Publicly disclosed vulnerabilities discovered by or reported to Fluid Attacks

Buscar por termo

Search filters

Discovered by

All

Severity

All

External pentesters

NASA CryptoLib 1.5.0 - TC receive path accepts Security Associations from the wrong GVCID

8.7

High

CVE-2026-79954

Published date:

17 de set. de 2026

Discovered by

Romel Marín

Our pentesters

Gallery - Private Photo Vault 1.0.41 - Unauthenticated local-network HTTP file exposure

7.1

High

CVE-2026-77884

Published date:

14 de set. de 2026

Discovered by

Andrés Ramos

Our pentesters

Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access

8.5

High

CVE-2026-81301

Published date:

14 de set. de 2026

Discovered by

Andrés Ramos

Our pentesters

Hide Photos - Secure vault 4.1.0 - Insecure storage of vault media and wallet records in shared external storage

6.8

Medium

CVE-2026-77875

Published date:

9 de set. de 2026

Discovered by

Andrés Ramos

AI SAST Scanner

Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction

8.6

High

Published date:

1 de set. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

26 de ago. de 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

26 de ago. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

26 de ago. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Carregar mais

Buscar por termo

Search filters

Discovered by

All

Severity

All

External pentesters

NASA CryptoLib 1.5.0 - TC receive path accepts Security Associations from the wrong GVCID

8.7

High

CVE-2026-79954

Published date:

17 de set. de 2026

Discovered by

Romel Marín

Our pentesters

Gallery - Private Photo Vault 1.0.41 - Unauthenticated local-network HTTP file exposure

7.1

High

CVE-2026-77884

Published date:

14 de set. de 2026

Discovered by

Andrés Ramos

Our pentesters

Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access

8.5

High

CVE-2026-81301

Published date:

14 de set. de 2026

Discovered by

Andrés Ramos

Our pentesters

Hide Photos - Secure vault 4.1.0 - Insecure storage of vault media and wallet records in shared external storage

6.8

Medium

CVE-2026-77875

Published date:

9 de set. de 2026

Discovered by

Andrés Ramos

AI SAST Scanner

Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction

8.6

High

Published date:

1 de set. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

26 de ago. de 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

26 de ago. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

26 de ago. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Carregar mais

Buscar por termo

Search filters

Discovered by

All

Severity

All

External pentesters

NASA CryptoLib 1.5.0 - TC receive path accepts Security Associations from the wrong GVCID

8.7

High

CVE-2026-79954

Published date:

17 de set. de 2026

Discovered by

Romel Marín

Our pentesters

Gallery - Private Photo Vault 1.0.41 - Unauthenticated local-network HTTP file exposure

7.1

High

CVE-2026-77884

Published date:

14 de set. de 2026

Discovered by

Andrés Ramos

Our pentesters

Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access

8.5

High

CVE-2026-81301

Published date:

14 de set. de 2026

Discovered by

Andrés Ramos

Our pentesters

Hide Photos - Secure vault 4.1.0 - Insecure storage of vault media and wallet records in shared external storage

6.8

Medium

CVE-2026-77875

Published date:

9 de set. de 2026

Discovered by

Andrés Ramos

AI SAST Scanner

Baserow 2.3.3 - SQL injection in formula index() JSONB array extraction

8.6

High

Published date:

1 de set. de 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Our pentesters

LimeSurvey Community Edition 7.0.5 - Improper authorization in survey menu entry creation endpoint

5.1

Medium

CVE-2026-65931

Published date:

26 de ago. de 2026

Discovered by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in quota message rendering

7.2

High

CVE-2026-16809

Published date:

26 de ago. de 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

AI SAST Scanner

LimeSurvey Community Edition 7.0.5 - Stored XSS in replacement-fields

4.8

Medium

CVE-2026-65930

Published date:

26 de ago. de 2026

Discovered by

Miguel Gómez

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Miguel Gómez

Carregar mais

Learn about our policy for disclosing advisories of vulnerabilities in third-party, open-source products.

Reduza o risco sem atrasar suas entregas

Reduza o risco sem atrasar suas entregas

Um único programa de segurança contínua, potencializado por IA, scanners determinísticos e pentesters.

Um único programa de segurança contínua, potencializado por IA, scanners determinísticos e pentesters.

Previna

Previna

Previna

Detecte

Detecte

Detecte

Gerencie

Gerencie

Gerencie

Corrija

Corrija

Corrija