Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-61519
  • github.com/liberusoftware/crm-laravel
Liberu CRM 0.9.1 < 10.0.0 Broken Access Control via TeamPolicy::addTeamMember() 13 hours ago
  • Fix available
  • Severity - 8.7 (High)
CVE-2026-102831
  • github.com/jupyterlab/jupyterlab
JupyterLab: Cross-site scripting (XSS) in JupyterLab via notebook cells pasted from the system clipboard 13 hours ago
  • Fix available
  • Severity - 8.1 (High)
CVE-2026-102830
  • github.com/jupyterlab/jupyterlab
JupyterLab: Cross-site scripting (XSS) in JupyterLab via crafted language package (jupyterlab.json) 13 hours ago
  • Fix available
  • Severity - 6.8 (Medium)
CVE-2026-102825
  • github.com/eugeny/russh
Russh: Configured server auth-attempt cap is not enforced in the USERAUTH_REQUEST runtime path 14 hours ago
  • Fix available
  • Severity - 3.7 (Low)
CVE-2026-102824
  • github.com/eugeny/russh
Russh: Missing X25519 zero-point validation in hybrid ML-KEM key exchange 14 hours ago
  • Fix available
  • Severity - 4.3 (Medium)
CVE-2026-102823
  • github.com/eugeny/russh
russh: Client-side channel-scoped Handler callbacks fire for channel IDs the client never opened 14 hours ago
  • Fix available
  • Severity - 7.5 (High)
CVE-2026-102822
  • github.com/eugeny/russh
russh: negotiating a MAC-requiring block cipher (CTR/CBC) with mac=none causes a slice-index-out-of-range panic 14 hours ago
  • Fix available
  • Severity - 3.7 (Low)
CVE-2026-102821
  • github.com/eugeny/russh
Russh: Unbounded memory exhaustion via CHANNEL_OPEN flood during a client-stalled rekey 14 hours ago
  • Fix available
  • Severity - 6.5 (Medium)
CVE-2026-102820
  • github.com/eugeny/russh
pageant: Out-of-bounds read / oversized allocation in `pageant` MemoryMap::read via a malicious Pageant agent (Windows) 14 hours ago
  • Fix available
  • Severity - 6.2 (Medium)
CVE-2026-102729
  • github.com/eclipse-threadx/guix
See record for full details 14 hours ago
  • No fix available
  • Severity - 5.9 (Medium)
CVE-2026-102727
  • github.com/eclipse-threadx/netxduo
See record for full details 14 hours ago
  • No fix available
  • Severity - 6.0 (Medium)
CVE-2026-102639
  • github.com/mobilitydb/mobilitydb
MobilityDB through 1.3.0 Out-of-bounds Read DoS via WKB Deserialization 14 hours ago
  • Fix available
  • Severity - 7.1 (High)
CVE-2026-102728
  • github.com/eclipse-threadx/netxduo
See record for full details 14 hours ago
  • No fix available
CVE-2026-102726
  • github.com/eclipse-threadx/netxduo
See record for full details 14 hours ago
  • No fix available
  • Severity - 6.0 (Medium)
CVE-2026-102725
  • github.com/eclipse-threadx/netxduo
See record for full details 14 hours ago
  • No fix available
  • Severity - 6.0 (Medium)
CVE-2026-102724
  • github.com/eclipse-threadx/netxduo
See record for full details 14 hours ago
  • No fix available
  • Severity - 6.0 (Medium)