CWE-807

CWE-807 · 10 records · 8 with a public proof-of-concept

Records the NVD classes under CWE-807, highest CVSS first.

  1. CRITICAL 9.9CVE-2026-84474

    A flaw was found in Red Hat Ansible Automation Platform's automation- controller. The provisioning-callback secret (host_config_key) is exposed to users holding only the read-level view_jobtemplate permission -- both in the job template API representation and …

    AI risk analysis on Exploit-DB.ai →

  2. CRITICAL 9.8CVE-2026-85751public PoC

    Mailu is a mail server distributed as a set of Docker images. From Mailu 2.0 until 2024.06.55 and prior to Mailu helm-charts 2.7.3, deployments with PROXY_AUTH_WHITELIST configured but REAL_IP_HEADER unset trusted a client-controlled X-Forwarded-By header for …

    AI risk analysis on Exploit-DB.ai →

  3. CRITICAL 9.8CVE-2026-86863public PoC

    pgAdmin 4's Webserver authentication source is intended to accept an identity asserted by the web server or reverse proxy in front of pgAdmin, delivered through the WSGI/CGI environment. WebserverAuthentication.get_user() read config.WEBSERVER_REMOTE_USER from…

    pgadmin 4

    AI risk analysis on Exploit-DB.ai →

  4. HIGH 8.9CVE-2026-94606public PoC

    authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik email authenticator enrollment during an authentication or enrollment flow accepts a recipient address supplied in the setup request instead of using the addres…

    AI risk analysis on Exploit-DB.ai →

  5. HIGH 7.3CVE-2026-56681public PoC

    9Router is an AI router & token saver. Prior to 0.5.6, 9Router deployments that allow requests to reach Next.js without the sanitizing custom-server.js wrapper trust the client-supplied X-9r-Real-Ip header in src/dashboardGuard.js when isLocalRequest decides w…

    AI risk analysis on Exploit-DB.ai →

  6. MEDIUM 5.3CVE-2026-56682public PoC

    9Router is an AI router & token saver. Prior to 0.5.6, 9Router deployments that allow requests to reach Next.js without the sanitizing custom-server.js wrapper use the client-supplied X-9r-Real-Ip value as the bucket key in getClientIp, checkLock, and recordFa…

    AI risk analysis on Exploit-DB.ai →

  7. MEDIUM 4.3CVE-2026-78427public PoC

    The NeuVector admission webhook silently excludes containers from policy evaluation when their image path matches one of three hardcoded service mesh sidecar images. Since the image path is entirely controlled by the workload author, any user capable of deploy…

    AI risk analysis on Exploit-DB.ai →

  8. LOW 3.3CVE-2026-101131

    A vulnerability was identified in deepseek-ai deepseek-harness up to 0.1.5-rc.3. Impacted is an unknown function of the file packages/e2b/e2b/src/index.ts of the component dsh. The manipulation of the argument E2B_API_KEY leads to reliance on untrusted inputs …

    AI risk analysis on Exploit-DB.ai →

  9. LOW 2.8CVE-2026-101079public PoC

    A vulnerability was found in agentverus agentverus-scanner up to 0.8.1. Affected by this vulnerability is the function isSecurityDefenseSkill of the file dist/scanner/analyzers/context.js. Performing a manipulation results in reliance on untrusted inputs in a …

    AI risk analysis on Exploit-DB.ai →

  10. UNSCOREDCVE-2026-87858public PoC

    Temporal Server decided whether a Workflow completion callback was internal by reading a caller-supplied HTTP header. An authenticated caller holding only write permission in a single namespace could attach a completion callback whose URL host matched the conf…

    AI risk analysis on Exploit-DB.ai →