Known Vulnerabilities for Ex-rate by Bugfinder
Listed below are 1 of the newest known vulnerabilities associated with "Ex-rate" by "Bugfinder".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89604 json | In the Linux kernel, the following vulnerability has been resolved: efivarfs: Rate limit statfs() handler Ravi reports that... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-86729 json | WWBN AVideo through commit e01e41ecc (no patched version available) exposes get_api_preauthorize in plugin/API/API.php as a s... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-86452 json | Affected versions of MISP permit unauthenticated or weakly constrained request paths to perform persistent work without adequ... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-86186 json | AVideo API fails to enforce rate limits when clients send a bot User-Agent header, allowing attackers to bypass all eight pro... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-84476 json | WWBN AVideo fails to validate trusted proxies before accepting X-Real-IP and X-Forwarded-For headers, allowing attackers to s... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-82754 json | Improper Protection of Alternate Path vulnerability in ash-project ash_authentication_oauth2_server exposes the state-changin... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-82644 json | WWBN AVideo (current e01e41ecc and earlier) contains a brute-force rate limiting bypass in enforceRateLimit(), which protects... | Not Provided | 2026-08-30 | 2026-09-01 |
| CVE-2026-82643 json | WWBN AVideo contains an unauthenticated credential submission vulnerability in plugin/Live/api/preauthorize.json.php that acc... | Not Provided | 2026-08-30 | 2026-09-02 |
| CVE-2026-82075 json | An uncontrolled resource consumption weakness exists in the request-handling path of the MongoDB sharded-cluster router proce... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-81033 json | Automatisch reveals whether an address is registered through the response to its forgot-password request. The controller at p... | Not Provided | 2026-08-26 | 2026-08-28 |