Known Vulnerabilities for Cf-deployment by Cloudfoundry
Listed below are 10 of the newest known vulnerabilities associated with "Cf-deployment" by "Cloudfoundry".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-104873 json | LangGraph Python SDK is used to connect to running LangGraph API servers, manage assistants, threads and stream runs from Pyt... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-104059 json | Lektor 3.3.14 and 3.4.0b15 contains a cross-site request forgery vulnerability in the admin API blueprint that allows unauthe... | Not Provided | 2026-10-01 | 2026-10-02 |
| CVE-2026-103957 json | Server-side request forgery in the OAuth2 discovery handling in Loom for AWS before 1.7.0 might allow an authenticated remote... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-103956 json | Missing authentication for critical function in the authentication dependency in Loom for AWS before 1.6.1 allowed remote act... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-103053 json | AiSOC versions 9.0.0 before 12.0.0 fail to enforce authentication on the response-action API endpoints when AISOC_DEV_MODE is... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-102825 json | Russh is a Rust SSH client and server library. Prior to 0.62.6, the USERAUTH_REQUEST path reached from server::run_stream in ... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-102121 json | A form-rendering interface in the Advanced Forms component is reachable without authentication so that published forms can be... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102120 json | A privilege escalation vulnerability in Kiteworks could have allowed an attacker who had already obtained code execution on o... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-100860 json | heym before 0.0.105 does not act on the result of the credential authorization lookup in the Redis workflow node (backend/app... | Not Provided | 2026-09-27 | 2026-09-28 |
| CVE-2026-100675 json | stoatchat versions before 0.15.5 contain a denial of service vulnerability in the acknowledgement worker that processes mass ... | Not Provided | 2026-09-26 | 2026-09-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cloudfoundry | Cf-deployment | 9.5.0 | |||
| Application | Cloudfoundry | Cf-deployment | 9.4.0 | |||
| Application | Cloudfoundry | Cf-deployment | 9.3.0 | |||
| Application | Cloudfoundry | Cf-deployment | 9.2.0 | |||
| Application | Cloudfoundry | Cf-deployment | 9.1.0 | |||
| Application | Cloudfoundry | Cf-deployment | 9.0.0 | |||
| Application | Cloudfoundry | Cf-deployment | 8.1.0 | |||
| Application | Cloudfoundry | Cf-deployment | 8.0.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.9.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.8.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.7.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.6.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.5.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.4.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.3.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.2.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.11.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.10.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.1.0 | |||
| Application | Cloudfoundry | Cf-deployment | 7.0.0 |