Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-47671 |
|
Vulnerability in github.com/nhost/nhost (CVE-2026-47671)
vulnerability in github.com/nhost/nhost (CVE-2026-47671). Risk of unauthorized operations or information disclosure. Exploitable via ``configserver``. Mitigation: upgrade to `0.0.0-20260518172022-e407511627d2` or later.
|
| CVE-2026-41574 |
|
Authentication Bypass in github.com/nhost/nhost (CVE-2026-41574)
authentication bypass in github.com/nhost/nhost (CVE-2026-41574). Successful exploitation can lead to full system takeover. Exploitable via `GET /users/`. Mitigation: upgrade to `0.0.0-20260417112436-ec8dab3f2cf4` or later.
|
| CVE-2026-34200 |
|
Vulnerability in nhost (CVE-2026-34200)
vulnerability in nhost (CVE-2026-34200). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33221 |
|
Vulnerability in github.com/nhost/nhost (CVE-2026-33221)
vulnerability in github.com/nhost/nhost (CVE-2026-33221). Risk of unauthorized operations or information disclosure. Exploitable via ``getMultipartFile``. Mitigation: upgrade to `0.0.0-20260318074820-c4bd53f042d7` or later.
|