Known Vulnerabilities for D8s-domains by Democritus
Listed below are 1 of the newest known vulnerabilities associated with "D8s-domains" by "Democritus".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65596 json | n8n before 1.123.64, 2.29.8, and 2.30.1 fails to enforce the "Allowed HTTP Request Domains" restriction on HTTP-based credent... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-63862 json | In the Linux kernel, the following vulnerability has been resolved: PCI: mediatek-gen3: Prevent leaking IRQ domains when IRQ... | Not Provided | 2026-07-19 | 2026-07-19 |
| CVE-2026-59883 json | Guzzle is an extensible PHP HTTP client. Prior to 7.12.3, CookieJar did not restrict cookies scoped to IP-address or bare-num... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-59207 json | n8n is an open source workflow automation platform. Prior to 2.27.4 and 2.28.1, the AI Agents feature did not enforce the All... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-56843 json | Incorrect authorization in the XML-RPC API of WebPros Plesk before 18.0.78.4 allows a low-privileged authenticated customer t... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-56458 json | HCL DevOps Deploy uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-56348 json | n8n before 2.20.0 contains a credential exfiltration vulnerability in the POST /rest/dynamic-node-parameters/options endpoint... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-56336 json | Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /private/sso/check-domain endpo... | Not Provided | 2026-07-12 | 2026-07-14 |
| CVE-2026-56330 json | Capgo before 12.128.2 contains an open redirect vulnerability in stripe_portal and stripe_checkout endpoints that accept unva... | Not Provided | 2026-06-20 | 2026-06-23 |
| CVE-2026-56285 json | Nitter's /video media proxy endpoint fails to validate target URLs against Twitter/X domains and uses a hardcoded default HMA... | Not Provided | 2026-06-29 | 2026-07-14 |