Known Vulnerabilities for JSON API User by Parorrey
Listed below are 1 of the newest known vulnerabilities associated with "JSON API User" by "Parorrey".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-71316 json | Nuxt is an open-source web development framework for Vue.js. From 4.4.0 until 4.5.1, runtime cache:nuxt:payload entries for /... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-68494 json | The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint bypass i... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-66824 json | A stored cross-site scripting vulnerability existed in the capture tree visualization page. The application embedded the seri... | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-66415 json | Leantime 3.6.2 contains a server-side request forgery and local file inclusion vulnerability that allows authenticated attack... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-66050 json | NitroShare Desktop through 0.3.4 contains a path traversal vulnerability in its LAN file transfer server that allows unauthen... | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-63305 json | AVideo through 29.0 contains an OS command injection vulnerability in the ffmpeg.json.php endpoint where notifyCode and callb... | Not Provided | 2026-07-16 | 2026-07-20 |
| CVE-2026-60119 json | Hi.Events before 1.11.0 contains a cross-site scripting vulnerability that allows authenticated attackers with event creation... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-60092 json | AVideo (Meet plugin) through commit e8d6119f3cb1b849149906efeb0a41fc024f59f8 contains a stored cross-site scripting vulnerabi... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59854 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, POST /api/file/globalCopyFiles accepts attacke... | Not Provided | 2026-07-09 | 2026-07-10 |
| CVE-2026-59712 json | Leantime's Users::getUser method in the JSON-RPC API lacks proper authorization checks, allowing authenticated users to retri... | Not Provided | 2026-07-06 | 2026-07-07 |