Publicly disclosed vulnerabilities discovered by or reported to Fluid Attacks

Search by term

Search filters

Discovered by

All

Severity

All

AI SAST Scanner

Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction

8.6

High

Published date:

Sep 1, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint

7.4

High

CVE-2026-63360

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries

8.4

High

CVE-2026-15973

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper

6.9

Medium

CVE-2026-19755

Published date:

Aug 20, 2026

Discovered by

Oscar Uribe

External pentesters

Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch

8.7

High

CVE-2026-19198

Published date:

Aug 19, 2026

Discovered by

Jaime Ramírez

Load more

Search by term

Search filters

Discovered by

All

Severity

All

AI SAST Scanner

Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction

8.6

High

Published date:

Sep 1, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint

7.4

High

CVE-2026-63360

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries

8.4

High

CVE-2026-15973

Published date:

Aug 26, 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper

6.9

Medium

CVE-2026-19755

Published date:

Aug 20, 2026

Discovered by

Oscar Uribe

External pentesters

Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch

8.7

High

CVE-2026-19198

Published date:

Aug 19, 2026

Discovered by

Jaime Ramírez

Load more

Search by term

Search filters

Discovered by

All

Severity

All

AI SAST Scanner

Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction

8.6

High

Published date:

Sep 1, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint

7.4

High

CVE-2026-63360

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries

8.4

High

CVE-2026-15973

Published date:

Aug 26, 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper

6.9

Medium

CVE-2026-19755

Published date:

Aug 20, 2026

Discovered by

Oscar Uribe

External pentesters

Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch

8.7

High

CVE-2026-19198

Published date:

Aug 19, 2026

Discovered by

Jaime Ramírez

Load more

Learn about our policy for disclosing advisories of vulnerabilities in third-party, open-source products.

Start your 21-day free trial

Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.

Start your 21-day free trial

Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.

Start your 21-day free trial

Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.