CVE-2026-44000 to CVE-2026-44999
152 CVEs with public proof-of-concept exploits.
- CVE-2026-440011 PoCvm2: Sandbox Escape via Promise Constructor Unhandled Rejection (Process Crash DoS)
- CVE-2026-440021 PoCvm2: Host File Path Disclosure via Stack Trace Information Leak
- CVE-2026-440031 PoCvm2: Transformer Fast-Path Bypass Exposes Internal State Variable
- CVE-2026-440041 PoCvm2: Host Process OOM DoS via Buffer.alloc (Timeout Bypass)
- CVE-2026-440051 PoCvm2: Sandbox escape
- CVE-2026-440071 PoCvm2: nesting: true bypasses require: false, allowing sandbox escape to arbitrary OS command execution
- CVE-2026-440241 PoCFluentd: Remote Code Execution (RCE) via Arbitrary File Write in `${tag}` Placeholder
- CVE-2026-441151 PoCOpenClaw < 2026.4.22 - Shell Expansion Bypass in Unquoted Heredocs via Exec Allowlist
- CVE-2026-441181 PoCOpenClaw < 2026.4.22 - Owner Context Spoofing via Bearer Token Header
- CVE-2026-441771 PoCKirby: Pre-authentication path traversal and PHP file inclusion during user lookup
- CVE-2026-441801 PoCJupyter Enterprise Gateway: ContainerProcessProxy._enforce_prohibited_ids can be Bypassed
- CVE-2026-441811 PoCJupyter Enterprise Gateway: Jinja2 Template Server Side Template Injection results in Remote Code Execution
- CVE-2026-441821 PoCJupyter Enterprise Gateway Has Kubernetes Manifest Injection via Jinja2 Template Rendering
- CVE-2026-442091 PoCBanks: Critical Remote Code Execution (RCE) via Jinja2 SSTI
- CVE-2026-442101 PoCKata Containers have VM Escape via virtiofsd Argument Injection through Default-Enabled Pod Annotations
- CVE-2026-442111 PoCCline Kanban Server has a Cross-Origin WebSocket Hijacking Vulnerability
- CVE-2026-442141 PoCeventsource-encoder: SSE event injection via unsanitized event and id fields
- CVE-2026-442221 PoCvLLM: Remote DoS via Special-Token Placeholders
- CVE-2026-442251 PoCPulpy: Incomplete filesystem sandbox in pulpy.fs bridge allows packaged web apps to read arbitrary user files
- CVE-2026-442261 PoCpyLoad: Unauthenticated traceback disclosure via global exception handler in WebUI
- CVE-2026-442321 PoCdssrf: every IPv6 category bypasses is_url_safe
- CVE-2026-442401 PoCbasic-ftp allows a malicious FTP server to cause client-side denial of service via unbounded multiline control response buffering
- CVE-2026-442411 PoCMicronaut Framework: Unbounded formattersCache in TimeConverterRegistrar Allows Memory Exhaustion via Accept-Language Header
- CVE-2026-442421 PoCMicronaut Framework: Unbounded bundleCache in ResourceBundleMessageSource Allows Memory Exhaustion via Accept-Language Header
- CVE-2026-442431 PoCGitPython: Path traversal in GitPython reference APIs allows arbitrary file write and delete outside the repository
- CVE-2026-442441 PoCGitPython: Newline injection in config_writer().set_value() enables RCE via core.hooksPath
- CVE-2026-442451 PoCKyverno: [policy-reporter-ui] XSS via Stored Property Values in PropertyCard Component
- CVE-2026-442624 PoCsScramble: Remote code execution via evaluation of user-controlled input in validation rules
- CVE-2026-442771 PoCA improper access control vulnerability in Fortinet FortiAuthenticator 8.0.2, FortiAuthenticator 8.0.0, FortiAuthenticator 6.6.0 through…
- CVE-2026-442891 PoCprotobufjs: Denial of service through unbounded protobuf recursion
