Known Vulnerabilities for Galaxy by Gog
Listed below are 10 of the newest known vulnerabilities associated with "Galaxy" by "Gog".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54362 json | An incorrect visibility condition in the MISP event template builder allowed authenticated non-site-admin users to view galax... | Not Provided | 2026-06-12 | 2026-06-15 |
| CVE-2026-26214 json | Galaxy FDS Android SDK (XiaoMi/galaxy-fds-sdk-android) version 3.0.8 and prior disable TLS hostname verification when HTTPS i... | Not Provided | 2026-02-12 | 2026-07-14 |
| CVE-2026-21029 json | Improper export of android application components in Galaxy Editing Service prior to SMR Jun-2026 Release 1 allows local atta... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-21019 json | Improper input validation in FacAtFunction in Galaxy Watch prior to SMR May-2026 Release 1 allows local attacker to execute a... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-16493 json | A flaw was found in ansible-core. The _extract_collection_from_git() function in ansible-core's concrete_artifact_manager.py ... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-11332 json | A flaw was found in ansible-core. The ansible-galaxy role install command processes dependency specifications from a role's m... | Not Provided | 2026-06-05 | 2026-07-22 |
| CVE-2026-10854 json | A visibility control issue in the event template creation workflow allowed non-site-admin users to access private galaxies be... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2025-32183 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Galaxy Weblinks Video P... | Not Provided | 2025-04-04 | 2026-04-28 |
| CVE-2022-31262 json | An exploitable local privilege escalation vulnerability exists in GOG Galaxy 2.0.46. Due to insufficient folder permissions, ... | 7.8 - HIGH | 2022-08-17 | 2022-10-28 |
| CVE-2021-26807 json | GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and libwinpthread-1.dll from PATH, wh... | 7.8 - HIGH | 2021-04-30 | 2021-05-12 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gog | Galaxy | 2.0.19 | |||
| Application | Gog | Galaxy | 2.0.17 | |||
| Application | Gog | Galaxy | 2.0.15 | |||
| Application | Gog | Galaxy | 2.0.14 | |||
| Application | Gog | Galaxy | 2.0.13 | |||
| Application | Gog | Galaxy | 2.0.12.48 | |||
| Application | Gog | Galaxy | 2.0.12 | |||
| Application | Gog | Galaxy | 2.0.0 | |||
| Application | Gog | Galaxy | 1.2.67 | |||
| Application | Gog | Galaxy | 1.2.64 | |||
| Application | Gog | Galaxy | 1.2.54 | |||
| Application | Gog | Galaxy | 1.2.54 | |||
| Application | Gog | Galaxy | 1.2.54 | |||
| Application | Gog | Galaxy | 1.2.51 | |||
| Application | Gog | Galaxy | 1.2.51 | |||
| Application | Gog | Galaxy | 1.2.51 | |||
| Application | Gog | Galaxy | 1.2.50 | |||
| Application | Gog | Galaxy | 1.2.50 | |||
| Application | Gog | Galaxy | 1.2.50 | |||
| Application | Gog | Galaxy | 1.2.49 |