Known Vulnerabilities for Fms Employee by Johnsoncontrols
Listed below are 3 of the newest known vulnerabilities associated with "Fms Employee" by "Johnsoncontrols".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-101006 json | A flaw has been found in Frappe HR up to 16.15.0. This vulnerability affects the function get_expense_claims/get_shift_reques... | Not Provided | 2026-09-28 | 2026-10-01 |
| CVE-2026-94536 json | lamp-cloud through 5.10.0 fails to validate the employeeId parameter in the /anyone/visible/resource endpoint, allowing authe... | Not Provided | 2026-09-21 | 2026-09-23 |
| CVE-2026-92364 json | A vulnerability has been found in itsourcecode Leave Management System 1.0. Affected by this vulnerability is an unknown func... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-91770 json | IceHRM before 36.0.0 fails to validate employee ownership on seven REST sub-resource endpoints, allowing authenticated employ... | Not Provided | 2026-09-15 | 2026-09-15 |
| CVE-2026-88620 json | SmartAdmin API Java17 SpringBoot3 version 3.30.0 contains an improper authorization vulnerability in the /employee/queryAll e... | Not Provided | 2026-09-15 | 2026-09-22 |
| CVE-2026-82622 json | A security vulnerability has been detected in code-projects Employee Leave Managing System 1.0. Affected is an unknown functi... | Not Provided | 2026-08-31 | 2026-08-31 |
| CVE-2026-82610 json | A security flaw has been discovered in itsourcecode Online Medicine Delivery System 1.0. Affected is the function Employee::e... | Not Provided | 2026-08-31 | 2026-08-31 |
| CVE-2026-78970 json | JeecgBoot 3.9.2 and earlier contains an authorization bypass vulnerability in the SystemApiController component. An authentic... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-77705 json | The Booking for Appointments and Events Calendar WordPress plugin before 2.4.10 does not verify that the user editing a cust... | Not Provided | 2026-09-12 | 2026-09-12 |
| CVE-2026-77140 json | The extension validates the HMAC of a frontend employee edit link only in the action that renders the edit form, not in the a... | Not Provided | 2026-08-25 | 2026-08-27 |