Known Vulnerabilities for Desktop by Telegram
Listed below are 10 of the newest known vulnerabilities associated with "Desktop" by "Telegram".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-66012 json | SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp kernel endpoint, which is gated only by ... | Not Provided | 2026-07-25 | 2026-07-25 |
| CVE-2026-65606 json | SiYuan before v3.7.2 contains a cross-site scripting vulnerability in the siyuan:// protocol handler. When a siyuan://plugins... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65605 json | SiYuan before v3.7.2 contains a stored cross-site scripting vulnerability in Attribute View (database) cell rendering. A Temp... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-64324 json | In the Linux kernel, the following vulnerability has been resolved: udf: validate free block extents against the partition l... | Not Provided | 2026-07-25 | 2026-07-25 |
| CVE-2026-64317 json | In the Linux kernel, the following vulnerability has been resolved: isofs: bound Rock Ridge symlink components to the SL rec... | Not Provided | 2026-07-25 | 2026-07-25 |
| CVE-2026-59833 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, SiYuan renders note and package content to HTM... | Not Provided | 2026-07-09 | 2026-07-10 |
| CVE-2026-58634 json | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-58633 json | Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-58626 json | Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. | Not Provided | 2026-07-14 | 2026-07-22 |
| CVE-2026-58446 json | Presenton before 0.8.8-beta bundles an MCP server that, on server/Docker deployments configured with session authentication (... | Not Provided | 2026-06-30 | 2026-07-14 |