Known Vulnerabilities for User Verification by Pickplugins
Listed below are 1 of the newest known vulnerabilities associated with "User Verification" by "Pickplugins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65699 json | AgentGPT through 1.0.0 contains an authorization bypass through user-controlled key vulnerability that allows authenticated u... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65015 json | n8n versions before 2.30.1 contain a privilege escalation vulnerability in the AI Agents feature where the node-execution too... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-63095 json | Dendrite through 0.13.8 contains an improper authorization vulnerability in the Matrix Client-Server API that allows any auth... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-61446 json | PraisonAI (praisonaiagents) before 1.6.78 contains a remote code execution vulnerability in the plugin manager, which loads a... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-59218 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, the /api/v1/auths/sign... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-58448 json | yudao-cloud before 2026.06 contains a broken access control vulnerability in the BPM module that allows any authenticated use... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-57172 json | DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, ShareSecretManage uses a hardcoded default... | Not Provided | 2026-07-07 | 2026-07-08 |
| CVE-2026-56772 json | NewsBlur before 14.5.0 contains a broken access control vulnerability that allows authenticated users to read private notific... | Not Provided | 2026-06-25 | 2026-07-14 |
| CVE-2026-56450 json | AIL did not restrict repeated failed attempts to verify a two-factor authentication (OTP) code. An attacker who had reached t... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-56345 json | AVideo through 29.0 contains an authorization bypass vulnerability in the Meet plugin's uploadRecordedVideo.json.php endpoint... | Not Provided | 2026-06-20 | 2026-06-23 |