Known Vulnerabilities for Metrics by Pevans
Listed below are 10 of the newest known vulnerabilities associated with "Metrics" by "Pevans".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-79668 json | Ech0 before 4.7.3 contains an authentication bypass vulnerability in the PUT /api/echo/like/:id endpoint that allows unauthen... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-79661 json | Ech0 through 4.5.6 registers the PUT /api/echo/like/:id endpoint on the public router group without authentication or rate li... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-76262 json | In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could read Prometheus service metrics from the Edge ... | Not Provided | 2026-08-19 | 2026-08-19 |
| CVE-2026-72914 json | Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.4.21, 4.5.14, 4.6.4, and 4.7.0-beta.1,... | Not Provided | 2026-08-10 | 2026-08-11 |
| CVE-2026-72542 json | A missing authorization vulnerability in Windmill Labs Windmill through 1.783.0 allows authenticated operators to write job p... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-72255 json | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_queue: pin bridge device while NFQUEUE hol... | Not Provided | 2026-08-15 | 2026-08-23 |
| CVE-2026-64934 json | The Mira cloud API accepts the firmware version reported by the companion app as authoritative for a given device, without in... | Not Provided | 2026-08-11 | 2026-08-12 |
| CVE-2026-59708 json | The GET /api/v1/public/:accessId/portfolio endpoint in ghostfolio accepts private access IDs without validating granteeUserId... | Not Provided | 2026-07-07 | 2026-07-09 |
| CVE-2026-59296 json | Using untrusted, non-normalized input as-is for metrics data (such as metric names, tag keys, or tag values) is a dangerous a... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-59092 json | JuiceFS through 1.3.1, fixed in commit a46979c, contains an authentication bypass vulnerability that allows unauthenticated r... | Not Provided | 2026-07-02 | 2026-07-14 |