Known Vulnerabilities for User Notes by Cartpauj
Listed below are 10 of the newest known vulnerabilities associated with "User Notes" by "Cartpauj".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-106512 json | The CakeResponse::download() method in lib/Cake/Network/CakeResponse.php constructs a Content-Disposition header by directly ... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-105786 json | Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prior to 3.7.13, pa... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-103664 json | MISP contains a reflected cross-site scripting (XSS) vulnerability in the analyst data notes panel. The seed path parameter, ... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-95819 json | A vulnerability has been found in anirbandutta9 College-Notes-Gallery up to 8c1cf3d98f30982d069c88ca172612c001eb39f6. Affecte... | Not Provided | 2026-09-22 | 2026-09-23 |
| CVE-2026-93365 json | Bludit CMS through 3.22.0 contains a missing authorization vulnerability that allows authenticated users holding the Author o... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-91846 json | Affected versions of MISP allow a collection element to be created from a bare UUID without consistently checking whether the... | Not Provided | 2026-09-15 | 2026-09-15 |
| CVE-2026-91021 json | Trilium Notes, version v0.103.0 and earlier, contains a stored cross-site scripting (XSS) vulnerability in the share renderer... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-91016 json | The Motors WordPress plugin before 1.4.121 does not verify that a request is authorized to view a user's non-published listi... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-90955 json | Affected versions of MISP’s interactive CLI shell do not reliably preserve the identity of the impersonated MISP user acros... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-90884 json | The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'notes' parameter in all versio... | Not Provided | 2026-09-18 | 2026-09-18 |