Publicly disclosed vulnerabilities discovered by or reported to Fluid Attacks
Our pentesters
LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint
5.1
Medium
CVE-2026-65931
Published date:
Aug 26, 2026
Discovered by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering
7.2
High
CVE-2026-16809
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields
4.8
Medium
CVE-2026-65930
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint
7.4
High
CVE-2026-63360
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries
8.4
High
CVE-2026-15973
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Our pentesters
NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper
6.9
Medium
CVE-2026-19755
Published date:
Aug 20, 2026
Discovered by
Oscar Uribe
External pentesters
Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch
8.7
High
CVE-2026-19198
Published date:
Aug 19, 2026
Discovered by
Jaime Ramírez
AI SAST Scanner
HumHub Community Edition 1.18.4-pl1 - Reflected XSS in Space membership request button rendering
7.2
High
CVE-2026-18756
Published date:
Aug 19, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Load more
Our pentesters
LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint
5.1
Medium
CVE-2026-65931
Published date:
Aug 26, 2026
Discovered by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering
7.2
High
CVE-2026-16809
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields
4.8
Medium
CVE-2026-65930
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint
7.4
High
CVE-2026-63360
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries
8.4
High
CVE-2026-15973
Published date:
Aug 26, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Our pentesters
NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper
6.9
Medium
CVE-2026-19755
Published date:
Aug 20, 2026
Discovered by
Oscar Uribe
External pentesters
Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch
8.7
High
CVE-2026-19198
Published date:
Aug 19, 2026
Discovered by
Jaime Ramírez
AI SAST Scanner
HumHub Community Edition 1.18.4-pl1 - Reflected XSS in Space membership request button rendering
7.2
High
CVE-2026-18756
Published date:
Aug 19, 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Load more
Our pentesters
LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint
5.1
Medium
CVE-2026-65931
Published date:
Aug 26, 2026
Discovered by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering
7.2
High
CVE-2026-16809
Published date:
Aug 26, 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields
4.8
Medium
CVE-2026-65930
Published date:
Aug 26, 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Reflected XSS in user activation confirmation endpoint
7.4
High
CVE-2026-63360
Published date:
Aug 26, 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey 7.0.5 - Stored XSS in Survey Menu Entries
8.4
High
CVE-2026-15973
Published date:
Aug 26, 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Our pentesters
NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper
6.9
Medium
CVE-2026-19755
Published date:
Aug 20, 2026
Discovered by
Oscar Uribe
External pentesters
Akaunting 3.1.21 - Improper authorization in BulkActions handle dispatch
8.7
High
CVE-2026-19198
Published date:
Aug 19, 2026
Discovered by
Jaime Ramírez
AI SAST Scanner
HumHub Community Edition 1.18.4-pl1 - Reflected XSS in Space membership request button rendering
7.2
High
CVE-2026-18756
Published date:
Aug 19, 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Load more


Learn about our policy for disclosing advisories of vulnerabilities in third-party, open-source products.


Start your 21-day free trial
Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.


Start your 21-day free trial
Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.


Start your 21-day free trial
Discover the benefits of the Fluid Attacks solution, which organizations of all sizes are already enjoying.

Products
Targets
Subscribe to our newsletter
Stay updated on our upcoming events and latest blog posts, advisories and other engaging resources.
Products
Targets
Subscribe to our newsletter
Stay updated on our upcoming events and latest blog posts, advisories and other engaging resources.
Products
Targets
Subscribe to our newsletter
Stay updated on our upcoming events and latest blog posts, advisories and other engaging resources.














