Publicly disclosed vulnerabilities discovered by or reported to Fluid Attacks

Search by term

Search filters

Discovered by

All

Severity

All

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint

7.4

High

CVE-2026-63360

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries

8.4

High

CVE-2026-15973

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper

6.9

Medium

CVE-2026-19755

Published date:

Aug 20, 2026

Discovered by

Oscar Uribe

External pentesters

Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch

8.7

High

CVE-2026-19198

Published date:

Aug 19, 2026

Discovered by

Jaime Ramírez

AI SAST Scanner

HumHub Community Edition 1.18.4-pl1 - Reflected XSS in Space membership request button rendering

7.2

High

CVE-2026-18756

Published date:

Aug 19, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Load more

Search by term

Search filters

Discovered by

All

Severity

All

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint

7.4

High

CVE-2026-63360

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries

8.4

High

CVE-2026-15973

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper

6.9

Medium

CVE-2026-19755

Published date:

Aug 20, 2026

Discovered by

Oscar Uribe

External pentesters

Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch

8.7

High

CVE-2026-19198

Published date:

Aug 19, 2026

Discovered by

Jaime Ramírez

AI SAST Scanner

HumHub Community Edition 1.18.4-pl1 - Reflected XSS in Space membership request button rendering

7.2

High

CVE-2026-18756

Published date:

Aug 19, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Load more

Search by term

Search filters

Discovered by

All

Severity

All

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint

7.4

High

CVE-2026-63360

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries

8.4

High

CVE-2026-15973

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper

6.9

Medium

CVE-2026-19755

Published date:

Aug 20, 2026

Discovered by

Oscar Uribe

External pentesters

Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch

8.7

High

CVE-2026-19198

Published date:

Aug 19, 2026

Discovered by

Jaime Ramírez

AI SAST Scanner

HumHub Community Edition 1.18.4-pl1 - Reflected XSS in Space membership request button rendering

7.2

High

CVE-2026-18756

Published date:

Aug 19, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Load more

Learn about our policy for disclosing advisories of vulnerabilities in third-party, open-source products.

Start your 21-day free trial

Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.

Start your 21-day free trial

Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.

Start your 21-day free trial

Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.

logo-fluidattacks-white-png

Fluid Attacks' solutions enable organizations to identify, prioritize, and remediate vulnerabilities in their software throughout the SDLC. Supported by AI, automated tools, and pentesters, Fluid Attacks accelerates companies' risk exposure mitigation and strengthens their cybersecurity posture.

Get an AI summary of Fluid Attacks

Subscribe to our newsletter

Stay updated on our upcoming events and latest blog posts, advisories and other engaging resources.

Subscribe to our newsletter

Stay updated on our upcoming events and latest blog posts, advisories and other engaging resources.

Get an AI summary of Fluid Attacks

Subscribe to our newsletter

Stay updated on our upcoming events and latest blog posts, advisories and other engaging resources.

Get an AI summary of Fluid Attacks