Known Vulnerabilities for App Player by Msi
Listed below are 1 of the newest known vulnerabilities associated with "App Player" by "Msi".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-104058 json | Podgrab contains a missing authentication vulnerability in which the /ws WebSocket route is registered on the root gin engine... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102875 json | VLC media player before 3.0.24 contains a path traversal vulnerability in the skins2 ThemeLoader that fails to validate membe... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-101036 json | A vulnerability has been found in FLB-Music FLB-Music-Player 1.1.8/1.1.9/1.2.0/1.2.1. This impacts the function path.join of ... | Not Provided | 2026-09-28 | 2026-09-28 |
| CVE-2026-96652 json | Plex Media Server before 1.43.3.10861 allows SSRF via '/player/timeline'. An attacker using any X-Plex-Token value can includ... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-96531 json | The Optimole WordPress plugin before 4.2.13 does not escape unrecognized attributes of its video-player block before renderi... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-93624 json | Shop manager PHP Object Injection in Music Player for WooCommerce <= 1.9.1 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-93512 json | Unauthenticated Cross Site Scripting (XSS) in JW Player for WordPress <= 2.3.11 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-92164 json | Streamlink is a CLI utility which pipes video streams from various services into a video player. Prior to 8.6.0, HTTPSession ... | Not Provided | 2026-09-23 | 2026-09-29 |
| CVE-2026-89247 json | WWBN AVideo at commit c3edcc274c389816d434acadac07ee78eaf330c1 and earlier contains an XML injection vulnerability in plugin/... | Not Provided | 2026-09-11 | 2026-09-15 |
| CVE-2026-86203 json | PocketMine-MP versions before 5.39.2 fail to validate entity despawn state when processing attack packets from clients. Attac... | Not Provided | 2026-09-09 | 2026-09-10 |