Known Vulnerabilities for Whitelist by Fifthsegment

Listed below are 10 of the newest known vulnerabilities associated with "Whitelist" by "Fifthsegment".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-61736 json LightRAG provides simple and fast retrieval-augmented generation. Prior to 1.5.4, the server defaults to CORS_ORIGINS=* combi... Not Provided 2026-07-15 2026-07-15
CVE-2026-58624 json Improper input validation in sshd-git in Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and server-side... Not Provided 2026-07-20 2026-07-21
CVE-2026-58371 json SeaweedFS before 4.30 reflects the callback query parameter verbatim into responses served with Content-Type application/java... Not Provided 2026-06-30 2026-07-14
CVE-2026-58143 json Cotonti Siena 0.9.26 and earlier contains a cross-site request forgery vulnerability that allows unauthenticated attackers to... Not Provided 2026-07-09 2026-07-14
CVE-2026-56679 json 9Router is an AI router & token saver. Prior to 0.5.4, the PATCH /api/settings endpoint writes the entire request body to per... Not Provided 2026-07-15 2026-07-16
CVE-2026-50160 json Hoppscotch is an API development ecosystem. In self-hosted deployments of hoppscotch-backend from version 2026.4.1 and earlie... Not Provided 2026-07-01 2026-07-02
CVE-2026-49869 json Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, AuthenticationFilter in Kestra OSS... Not Provided 2026-06-26 2026-06-29
CVE-2026-49345 json Mercator is an open source web application that enables mapping of the information system. Prior to version 2025.05.19, a Ser... Not Provided 2026-06-19 2026-06-22
CVE-2026-48778 json Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the tag i... Not Provided 2026-06-26 2026-06-29
CVE-2026-48015 json Shopware is an open commerce platform. Prior to 6.6.10.18 and 6.7.10.1, SVG files are in the allowed_extensions whitelist in ... Not Provided 2026-07-17 2026-07-17

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report