Known Vulnerabilities for Common Cgi by Trendmicro
Listed below are 10 of the newest known vulnerabilities associated with "Common Cgi" by "Trendmicro".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-71251 json | Akaunting's shared download route (app/Http/Controllers/Common/Uploads.php::download(), reachable at uploads/{id}/download be... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-71249 json | 299Ko's public contact form (plugin/contact/controllers/ContactController.php, home()) sets raw POST field values (name, firs... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-71240 json | DjangoCRM's toggle_default_sorting view is the only route in common/urls.py that is not wrapped in login_required or staff_me... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-70557 json | diboot-core's POST /common/load-related-data endpoint resolves caller-supplied field names to any @TableField column of any e... | Not Provided | 2026-08-06 | 2026-08-07 |
| CVE-2026-70374 json | HashBrown CMS through 1.4.6 contains an OS Command Injection vulnerability (CWE-78) in the media upload thumbnail generation ... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-69152 json | The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.18, 2.1.4, 3.0.6,... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-67320 json | axios in a Node.js deployment using the HTTP adapter can route requests through an attacker-controlled proxy. axios hardens m... | Not Provided | 2026-08-01 | 2026-08-03 |
| CVE-2026-66402 json | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple TLS certificate identity validation weaknesses in tls_v... | Not Provided | 2026-08-01 | 2026-08-05 |
| CVE-2026-65008 json | Grav 2.0.4 (fixed in 2.0.7) contains a remote code execution vulnerability in Blueprint::dynamicData() (system/src/Grav/Commo... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-64621 json | FreeRDP before 3.28.0 (affected 3.x through 3.27.1) contains a double-free vulnerability in freerdp_client_rdp_file_apply_to_... | Not Provided | 2026-07-20 | 2026-07-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Trendmicro | Common Cgi | 2.0.0.1227 |