Known Vulnerabilities for View 20 by Huawei
Listed below are 1 of the newest known vulnerabilities associated with "View 20" by "Huawei".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
More device details and information can be found at device.report here: Huawei View 20
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-106512 json | The CakeResponse::download() method in lib/Cake/Network/CakeResponse.php constructs a Content-Disposition header by directly ... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-106461 json | Backstage is an open framework for building developer portals. Prior to 4.1.0, the @backstage/plugin-scaffolder-backend packa... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105693 json | Penpot is an open-source design and prototyping platform. Prior to 2.18.0, the unauthenticated get-view-only-bundle RPC retur... | Not Provided | 2026-10-05 | 2026-10-06 |
| CVE-2026-105675 json | Ghost is a Node.js content management system. From 4.39.0 until 6.64.0, staff users with permission to view staff invites wer... | Not Provided | 2026-10-05 | 2026-10-06 |
| CVE-2026-105638 json | Plane is an open-source project management tool. Prior to 1.4.0, Plane's magic-code email login uses a six-digit numeric OTP ... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-105488 json | Missing authorization in the global vault in Devolutions Server 2026.3.7.0 and earlier allows an authenticated user with only... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105306 json | A flaw was found in the Dynamic Client Registration flow of the Keycloak identity and access management server. The issue occ... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-105129 json | LaraDashboard before 1.4.8 contains an incorrect authorization vulnerability that allows authenticated users with only settin... | Not Provided | 2026-10-04 | 2026-10-06 |
| CVE-2026-104994 json | Trivy before 0.71.0 allows directory traversal in Terraform filesystem functions when they try to access pathnames above the ... | Not Provided | 2026-10-02 | 2026-10-05 |
| CVE-2026-104971 json | Plane is an open-source project management tool. Prior to 1.4.0, DuplicateAssetEndpoint fetches a source FileAsset without li... | Not Provided | 2026-10-05 | 2026-10-05 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Huawei | View 20 | - |