Known Vulnerabilities for Store by Oneplus
Listed below are 1 of the newest known vulnerabilities associated with "Store" by "Oneplus".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-81814 json | Affected versions of Flowintel render calendar event titles using innerHTML. Because those titles are derived from case title... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81753 json | Affected versions of Flowintel render Mermaid blocks contained in stored case notes without sufficiently neutralizing attacke... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81688 json | openssl_encrypt versions before 1.4.9 store an unkeyed SHA-256 hash of the plaintext in the cleartext file header metadata. A... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81683 json | openssl_encrypt (pip package openssl-encrypt) versions 1.4.8 and earlier store an mTLS client private key in cleartext within... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-80050 json | ContiNew Admin fails to apply file-upload permission checks or file-type allowlist validation to multipart upload endpoints, ... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-79653 json | In Eclipse SW360 versions 19.0.0, 19.1.0, 19.2.0, 20.0.0, 20.1.0, if the system is configured to use file system storage with... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-78655 json | Punk::Plugin::TOTP versions before 0.05 for Perl allow the second-factor attempt limit to be reset by replaying an earlier se... | Not Provided | 2026-08-25 | 2026-08-26 |
| CVE-2026-78541 json | A stored OS command injection vulnerability exists in the parent-control module of TP-Link Archer BE3600 V1. An authenticated... | Not Provided | 2026-08-24 | 2026-08-25 |
| CVE-2026-77763 json | The filestore backend in pkg/object/file.go, used for file:// stores and as a common juicefs sync destination, derived every ... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77384 json | libp2p is a JavaScript implementation of the libp2p networking stack. Prior to version 4.2.9, the reservation refresh path in... | Not Provided | 2026-08-24 | 2026-08-25 |