UNSCORED severity

62 records · 38 with a public proof-of-concept

No CVSS base score published by the NVD at the time of ingestion. Unscored is not the same as harmless.

  1. UNSCOREDCVE-2026-17578

    Kong Event Gateway versions 1.0.0 through 1.1.1 and 1.2.0 do not enforce key rotation before reaching NIST SP 800-38D recommended usage limit for AES-GCM encryption keys with random nonces when the AWS IAM encryption feature is enabled. If a producer sends

    AI risk analysis on Exploit-DB.ai →

  2. UNSCOREDCVE-2026-0931

    Denial-of-service vulnerability in M-Files Server versions before 26.5.16015.3 allows an authenticated admin user to cause the M-Files Server process to crash and fail to restart.

    AI risk analysis on Exploit-DB.ai →

  3. UNSCOREDCVE-2026-64579

    In the Linux kernel, the following vulnerability has been resolved: xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert xfrm_hash_rebuild()'s first loop preallocates the bins/chains the reinsert loop needs, so the reinsert (after hlist_d

    AI risk analysis on Exploit-DB.ai →

  4. UNSCOREDCVE-2026-64573

    In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix NVM tag length underflow in TLV parser In the TLV_TYPE_NVM branch of qca_tlv_check_data() the tag loop bound is "while (idx < length - sizeof(struct tlv_type_nvm))". "len

    AI risk analysis on Exploit-DB.ai →

  5. UNSCOREDCVE-2026-64572

    In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: free fib_alias with kfree_rcu() on insert error path fib_table_insert() publishes new_fa into the leaf's fa_list with fib_insert_alias() before calling the fib entry notifiers. Wh

    AI risk analysis on Exploit-DB.ai →

  6. UNSCOREDCVE-2026-64571

    In the Linux kernel, the following vulnerability has been resolved: wifi: p54: validate RX frame length in p54_rx_eeprom_readback() p54_rx_eeprom_readback() copies the requested EEPROM slice out of a device-supplied readback frame without checking that the s

    AI risk analysis on Exploit-DB.ai →

  7. UNSCOREDCVE-2026-64569

    In the Linux kernel, the following vulnerability has been resolved: mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n On CONFIG_INET=n builds, mpls_valid_fib_dump_req() walks the parsed attribute table itself instead of calling ip_valid_fib_

    AI risk analysis on Exploit-DB.ai →

  8. UNSCOREDCVE-2026-71192

    In OpenStack Swift through 2.38.0, the S3API middleware does not sanitize Swift-native control headers (X-Copy-From, X-Copy-From-Account) from S3 API requests when s3_acl=true. An attacker can inject these headers into a signed PUT request targeting their own

    AI risk analysis on Exploit-DB.ai →

  9. UNSCOREDCVE-2026-71191

    In OpenStack Swift through 2.38.0, S3API middleware does not enforce that semantic x-amz-* headers are covered by the SigV4 signature on presigned URL requests. An attacker who obtains a presigned PUT URL can inject an unsigned X-Amz-Copy-Source header, causin

    AI risk analysis on Exploit-DB.ai →

  10. UNSCOREDCVE-2026-71190

    In OpenStack Swift through 2.38.0, the proxy server Accept header parser contains a regular expression vulnerable to catastrophic backtracking (ReDoS). The "qdtext" pattern (?:[^"]|\\.)* allows an unauthenticated remote attacker to send a crafted Accept header

    AI risk analysis on Exploit-DB.ai →

  11. UNSCOREDCVE-2026-55707

    In OpenStack Neutron before 28.0.2, the subnetpool onboarding API does not verify ownership of the target subnets. An authenticated user can onboard subnets from another project's shared network into their own subnetpool, mutating the victim's subnet state and

    AI risk analysis on Exploit-DB.ai →

  12. UNSCOREDCVE-2026-46334public PoC

    OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerability in the SDP bandwidth-line parsing logic. A SIP request with Content-Type: application/sdp and a malformed ses

    AI risk analysis on Exploit-DB.ai →

  13. UNSCOREDCVE-2026-45809public PoC

    OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerability in the watcherinfo generation functionality. An attacker can create an oversized watcher entry by sending a S

