Known Vulnerabilities for Origin by Ea
Listed below are 6 of the newest known vulnerabilities associated with "Origin" by "Ea".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65597 json | n8n before 1.123.64, 2.x before 2.29.8, and before 2.30.1 contains a DOM-based cross-site scripting vulnerability in the HTML... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-65317 json | Verba RAG application version 2.1.3 contains a server-side request forgery vulnerability combined with a same-origin middlewa... | Not Provided | 2026-07-21 | 2026-07-21 |
| CVE-2026-64823 json | Home Assistant Core before 2026.5.4 contains a cross-site scripting vulnerability in the Shelly integration's async_get_media... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-64821 json | djangoSIGE through 1.10 (commit a6fe7e8) contains a cross-site request forgery vulnerability that allows unauthenticated atta... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-64622 json | Network-AI (npm: network-ai) versions 5.12.2 through 5.13.3 fail to apply the configured authorization check (checkAuth/secre... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-64619 json | FileCodeBox before 2.4 contains a rate-limit bypass vulnerability in the IPRateLimit class that allows unauthenticated attack... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-63871 json | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix data-race on iso_pi fields in hci_ge... | Not Provided | 2026-07-19 | 2026-07-19 |
| CVE-2026-63771 json | Adminer before 5.4.3 contains a cookie injection vulnerability that allows attackers to manipulate cookie attributes by injec... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-62387 json | The Grav API plugin (getgrav/grav-plugin-api) before 1.0.0-rc.16 shipped Access-Control-Allow-Origin: * as its default CORS c... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-62236 json | grav-plugin-login before 3.8.11 contains a cross-site request forgery (CSRF) vulnerability in the login.regenerate2FASecret f... | Not Provided | 2026-07-17 | 2026-07-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ea | Origin | 10.5.86 | |||
| Application | Ea | Origin | 10.5.86 | |||
| Application | Ea | Origin | 10.5.86 | |||
| Application | Ea | Origin | 10.5.56.33908 | |||
| Application | Ea | Origin | 10.5.56.33908 | |||
| Application | Ea | Origin | 10.5.56.33908 | |||
| Application | Ea | Origin | 10.5.55.33574 | |||
| Application | Ea | Origin | 10.5.55.33574 | |||
| Application | Ea | Origin | 10.5.55.33574 | |||
| Application | Ea | Origin | 10.5.39 | |||
| Application | Ea | Origin | 10.5.37 | |||
| Application | Ea | Origin | 10.5.36 |