Known Vulnerabilities for Bus Script by Tourismscripts
Listed below are 1 of the newest known vulnerabilities associated with "Bus Script" by "Tourismscripts".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-78414 json | Cross-site scripting in the Web Administration interface of Network Optix Nx Witness VMS before version 6.1.3 on Linux, Windo... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78337 json | Unrestricted Upload of File with Dangerous Type in the company logo upload in Roskus Prospero Flow CRM before 5.15.13 allows ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-77776 json | Headroom's LLM proxy derives the memory owner from the x-headroom-user-id request header. The header is read directly at seve... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77775 json | Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve_open... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77075 json | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an expression injection vulnerability in resource-lo... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-77072 json | n8n before 1.123.69, 2.33.4, and 2.34.1 contains a stored cross-site scripting vulnerability in the Form node's completion pa... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-76837 json | Baserow interpolates a user's display name into the rich-text mention markup without HTML encoding. PATCH /api/user/account/ ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-76836 json | AzuraCast exposes the Liquidsoap custom configuration fields through an endpoint that does not require the permission guardin... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-76372 json | In Nmap Scanner versions below 3.0.15, a user who holds a role that can edit, create, or run playbooks in Splunk SOAR could r... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-76352 json | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "power" Splun... | Not Provided | 2026-08-19 | 2026-08-21 |