Known Vulnerabilities for Express by Checkpoint
Listed below are 1 of the newest known vulnerabilities associated with "Express" by "Checkpoint".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-74564 json | In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_hashlimit: validate hashtable supports XT_... | Not Provided | 2026-08-15 | 2026-08-19 |
| CVE-2026-73394 json | Unauthenticated Broken Access Control in Stitch Express <= 1.9.0 versions. | Not Provided | 2026-08-19 | 2026-08-19 |
| CVE-2026-72159 json | In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject non-inline dinodes with i_size and zero i_... | Not Provided | 2026-08-15 | 2026-08-17 |
| CVE-2026-64071 json | In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix use-after-free in nvme_free_host_mem() nv... | Not Provided | 2026-07-19 | 2026-07-19 |
| CVE-2026-63641 json | MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, MagicMirror applies ipWhitelist only as Expre... | Not Provided | 2026-08-18 | 2026-08-18 |
| CVE-2026-59148 json | Mockoon provides way to design and run mock APIs. Prior to 9.7.0, Mockoon's admin API in commons-server/src/libs/server/admin... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-57668 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Basix NEX-Forms nex-for... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-56278 json | Flowise before 3.1.0 (affected versions 3.0.13 and earlier) uses a weak hardcoded default secret ('flowise') for the express-... | Not Provided | 2026-06-30 | 2026-07-01 |
| CVE-2026-55445 json | Qinglong is a timed task management platform supporting Python3, JavaScript, Shell, and Typescript. Prior to 2.20.1, the init... | Not Provided | 2026-07-15 | 2026-07-18 |
| CVE-2026-55088 json | Etherpad is a real-time collaborative editor. From 2.6.0 until 3.1.0, Etherpad's src/node/hooks/express/tokenTransfer.ts uses... | Not Provided | 2026-08-19 | 2026-08-21 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Checkpoint | Express | ci_r57 | |||
| Application | Checkpoint | Express | - |