Known Vulnerabilities for Core by Opnsense
Listed below are 10 of the newest known vulnerabilities associated with "Core" by "Opnsense".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-104612 json | A vulnerability was found in SourceCodester Student Result Management System 1.0. This affects an unknown part of the file sc... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-104447 json | YesWiki before 4.6.7 contains a cross-site request forgery vulnerability in the autoupdate UpdateAction that allows attackers... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-104356 json | PictShare before version 3.7.1 contains a weak randomness vulnerability where the getRandomString() function uses the non-cry... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103885 json | Asymmetric Resource Consumption vulnerability in Apache Directory LDAP API. A LDAP server using the LDAP API (like Apache... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-102831 json | JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architectur... | Not Provided | 2026-09-29 | 2026-10-02 |
| CVE-2026-102830 json | JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architectur... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102826 json | simple-git, an interface for running git commands in any node.js application, enables applications to execute Git operations ... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102511 json | Improper Verification of Source of a Communication Channel in the ADS discovery of the Go implementation of Apache PLC4X (PLC... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-102147 json | A stored cross-site scripting (XSS) weakness in Kiteworks Core could allow an unauthenticated attacker to store crafted conte... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102141 json | Two Kiteworks Core cluster-management operations did not validate file paths supplied to them, so an attacker holding root on... | Not Provided | 2026-09-30 | 2026-09-30 |