Known Vulnerabilities for Personal Web Server by Microsoft
Listed below are 5 of the newest known vulnerabilities associated with "Personal Web Server" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-77352 json | Wallos is an open-source, self-hostable personal subscription tracker. From version 2.0.0 to before version 5.0.0, any authen... | Not Provided | 2026-08-31 | 2026-09-01 |
| CVE-2026-77351 json | Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 5.0.0, Wallos lets any authenticated ... | Not Provided | 2026-08-31 | 2026-09-01 |
| CVE-2026-77085 json | n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection bypass in the SearXNG Agent tool. The tool sent reques... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-71365 json | A server-side request forgery (SSRF) vulnerability was found in AWX's webhook status callback mechanism. When processing GitH... | Not Provided | 2026-08-18 | 2026-08-25 |
| CVE-2026-59832 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, the /snippets/*filepath route handler serveSni... | Not Provided | 2026-07-09 | 2026-07-10 |
| CVE-2026-54069 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan Note's kernel HTTP server unconditional... | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2026-53586 json | libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to b... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-50179 json | Actual is a local-first personal finance tool. Prior to 26.6.0, exportToCSV and exportQueryToCSV in packages/loot-core/src/se... | Not Provided | 2026-07-07 | 2026-07-09 |
| CVE-2026-49229 json | Actual is a local-first personal finance app. Prior to 26.6.0, in OpenID multi-user mode, disabling a user only blocks future... | Not Provided | 2026-07-07 | 2026-07-09 |
| CVE-2026-46700 json | Actual is a local-first personal finance tool. Prior to 26.6.0, the GET /secret/:name endpoint in @actual-app/sync-server che... | Not Provided | 2026-07-07 | 2026-07-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microsoft | Personal Web Server | 4.0 | |||
| Application | Microsoft | Personal Web Server | 2.0 | |||
| Application | Microsoft | Personal Web Server | 1.1 | |||
| Application | Microsoft | Personal Web Server | 1.0 | |||
| Application | Microsoft | Personal Web Server | - |