- CVE-2026-443041 PoCLemur: LDAP Filter Injection enables post-authentication privilege escalation
- CVE-2026-443051 PoCLemur: LDAP TLS certificate verification globally disabled enables credential interception
- CVE-2026-443071 PoCMako: Path traversal via backslash URI on Windows in TemplateLookup
- CVE-2026-443091 PoCgitsign verify accepts signatures over go-git-normalized bytes, enabling trust confusion on malformed commits
- CVE-2026-443101 PoCgitsign --verify panics on empty-certificate PKCS7 and exits 0, bypassing exit-code callers
- CVE-2026-443111 PoCFabric.js: Improper escaping in fabric.Gradient colorStops leads to XSS in SVG serialization
- CVE-2026-443121 PoCcss_parser allows to MITM included https css urls
- CVE-2026-443151 PoCfree5GC: NEF 3gpp-pfd-management API is unauthenticated; forged bearer tokens can create, read, and delete PFD transactions
- CVE-2026-443161 PoCfree5GC: PCF npcf-smpolicycontrol POST /sm-policies panics on downstream UDR/OpenAPI 404 via nil pointer dereference
- CVE-2026-443171 PoCfree5GC: PCF npcf-policyauthorization POST /app-sessions panics on suppFeat=1 with missing AfRoutReq via nil pointer dereference
- CVE-2026-443181 PoCfree5GC: BSF concurrent PUT /nbsf-management/v1/subscriptions/{subId} crashes the BSF process via concurrent map read/write on Subscriptions
- CVE-2026-443191 PoCfree5GC: NEF crashes via logger.Fatal on PFD notification delivery failure (attacker-controlled notifyUri)
- CVE-2026-443201 PoCfree5GC: NEF nnef-callback route group is unauthenticated; forged callback requests are accepted into the processing path
- CVE-2026-443211 PoCfree5GC: SMF UPI POST /upi/v1/upNodesLinks exits the SMF process on overlapping UE pools (unauthenticated, reachable Fatalf)
- CVE-2026-443221 PoCfree5GC: NEF 3gpp-pfd-management PATCH applications/{appId} panics on UDR access failure due to nil ProblemDetails dereference
- CVE-2026-443231 PoCfree5GC: UDR nudr-dr DELETE amf-subscriptions panics on missing subsId when UE state exists (nil pointer dereference)
- CVE-2026-443241 PoCfree5GC: UDR nudr-dr DELETE amf-subscriptions panics on missing UE state via nil interface type assertion (single authenticated request)
- CVE-2026-443251 PoCfree5GC: NRF POST /oauth2/token structured-form parser type-confusion panic family (Reflect.Set on incompatible types)
- CVE-2026-443261 PoCfree5GC: NEF 3gpp-traffic-influence API is unauthenticated; missing or forged bearer tokens can create, read, patch, and delete…
- CVE-2026-443271 PoCfree5GC: NEF nnef-oam route group is unauthenticated; no-token requests reach the OAM handler
- CVE-2026-443281 PoCfree5GC: SMF UPI DELETE /upi/v1/upNodesLinks/{ref} panics on AN-node deletion via nil UPF dereference; unauthenticated, state-mutating
- CVE-2026-443291 PoCfree5GC: SMF UPI management interface lacks auth middleware; unauthenticated topology read/write requests reach handlers
- CVE-2026-443301 PoCfree5GC: NEF nnef-pfdmanagement API is unauthenticated; forged bearer tokens can read PFD data and create/delete PFD subscriptions
- CVE-2026-443341 PoCPraisonAI: Unauthenticated RCE via `tool_override.py`
- CVE-2026-443361 PoCPraisonAI MCP `tools/call` path-traversal and RCE via Python `.pth` injection
- CVE-2026-443371 PoCPraisonAI knowledge-store backends interpolate unvalidated collection names into SQL and CQL queries
