CVE.report search for "CVE-2026-43945"

Listed below are 50 relevant search results for "CVE-2026-43945" based on Vendor, Software, and CVE description

These results are gathered from attempted matches with listed vendor and software data, as well as a keyword search in the description of all known CVEs.

If you notice a "Not Listed" in either the vendor or software columns, the underlying source record does not currently include normalized affected-product data.

Search Results

CVE ID Vendor Software Description
CVE-2026-72867Dokploy is a free, self-hostable Platform as a Service (PaaS). From 0.29.3 until 0.29.13, the incomplete fix for CVE-2026-456...
CVE-2026-72759In affected versions of MISP cti-transmute, the conversion-history details endpoint performs an incomplete authorization chec...
CVE-2026-72735Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, writeTraefikConfigRemote in packages/server/...
CVE-2026-72732Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the discourse_templates...
CVE-2026-72731Discourse is an open-source discussion platform. From 2026.1.0-latest until 2026.1.7, 2026.6.2, 2026.7.1, and 2026.8.0-latest...
CVE-2026-72730Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the Rich Text Editor re...
CVE-2026-72729Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the discourse-local-dat...
CVE-2026-72728Discourse is an open-source discussion platform. Prior to 2026.1.7, an authenticated user could submit specially formed URLs ...
CVE-2026-72727Discourse is an open-source discussion platform. Prior to 026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, a low-privileged user co...
CVE-2026-72726Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, an authenticated user c...
CVE-2026-72725Discourse is an open-source discussion platform. Prior to 2026.1.6, the staff action log model rendered unescaped previous an...
CVE-2026-72724Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, plugins/chat/lib/chat/o...
CVE-2026-72723Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, SiteSerializer.anonymou...
CVE-2026-72722Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, TopicLink.extract_from,...
CVE-2026-72721Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, Onebox::DomainChecker.i...
CVE-2026-72720Discourse is an open-source discussion platform. Prior to 2026.1.7, 2026.6.2, 2026.7.1, and 2026.8.0-latest.1, Discourse has ...
CVE-2026-71959Bitwarden Server before 2026.7.2 does not verify that the caller is a member of the organization identified in a POST /collec...
CVE-2026-71315Nuxt is an open-source web development framework for Vue.js. From 3.21.7 until 3.21.10 and 4.5.1, mixed-case routeRules keys ...
CVE-2026-71260ESPHome through 2026.7.0-dev discloses plaintext passwords via its web_server component. In WebServer::text_json_ (esphome/co...
CVE-2026-71259ESPHome through 2026.7.0-dev contains an operator-precedence bug in the cv.url validator in esphome/config_validation.py. Bec...
CVE-2026-70636Flowise through 3.1.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to access the OAu...
CVE-2026-69152JuliangruberBrace-expansionThe brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.18, 2.1.4, 3.0.6,...
CVE-2026-69125Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67321. Reason: This candidate is a dupli...
CVE-2026-69124Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67320. Reason: This candidate is a dupli...
CVE-2026-69123Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67319. Reason: This candidate is a dupli...
CVE-2026-68948Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67318. Reason: This candidate is a dupli...
CVE-2026-68947Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67317. Reason: This candidate is a dupli...
CVE-2026-68946Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67315. Reason: This candidate is a dupli...
CVE-2026-68944Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67316. Reason: This candidate is a dupli...
CVE-2026-68943Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67314. Reason: This candidate is a dupli...
CVE-2026-68942Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67313. Reason: This candidate is a dupli...
CVE-2026-68941Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67312. Reason: This candidate is a dupli...
CVE-2026-68494The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint bypass i...
CVE-2026-66373Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via...
CVE-2026-66065Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to const...
CVE-2026-66061Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.5.0, the iOS Comp...
CVE-2026-66060Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.5.3, the Compani...
CVE-2026-66053ApacheThriftImproper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift Python bindings. This issue affects Apa...
CVE-2026-65908JetbrainsPycharmIn JetBrains PyCharm before 2026.1.4, 2026.2 arbitrary code execution via malicious Python executable was possible on untrust...
CVE-2026-65907In JetBrains TeamCity before 2026.1.2, 2025.11.6 code execution in Git VCS roots was possible
CVE-2026-65906In JetBrains TeamCity before 2026.1.2, 2025.11.6 сode execution via Kotlin DSL sandbox escape was possible
CVE-2026-65885BalbooaGridboxJoomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authent...
CVE-2026-65835Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.8, after the incomplete CVE-2026...
CVE-2026-65604Skipper contains an incomplete fix for CVE-2026-50197 in which oversized request bodies bypass Open Policy Agent (OPA) deny-o...
CVE-2026-64958ApacheCxfAn incomplete fix for CVE-2026-50645 means that it is still possible to perform a denial of service attack on Apache CXF by ...
CVE-2026-64825Home Assistant Core before 2026.6.0 contains a path traversal vulnerability that allows unauthenticated attackers to write ar...
CVE-2026-64824Home Assistant Core before 2026.7.0 contains a path traversal vulnerability in the backup-restore function that allows attack...
CVE-2026-64823Home Assistant Core before 2026.5.4 contains a cross-site scripting vulnerability in the Shelly integration's async_get_media...
CVE-2026-64815JetbrainsIntellij IdeaIn JetBrains IntelliJ IDEA before 2026.2 arbitrary code injection was possible via UI Designer form files
CVE-2026-64814JetbrainsIntellij IdeaIn JetBrains IntelliJ IDEA before 2026.2 unauthorized file access was possible in a Remote Development session

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report