Vulnerability Notes
- CVE-2026-69703 - Atlas-Livre Unauthenticated Access via Admin Controllers Missing Exit
- CVE-2026-69264 - Flowise: RCE via CSVAgent csvFile data URI base64 segment is interpolated into Python source without validation
- CVE-2026-47623 - NVIDIA Dynamo Insecure Deserialization Vulnerability
- CVE-2026-18830 - Insufficient input validation in Amazon Bedrock AgentCore harness InvokeHarness API
- CVE-2026-69258 - Flowise: Unauthenticated Property Injection into Flow Execution Context via Ungated `overrideConfig` Spread in Prediction API
- CVE-2026-69255 - Flowise: CSV Agent Remote Code Execution via Pyodide Code Injection — Root Shell Verified
- CVE-2026-64631 - SQL Injection in Database Management System
- CVE-2026-58074 - Server-Side Arbitrary Code Execution
- CVE-2026-58067 - Veeam Service Provider Console Denial of Service Vulnerability
- CVE-2026-18787 - GL.iNet AX1800 RPC Endpoint oui-rpc.lua remove_rule command injection
- CVE-2026-15307 - Server-side file-write and request forgery via spatial lookups