Known Vulnerabilities for User Meta by Khaled
Listed below are 10 of the newest known vulnerabilities associated with "User Meta" by "Khaled".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-59212 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 before 0.10.0, _verify_knowl... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-56269 json | Flowise before 3.1.0 (npm package flowise, versions 3.0.13 and earlier) uses a weak hardcoded default value 'Secre$t' for the... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-54303 json | n8n is an open source workflow automation platform. Prior to 2.24.0, an endpoint in the Meta and Microsoft Teams trigger node... | Not Provided | 2026-06-23 | 2026-06-24 |
| CVE-2026-54012 json | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI... | Not Provided | 2026-06-23 | 2026-06-24 |
| CVE-2026-45343 json | LinkAce is a self-hosted archive to collect website links. Prior to 2.5.6, LinkAce contains a stored cross-site scripting vul... | Not Provided | 2026-05-28 | 2026-05-30 |
| CVE-2026-45253 json | ptrace(PT_SC_REMOTE) failed to properly validate parameters for the syscall(2) and __syscall(2) meta-system calls. As a resu... | Not Provided | 2026-05-21 | 2026-05-21 |
| CVE-2026-44767 json | setThemeRoot() failed to enforce the sap-allowed-theme-origins allowlist. An attacker-controlled absolute cross-origin URL co... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-44557 json | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the _valid... | Not Provided | 2026-05-15 | 2026-05-18 |
| CVE-2026-43884 json | WWBN AVideo is an open source video platform. In versions up to and including 29.0, two endpoints (plugin/AI/receiveAsync.jso... | Not Provided | 2026-05-11 | 2026-05-12 |
| CVE-2026-42553 json | Cinny is a Matrix client. Prior to 4.10.3, A remote authenticated attacker who shares a room with a victim and has permission... | Not Provided | 2026-05-27 | 2026-05-27 |