Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-42456 |
|
Information Disclosure in CVE-2026-42456 (CVE-2026-42456)
vulnerability in CVE-2026-42456 (CVE-2026-42456). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/workspace/`.
|
| CVE-2026-42291 |
|
Vulnerability in CVE-2026-42291 (CVE-2026-42291)
vulnerability in CVE-2026-42291 (CVE-2026-42291). Confidential information can be exposed externally.
|
| CVE-2026-42205 |
|
Vulnerability in rails (CVE-2026-42205)
vulnerability in rails (CVE-2026-42205). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44400 |
|
Vulnerability in CVE-2026-44400 (CVE-2026-44400)
vulnerability in CVE-2026-44400 (CVE-2026-44400). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42279 |
|
Vulnerability in solidtime (CVE-2026-42279)
vulnerability in solidtime (CVE-2026-42279). Data can be tampered with by attackers. Exploitable via `PUT /api/v1/organizations/{organization}/time-entries/{timeEntry}`.
|
| CVE-2026-42276 |
|
Vulnerability in CVE-2026-42276 (CVE-2026-42276)
vulnerability in CVE-2026-42276 (CVE-2026-42276). Risk of unauthorized operations or information disclosure. Exploitable via `POST /chat/stop-chat-session/{chat_session_id}`.
|
| CVE-2026-42277 |
|
Vulnerability in CVE-2026-42277 (CVE-2026-42277)
vulnerability in CVE-2026-42277 (CVE-2026-42277). Confidential information can be exposed externally. Exploitable via `GET /chat/file/{file_id}`.
|
| CVE-2026-42278 |
|
Vulnerability in CVE-2026-42278 (CVE-2026-42278)
vulnerability in CVE-2026-42278 (CVE-2026-42278). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41906 |
|
Vulnerability in laravel (CVE-2026-41906)
vulnerability in laravel (CVE-2026-41906). Data can be tampered with by attackers.
|