Publicly disclosed vulnerabilities discovered by or reported to Fluid Attacks

Buscar por termo

Filtros de busca

Discovered by

Todos

Severity

Todos

Our scanner

Helpy 2.8.0 - Stored XSS in knowledgebase Doc body rendering

4.8

Medium

CVE-2026-40230

Published date:

29 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Helpy 2.8.0 - Stored XSS in post author display via PostsHelper

5.1

Medium

CVE-2026-40229

Published date:

29 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Pimcore Platform v12.3.3 - Stored XSS in Document Editable Embed rendering

4.8

Medium

CVE-2026-5362

Published date:

27 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Naveda

Our scanner

Pimcore Platform v12.3.3 - SQL Injection in DataObject composite index handling

7

High

CVE-2026-5394

Published date:

27 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Naveda

Our scanner

Frappe Framework v16.10.0 - Stored DOM XSS in Multiple Field Formatters

4.6

Medium

CVE-2026-3837

Published date:

21 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Frappe Framework 16.10.0 - Stored DOM XSS in Tag Pill Renderer

4.6

Medium

CVE-2026-3673

Published date:

21 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our pentesters

DOMPurify mXSS via Re-Contextualization

5.3

Medium

CVE-2026-0540

Published date:

24 de mar. de 2026

Discovered by

Camilo Vera, Cristian Vargas and Scott Moore

External pentesters

Actual Sync Server 26.2.1 - Authenticated Path Traversal

5.3

Medium

CVE-2026-3089

Published date:

9 de mar. de 2026

Discovered by

Juan Patarroyo

Carregar mais

Buscar por termo

Filtros de busca

Discovered by

Todos

Severity

Todos

Our scanner

Helpy 2.8.0 - Stored XSS in knowledgebase Doc body rendering

4.8

Medium

CVE-2026-40230

Published date:

29 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Helpy 2.8.0 - Stored XSS in post author display via PostsHelper

5.1

Medium

CVE-2026-40229

Published date:

29 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Pimcore Platform v12.3.3 - Stored XSS in Document Editable Embed rendering

4.8

Medium

CVE-2026-5362

Published date:

27 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Naveda

Our scanner

Pimcore Platform v12.3.3 - SQL Injection in DataObject composite index handling

7

High

CVE-2026-5394

Published date:

27 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Naveda

Our scanner

Frappe Framework v16.10.0 - Stored DOM XSS in Multiple Field Formatters

4.6

Medium

CVE-2026-3837

Published date:

21 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Frappe Framework 16.10.0 - Stored DOM XSS in Tag Pill Renderer

4.6

Medium

CVE-2026-3673

Published date:

21 de abr. de 2026

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our pentesters

DOMPurify mXSS via Re-Contextualization

5.3

Medium

CVE-2026-0540

Published date:

24 de mar. de 2026

Discovered by

Camilo Vera, Cristian Vargas and Scott Moore

External pentesters

Actual Sync Server 26.2.1 - Authenticated Path Traversal

5.3

Medium

CVE-2026-3089

Published date:

9 de mar. de 2026

Discovered by

Juan Patarroyo

Carregar mais

Buscar por termo

Filtros de busca

Discovered by

Todos

Severity

Todos

Our scanner

Helpy 2.8.0 - Stored XSS in knowledgebase Doc body rendering

4.8

Medium

CVE-2026-40230

Published date:

29 de abr. de 2026

Discovered by

Oscar Uribe

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Helpy 2.8.0 - Stored XSS in post author display via PostsHelper

5.1

Medium

CVE-2026-40229

Published date:

29 de abr. de 2026

Discovered by

Oscar Uribe

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Pimcore Platform v12.3.3 - Stored XSS in Document Editable Embed rendering

4.8

Medium

CVE-2026-5362

Published date:

27 de abr. de 2026

Discovered by

Oscar Naveda

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Naveda

Our scanner

Pimcore Platform v12.3.3 - SQL Injection in DataObject composite index handling

7

High

CVE-2026-5394

Published date:

27 de abr. de 2026

Discovered by

Oscar Naveda

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Naveda

Our scanner

Frappe Framework v16.10.0 - Stored DOM XSS in Multiple Field Formatters

4.6

Medium

CVE-2026-3837

Published date:

21 de abr. de 2026

Discovered by

Oscar Uribe

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our scanner

Frappe Framework 16.10.0 - Stored DOM XSS in Tag Pill Renderer

4.6

Medium

CVE-2026-3673

Published date:

21 de abr. de 2026

Discovered by

Oscar Uribe

Detected by

Fluid Attacks AI SAST Scanner,

disclosed by

Oscar Uribe

Our pentesters

DOMPurify mXSS via Re-Contextualization

5.3

Medium

CVE-2026-0540

Published date:

24 de mar. de 2026

Discovered by

Camilo Vera, Cristian Vargas and Scott Moore

External pentesters

Actual Sync Server 26.2.1 - Authenticated Path Traversal

5.3

Medium

CVE-2026-3089

Published date:

9 de mar. de 2026

Discovered by

Juan Patarroyo

Carregar mais

Learn about our policy for disclosing advisories of vulnerabilities in third-party, open-source products.

Comece seu teste gratuito de 21 dias

Descubra os benefícios de nossa solução de Hacking Contínuo, da qual empresas de todos os tamanhos já desfrutam.

Comece seu teste gratuito de 21 dias

Descubra os benefícios de nossa solução de Hacking Contínuo, da qual empresas de todos os tamanhos já desfrutam.

Comece seu teste gratuito de 21 dias

Descubra os benefícios de nossa solução de Hacking Contínuo, da qual empresas de todos os tamanhos já desfrutam.

As soluções da Fluid Attacks permitem que as organizações identifiquem, priorizem e corrijam vulnerabilidades em seus softwares ao longo do SDLC. Com o apoio de IA, ferramentas automatizadas e pentesters, a Fluid Attacks acelera a mitigação da exposição ao risco das empresas e fortalece sua postura de cibersegurança.

Consulta IA sobre Fluid Attacks

Assine nossa newsletter

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.

As soluções da Fluid Attacks permitem que as organizações identifiquem, priorizem e corrijam vulnerabilidades em seus softwares ao longo do SDLC. Com o apoio de IA, ferramentas automatizadas e pentesters, a Fluid Attacks acelera a mitigação da exposição ao risco das empresas e fortalece sua postura de cibersegurança.

Assine nossa newsletter

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.

As soluções da Fluid Attacks permitem que as organizações identifiquem, priorizem e corrijam vulnerabilidades em seus softwares ao longo do SDLC. Com o apoio de IA, ferramentas automatizadas e pentesters, a Fluid Attacks acelera a mitigação da exposição ao risco das empresas e fortalece sua postura de cibersegurança.

Assine nossa newsletter

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.