Anwendungssicherheit

🟠 CVE-2026-45553: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-45553: High Schwachstelle

NiceGUI is a Python-based UI framework. Prior to version 3.12.0, ui.restructured_text() renders reStructuredText server-side with Docutils without disabling file insertion...

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-40780: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-40780: High Schwachstelle

Authentication Bypass Using an Alternate Path or Channel vulnerability in Liquid Web / StellarWP BookIt allows Password Recovery Exploitation. This...

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-42670: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-42670: High Schwachstelle

Missing Authorization vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations allows Exploiting Incorrectly Configured Access Control Security Levels....

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-3514: High Luecke in Prefect Prefect ANWENDUNGSSICHERHEIT

🟠 CVE-2026-3514: High Luecke in Prefect Prefect

In version 3.6.19 of prefecthq/prefect, an authentication bypass vulnerability exists due to the improper handling of URL path exemptions for...

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-8293: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-8293: High Schwachstelle

The Really Simple Security WordPress plugin before 9.5.10.1 does not enforce the second-factor challenge in two of its two-factor authentication...

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-39555: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-39555: High Schwachstelle

Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection. This issue affects Askka: from n/a through 1.3.1.

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-39551: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-39551: High Schwachstelle

Deserialization of Untrusted Data vulnerability in Elated-Themes Töbel allows Object Injection. This issue affects Töbel: from n/a through 1.8.1.

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-39550: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-39550: High Schwachstelle

Deserialization of Untrusted Data vulnerability in Elated-Themes Aperitif allows Object Injection. This issue affects Aperitif: from n/a through 1.6.

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-7313: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-7313: High Schwachstelle

CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from 8.0.5700 to 13.3.7652 allows a remote authenticated attacker...

04. Juni 2026 Keine Kommentare
🟠 CVE-2026-7201: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-7201: High Schwachstelle

CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity 15.2.x before 15.2.8441, 15.3.x before 15.3.8531, and 15.4.x...

04. Juni 2026 Keine Kommentare