Known Vulnerabilities for User Verification by Pickplugins
Listed below are 1 of the newest known vulnerabilities associated with "User Verification" by "Pickplugins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-107102 json | This vulnerability exists in the ERP system due to improper validation of payment callback parameters and inadequate authenti... | Not Provided | 2026-10-07 | 2026-10-07 |
| CVE-2026-106460 json | Backstage is an open framework for building developer portals. From 0.3.0 until 0.6.15 and 0.7.5, the @backstage/plugin-auth-... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105485 json | Authentication bypass OAuth device authorization flow in Devolutions Server 2026.3.7.0 and earlier allows a remote attacker t... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105295 json | GitAhead 2.5.0 through 2.7.1 contains an insecure update mechanism that installs downloaded updates without integrity or sign... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-104978 json | Plane is an open-source project management tool. Prior to 1.4.0, Plane's project invitation list endpoint is accessible to an... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-103655 json | MISP contains a vulnerability in its two-factor authentication (TOTP) verification process that permits a valid one-time code... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103651 json | MISP contains a vulnerability in its one-time password (OTP) authentication flow that allows replay of a consumed HOTP (paper... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102508 json | Improper Verification of Cryptographic Signature and Improper Certificate Validation in the OPC UA driver of Apache PLC4X (PL... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-102361 json | mall4j through 4.0 contains a missing authentication vulnerability in the PUT /user/updatePwd endpoint that allows unauthenti... | Not Provided | 2026-09-29 | 2026-10-01 |
| CVE-2026-102128 json | An identity-verification weakness in Kiteworks Email Protection Gateway allowed the gateway to act on the Kiteworks platform ... | Not Provided | 2026-09-30 | 2026-10-01 |