Known Vulnerabilities for Forge by Digitalbazzar
Listed below are 1 of the newest known vulnerabilities associated with "Forge" by "Digitalbazzar".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-103055 json | AiSOC versions 7.5.0 before 12.0.0 use a hard-coded constant for JWT verification in the realtime WebSocket and SSE service w... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-102508 json | Improper Verification of Cryptographic Signature and Improper Certificate Validation in the OPC UA driver of Apache PLC4X (PL... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-102273 json | PyJWT is a Python implementation of JSON Web Token standards. From 2.13.0 until 2.14.0, PyJWT HMACAlgorithm.prepare_key is af... | Not Provided | 2026-09-28 | 2026-09-29 |
| CVE-2026-102272 json | PyJWT is a Python implementation of JSON Web Token standards. From 2.13.0 until 2.14.0, HMACAlgorithm.prepare_key in jwt/algo... | Not Provided | 2026-09-28 | 2026-09-29 |
| CVE-2026-102271 json | PyJWT is a Python implementation of JSON Web Token standards. From 2.4.0 until 2.14.0, PyJWT HMACAlgorithm.prepare_key is aff... | Not Provided | 2026-09-28 | 2026-10-01 |
| CVE-2026-102268 json | PyJWT is a Python implementation of JSON Web Token standards. Prior to 2.14.0, is_pem_format in jwt/utils.py is affected beca... | Not Provided | 2026-09-28 | 2026-09-29 |
| CVE-2026-100835 json | Contrast before 1.16.0 is susceptible to remote attestation relay attacks. Contrast accepted any TEE attestation report that ... | Not Provided | 2026-09-27 | 2026-09-30 |
| CVE-2026-100571 json | OpenClaw (npm package 'openclaw') versions >= 2026.6.6 and < 2026.8.1 apply the SMS webhook invalid-request rate limit before... | Not Provided | 2026-09-26 | 2026-09-28 |
| CVE-2026-97055 json | SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (tokenizer::jwt::secret, set via SIGNOZ_TOKENIZE... | Not Provided | 2026-09-24 | 2026-09-24 |
| CVE-2026-94416 json | An authorization bypass was found in the Ansible Automation Platform (AAP) gateway. The gateway API allows an authenticated a... | Not Provided | 2026-09-24 | 2026-09-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Digitalbazzar | Forge | 0.9.2 | |||
| Application | Digitalbazzar | Forge | 0.9.1 | |||
| Application | Digitalbazzar | Forge | 0.9.0 | |||
| Application | Digitalbazzar | Forge | 0.8.5 | |||
| Application | Digitalbazzar | Forge | 0.8.4 | |||
| Application | Digitalbazzar | Forge | 0.8.3 | |||
| Application | Digitalbazzar | Forge | 0.8.2 | |||
| Application | Digitalbazzar | Forge | 0.8.1 | |||
| Application | Digitalbazzar | Forge | 0.8.0 | |||
| Application | Digitalbazzar | Forge | 0.7.6 | |||
| Application | Digitalbazzar | Forge | 0.7.5 | |||
| Application | Digitalbazzar | Forge | 0.7.4 | |||
| Application | Digitalbazzar | Forge | 0.7.3 | |||
| Application | Digitalbazzar | Forge | 0.7.2 | |||
| Application | Digitalbazzar | Forge | 0.7.1 | |||
| Application | Digitalbazzar | Forge | 0.7.0 | |||
| Application | Digitalbazzar | Forge | 0.6.9 | |||
| Application | Digitalbazzar | Forge | 0.6.8 | |||
| Application | Digitalbazzar | Forge | 0.6.7 | |||
| Application | Digitalbazzar | Forge | 0.6.6 |