🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-104413 Ghost from 5.94.0 before 6.64.0 contains a stored cross-site scripting vulnerability that allows staff users, including Contributors, to host arbitrar... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-104412 Ghost 0.5.0 before 6.64.0 does not correctly restrict staff role assignment, allowing users with the Editor or Super Editor role to assign their own r... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-104411 Ghost from 6.22.1 before 6.64.0 contains a stored cross-site scripting vulnerability that allows staff users to host scripts by uploading files served... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-104410 SiYuan before 3.8.5 contains an information disclosure vulnerability that allows publish readers to read password-protected and publish-disabled datab... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-103763 SiYuan before v3.8.5 contains an information disclosure vulnerability that allows read-only publish readers to learn metadata of publish-excluded docu... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-103762 SiYuan before v3.8.5 contains a missing authorization vulnerability in the getRefCreateSavePath, getShorthandSavePath, and getDocCreateSavePath endpoi... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-85088 Improper Validation of Certificate with Host Mismatch in the C++ and D libraries of Apache Thrift.
Both libraries install a default access manager ... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-85087 Improper certificate validation, Return of wrong status code vulnerability in Apache Thrift python bindings.
This issue affects Apache Thrift: befo... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-85086 Improper certificate validation, Initialization of a resource with an insecure default vulnerability in Apache Thrift perl bindings.
This issue aff... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-82459 Integer underflow (wrap or wraparound), Out-of-bounds write vulnerability in Apache Thrift C++ 32 bit THeaderTransport.
This issue affects Apache T... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-82458 Memory allocation with excessive size value, Allocation of resources without limits or throttling vulnerability in Apache Thrift Go, netstd, OCaml, E... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-96288 Uncontrolled Recursion, Allocation of resources without limits or throttling vulnerability in Apache Thrift Erlang bindings.
This issue affects Apa... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-97876 A local attacker with control over GRUB's configuration can bypass lockdown restrictions when booting with Secure Boot and load an unsigned GRUB ... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-96292 Inefficient regular expression complexity, Inefficient Algorithmic Complexity vulnerability in Apache Thrift Lua bindings.
This issue affects Apach... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-96294 Uncaught exception, Improper Handling of Exceptional Conditions vulnerability in Apache Thrift NodeJS bindings.
This issue affects Apache Thrift: b... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-61373 Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java TSaslNonblockingServer.
This issue affects Apache Thrift: ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-96990 Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Erlang bindings.
This issue affects Apache Thrift: before 0.25.... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-94642 Uncaught exception vulnerability in Apache Thrift PHP bindings.
This issue affects Apache Thrift: before 0.25.0.
Users are recommended to upgrad... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-94644 Allocation of resources without limits or throttling vulnerability in Apache Thrift PHP bindings.
This issue affects Apache Thrift: before 0.25.0.
... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-94645 Improper validation of specified quantity in input, Allocation of resources without limits or throttling vulnerability in Apache Thrift nodejs binding... | HIGH | ????? | ????? | NVD | 5 days ago |