Known Vulnerabilities for Personal Web Server by Microsoft
Listed below are 5 of the newest known vulnerabilities associated with "Personal Web Server" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-77085 json | n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection bypass in the SearXNG Agent tool. The tool sent reques... | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-71365 json | A server-side request forgery (SSRF) vulnerability was found in AWX's webhook status callback mechanism. When processing GitH... | Not Provided | 2026-08-18 | 2026-08-19 |
| CVE-2026-59832 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, the /snippets/*filepath route handler serveSni... | Not Provided | 2026-07-09 | 2026-07-10 |
| CVE-2026-54069 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan Note's kernel HTTP server unconditional... | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2026-53586 json | libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to b... | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-50179 json | Actual is a local-first personal finance tool. Prior to 26.6.0, exportToCSV and exportQueryToCSV in packages/loot-core/src/se... | Not Provided | 2026-07-07 | 2026-07-09 |
| CVE-2026-49229 json | Actual is a local-first personal finance app. Prior to 26.6.0, in OpenID multi-user mode, disabling a user only blocks future... | Not Provided | 2026-07-07 | 2026-07-09 |
| CVE-2026-46700 json | Actual is a local-first personal finance tool. Prior to 26.6.0, the GET /secret/:name endpoint in @actual-app/sync-server che... | Not Provided | 2026-07-07 | 2026-07-08 |
| CVE-2026-46412 json | @beproduct/nestjs-auth is a NestJS authentication module for BeProduct IDS (Identity Server) with OpenID Connect support. Bet... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-45272 json | MyBooks is an enhanced and easy-to-use personal ebook management web server also known as Talebook. In 3.41.2 and earlier, th... | Not Provided | 2026-08-19 | 2026-08-19 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microsoft | Personal Web Server | 4.0 | |||
| Application | Microsoft | Personal Web Server | 2.0 | |||
| Application | Microsoft | Personal Web Server | 1.1 | |||
| Application | Microsoft | Personal Web Server | 1.0 | |||
| Application | Microsoft | Personal Web Server | - |