Known Vulnerabilities for User Profile by PickPlugins
Listed below are 10 of the newest known vulnerabilities associated with "User Profile" by "PickPlugins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65603 json | The Grav Login plugin (grav-plugin-login) versions <= 3.8.11 contain a privilege escalation flaw in the authenticated profile... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-63987 json | In the Linux kernel, the following vulnerability has been resolved: ethtool: coalesce: cap profile updates at NET_DIM_PARAMS... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-63102 json | rConfig Core before 8.2.8 contains a privilege escalation vulnerability that allows authenticated users to assign arbitrary r... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-61971 json | Authorization Bypass Through User-Controlled Key vulnerability in Cozmoslabs User Profile Picture metronet-profile-picture al... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-58374 json | In hostapd before 2.12, a missing bounds check in AP-mode Wi-Fi 7 (IEEE 802.11be) Multi-Link Operation (MLO) association requ... | Not Provided | 2026-06-30 | 2026-06-30 |
| CVE-2026-58228 json | Cross-site scripting vulnerability in phoenixframework phoenix_live_view allows an attacker to bypass URL scheme validation a... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-58174 json | Hermes WebUI before 0.51.521 validates the workspace of an imported session under the active named profile but constructs the... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-57945 json | PhotoPrism before 260601-a7d098548 contains a broken access control vulnerability that allows authenticated non-admin users t... | Not Provided | 2026-06-29 | 2026-07-14 |
| CVE-2026-57924 json | In JetBrains YouTrack before 2026.2.16593 default role configuration exposed excessive user profile details | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-57205 json | SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Pri... | Not Provided | 2026-07-16 | 2026-07-16 |