required defensive quoting

RCE2026-05-29

stigmem-node's federation peer token timestamp validation may reject valid peer tokens

RCE2026-05-29

stigmem-node: Auth-disabled deployments may grant broad anonymous access outside loopback

RCE2026-05-29

Admidio has IDOR in `documents-files.php` `mode=move_save` that lets any folder-uploader exfiltrate files from private folders

CVE-2026-47231RCE2026-05-29

ouroboros-ai Vulnerable to Remote Code Execution via Untrusted Project-Directory .env

CVE-2026-47211RCE2026-05-29

authentik's XML Signature Wrapping in SAML Source ACS allows authentication as arbitrary federated user

CVE-2026-47201RCE2026-05-29

CC-Tweaked has an SSRF Protection Bypass with NAT64

CVE-2026-47695RCE2026-05-29

Koel Vulnerable to SSRF via Podcast Episode Enclosure URLs

CVE-2026-47260RCE2026-05-29

russh: Post-decompression SSH packet size was not bounded, allowing remote oversized compressed packets

CVE-2026-46702RCE2026-05-29

AgenticMail API/storage and outbound relay hardening fixes

CVE-2026-47255RCE2026-05-29

ezsystems/ezpublish-legacy has a SQL injection in dfscleanup

CVE-2026-38739RCE2026-05-29

NodeVM network builtin exclusions bypass via internal _http_client and _http_server

CVE-2026-47139RCE2026-05-29

NodeVM builtin denylist bypass via process and inspector/promises allows host code execution

CVE-2026-47140RCE2026-05-29

ExifReader is vulnerable to denial of service via crafted ICC `mluc` tag

CVE-2026-8813RCE2026-05-29

vm2 sandbox escape via JSPI-backed Promise `.finally()` species bypass

CVE-2026-47210RCE2026-05-29

vm2 has a CVE-2023-37903 patch bypass: nesting:true without explicit require still allows full RCE

CVE-2026-47137RCE2026-05-29

vm2's Bridge Proxy set trap ignores receiver parameter, enabling host object property injection via prototype chain

CVE-2026-47209RCE2026-05-29

vm2 has a sandbox escape via unblocked cross-realm Symbol.for keys + missing bridge write-trap symbol checks

CVE-2026-47135RCE2026-05-29

vm2 is Vulnerable to Sandbox Breakout Through Promise Species

CVE-2026-47208RCE2026-05-29

vm2 has a Sandbox Escape issue

CVE-2026-47131RCE2026-05-29

Gotenberg has a Race Condition via Multipart `downloadFrom` Handling

CVE-2026-45742RCE2026-05-29

Gotenberg has an SSRF deny-list bypass in IsPublicIP via IPv6 6to4 / NAT64 / site-local prefixes

CVE-2026-45741RCE2026-05-29

Gotenberg has path traversal in zip entry name via Windows-style separators in upload filename

CVE-2026-44829RCE2026-05-29

axios Vulnerable to Credential Theft and Response Hijacking via Prototype Pollution Gadget in Config Merge

CVE-2026-44495RCE2026-05-29

axios Vulnerable to Full Man-in-the-Middle via Prototype Pollution Gadget in `config.proxy`

CVE-2026-44494RCE2026-05-29

axios's shouldBypassProxy does not recognize IPv4-mapped IPv6 addresses, allowing NO_PROXY bypass (incomplete fix for CVE-2025-62718)

CVE-2026-44492RCE2026-05-29

Froxlor has privilege escalation in SSH key synchronization via symlinked `authorized_keys` path

CVE-2026-41236RCE2026-05-29

Froxlor has an authorization bypass in FTP shell assignment via missing server-side `available_shells` enforcement

CVE-2026-41235RCE2026-05-29

GitHub CLI has an incorrect authorization header in API requests to TUF repository mirrors via `gh attestation`, `gh release verify`, and `gh release verify-asset` commands

CVE-2026-48501RCE2026-05-29

HaxCMS has a stored Cross-Site Scripting (XSS) bypass in its saveNode endpoint

CVE-2026-48527RCE2026-05-29

FreePBX 信任管理问题漏洞

2026-05-29

Flippercode WP Maps Pro权限提升漏洞

2026-05-29

Kubeflow Dashboard /api/workgroup/env-info 未授权访问漏洞

未授权访问2026-05-29

SecurePoint UTM /spcgi.cgi 信息泄露漏洞(CVE-2023-22620)

