Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Denolfe

#19858of 53,622
13.1Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-29594
7.7
2026-04-01
Pyload · Pyload · CVE-2026-34746
Name of the Vulnerable Software and Affected Versions Payload versions prior to 3.79.1 Description A Server-Side Request Forgery (SSRF) vulnerability exists in the upload functionality. Authenticated users with `create` or `update` access to an upload-enabled collection could cause the server to make outbound HTTP requests to arbitrary URLs. Recommendations Upgrade to version 3.79.1 or later.
PT-2026-29597
5.4
2026-04-01
Pyload · Pyload · CVE-2026-34749
Name of the Vulnerable Software and Affected Versions Payload versions prior to 3.79.1 Description A Cross-Site Request Forgery (CSRF) issue existed in the authentication process. In certain scenarios, the configured CSRF protection could be bypassed, enabling unauthorized cross-site requests. The `serverURL` configuration impacts whether a consumer is affected. Recommendations Upgrade to version 3.79.1 or later.