Anwendungssicherheit
🟠 CVE-2026-44790: High Luecke in N8N N8N
n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an authenticated user with permission to...
🟠 CVE-2026-33760: High Schwachstelle
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langflow's /api/v1/monitor router exposes 7...
🟠 CVE-2026-8163: High Schwachstelle
The Infility Global WordPress plugin before 2.15.19 does not properly sanitize and escape some parameters before using them in SQL...
🔴 CVE-2026-44792: Critical Luecke in N8N N8N
n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an attacker with write access to...
🔴 CVE-2026-9733: Critical Schwachstelle
Mojolicious::Plugin::Web::Auth::OAuth2 versions through 0.17 for Perl have an insecure default state parameter. When no state generator is specified in the...
🔴 CVE-2026-48519: Critical Schwachstelle
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.2, the "Shareable Playground" (or "Public...
🔴 CVE-2026-44791: Critical Luecke in N8N N8N
n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an authenticated user with permission to...
🔴 CVE-2026-44789: Critical Luecke in N8N N8N
n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an authenticated user with permission to...
🔴 CVE-2026-56274: Critical Schwachstelle
Flowise before 3.1.2 contains multiple OS command injection vulnerabilities in the Custom MCP Server feature due to incomplete command-flag validation...
ANWENDUNGSSICHERHEIT
GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns
GitHub is moving to strengthen software supply chain security by updating "actions/checkout" to block pwn request attacks that exploit the...