CVE-2026-69000 to CVE-2026-69999
30 CVEs with public proof-of-concept exploits.
- CVE-2026-690831 PoCSiYuan before v3.7.3 SQL Injection via fullTextSearchAssetContent
- CVE-2026-690842 PoCsSiYuan before v3.7.3 SQL Injection via searchEmbedBlock
- CVE-2026-690851 PoCSiYuan before v3.7.3 SQL Injection via searchDocs
- CVE-2026-690982 PoCskotaemon 0.12.0 Unauthenticated Remote Code Execution via Insecure Deserialization
- CVE-2026-691001 PoCLAMP 5.6.2 GlueFactory Unsandboxed Groovy Script Remote Code Execution
- CVE-2026-691101 PoCOpenCode Studio < 2.4.4 Unauthenticated File Read via /api/tmp and /api/music
- CVE-2026-691111 PoCMilvus 2.6.22, 3.0.0 Unauthenticated Denial of Service via /management/stop
- CVE-2026-691121 PoCHugging Face Accelerate 1.14.0 Path Traversal and DoS via weight_map
- CVE-2026-691141 PoCSpacebar Server Cross-Channel Message Deletion via Permission Check Bypass
- CVE-2026-691161 PoCFlyEnv < 4.18.0 Cross-Site Scripting via v-html
- CVE-2026-691181 PoCCachet 2.4.1 Authenticated Server-Side Template Injection RCE
- CVE-2026-691461 PoCMLflow: LogInputs endpoint bypasses per-run UPDATE authorization in basic-auth
- CVE-2026-691481 PoCMLflow: CreateModelVersion source validation does not check READ permission on referenced run_id
- CVE-2026-691521 PoCbrace-expansion: DoS via unbounded intermediate arrays, bypassing the CVE-2026-14257 mitigation
- CVE-2026-691531 PoCPostCSS: incomplete fix of CVE-2026-45623 — attacker-controlled sourceMappingURL reads arbitrary .map files when `from` is unset
- CVE-2026-691601 PoCOpenList: Arbitrary File Read via Path Prefix Confusion in Share Creation API
- CVE-2026-691921 PoCip-address: Address4 decodes leading-zero octets as decimal while resolvers decode them as octal, allowing SSRF and trust-boundary bypass
- CVE-2026-691981 PoCip-address: a CIDR suffix on the parsed address suppresses special-use classification and can bypass SSRF and trust-boundary checks
- CVE-2026-692401 PoCSequelize: SQL Injection (Oracle DB)
- CVE-2026-692431 PoCAIOHTTP: HTTP request smuggling via WebSocket upgrade
- CVE-2026-692491 PoCpython-cryptography: Duplicate self-signed intermediates can cause exponential path-building
- CVE-2026-692511 PoCFlowise RCE via TypeORM DataSource
- CVE-2026-692521 PoCFlowise: Missing authorization on `/api/v1/files` allows low-privileged API keys to list and delete files across workspaces within the…
- CVE-2026-692541 PoCFlowise: RCE via NodeVM Sandbox Escape in executeJavaScriptCode() nodeVMOptions Override
- CVE-2026-692561 PoCFlowise: Remote Code Execution Vulnerability in CSVAgent
- CVE-2026-692581 PoCFlowise: Unauthenticated Property Injection into Flow Execution Context via Ungated `overrideConfig` Spread in Prediction API
- CVE-2026-692621 PoCFlowise: `DELETE /api/v1/chatflows/:id` does not validate resource type, allowing `agentflows:delete` and `chatflows:delete` to delete…
- CVE-2026-692632 PoCsFlowise: CVE-2025-8943 Patch Bypass: npm_config_yes bypasses MCP environment variable blocklist (Unauthenticated RCE)
- CVE-2026-692641 PoCFlowise: RCE via CSVAgent csvFile data URI base64 segment is interpolated into Python source without validation
- CVE-2026-698362 PoCsMicrosoft Entra ID Remote Code Execution Vulnerability