Known Vulnerabilities for Merge by Htc
Listed below are 1 of the newest known vulnerabilities associated with "Merge" by "Htc".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
More device details and information can be found at device.report here: Htc Merge
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-67320 json | axios in a Node.js deployment using the HTTP adapter can route requests through an attacker-controlled proxy. axios hardens m... | Not Provided | 2026-08-01 | 2026-08-03 |
| CVE-2026-65900 json | DOMPurify versions >=3.0.0 and before 3.4.8, when configured with SAFE_FOR_TEMPLATES together with a DOM output mode (RETURN_... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-64053 json | In the Linux kernel, the following vulnerability has been resolved: block: don't overwrite bip_vcnt in bio_integrity_copy_us... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-64017 json | In the Linux kernel, the following vulnerability has been resolved: blk-mq: pop cached request if it is usable When submitt... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-63825 json | In the Linux kernel, the following vulnerability has been resolved: gcov: use atomic counter updates to fix concurrent acces... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-63755 json | SurrealDB before 3.1.0 evaluates user-supplied WHERE clauses in SELECT statements (and SET/MERGE/CONTENT/PATCH clauses in UPD... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-59880 json | Immutable.js provides many Persistent Immutable data structures. Prior to 4.3.9 and 5.1.8, Immutable.Map and Immutable.Set ke... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59869 json | js-yaml is a JavaScript YAML parser and dumper. From 3.0.0 before 3.15.0 and from 4.0.0 before 4.3.0, js-yaml can spend quadr... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-59868 json | js-yaml is a JavaScript YAML parser and dumper. From 5.0.0 before 5.2.0, when merge keys are enabled, js-yaml can spend quadr... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-58370 json | Woodpecker before 3.15.0 matches the ApprovalAllowedUsers bypass list against pipeline.Author. For the GitLab forge driver, p... | Not Provided | 2026-06-30 | 2026-07-14 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Htc | Merge | - |