Known Vulnerabilities for Assets by Silverstripe
Listed below are 2 of the newest known vulnerabilities associated with "Assets" by "Silverstripe".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-79773 json | Winter CMS before 1.2.13 contains a local file inclusion vulnerability in the JavascriptImporter filter that allows authentic... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-76844 json | webpack-dev-middleware resolves a request to a local file in getFilenameFromUrl by testing the request pathname against a tra... | Not Provided | 2026-08-24 | 2026-08-26 |
| CVE-2026-76358 json | In Splunk SOAR versions below 8.6.0, a user with app-install privileges could use path traversal during app installation to w... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-75601 json | Static Web Server (SWS) is a production-ready web server suitable for static web files or assets. Through 2.43.0, instances w... | Not Provided | 2026-08-26 | 2026-08-26 |
| CVE-2026-75108 json | Next Terminal fails to enforce per-asset authorization checks on the portal ping and wake-on-LAN endpoints, allowing any auth... | Not Provided | 2026-08-17 | 2026-08-18 |
| CVE-2026-74907 json | Grav before 2.0.15 contains a path traversal vulnerability in the static asset server within index.php that uses string prefi... | Not Provided | 2026-08-18 | 2026-08-18 |
| CVE-2026-74800 json | SiYuan before v3.7.4 fails to set Content-Disposition and X-Content-Type-Options headers when serving arbitrary file assets, ... | Not Provided | 2026-08-17 | 2026-08-17 |
| CVE-2026-73680 json | Cockpit CMS 2.14.0 and prior contains a command injection vulnerability in the FFmpeg integration that allows authenticated u... | Not Provided | 2026-08-14 | 2026-08-17 |
| CVE-2026-73295 json | Material for MkDocs is a powerful documentation framework built on top of MkDocs. From 7.2.0 until 9.7.7, the mountSearchSugg... | Not Provided | 2026-08-12 | 2026-08-13 |
| CVE-2026-72809 json | SiYuan versions <= v3.7.2 (patched in v3.7.4) contain an authentication bypass vulnerability in the kernel's CheckAuth functi... | Not Provided | 2026-08-12 | 2026-08-14 |