Known Vulnerabilities for Auto Cms by Ventics
Listed below are 1 of the newest known vulnerabilities associated with "Auto Cms" by "Ventics".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-64824 json | Home Assistant Core before 2026.7.0 contains a path traversal vulnerability in the backup-restore function that allows attack... | Not Provided | 2026-07-21 | 2026-07-21 |
| CVE-2026-64059 json | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix folio->private handling in netfs_perform_writ... | Not Provided | 2026-07-19 | 2026-07-19 |
| CVE-2026-63108 json | Roo Code through 3.54.0 contains a command injection vulnerability in the auto-approve execute feature that allows attackers ... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-61970 json | Server-Side Request Forgery (SSRF) vulnerability in Themeisle Auto Featured Image (Auto Post Thumbnail) auto-post-thumbnail a... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-59217 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, the file upload path a... | Not Provided | 2026-07-09 | 2026-07-14 |
| CVE-2026-58652 json | luci-app-travelmate (and the travelmate package) contain a privilege-escalation flaw: a LuCI/rpcd session holding the luci-ap... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2026-58446 json | Presenton before 0.8.8-beta bundles an MCP server that, on server/Docker deployments configured with session authentication (... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-58375 json | JimuReport through 2.5.0 exposes the POST /jmreport/auto/export endpoint without authentication: the handler is annotated @Ji... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-56784 json | OpenRemote before 1.25.0 contains an insecure direct object reference (IDOR) vulnerability in the bulk alarm deletion endpoin... | Not Provided | 2026-06-23 | 2026-07-14 |
| CVE-2026-56666 json | ZITADEL is an open source identity management platform. Prior to 4.15.3, ZITADEL's external identity provider handler checks ... | Not Provided | 2026-07-10 | 2026-07-13 |