Known Vulnerabilities for Iframe by Iframe Project
Listed below are 4 of the newest known vulnerabilities associated with "Iframe" by "Iframe Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65597 json | n8n before 1.123.64, 2.x before 2.29.8, and before 2.30.1 contains a DOM-based cross-site scripting vulnerability in the HTML... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-61456 json | The Grav API plugin (getgrav/grav-plugin-api) before 1.0.3 fails to sanitize SVG files uploaded through the POST /api/v1/medi... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-58266 json | Anki is a program for creating and reviewing flashcards. Prior to 25.09.4, Anki's webview-based pages communicate with the Ru... | Not Provided | 2026-07-07 | 2026-07-08 |
| CVE-2026-56354 json | n8n before 1.123.24, 2.10.4, and 2.12.0 (across its 1.x and 2.x branches) contains cross-site scripting and open redirect vul... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-55660 json | Tina is a headless content management system. In versions prior to @tinacms/app 2.5.6 and tinacms 3.9.3, cross-origin postMes... | Not Provided | 2026-07-01 | 2026-07-02 |
| CVE-2026-55596 json | Plate is a rich-text editor with AI and shadcn/ui. From 53.0.0 until 53.1.4, the media embed renderer trusts serialized provi... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-55592 json | Dashy is a self-hostable personal dashboard. Prior to 4.3.7, Dashy's workspace view trusts the url query parameter and assign... | Not Provided | 2026-07-07 | 2026-07-08 |
| CVE-2026-55408 json | Koodo Reader is an ebook reader. In version 2.3.0 and earlier, Koodo Reader is vulnerable to remote code execution through ma... | Not Provided | 2026-07-07 | 2026-07-08 |
| CVE-2026-54759 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, Lute's HTML sanitizer does not remove | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2026-54070 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, renderPackageREADME in kernel/bazaar/readme.go... | Not Provided | 2026-06-24 | 2026-06-26 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Iframe Project | Iframe | 4.5 | |||
| Application | Iframe Project | Iframe | 4.5 | |||
| Application | Iframe Project | Iframe | 4.4 | |||
| Application | Iframe Project | Iframe | 4.3 | |||
| Application | Iframe Project | Iframe | 4.2 | |||
| Application | Iframe Project | Iframe | 4.1 | |||
| Application | Iframe Project | Iframe | 4.0 | |||
| Application | Iframe Project | Iframe | 3.0 | |||
| Application | Iframe Project | Iframe | 2.9 | |||
| Application | Iframe Project | Iframe | 2.8 | |||
| Application | Iframe Project | Iframe | 2.7 | |||
| Application | Iframe Project | Iframe | 2.6 | |||
| Application | Iframe Project | Iframe | 2.5 | |||
| Application | Iframe Project | Iframe | 2.4 | |||
| Application | Iframe Project | Iframe | 2.3 | |||
| Application | Iframe Project | Iframe | 2.2 | |||
| Application | Iframe Project | Iframe | 2.1 | |||
| Application | Iframe Project | Iframe | 2.0 | |||
| Application | Iframe Project | Iframe | 1.8 | |||
| Application | Iframe Project | Iframe | 1.7 |