Known Vulnerabilities for Flip by DJI
Listed below are 10 of the newest known vulnerabilities associated with "Flip" by "DJI".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-90648 json | wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situations that primarily involve 32-bit platforms, a... | Not Provided | 2026-09-13 | 2026-09-12 |
| CVE-2026-89520 json | In the Linux kernel, the following vulnerability has been resolved: sched/core: Make core-sched flips wait for in-flight sel... | Not Provided | 2026-09-11 | 2026-09-13 |
| CVE-2026-78321 json | The HTTP media server on DJI drones does not enforce sufficient limits on incoming connections or request rates. An attacker ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78306 json | DJI drones expose an unauthenticated DUML command interface over Bluetooth that allows an attacker within Bluetooth range to ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78255 json | The HTTP media server running on DJI drones serves stored photos and videos through the `/v2` endpoint without authenticating... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78251 json | DJI drones contain an FTP service that uses hardcoded credentials shared across affected models and permits authenticated use... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-77812 json | DJI drones transmit DUML (DJI Universal Markup Language) protocol messages over BLE (Bluetooth Low Energy) without encryption... | Not Provided | 2026-08-21 | 2026-08-24 |
| CVE-2026-53639 json | Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2... | Not Provided | 2026-09-08 | 2026-09-09 |
| CVE-2026-39944 json | Ceph is an open-source distributed storage platform providing object, block, and file storage. In versions prior to 20.2.4 an... | Not Provided | 2026-08-28 | 2026-09-01 |
| CVE-2026-18750 json | vinny/views.py: (ModifyEmailNotifications) IDOR: view fetches VinceCommEmail by raw pk from URL and toggles email_function/na... | Not Provided | 2026-08-12 | 2026-08-13 |