    AI risk analysis on Exploit-DB.ai →

  14. UNSCOREDCVE-2026-45084public PoC

    OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the presence module. When the presence module's handle_publish() function processes a SIP PUBLISH request with an E

    AI risk analysis on Exploit-DB.ai →

  15. UNSCOREDCVE-2026-65986public PoC

    CVAT is an open source interactive video and image annotation tool for computer vision. Versions 2.5.0 through 2.66.0 contain a XSS vulnerability that can be accessed through annotation guide assets. When CVAT serves the files attached to an annotation guide,

    AI risk analysis on Exploit-DB.ai →

  16. UNSCOREDCVE-2026-13227public PoC

    An Improper Authorization vulnerability exists in ERPNext version <v16.25.0 and <15.115.0 due to insufficient access control in the whitelisted API method erpnext.crm.doctype.prospect.prospect.get_opportunities. This issue affects ERPNext: before 15.115.0, b

    AI risk analysis on Exploit-DB.ai →

  17. UNSCOREDCVE-2026-70478public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the POST /api/v1/oauth2-credential/refresh/:credentialId endpoint is included in WHITELIST_URLS and requires no authentication. The endpoint decrypts the s

    AI risk analysis on Exploit-DB.ai →

  18. UNSCOREDCVE-2026-70477public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, a prompt injection sent to a chatflow using a CSV Agent node can cause the LLM to respond with a malicious Python script that bypasses the blocklist valida

    AI risk analysis on Exploit-DB.ai →

  19. UNSCOREDCVE-2026-70476public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, several organization billing endpoints in packages/server/src/enterprise/routes/organization.route.ts and packages/server/src/enterprise/controllers/organi

    AI risk analysis on Exploit-DB.ai →

  20. UNSCOREDCVE-2026-70475public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the PUT /api/v1/executions/:id endpoint in packages/server/src/routes/executions/index.ts lacks the checkAnyPermission() middleware that protects other exe

    AI risk analysis on Exploit-DB.ai →

  21. UNSCOREDCVE-2026-47682public PoC

    CVAT is an open source interactive video and image annotation tool for computer vision. In versions 1.6.0 through 2.64.0, an attacker with write access to a cloud storage that's been added to a CVAT instance, or ability to add new cloud storages, is able to ov

    AI risk analysis on Exploit-DB.ai →

  22. UNSCOREDCVE-2026-70474public PoC

    Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise has three OAuth2 credential endpoints that look up credentials by id alone with no workspaceId filter. The authorize, callback, and refr

    AI risk analysis on Exploit-DB.ai →

  23. UNSCOREDCVE-2026-70473public PoC

    Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise GET /api/v1/upsert-history returns the entire server-wide upsert history instead of being scoped to the requesting user, tenant, or work

    AI risk analysis on Exploit-DB.ai →

  24. UNSCOREDCVE-2026-70472public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise openai-assistants-vector-store endpoints accept a client-controlled credential parameter and load credentials by id without checking whether that c

    AI risk analysis on Exploit-DB.ai →

  25. UNSCOREDCVE-2026-70471public PoC

    Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise injects $vars into the code execution sandbox without requiring variables:view, bypassing the permission-protected Variables API. Variab

    AI risk analysis on Exploit-DB.ai →

  26. UNSCOREDCVE-2026-47781public PoC

    PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during initialization, allowing an attacker-controlled file in an untrusted repository checkout

    AI risk analysis on Exploit-DB.ai →

  27. UNSCOREDCVE-2026-47764public PoC

    pdm is a Python package and dependency manager supporting the latest PEP standards. Versions prior to 2.27.0 are vulnerable to path traversal through write_to_fs. InstallDestination.write_to_fs() in src/pdm/installers/installers.py overrides the base class to

    AI risk analysis on Exploit-DB.ai →

  28. UNSCOREDCVE-2026-13229public PoC

    Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint.

