Known Vulnerabilities for VK Blocks by Vektor-inc
Listed below are 5 of the newest known vulnerabilities associated with "VK Blocks" by "Vektor-inc".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40728 json | Missing Authorization vulnerability in BlockArt Magazine Blocks magazine-blocks allows Exploiting Incorrectly Configured Acce... | Not Provided | 2026-04-15 | 2026-04-15 |
| CVE-2026-40322 json | SiYuan is an open-source personal knowledge management system. In versions 3.6.3 and below, Mermaid diagrams are rendered wit... | Not Provided | 2026-04-16 | 2026-04-17 |
| CVE-2026-40168 json | Postiz is an AI social media scheduling tool. Prior to 2.21.5, the /api/public/stream endpoint is vulnerable to SSRF. Althoug... | Not Provided | 2026-04-10 | 2026-04-13 |
| CVE-2026-40107 json | SiYuan is a personal knowledge management system. Prior to 3.6.4, SiYuan configures Mermaid.js with securityLevel: "loose" an... | Not Provided | 2026-04-09 | 2026-04-10 |
| CVE-2026-40100 json | FastGPT is an AI Agent building platform. Prior to 4.14.10.3, the /api/core/app/mcpTools/runTool endpoint accepts arbitrary U... | Not Provided | 2026-04-10 | 2026-04-15 |
| CVE-2026-40093 json | nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. In 1.3.0 and earlier, block timestamp val... | Not Provided | 2026-04-09 | 2026-04-09 |
| CVE-2026-39575 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ronald Huereca Custom Q... | Not Provided | 2026-04-08 | 2026-04-10 |
| CVE-2026-39516 json | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in POSIMYTH Nexter Blocks the-plus-a... | Not Provided | 2026-04-08 | 2026-04-14 |
| CVE-2026-35491 json | FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before... | Not Provided | 2026-04-07 | 2026-04-07 |
| CVE-2026-35469 json | spdystream is a Go library for multiplexing streams over SPDY connections. In versions 0.5.0 and below, the SPDY/3 frame pars... | Not Provided | 2026-04-16 | 2026-04-17 |