Known Vulnerabilities for Wiki by Requarks
Listed below are 10 of the newest known vulnerabilities associated with "Wiki" by "Requarks".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-104636 json | Gitea validated the initial remote URL for push mirrors, wiki remote checks, and fetches of migrated pull request heads, but ... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-104470 json | YesWiki before 4.6.7 contains a server-side request forgery vulnerability that allows page editors to make the server fetch a... | Not Provided | 2026-10-02 | 2026-10-04 |
| CVE-2026-104461 json | YesWiki before 4.6.7 contains a stored cross-site scripting vulnerability in the Bazar FileField, which validates only the up... | Not Provided | 2026-10-02 | 2026-10-06 |
| CVE-2026-104450 json | YesWiki before 4.6.7 contains a missing authorization flaw in the pointimage action (tools/attach/actions/pointimage.php), wh... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-104449 json | YesWiki before 4.6.7 contains an access control vulnerability allowing unauthenticated attackers to overwrite any existing wi... | Not Provided | 2026-10-02 | 2026-10-06 |
| CVE-2026-104446 json | YesWiki before 4.6.7 contains an authentication bypass in the contact mail AJAX handler that allows unauthenticated attackers... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-102911 json | A flaw has been found in zosmaai pi-llm-wiki up to 0.11.7. Affected is an unknown function of the file mcp/index.ts of the co... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-96589 json | When a private repository is transferred to a user who lacks access, Gitea grants that recipient temporary read access as a c... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-92776 json | Wiki.js through 2.5.314 fails to require path separators when matching START and END page rules, allowing attackers to access... | Not Provided | 2026-09-16 | 2026-09-18 |
| CVE-2026-92775 json | Wiki.js through 2.5.314 contains a server-side request forgery vulnerability in the Image Prefetch renderer that fetches arbi... | Not Provided | 2026-09-16 | 2026-09-21 |