Known Vulnerabilities for View Component by Viewcomponent
Listed below are 4 of the newest known vulnerabilities associated with "View Component" by "Viewcomponent".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-95665 json | MISP contains a reflected cross-site scripting (XSS) vulnerability in the event REST search export confirmation form. The vie... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-95659 json | MISP contains a reflected cross-site scripting (XSS) vulnerability in the AnalystDataController::viewForObject action. The me... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-94213 json | A flaw was found in the Authorization Services component of Keycloak, an open-source identity and access management solution.... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2026-94150 json | A security flaw has been discovered in Omega Solution HRM OS up to 20260717. The impacted element is an unknown function of t... | Not Provided | 2026-09-21 | 2026-09-24 |
| CVE-2026-93660 json | SQLBot through 1.10.1 fails to verify dashboard ownership in update_resource and update_canvas endpoints, allowing authentica... | Not Provided | 2026-09-18 | 2026-09-22 |
| CVE-2026-90893 json | MISP contains a Cross-Site Request Forgery (CSRF) vulnerability in the UserSettingsController. The actions setTheme, setHomeP... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-90528 json | A flaw has been found in TDuckApp tduck-platform up to 5.3. Affected by this vulnerability is an unknown functionality of the... | Not Provided | 2026-09-13 | 2026-09-14 |
| CVE-2026-88421 json | Incorrect access control in the BlogPage.get_entries() component of APSL puput v1.2.1 through v2.2.0 allows unauthenticated a... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-86764 json | Snipe-IT through 8.6.4 (fixed in 8.7.0) does not enforce the components.view permission on the authenticated endpoint GET /ap... | Not Provided | 2026-09-09 | 2026-09-20 |
| CVE-2026-86763 json | Snipe-IT versions >= 7.0.12 and <= 8.6.3 contain an authorization bypass in the Livewire importer component (App\Livewire\Imp... | Not Provided | 2026-09-09 | 2026-09-09 |