Known Vulnerabilities for Http Auth by Yasglobal
Listed below are 1 of the newest known vulnerabilities associated with "Http Auth" by "Yasglobal".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65596 json | n8n before 1.123.64, 2.29.8, and 2.30.1 fails to enforce the "Allowed HTTP Request Domains" restriction on HTTP-based credent... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-61451 json | The Grav API plugin (grav-plugin-api) before 1.0.4 does not validate the origin of the client-supplied admin_base_url field i... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-61435 json | PraisonAI before 4.6.78 contains an authentication bypass in the Call API agent invocation endpoints (src/praisonai/praisonai... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-59235 json | Missing Authorization (CWE-862) in BankAccountListController (app/Http/Controllers/Api/BankAccount/BankAccountListController.... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-59180 json | Apprise is an open source library which allows you to send a notification to almost all of the most popular notification serv... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-58399 json | @acastellon/auth is an authentication control system for microservices. Versions prior to 2.3.0 appear to allow an unauthenti... | Not Provided | 2026-07-01 | 2026-07-02 |
| CVE-2026-58167 json | Nightingale (n9e) before 9.0.0-beta.2 exposes full datasource configurations, including plaintext database passwords, HTTP be... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-56338 json | Capgo before 12.128.2 contains a denial of service vulnerability in the /auth/v1/otp endpoint that prevents email verificatio... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-55501 json | 9Router is an AI router & token saver. Prior to 0.4.80, the dashboard login rate limiter in src/lib/auth/loginLimiter.js deri... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-54762 json | Traefik is an HTTP reverse proxy and load balancer. From 3.7.0-ea.1 until 3.7.5, there is a medium severity vulnerability in ... | Not Provided | 2026-06-23 | 2026-06-24 |