🚨 NESTJS GET MIDDLEWARE BYPASS [CVE-2026-33011]
📊 Score: 8.7
📝 Nest is a framework for building scalable Node.js server-side applications. In versions 11.1.15 and below, a N..
🔗 Details: https://t.co/WCkJ2EofyY
#CVE#WatchStack#CyberSecurity
🚨 UNAUTHENTICATED REMOTE CODE EXECUTION IN LANGFLOW [CVE-2026-33017]
📊 Score: 9.3
📝 Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the..
🔗 Details: https://t.co/rWRTagn3t1
#CVE#WatchStack#CyberSecurity
🚨 SQL INJECTION IN AVIDEO [CVE-2026-33025]
📊 Score: 8.6
📝 AVideo is a video-sharing Platform. Versions prior to 8.0 contain a SQL Injection vulnerability in the getSqlF..
🔗 Details: https://t.co/rv2mhHnj55
#CVE#WatchStack#CyberSecurity
🚨 New Critical CVE [CVE-2019-25560]
📊 Score: 8.7
📝 Lyric Video Creator 2.1 contains a denial of service vulnerability that allows attackers to crash the applicat..
🔗 Details: https://t.co/4qycTjBgXz
#CVE#WatchStack#CyberSecurity
🚨 WWBN AVIDEO SSRF VIA REDIRECT IN LIVELINKS PROXY [CVE-2026-33039]
📊 Score: 8.6
📝 WWBN AVideo is an open source video platform. In versions 25.0 and below, the plugin/LiveLinks/proxy.php endpo..
🔗 Details: https://t.co/N5kZF1gsFa
#CVE#WatchStack#CyberSecurity
🚨 New Critical CVE [CVE-2026-33186]
📊 Score: 9.1
📝 gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an authorization bypass resul..
🔗 Details: https://t.co/vyIlPWI5nb
#CVE#WatchStack#CyberSecurity
🚨 New Critical CVE [CVE-2026-3334]
📊 Score: 8.8
📝 The CMS Commander plugin for WordPress is vulnerable to SQL Injection via the 'or_blogname', 'or_blogdescripti..
🔗 Details: https://t.co/ijeuTezTmt
#CVE#WatchStack#CyberSecurity
🚨 New Critical CVE [CVE-2026-2941]
📊 Score: 8.8
📝 The Linksy Search and Replace plugin for WordPress is vulnerable to unauthorized modification of data due to a..
🔗 Details: https://t.co/SeD3StqJEP
#CVE#WatchStack#CyberSecurity
🚨 PATH TRAVERSAL IN ALLURE REPORT GENERATOR [CVE-2026-33166]
📊 Score: 8.6
📝 Allure 2 is the version 2.x branch of Allure Report, a multi-language test reporting tool. The Allure report g..
🔗 Details: https://t.co/Mb42XhIxqF
#CVE#WatchStack#CyberSecurity
🚨 MEMORY EXHAUSTION VIA CRAFTED https://t.co/UlAYLaRPCM PACKET [CVE-2026-33151]
📊 Score: 8.7
📝 https://t.co/MfSs1MkPIs is an open source, real-time, bidirectional, event-based, communication framework. Prior to versions..
🔗 Details: https://t.co/nVMCBGwyCM
#CVE#WatchStack
🚨 New Critical CVE [CVE-2026-33136]
📊 Score: 9.3
📝 WeGIA is a web manager for charitable institutions. Versions 3.6.6 and below have a Reflected Cross-Site Scrip..
🔗 Details: https://t.co/7942d0IBkw
#CVE#WatchStack#CyberSecurity
🚨 New Critical CVE [CVE-2026-32710]
📊 Score: 8.5
📝 MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions..
🔗 Details: https://t.co/37NoKQCoEA
#CVE#WatchStack#CyberSecurity