cve.li

Recent

CVE-2026-104055CWE-532

Monitoring-user password logged in cleartext by postgres_exporter in postgresql VM charm

Published 2026-10-02 by canonical

CVE-2026-75937CWE-78

OS Command Injection in Digi Accelerated Linux (DAL OS)

Published 2026-10-02 by Digi

CVE-2026-82045CWE-89

UTMStack < 11.2.16 JPQL Injection via searchPropertyValues

Published 2026-10-02 by VulnCheck

CVE-2026-104874CWE-401

Multidict: Reference leak in CIMultiDict/MultiDict items-view union and subtraction

Published 2026-10-02 by GitHub_M

CVE-2026-82044CWE-918

UTMStack < 11.2.16 Server-Side Request Forgery via downloadPdf

Published 2026-10-02 by VulnCheck

CVE-2026-82043CWE-204

UTMStack < 11.2.16 Account Enumeration via Password Reset Endpoint

Published 2026-10-02 by VulnCheck

CVE-2026-82042CWE-306

UTMStack < 11.2.16 Authentication Bypass via InternalApiKeyFilter

Published 2026-10-02 by VulnCheck

CVE-2026-82041CWE-862

UTMStack < 11.2.16 Missing Authorization via Command WebSocket

Published 2026-10-02 by VulnCheck

CVE-2026-104019CWE-78

OS command injection in the Studio Space startup validation script in Amazon SageMaker Distribution when running on Amazon SageMaker Unified Studio

Published 2026-10-02 by AMZN

CVE-2026-104873CWE-863

LangGraph SDK custom auth silently ignores actions= on resource decorators

Published 2026-10-02 by GitHub_M

Load more ↓