Known Vulnerabilities for Connector by Open-xchange
Listed below are 10 of the newest known vulnerabilities associated with "Connector" by "Open-xchange".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49325 json | Improper handling of physical conditions in the bike-shutdown control of the Indian Motorcycle Scout Bobber + Tech 2025 model... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-49093 json | Server-Side Request Forgery (CWE-918) in Kibana can allow an authenticated user with connector management privileges to bypas... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-46819 json | Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business Suite (component: Internal Operations... | Not Provided | 2026-05-28 | 2026-05-29 |
| CVE-2026-45003 json | OpenClaw before 2026.4.22 allows workspace dotenv files to override connector endpoint hosts for Matrix, Mattermost, IRC, and... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-42398 json | Server-Side Request Forgery (CWE-918) in Kibana allows authenticated users with connector management privileges to bypass the... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-42316 json | kafka-sink-azure-kusto Kafka Connect plugin is the official Microsoft sink for Azure Data Explorer (Kusto). Prior to 5.2.3, k... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-41459 json | Xerte Online Toolkits versions 3.15 and earlier contain an information disclosure vulnerability that allows unauthenticated a... | Not Provided | 2026-04-22 | 2026-04-24 |
| CVE-2026-40466 json | Improper Input Validation, Improper Control of Generation of Code ('Code Injection') vulnerability in Apache ActiveMQ Broker,... | Not Provided | 2026-04-24 | 2026-04-25 |
| CVE-2026-34578 json | OPNsense is a FreeBSD based firewall and routing platform. Prior to 26.1.6, OPNsense's LDAP authentication connector passes t... | Not Provided | 2026-04-09 | 2026-04-09 |
| CVE-2026-34415 json | Xerte Online Toolkits versions 3.15 and earlier contain an incomplete input validation vulnerability in the elFinder connecto... | Not Provided | 2026-04-22 | 2026-04-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Open-xchange | Connector | 7.2.25 |