Known Vulnerabilities for Lead 2s by Leagoo
Listed below are 1 of the newest known vulnerabilities associated with "Lead 2s" by "Leagoo".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49095 json | Improper Input Validation (CWE-20) in the Kibana Fleet agent policy management feature can lead to privilege escalation. An a... | Not Provided | 2026-05-28 | 2026-05-30 |
| CVE-2026-49094 json | Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An ... | Not Provided | 2026-05-28 | 2026-05-29 |
| CVE-2026-49000 json | An insecure password scheme refers to vulnerabilities arising from improper selection of encryption algorithms, inadequate ke... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-48922 json | Jenkins Credentials Binding Plugin 720.v3f6decef43ea_ and earlier does not properly sanitize file names for file and zip file... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-48897 json | Insufficient state checks lead to a vector that allows to bypass 2FA checks. | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-48896 json | Insufficient state checks lead to a vector that allows to bypass 2FA checks. | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-48864 json | A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data... | Not Provided | 2026-05-26 | 2026-05-28 |
| CVE-2026-48849 json | In Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1, an unsanitized subject field in the draft restored value cou... | Not Provided | 2026-05-25 | 2026-05-26 |
| CVE-2026-48848 json | Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7 has insufficient HTML sanitization that could lead to Cascading St... | Not Provided | 2026-05-25 | 2026-05-26 |
| CVE-2026-48846 json | In Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1, the remote image blocking feature can be bypassed via a craf... | Not Provided | 2026-05-25 | 2026-05-26 |