Known Vulnerabilities for Flow by Typo3
Listed below are 1 of the newest known vulnerabilities associated with "Flow" by "Typo3".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-93737 json | Azkaban through 4.0.0 omits project permission checks in the ScheduleServlet fetchSchedule action, allowing authenticated use... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-92512 json | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix use after free in ib_query_qp() When que... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-92511 json | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in ib_destroy_cq... | Not Provided | 2026-09-17 | 2026-09-18 |
| CVE-2026-92510 json | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in ib_destroy_sr... | Not Provided | 2026-09-17 | 2026-09-18 |
| CVE-2026-92507 json | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in ib_dealloc_pd... | Not Provided | 2026-09-17 | 2026-09-18 |
| CVE-2026-92462 json | yshop-crm through 2.1.3 fails to enforce authorization checks on the CrmFlowController deleteFlowStep endpoint, allowing any ... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92461 json | yshop-crm through 2.1.3 contains a missing authorization vulnerability in the GET /admin-api/crm/flow/flow-users endpoint tha... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92358 json | A flaw was found in the first broker login flow of Keycloak. When a user confirms an account-linking request from a different... | Not Provided | 2026-09-16 | 2026-09-17 |
| CVE-2026-92138 json | The OAuth authorization endpoint in Jenkins Bitbucket Server Integration Plugin 6.0.1 and earlier reads the `oauth_callback` ... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-90997 json | A flaw was found in Keycloak. When deployed in stateless mode with MySQL or MariaDB, a mismatch in row-count semantics betwee... | Not Provided | 2026-09-17 | 2026-09-17 |