- CVE-2026-443383 PoCsPraisonAI ships and generates a legacy API server with authentication disabled by default, allowing unauthenticated workflow execution
- CVE-2026-443391 PoCPraisonAI has unsafe tool resolution in `ToolExecutionMixin.execute_tool`: undeclared `__main__` callables execute
- CVE-2026-443401 PoCPraisonAI: Symlink-extraction bypass of `_safe_extractall` writes outside `dest_dir`
- CVE-2026-443451 PoCBentoML: Dockerfile command injection via docker.base_image
- CVE-2026-443461 PoCBentoML: Dockerfile command injection via envs[*].name in bentofile.yaml
- CVE-2026-443491 PoCDaptin fuzzy search injects unvalidated column name into raw SQL
- CVE-2026-443511 PoCfast-jwt: Empty HMAC secret accepted via async key resolver - JWT auth bypass
- CVE-2026-443531 PoCStreamlink: Arbitrary local file read via file:// URI in HLS and DASH
- CVE-2026-443761 PoCCubeCart: Reflected XSS in Store Search Bar
- CVE-2026-443811 PoCMISP: SQL injection via unvalidated ordering parameters in event and shadow attribute listings
- CVE-2026-444011 PoCTypemill CMS 2.x Persistent XSS via Markdown javascript URI
- CVE-2026-444032 PoCsWing FTP Server < 8.1.3 Authenticated Remote Code Execution via Session Serialization
- CVE-2026-444231 PoCShellHub: Cross-tenant IDOR in `GET /api/sessions/:uid` discloses SSH session data
- CVE-2026-444241 PoCShellHub: Cross-tenant IDOR in `GET /api/devices/:uid` discloses device data of any namespace
- CVE-2026-444251 PoCShellHub: Crash-DoS via field injection in filter and sort-by parameters
- CVE-2026-444261 PoCShellHub: Cross-tenant IDOR in `GET /api/namespaces/:tenant` via API Key bypasses membership check
- CVE-2026-444271 PoCMCP Registry: Open Redirect
- CVE-2026-444291 PoCMCP Registry: Stored XSS in catalogue UI via attribute-quote breakout in publisher-controlled `websiteUrl`
- CVE-2026-444761 PoCDoorkeeper OpenID Connect: Dynamic Client Registration feature creates public clients with client_secret
- CVE-2026-444831 PoCRVF: Prototype pollution in @rvf/set-get reachable via @rvf/core preprocessFormData (HTTP form data)
- CVE-2026-444861 PoCAxios: Proxy-Authorization header leaks to redirect target when proxy is re-evaluated to direct connection
- CVE-2026-444871 PoCAxios: Proxy-Authorization Credential Leak to Origin Server Across HTTP-to-HTTPS Redirect in Axios Node.js HTTP Adapter
- CVE-2026-444881 PoCAxios: Allocation of Resources Without Limits or Throttling in axios
- CVE-2026-444891 PoCAxios: Proxy-Authorization Header Injection via Prototype Pollution — Incomplete Null-Prototype Fix
- CVE-2026-444901 PoCAxios: DoS & Header Injection via Prototype Pollution Read-Side Gadgets in axios merge functions
- CVE-2026-444921 PoCAxios: shouldBypassProxy does not recognize IPv4-mapped IPv6 addresses, allowing NO_PROXY bypass (incomplete fix for CVE-2025-62718)
- CVE-2026-444941 PoCAxios: Full Man-in-the-Middle via Prototype Pollution Gadget in `config.proxy`
- CVE-2026-444951 PoCAxios: Credential Theft and Response Hijacking via Prototype Pollution Gadget in Config Merge
- CVE-2026-444961 PoCAxios: Regular Expression Denial of Service (ReDoS) via Cookie Name Injection
- CVE-2026-445031 PoCKiota abstractions RedirectHandler leaks Cookie/Proxy-Authorization headers on cross-host redirect
