Known Vulnerabilities for Avatar Mod by Snitz Communications
Listed below are 1 of the newest known vulnerabilities associated with "Avatar Mod" by "Snitz Communications".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-108594 json | Mealie 3.26.0 through 3.28.0 contains a server-side request forgery vulnerability in the OpenID Connect avatar fetch that ign... | Not Provided | 2026-10-10 | 2026-10-10 |
| CVE-2026-105628 json | Plane is an open-source project management tool. Prior to 1.4.0, Plane's OAuth avatar synchronization flow fetches avatar_url... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-104976 json | Plane is an open-source project management tool. Prior to 1.4.0, Plane validates GITEA_HOST only for its URL scheme and does ... | Not Provided | 2026-10-05 | 2026-10-06 |
| CVE-2026-104968 json | Plane is an open-source project management tool. Prior to 1.4.0, GET /api/workspaces/{slug}/entity-search/?query_type=user_me... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-104962 json | Plane is an open-source project management tool. Prior to 1.4.0, GET /api/v1/workspaces/{slug}/projects/{project_id}/members/... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-97344 json | The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Avatar ... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-96678 json | A security vulnerability has been detected in weiqingwen spring-boot-forum up to 538eecc3c6b85fdf0768ab4e8354b48c0c17d94f. Af... | Not Provided | 2026-09-23 | 2026-09-29 |
| CVE-2026-96518 json | Missing Authorization vulnerability in properfraction ProfilePress wp-user-avatar allows Exploiting Incorrectly Configured Ac... | Not Provided | 2026-10-09 | 2026-10-09 |
| CVE-2026-96337 json | Missing Authorization vulnerability in properfraction ProfilePress wp-user-avatar allows Exploiting Incorrectly Configured Ac... | Not Provided | 2026-10-09 | 2026-10-09 |
| CVE-2026-95866 json | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vuln... | Not Provided | 2026-09-25 | 2026-09-25 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Snitz Communications | Avatar Mod | 1.3 |