cve.li

Recent

CVE-2026-78183CWE-787

DBD::Pg version 3.21.0 for Perl has a heap out-of-bounds write in quote_float

Published 2026-08-23 by CPANSec

CVE-2026-78140CWE-1336CWE-791

Dromara UJCMS web-file-template Endpoint WebFileTemplateController.java update special elements in template engine

Published 2026-08-23 by VulDB

CVE-2026-19565CWE-341

Apache::AppSamurai::Util versions through 1.01 for Perl generate predictable session authentication keys from the clock and process id in CreateSessionAuthKey

Published 2026-08-23 by CPANSec

CVE-2026-75922CWE-444CWE-93

Reverse::Proxy versions before 0.04 for Perl allow HTTP request smuggling via a percent-decoded PATH_INFO written unencoded to the upstream request line

Published 2026-08-23 by CPANSec

CVE-2026-9769CWE-674

justhtml before 1.10.0 Denial of Service via deeply nested HTML

Published 2026-08-23 by VulnCheck

CVE-2026-8630CWE-79

justhtml before 1.12.0 Mutation XSS via Raw Text Elements

Published 2026-08-23 by VulnCheck

CVE-2026-8445CWE-79

justhtml before 1.12.0 Sanitizer Bypass via Markdown

Published 2026-08-23 by VulnCheck

CVE-2026-7808CWE-20

justhtml before 1.16.0 Multiple Security Issues via Sanitization

Published 2026-08-23 by VulnCheck

CVE-2026-77088CWE-79

justhtml 0.9.0 through 1.21.0 Cross-Site Scripting via code-span

Published 2026-08-23 by VulnCheck

CVE-2026-74793CWE-79

justhtml before 3.11.0 XSS via selectedcontent projection

Published 2026-08-23 by VulnCheck

Load more ↓