Known Vulnerabilities for Control-m/server by Bmc
Listed below are 10 of the newest known vulnerabilities associated with "Control-m/server" by "Bmc".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-77651 json | The arrayref crate 0.3.10 for Rust can trigger execution of malicious code when compiling a project that uses the crate, beca... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77650 json | The append-only-vec crate 0.1.9 for Rust can trigger execution of malicious code when compiling a project that uses the crate... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77649 json | The internment crate 0.8.7 for Rust can trigger execution of malicious code when compiling a project that uses the crate, bec... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-76850 json | LMDeploy deserializes disaggregated-serving peer messages with pickle. The handle_zmq_recv coroutine in lmdeploy/pytorch/disa... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-75851 json | ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal ... | Not Provided | 2026-08-18 | 2026-08-18 |
| CVE-2026-73305 json | Budibase is an open-source low-code platform. Prior to 3.39.24, POST /api/public/v1/roles/assign called validateGlobalRoleUpd... | Not Provided | 2026-08-13 | 2026-08-18 |
| CVE-2026-73255 json | Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can control an SSI-enabled file can pl... | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-73210 json | A Server-Side Request Forgery (SSRF) vulnerability existed in Lookyloo's PlaywrightCapture when the only_global_lookup option... | Not Provided | 2026-08-11 | 2026-08-12 |
| CVE-2026-73047 json | siyuan versions <= 3.7.3 (fixed in v3.7.4) contain a server-side template injection vulnerability in the attribute-view Templ... | Not Provided | 2026-08-15 | 2026-08-17 |
| CVE-2026-72901 json | Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, Dokploy allows an authenticated low-privileg... | Not Provided | 2026-08-10 | 2026-08-13 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Bmc | Control-m/server | 6.4.1 |