- CVE-2026-445221 PoCNote Mark: Arbitrary File Write via Path Traversal in Asset Names Leading to Remote Code Execution
- CVE-2026-445231 PoCNote Mark: JWT Secret Weakness allows Full Account Takeover via token forgery
- CVE-2026-445491 PoCOpen WebUI: Stored XSS in excel file preview
- CVE-2026-445511 PoCOpen WebUI: LDAP Empty Password Authentication Bypass
- CVE-2026-445691 PoCOpen WebUI: Insecure Message Access Breaks Authorization
- CVE-2026-445701 PoCOpen WebUI: Inconsistent authorization controls within memories API
- CVE-2026-445711 PoCOpen WebUI: Improper Authorization in Standard Channels Allows Message Updates with Read Permission
- CVE-2026-445751 PoCNext.js: Middleware / Proxy bypass in App Router applications via segment-prefetch routes
- CVE-2026-445785 PoCsNext.js: Server-side request forgery in applications using WebSocket upgrades
- CVE-2026-445871 PoCCarrierWave has a denylisted_content_type bypass via Unescaped Regex Metacharacters
- CVE-2026-445891 PoCnuxt-og-image SSRF — bypass of GHSA-pqhr-mp3f-hrpp / v6.2.5 fix (IPv6 + redirect)
- CVE-2026-445901 PoCSherlock: Command Injection via pull_request_target in validate_modified_targets.yml
- CVE-2026-445931 PoCesm.sh: Legacy Route Path Traversal Can Lead to RCE
- CVE-2026-445941 PoCesm.sh: Path Traversal via package.json browser field allows reading arbitrary server files
- CVE-2026-445952 PoCsYamcs: Unauthorized user enumeration via IAM API endpoints
- CVE-2026-445962 PoCsYamcs: No Rate Limiting on Authentication Endpoint
- CVE-2026-446131 PoCApache Zeppelin: Cross-site request forgery in REST and WebSocket request handling
- CVE-2026-446321 PoCYamcs: Server-Side Code Injection (RCE) via Janino Expression Engine in `JavaExprAlgorithmExecutionFactory`
- CVE-2026-446411 PoCMicrosoft APM: plugin.json component paths escape plugin root and copy arbitrary host files during install
- CVE-2026-446441 PoCLiquidJS's strip_html filter bypass via newline characters in HTML tags enables XSS
- CVE-2026-446451 PoCLiquidJS has a renderLimit DoS guard bypass via empty `{% for %}` body
- CVE-2026-446461 PoCLiquidJS: `{% render %}` tag silently bypasses per-render `ownPropertyOnly:true` via `Context.spawn()`
- CVE-2026-446501 PoCSillyTavern: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
- CVE-2026-446511 PoCSillyTavern: Reflected XSS vulnerability in the CORS proxy middleware
- CVE-2026-446521 PoCSillyTavern: SSRF vulnerability in the CORS proxy middleware
- CVE-2026-446561 PoCVim: OS Command Injection via 'path' completion
- CVE-2026-446802 PoCsMikroORM: SQL injection via runtime-controlled identifiers and JSON-path keys
- CVE-2026-446811 PoCAuthlib: Open Redirect in Authlib OIDC Implicit/Hybrid Authorization
- CVE-2026-447051 PoCtmp: Path Traversal via unsanitized prefix/postfix enables directory escape
- CVE-2026-447061 PoCChatwoot: SQL Injection in Conversation/Contact Filter API via Custom Attribute Values
- CVE-2026-447081 PoCMistune Math Plugin XSS Escape Bypass
- CVE-2026-447161 PoCPipecat: Path Traversal in Pipecat Runner `/files` Endpoint — Arbitrary File Read via `%2F`-Encoded Separator
- CVE-2026-447211 PoCOpen WebUI: Stored XSS via Model Description
- CVE-2026-447241 PoCsysteminformation: Linux command injection in networkInterfaces() via unsanitized NetworkManager connection profile name