    AI risk analysis on Exploit-DB.ai →

  29. UNSCOREDCVE-2026-70470public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise validatePythonCodeForDataFrame in packages/components/src/pythonCodeValidator.ts can be bypassed with Unicode homoglyph identifiers, allowing arbit

    AI risk analysis on Exploit-DB.ai →

  30. UNSCOREDCVE-2026-69264public PoC

    Prior to 3.1.3, Flowise CSVAgent interpolates an attacker-controlled segment of the csvFile data URI directly into a Python source-code template that is then executed by Pyodide. Because Pyodide is loaded with the default js bridge to globalThis, which on Node

    AI risk analysis on Exploit-DB.ai →

  31. UNSCOREDCVE-2026-47763public PoC

    pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or configuration files without symlink protection. If a malicious repository places those files as symlinks,

    AI risk analysis on Exploit-DB.ai →

  32. UNSCOREDCVE-2026-69263public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the mitigation for CVE-2025-8943 blocked -y and --yes flags on npx, but packages/components/nodes/tools/MCP/core.ts denied only PATH, LD_LIBRARY_PATH, DYLD

    AI risk analysis on Exploit-DB.ai →

  33. UNSCOREDCVE-2026-69262public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, `DELETE /api/v1/chatflows/:id` authorized requests with checkAnyPermission('chatflows:delete,agentflows:delete'), so possession of either permission was su

    AI risk analysis on Exploit-DB.ai →

  34. UNSCOREDCVE-2026-69259public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the SQLite Record Manager node in packages/components/nodes/recordmanager/SQLiteRecordManager/SQLiteRecordManager.ts accepted user-controlled additionalCon

    AI risk analysis on Exploit-DB.ai →

  35. UNSCOREDCVE-2026-69258public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the unauthenticated POST /api/v1/prediction/:id endpoint accepted an overrideConfig object and unconditionally spread it into internal flowConfig and flowD

    AI risk analysis on Exploit-DB.ai →

  36. UNSCOREDCVE-2026-69257public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise's HTTP security module httpSecurity.ts did not normalize IPv4-mapped IPv6 addresses such as ::ffff:127.0.0.1 and ::ffff:169.254.169.254 before chec

    AI risk analysis on Exploit-DB.ai →

  37. UNSCOREDCVE-2026-69256public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent node allowed users to provide Python code that is executed through pyodide; although a denylist blocked dangerous Python constructs, pandas.re

    AI risk analysis on Exploit-DB.ai →

  38. UNSCOREDCVE-2026-69255public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent in packages/components/nodes/agents/CSVAgent/CSVAgent.ts extracted attacker-controlled CSV data with file.split(',').pop() and interpolated it

    AI risk analysis on Exploit-DB.ai →

  39. UNSCOREDCVE-2026-64634

    A vulnerability allowing local privilege escalation to the Reporter service context.

    AI risk analysis on Exploit-DB.ai →

  40. UNSCOREDCVE-2026-64633

    A vulnerability allowing remote unauthenticated code execution on the agent host.

    AI risk analysis on Exploit-DB.ai →

  41. UNSCOREDCVE-2026-64631

    A vulnerability allowing a low-privileged user to inject SQL and extract database contents.

    AI risk analysis on Exploit-DB.ai →

  42. UNSCOREDCVE-2026-64630

    A vulnerability allowing a low-privileged user to retrieve report data outside the scope of a shared report link.

    AI risk analysis on Exploit-DB.ai →

  43. UNSCOREDCVE-2026-58075

    A vulnerability allowing an unauthenticated attacker to read arbitrary files from the host, which can be further leveraged toescalate privileges locally.

    AI risk analysis on Exploit-DB.ai →

  44. UNSCOREDCVE-2026-58074

    A vulnerability allowing a high-privileged user to execute arbitrary code on the server.

    AI risk analysis on Exploit-DB.ai →

  45. UNSCOREDCVE-2026-58073

    A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to impersonate a managed agent andobtain that agent's credentials.

    AI risk analysis on Exploit-DB.ai →

  46. UNSCOREDCVE-2026-58072

    A vulnerability in Veeam Service Provider Console allowing arbitrary file write on the management server, which can lead to remotecode execution.

    AI risk analysis on Exploit-DB.ai →

  47. UNSCOREDCVE-2026-58071

    A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to access the proxied appliance API asPortal Administrator during a short window after an administrator session begins.

    AI risk analysis on Exploit-DB.ai →

  48. UNSCOREDCVE-2026-58067

    A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to exhaust host memory and cause adenial of service.

