Known Vulnerabilities for CF Deployment by CloudFoundry Foundation
Listed below are 10 of the newest known vulnerabilities associated with "CF Deployment" by "CloudFoundry Foundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-77776 json | Headroom's LLM proxy derives the memory owner from the x-headroom-user-id request header. The header is read directly at seve... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77775 json | Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve_open... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77083 json | n8n is a workflow automation platform. In versions prior to 1.123.69, 2.33.4, and 2.34.1, the JavaScript Code node's VM sandb... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-76847 json | act starts an HTTP Artifacts V4 backend whenever a workflow uses actions/upload-artifact@v4 or actions/download-artifact@v4. ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-76359 json | In Splunk SOAR versions below 8.6.0, a user who holds the Administrator role could use path traversal in the Universal Forwar... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-76345 json | In Splunk Enterprise versions below 10.4.2, a user with a high-privilege Splunk role that can manage search head clustering c... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-76316 json | In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.9, and 9.4.14, an unauthenticated user who can reach the Splunk mana... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76257 json | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, and Splunk Secure Gateway versions below 3.10.10, 3.9... | Not Provided | 2026-08-19 | 2026-08-19 |
| CVE-2026-76240 json | stigmem-node 0.9.0a1 interpolates Postgres backend schema identifiers into SQL strings without defensive quoting. In the affe... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-76227 json | Renovate versions from 42.68.1 before 42.96.3 (and from 42.68.1 before 43.4.4), including corresponding Docker images (renova... | Not Provided | 2026-08-19 | 2026-08-19 |