Known Vulnerabilities for Dashboards.php by Stimulsoft
Listed below are 1 of the newest known vulnerabilities associated with "Dashboards.php" by "Stimulsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-56213 json | Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.upsert_version_meta SECURITY DEFINER funct... | Not Provided | 2026-06-20 | 2026-06-22 |
| CVE-2026-55880 json | OpenReplay is a self-hosted session replay suite. In 1.27.0 and earlier, three dashboard and note mutation functions ran thei... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-55455 json | Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the outbound HTTP host filter app... | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2026-55454 json | Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the bundled Caddy reverse-proxy's... | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2026-50189 json | Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, Appsmith's bundled supervisord ex... | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2026-49979 json | Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 1.99, the POST /api/v1/admin/send-test... | Not Provided | 2026-06-24 | 2026-06-26 |
| CVE-2026-47026 json | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: OpenSearch Dashboards). Supp... | Not Provided | 2026-07-21 | 2026-08-01 |
| CVE-2026-28378 json | The public dashboard deletion endpoint does not enforce organization isolation, allowing an Org Admin in one organization to ... | Not Provided | 2026-07-07 | 2026-07-10 |
| CVE-2026-27877 json | When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed despite not being used i... | Not Provided | 2026-03-27 | 2026-07-15 |
| CVE-2026-23981 json | An Improper Authorization vulnerability exists in Apache Superset allowing an authenticated user with permissions to update c... | Not Provided | 2026-07-30 | 2026-07-30 |