Known Vulnerabilities for Identity Server by Na
Listed below are 10 of the newest known vulnerabilities associated with "Identity Server" by "Na".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-63095 json | Dendrite through 0.13.8 contains an improper authorization vulnerability in the Matrix Client-Server API that allows any auth... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-55952 json | The Erlang/OTP ssl application does not validate that the PSK identity list and binder list carried in a TLS 1.3 ClientHello ... | Not Provided | 2026-07-02 | 2026-07-03 |
| CVE-2026-55874 json | SeaweedFS is a distributed storage system. Prior to 4.34, the S3 API gateway does not reject dot-dot path segments in the X-A... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-55759 json | Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, 8.1.6... | Not Provided | 2026-06-24 | 2026-06-26 |
| CVE-2026-55671 json | ZITADEL is an open source identity management platform. From 4.0.0-rc.1 through 4.15.1, ZITADEL's HTTP notification channels,... | Not Provided | 2026-07-10 | 2026-07-14 |
| CVE-2026-55412 json | ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agent... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-54588 json | Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4.3.3 use the attacker-con... | Not Provided | 2026-06-23 | 2026-06-24 |
| CVE-2026-54361 json | MISP contained multiple mass assignment vulnerabilities in the handling of collections, tag collections, event delegations, a... | Not Provided | 2026-06-12 | 2026-06-15 |
| CVE-2026-53661 json | Boruta is a standalone authorization server that aims to implement OAuth 2.0 and Openid Connect up to decentralized identity ... | Not Provided | 2026-06-11 | 2026-06-11 |
| CVE-2026-52845 json | Caddy is an extensible server platform that uses TLS by default. Prior to 2.11.4, forward_auth copy_headers deletes the exact... | Not Provided | 2026-06-23 | 2026-07-15 |