    AI risk analysis on Exploit-DB.ai →

  49. UNSCOREDCVE-2026-69254public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, executeJavaScriptCode() accepted caller-provided nodeVMOptions and merged them over the default NodeVM security settings in packages/components/src/utils.t

    AI risk analysis on Exploit-DB.ai →

  50. UNSCOREDCVE-2026-69253public PoC

    Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to version 3.1.3, several custom-tool components — AgentAsTool, ChatflowTool, and ExecuteFlow — ran code in the in-process  vm2  sandbox. To build that co

    AI risk analysis on Exploit-DB.ai →

  51. UNSCOREDCVE-2026-69252public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the /api/v1/files route was protected only by the feat:files feature gate and did not enforce checkPermission on GET or DELETE. A low-privileged authentica

    AI risk analysis on Exploit-DB.ai →

  52. UNSCOREDCVE-2026-18801public PoC

    OpenMeter contains a stored, or second-order, SQL injection vulnerability in the handling of customer usage-attribution values. An attacker who can create or update a customer can store a malicious value in the usageAttribution.key or usageAttribution.subje

    AI risk analysis on Exploit-DB.ai →

  53. UNSCOREDCVE-2026-10032public PoC

    The openUrl function in @a2ui/web_core passes an agent-controlled URL directly to window.open() without validating the URI scheme. A malicious agent can supply a javascript: URI as the url argument of a Button component's functionCall action. When the user cli

    AI risk analysis on Exploit-DB.ai →

  54. UNSCOREDCVE-2026-69251public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise record manager and agent memory nodes allowed users to set arbitrary TypeORM DataSource options through the additionalConfig input in packages/comp

    AI risk analysis on Exploit-DB.ai →

  55. UNSCOREDCVE-2026-69250public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the OAuth2 token refresh endpoint POST /api/v1/oauth2-credential/refresh/:credentialId is unauthenticated by design and performs a server-side HTTP request

    AI risk analysis on Exploit-DB.ai →

  56. UNSCOREDCVE-2026-68494public PoC

    The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint bypass in the non-blocking parser) is incomplete. This record covers the remaining bypass. The earlier fix wired validateIntegerLength() into

    AI risk analysis on Exploit-DB.ai →

  57. UNSCOREDCVE-2026-18401public PoC

    The non-blocking (asynchronous) JSON parser in jackson-core does not enforce the maxNumberLength constraint defined in StreamReadConstraints (default: 1000 characters). An attacker able to submit JSON to an application that uses the async parser API can supply

    AI risk analysis on Exploit-DB.ai →

  58. UNSCOREDCVE-2026-14337

    Pega Platform versions 23.1.0 through 25.1.3 are affected by an Stored Cross-site scripting (XSS) vulnerability in a user interface component. Requires a high privileged user with a developer role.

    AI risk analysis on Exploit-DB.ai →

  59. UNSCOREDCVE-2026-66884public PoC

    Cross-Site Request Forgery vulnerability in Erlang Ecosystem Foundation oidcc_plug (Oidcc.Plug.AuthorizationCallback module) allows an attacker to make a victim's browser complete an authorization flow the victim never initiated. This vulnerability is associa

    AI risk analysis on Exploit-DB.ai →

  60. UNSCOREDCVE-2026-66883public PoC

    Improper Handling of Case Sensitivity vulnerability in Erlang Ecosystem Foundation oidcc_plug (Oidcc.Plug.Authorize module) renders the user agent session binding inert, removing a defense in depth control against replay of a stolen session. This vulnerabilit

    AI risk analysis on Exploit-DB.ai →

  61. UNSCOREDCVE-2026-18759

    The background service of ABP or AES runs as NT AUTHORITY\SYSTEM and implements a file-based inter-process communication (IPC) mechanism protected by AES encryption. Because the encryption key file is readable by standard users and protected using DPAPI. Any a

    AI risk analysis on Exploit-DB.ai →

  62. UNSCOREDCVE-2026-64565

    In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data() The `ims_pcu_process_data()` processes incoming URB data byte by byte. However, it fails to check if the `read_pos` index

    AI risk analysis on Exploit-DB.ai →