Publicly disclosed vulnerabilities discovered by or reported to Fluid Attacks
External pentesters
NASA CryptoLib 1.5.0 - TC receive path accepts Security Associations from the wrong GVCID
8.7
High
CVE-2026-79954
Published date:
17 sept 2026
Discovered by
Romel Marín
Our pentesters
Gallery - Private Photo Vault 1.0.41 - Unauthenticated local-network HTTP file exposure
7.1
High
CVE-2026-77884
Published date:
14 sept 2026
Discovered by
Andrés Ramos
Our pentesters
Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access
8.5
High
CVE-2026-81301
Published date:
14 sept 2026
Discovered by
Andrés Ramos
Our pentesters
Hide Photos - Secure vault 4.1.0 - Insecure storage of vault media and wallet records in shared external storage
6.8
Medium
CVE-2026-77875
Published date:
9 sept 2026
Discovered by
Andrés Ramos
AI SAST Scanner
Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction
8.6
High
Published date:
1 sept 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Our pentesters
LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint
5.1
Medium
CVE-2026-65931
Published date:
26 ago 2026
Discovered by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering
7.2
High
CVE-2026-16809
Published date:
26 ago 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields
4.8
Medium
CVE-2026-65930
Published date:
26 ago 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Cargar más
External pentesters
NASA CryptoLib 1.5.0 - TC receive path accepts Security Associations from the wrong GVCID
8.7
High
CVE-2026-79954
Published date:
17 sept 2026
Discovered by
Romel Marín
Our pentesters
Gallery - Private Photo Vault 1.0.41 - Unauthenticated local-network HTTP file exposure
7.1
High
CVE-2026-77884
Published date:
14 sept 2026
Discovered by
Andrés Ramos
Our pentesters
Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access
8.5
High
CVE-2026-81301
Published date:
14 sept 2026
Discovered by
Andrés Ramos
Our pentesters
Hide Photos - Secure vault 4.1.0 - Insecure storage of vault media and wallet records in shared external storage
6.8
Medium
CVE-2026-77875
Published date:
9 sept 2026
Discovered by
Andrés Ramos
AI SAST Scanner
Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction
8.6
High
Published date:
1 sept 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Our pentesters
LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint
5.1
Medium
CVE-2026-65931
Published date:
26 ago 2026
Discovered by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering
7.2
High
CVE-2026-16809
Published date:
26 ago 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields
4.8
Medium
CVE-2026-65930
Published date:
26 ago 2026
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Cargar más
External pentesters
NASA CryptoLib 1.5.0 - TC receive path accepts Security Associations from the wrong GVCID
8.7
High
CVE-2026-79954
Published date:
17 sept 2026
Discovered by
Romel Marín
Our pentesters
Gallery - Private Photo Vault 1.0.41 - Unauthenticated local-network HTTP file exposure
7.1
High
CVE-2026-77884
Published date:
14 sept 2026
Discovered by
Andrés Ramos
Our pentesters
Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access
8.5
High
CVE-2026-81301
Published date:
14 sept 2026
Discovered by
Andrés Ramos
Our pentesters
Hide Photos - Secure vault 4.1.0 - Insecure storage of vault media and wallet records in shared external storage
6.8
Medium
CVE-2026-77875
Published date:
9 sept 2026
Discovered by
Andrés Ramos
AI SAST Scanner
Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction
8.6
High
Published date:
1 sept 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Our pentesters
LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint
5.1
Medium
CVE-2026-65931
Published date:
26 ago 2026
Discovered by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering
7.2
High
CVE-2026-16809
Published date:
26 ago 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
AI SAST Scanner
LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields
4.8
Medium
CVE-2026-65930
Published date:
26 ago 2026
Discovered by
Miguel Gómez
Detected by
Fluid Attacks AI SAST Scanner,
disclosed by
Miguel Gómez
Cargar más


Learn about our policy for disclosing advisories of vulnerabilities in third-party, open-source products.

Reduce el riesgo sin retrasar tus entregas
Reduce el riesgo sin retrasar tus entregas
Un solo programa de seguridad continua, impulsado por IA, escáneres determinísticos y pentesters.
Un solo programa de seguridad continua, impulsado por IA, escáneres determinísticos y pentesters.
PrevénPrevén
PrevénPrevén
PrevénPrevén
DetectaDetecta
DetectaDetecta
DetectaDetecta
GestionaGestiona
GestionaGestiona
GestionaGestiona
RemediaRemedia
RemediaRemedia
RemediaRemedia
Soluciones
Productos
Soluciones
Productos
Soluciones
Productos














