CVE.report search for "CVE-2026-57878"
Listed below are 50 relevant search results for "CVE-2026-57878" based on Vendor, Software, and CVE description
These results are gathered from attempted matches with listed vendor and software data, as well as a keyword search in the description of all known CVEs.
If you notice a "Not Listed" in either the vendor or software columns, the underlying source record does not currently include normalized affected-product data.
Search Results
| CVE ID | Vendor | Software | Description |
|---|---|---|---|
| CVE-2026-71315 | Nuxt is an open-source web development framework for Vue.js. From 3.21.7 until 3.21.10 and 4.5.1, mixed-case routeRules keys ... | ||
| CVE-2026-71260 | ESPHome through 2026.7.0-dev discloses plaintext passwords via its web_server component. In WebServer::text_json_() (esphome/... | ||
| CVE-2026-71259 | ESPHome through 2026.7.0-dev contains an operator-precedence bug in the cv.url() validator in esphome/config_validation.py: `... | ||
| CVE-2026-71251 | Akaunting's shared download route (app/Http/Controllers/Common/Uploads.php::download(), reachable at uploads/{id}/download be... | ||
| CVE-2026-71233 | InvoiceNinja v5-stable renders an invoice or quote's "terms" field in the client portal using Laravel Blade's raw output dire... | ||
| CVE-2026-71232 | MacCMS10's admin template editor (application/admin/controller/Template.php) blocks dangerous PHP functions in template conte... | ||
| CVE-2026-71211 | MLflow's AI Gateway accepts an auth_config.api_base value when creating a gateway secret (mlflow/server/handlers.py, _create_... | ||
| CVE-2026-70636 | Flowise through 3.1.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to access the OAu... | ||
| CVE-2026-69152 | Juliangruber | Brace-expansion | The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.18, 2.1.4, 3.0.6,... |
| CVE-2026-69125 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67321. Reason: This candidate is a dupli... | ||
| CVE-2026-69124 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67320. Reason: This candidate is a dupli... | ||
| CVE-2026-69123 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67319. Reason: This candidate is a dupli... | ||
| CVE-2026-68948 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67318. Reason: This candidate is a dupli... | ||
| CVE-2026-68947 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67317. Reason: This candidate is a dupli... | ||
| CVE-2026-68946 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67315. Reason: This candidate is a dupli... | ||
| CVE-2026-68944 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67316. Reason: This candidate is a dupli... | ||
| CVE-2026-68943 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67314. Reason: This candidate is a dupli... | ||
| CVE-2026-68942 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67313. Reason: This candidate is a dupli... | ||
| CVE-2026-68941 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67312. Reason: This candidate is a dupli... | ||
| CVE-2026-68494 | The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint bypass i... | ||
| CVE-2026-66373 | Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via... | ||
| CVE-2026-66065 | Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to const... | ||
| CVE-2026-66053 | Apache | Thrift | Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift Python bindings. This issue affects Apa... |
| CVE-2026-65908 | Jetbrains | Pycharm | In JetBrains PyCharm before 2026.1.4, 2026.2 arbitrary code execution via malicious Python executable was possible on untrust... |
| CVE-2026-65907 | In JetBrains TeamCity before 2026.1.2, 2025.11.6 code execution in Git VCS roots was possible | ||
| CVE-2026-65906 | In JetBrains TeamCity before 2026.1.2, 2025.11.6 сode execution via Kotlin DSL sandbox escape was possible | ||
| CVE-2026-65885 | Balbooa | Gridbox | Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authent... |
| CVE-2026-65835 | Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.8, after the incomplete CVE-2026... | ||
| CVE-2026-65604 | Skipper contains an incomplete fix for CVE-2026-50197 in which oversized request bodies bypass Open Policy Agent (OPA) deny-o... | ||
| CVE-2026-64958 | Apache | Cxf | An incomplete fix for CVE-2026-50645 means that it is still possible to perform a denial of service attack on Apache CXF by ... |
| CVE-2026-64825 | Home Assistant Core before 2026.6.0 contains a path traversal vulnerability that allows unauthenticated attackers to write ar... | ||
| CVE-2026-64824 | Home Assistant Core before 2026.7.0 contains a path traversal vulnerability in the backup-restore function that allows attack... | ||
| CVE-2026-64823 | Home Assistant Core before 2026.5.4 contains a cross-site scripting vulnerability in the Shelly integration's async_get_media... | ||
| CVE-2026-64815 | Jetbrains | Intellij Idea | In JetBrains IntelliJ IDEA before 2026.2 arbitrary code injection was possible via UI Designer form files |
| CVE-2026-64814 | Jetbrains | Intellij Idea | In JetBrains IntelliJ IDEA before 2026.2 unauthorized file access was possible in a Remote Development session |
| CVE-2026-64813 | Jetbrains | Intellij Idea | In JetBrains IntelliJ IDEA before 2026.2 unauthorized settings modification was possible in a Remote Development session |
| CVE-2026-64812 | Jetbrains | Intellij Idea | In JetBrains IntelliJ IDEA before 2026.2 unauthorized input injection was possible in a Remote Development session |
| CVE-2026-64811 | Jetbrains | Intellij Idea | In JetBrains IntelliJ IDEA before 2026.2 arbitrary code execution was possible before granting project trust via development ... |
| CVE-2026-64810 | Jetbrains | Intellij Idea | In JetBrains IntelliJ IDEA before 2026.2 hTML injection was possible in an IDE notification, allowing silent user activity tr... |
| CVE-2026-64809 | Jetbrains | Phpstorm | In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured in... |
| CVE-2026-64808 | Jetbrains | Phpstorm | In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project tooling |
| CVE-2026-64807 | Jetbrains | Webstorm | In JetBrains WebStorm before 2026.2 arbitrary code execution was possible via a project-supplied linter configuration |
| CVE-2026-64806 | Jetbrains | Webstorm | In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured No... |
| CVE-2026-64805 | Jetbrains | Webstorm | In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local pac... |
| CVE-2026-64804 | Jetbrains | Webstorm | In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local lin... |
| CVE-2026-64803 | Jetbrains | Goland | In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust via the configured Go S... |
| CVE-2026-64802 | Jetbrains | Goland | In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust in the Go Modules integ... |
| CVE-2026-64800 | Jetbrains | Goland | In JetBrains GoLand before 2026.2 sensitive configuration values written to log files by default |
| CVE-2026-64654 | GitHub CLI (gh) is GitHub's official command line tool. Prior to version 2.97.0, multiple GitHub CLI commands printed externa... | ||
| CVE-2026-64625 | AVideo before 29.0 contains an incomplete fix for CVE-2026-45578 where execAsync() re-wraps escaped commands in double-quoted... | ||