CVE-2023-22620信息泄露2026-05-29

Structurizr /login 默认口令漏洞

默认口令2026-05-29

AIClient2API /api/login 默认口令漏洞

默认口令2026-05-29

Yacht /api/auth/login 默认口令漏洞

默认口令2026-05-29

openSIS-Classic /ResetUserInfo.php SQL 注入漏洞(CVE-2024-51211)

CVE-2024-51211SQL注入2026-05-29

BECN DATAGERRY /rest/users/1/settings/ 权限绕过漏洞(CVE-2024-46627)

CVE-2024-46627权限绕过2026-05-29

AudioIgniter / 信息泄露漏洞(CVE-2026-8679)

CVE-2026-8679信息泄露2026-05-29

全程云OA /OA/SMS/download.ashx 文件读取漏洞

文件读取2026-05-29

全程云OA /OA/Common/API/Huawei.asmx SQL 注入漏洞

SQL注入2026-05-29

天地伟业 /Easy7/rest/itsFacility/query SQL 注入漏洞

SQL注入2026-05-29

AJ-Report积木报表 /dataSet/testTransform;swagger-ui 代码执行漏洞 (CVE-2024-7314)

CVE-2024-7314代码执行2026-05-29

金和OA /C6/Jhsoft.Web.departments/GetTreeDate.aspx SQL 注入漏洞(CVE-2025-10090)

CVE-2025-10090SQL注入2026-05-29

Drupal core /jsonapi/node/article SQL 注入漏洞(CVE-2026-9082)

CVE-2026-9082SQL注入2026-05-29

福建科立讯通信指挥调度管理平台 /api/client/fax/send_fax.php 命令执行漏洞

命令执行2026-05-29

心理云CT系统 /DataSyncManage/DataSync/GetGridJson 信息泄露漏洞

信息泄露2026-05-29

智慧票务管理系统 /book/tickettypeindex.action 代码执行漏洞

代码执行2026-05-29

易达科技ECMS /api/data/getData 信息泄露漏洞

信息泄露2026-05-29

索贝 template/api/styleList/3 未授权访问漏洞

未授权访问2026-05-29

智联云采 SRM2.0 /a/sys/sysMessage/statusList SQL 注入漏洞

SQL注入2026-05-29

易宝OA /api/files/DownloadFile2 文件读取漏洞

文件读取2026-05-29

锐明技术 Crocus系统 /Home.do GetUserInfo 信息泄露漏洞

信息泄露2026-05-29

CyberPower /api/v1/ndconfig SQL 注入漏洞 (CVE-2024-32739)

CVE-2024-32739SQL注入2026-05-29

大华智慧园区综合管理平台 /portal/itc/attachment_downloadByUrlAtt.action 文件读取漏洞

文件读取2026-05-29

昂捷ERP /EnjoyRMIS_WS/WS/ReportTool/cwsqry.asmx GetChildGroupSql1 SQL 注入漏洞

SQL注入2026-05-29

昂捷ERP /EnjoyRMIS_WS/ 目录遍历漏洞

目录遍历2026-05-29

飞企互联 FE企业运营管理平台 /loginService.fe 权限绕过漏洞

权限绕过2026-05-29

Apache ActiveMQ Artemis /console/auth/login 默认口令漏洞

默认口令2026-05-29

AnteeoWMS /default.aspx SQL 注入漏洞(CVE-2024-44349)

CVE-2024-44349SQL注入2026-05-29

Alibaba Canal /api/v1/user/login 默认口令漏洞

默认口令2026-05-29

哪吒监控面板 /api/v1/login 默认口令漏洞

默认口令2026-05-29

宏景 eHR /services/HrChangeInfoService XML 外部实体注入漏洞

XML外部实体注入2026-05-29

科荣AIO管理系统 /ReportServlet getFileList 目录遍历漏洞

目录遍历2026-05-29

Arcane Has an Authenticated Arbitrary Host File Read via Docker Compose Include Directives

CVE-2026-47179RCE2026-05-28

Dulwich Vulnerable to Command Injection via Merge Driver Path

CVE-2026-42563RCE2026-05-28

Dulwich has an arbitrary file write via NTFS-hostile tree entries on Windows

CVE-2026-42305RCE2026-05-28