- CVE-2026-447261 PoCDeno: TLS retry copies stale upgrade hook, risking plaintext traffic
- CVE-2026-447371 PoCgrav-plugin-admin: Stored Cross-Site Scripting (XSS) Reflected endpoint /admin/pages/[page], parameter data[header][title]
- CVE-2026-447391 PoCPimcore: SQL Injection in Custom Reports Column Configuration
- CVE-2026-447411 PoCPimcore Admin Classic Bundle Vulnerable to SQL Injection in Translation Grid Date Filter via Unsanitized Property Parameter
- CVE-2026-447741 PoCTraefik: Gateway API TraefikService backend accepts rest@internal, allowing unauthorized exposure of the REST provider despite…
- CVE-2026-447882 PoCsSharpCompress: Directory traversal via directory entries in WriteToDirectory (zip slip variant)
- CVE-2026-447891 PoCn8n: HTTP Request Node Pagination Prototype Pollution to RCE
- CVE-2026-448251 PoCApache Solr: Enabling BasicAuth using bin/solr CLI configures additional insecure users
- CVE-2026-448291 PoCGotenberg: Path traversal in zip entry name via Windows-style separators in upload filename
- CVE-2026-448361 PoCview_component: Preview Route Can Dispatch Inherited Helper Methods
- CVE-2026-448371 PoCview_component: System Test Entry Point Path Check Allows Sibling Directory Escape
- CVE-2026-448401 PoCDgraph Vulnerable to DQL Injection via checkUserPassword GraphQL Query
- CVE-2026-448441 PoCeml_parser: Recursion DoS via nested message/rfc822 attachments
- CVE-2026-448481 PoCPortainer: Missing authorization on Docker plugin endpoints allows host RCE
- CVE-2026-448491 PoCPortainer: Endpoint security bypass via Swarm service create/update
- CVE-2026-448811 PoCPortainer: Arbitrary File Read via Git Symlink Injection in Stack Auto-Update
- CVE-2026-448911 PoCNetty: Denial of Service via Unbounded Headers in StompSubframeDecoder
- CVE-2026-448951 PoCGitLab MCP Server: SSE transport has no authentication and wildcard CORS, exposing all GitLab tools
- CVE-2026-448971 PoCMistune Heading ID Attribute Injection XSS
- CVE-2026-448981 PoCMistune TOC Anchor Injection XSS
- CVE-2026-448991 PoCMistune Image Directive CSS Injection Vulnerability
- CVE-2026-449021 PoCopentelemetry-js: Prometheus exporter process crash via malformed HTTP request
- CVE-2026-449391 PoCCommand injection through unsanitized YAML parameter in Rancher
- CVE-2026-449632 PoCsA vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user.
- CVE-2026-449681 PoCdbt-mcp: Argument Injection in dbt CLI Tool Wrappers via node_selection and resource_type Parameters
- CVE-2026-449691 PoCdbt-mcp: Tool Arguments Including SQL Queries and Credentials Logged in Plaintext Without Redaction When File Logging Is Enabled
- CVE-2026-449701 PoCdbt-mcp: All MCP Tool Arguments Including Raw SQL and --vars Credentials Transmitted to dbt Labs Telemetry by Default Without Redaction
- CVE-2026-449711 PoCGuardDog: Blind GitHub URL rewrite in remote project scanning causes SSRF and `GH_TOKEN` exfiltration
- CVE-2026-449721 PoCGuardDog: Unsanitized human-readable scan output allows terminal escape injection from malicious package content
- CVE-2026-449831 PoCsmallbitvec: Safe API Triggered Heap Buffer Overflow via Integer Overflow
- CVE-2026-449851 PoCDozzle: Cross-Site WebSocket Hijacking (CSWSH) on exec/attach endpoints bypasses authentication
- CVE-2026-449901 PoCApostrophe has default XSS via `xmp` raw-text passthrough in `sanitize-html`