Known Vulnerabilities for Config File Provider by Config File Provider Project
Listed below are 1 of the newest known vulnerabilities associated with "Config File Provider" by "Config File Provider Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-72718 json | goose is general-purpose AI agent that runs on your machine. Prior to 1.44.0, the `goose review` command runs the system `git... | Not Provided | 2026-08-10 | 2026-08-10 |
| CVE-2026-45246 json | Summarize prior to 0.15.1 contains an insecure file permission vulnerability in the refresh-free configuration rewrite path t... | Not Provided | 2026-05-18 | 2026-07-14 |
| CVE-2026-19887 json | The Welcart e-Commerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.12.... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2018-1000413 json | A cross-site scripting vulnerability exists in Jenkins Config File Provider Plugin 3.1 and earlier in configfiles.jelly, prov... | 5.4 - MEDIUM | 2019-01-09 | 2023-01-31 |