Known Vulnerabilities for Comments by Verbb
Listed below are 3 of the newest known vulnerabilities associated with "Comments" by "Verbb".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76612 json | Joomla Extension - yootheme.com - Unauthenticated stored XSS via user-controlled fields in Zoo < 4.1.66 - User supplied input... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-76215 json | phpMyFAQ before 4.1.7 fails to apply parent FAQ visibility checks before returning child resources including comments and att... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-74492 json | In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: do not update comments from kernel-sid... | Not Provided | 2026-08-15 | 2026-08-19 |
| CVE-2026-73405 json | An authorization bypass vulnerability in Vulnerability-Lookup allowed inactive or unconfirmed accounts to subscribe to Server... | Not Provided | 2026-08-12 | 2026-08-12 |
| CVE-2026-73155 json | Affected versions of cti-transmute allow authenticated users to add or remove emoji reactions on comments without first check... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73140 json | Affected versions of cti-transmute fail to apply comment-level access-control rules when generating evaluation report exports... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-72731 json | Discourse is an open-source discussion platform. From 2026.1.0-latest until 2026.1.7, 2026.6.2, 2026.7.1, and 2026.8.0-latest... | Not Provided | 2026-08-10 | 2026-08-10 |
| CVE-2026-72487 json | In the Linux kernel, the following vulnerability has been resolved: PCI: Check ROM header and data structure addr before acc... | Not Provided | 2026-08-15 | 2026-08-17 |
| CVE-2026-71294 json | Cotonti CMS's Comments plugin deserializes user-supplied data without restricting the classes that may be instantiated. In pl... | Not Provided | 2026-08-05 | 2026-08-10 |
| CVE-2026-71247 json | Documenso's sign-field-with-token.ts, used by the live document-signing UI, allows a recipient with the ASSISTANT role to fet... | Not Provided | 2026-08-05 | 2026-08-10 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Verbb | Comments | 1.5.5 |