Known Vulnerabilities for Plane by Makeplane
Listed below are 10 of the newest known vulnerabilities associated with "Plane" by "Makeplane".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-86174 json | Plane through 1.4.2 fails to validate that issues belong to the deploy board's project in the public comment endpoint. Authen... | Not Provided | 2026-09-05 | 2026-09-05 |
| CVE-2026-85090 json | FreeRDP before 3.31.0 contains a heap out-of-bounds read vulnerability in the general_ChromaV1ToYUV444 function during AVC444... | Not Provided | 2026-09-03 | 2026-09-05 |
| CVE-2026-82641 json | Keploy versions 3.1.0 through 3.6.25, fixed in 3.6.26, bind the agent control-plane HTTP server to all interfaces without aut... | Not Provided | 2026-08-30 | 2026-09-02 |
| CVE-2026-82473 json | KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without authentication verification. A... | Not Provided | 2026-08-29 | 2026-08-31 |
| CVE-2026-80705 json | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: check if dml21_add_phantom_plane() is s... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-80700 json | In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: validate external BO copy bounds for both st... | Not Provided | 2026-08-28 | 2026-08-29 |
| CVE-2026-80693 json | In the Linux kernel, the following vulnerability has been resolved: idpf: bound interrupt-vector register fill to the alloca... | Not Provided | 2026-08-28 | 2026-08-29 |
| CVE-2026-78689 json | Description NGINX JavaScript (njs) has a vulnerability in the XML module's namespace prefix list parser, reachable through ... | Not Provided | 2026-09-02 | 2026-09-03 |
| CVE-2026-78222 json | A vulnerability exists in NGINX JavaScript where a malformed HTTP response received by ngx.fetch() can crash an NGINX worker ... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-77776 json | Headroom's LLM proxy derives the memory owner from the x-headroom-user-id request header. The header is read directly at seve... | Not Provided | 2026-08-21 | 2026-08-21 |