Known Vulnerabilities for Storage by Storage Project
Listed below are 1 of the newest known vulnerabilities associated with "Storage" by "Storage Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-56448 json | A path traversal vulnerability exists in AIL Framework before the release containing commit 0041456af25da0cdea1c1c4624e46baff... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-56311 json | Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.get_current_plan_max_org RPC function that... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-56213 json | Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.upsert_version_meta SECURITY DEFINER funct... | Not Provided | 2026-06-20 | 2026-06-22 |
| CVE-2026-55746 json | Cotonti 1.0.0 (master branch, commit f43f1fc3) is vulnerable to stored Cross-Site Scripting in the Personal File Storage (PFS... | Not Provided | 2026-06-18 | 2026-06-18 |
| CVE-2026-55745 json | Cotonti 1.0.0 (master branch, commit f43f1fc3) is vulnerable to Cross-Site Request Forgery in the Personal File Storage (PFS)... | Not Provided | 2026-06-18 | 2026-06-18 |
| CVE-2026-55744 json | Cotonti 1.0.0 (master branch, commit f43f1fc3) is vulnerable to Cross-Site Request Forgery in the Personal File Storage (PFS)... | Not Provided | 2026-06-18 | 2026-06-18 |
| CVE-2026-54309 json | n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, when @n8n/mcp-browser is run in HTTP transpor... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-54022 json | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.11, the ydoc:... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-53867 json | Capgo before 12.128.2 fails to delete previously uploaded profile images from backend storage when users replace or remove th... | Not Provided | 2026-06-12 | 2026-06-15 |
| CVE-2026-53781 json | Summarize before 0.17.0 contains a resource exhaustion vulnerability that allows remote attackers to cause disk exhaustion by... | Not Provided | 2026-06-11 | 2026-06-11 |