Known Vulnerabilities for Mime by Go Standard Library
Listed below are 10 of the newest known vulnerabilities associated with "Mime" by "Go Standard Library".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-61448 json | Parse Server is affected by a stored cross-site scripting (XSS) vulnerability in versions >= 9.0.0, < 9.10.0-alpha.2 and <= 8... | Not Provided | 2026-07-11 | 2026-07-13 |
| CVE-2026-58654 json | The Grav API plugin (getgrav/grav-plugin-api) 1.0.0 contains an unrestricted file upload vulnerability in the avatar upload e... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-58451 json | Horde IMP before 7.0.1 contains a path traversal vulnerability in lib/Compose.php that allows authenticated attackers to read... | Not Provided | 2026-07-01 | 2026-07-14 |
| CVE-2026-58371 json | SeaweedFS before 4.30 reflects the callback query parameter verbatim into responses served with Content-Type application/java... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-56398 json | Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth authentication flow where the pictu... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-54432 json | Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-54013 json | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI... | Not Provided | 2026-06-23 | 2026-06-26 |
| CVE-2026-53691 json | An Unrestricted File Upload vulnerability in Redeight CMS version 1.0 allows authenticated attackers to achieve Remote Code E... | Not Provided | 2026-06-30 | 2026-06-30 |
| CVE-2026-52891 json | Wekan is open source kanban built with Meteor. Prior to 9.07, Wekan avatar upload functionality embeds user-supplied filename... | Not Provided | 2026-07-15 | 2026-07-17 |
| CVE-2026-49972 json | Laravel-Mediable before 7.0.0 contains a file upload vulnerability that allows unauthenticated attackers to achieve remote co... | Not Provided | 2026-07-13 | 2026-07-15 |