Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

H3Nrrrych4U

#19947of 53,638
13Total CVSS
Vulnerabilities · 2
Medium
2
PT-2026-24055
6.5
2026-03-09
Owasp · Owasp Defectdojo · CVE-2026-3816
**Name of the Vulnerable Software and Affected Versions** OWASP DefectDojo versions through 2.55.4 **Description** A security issue has been identified in OWASP DefectDojo related to denial of service. The issue resides in the `input zip.read` function within the `parser.py` file of the `SonarQubeParser/MSDefenderParser` component. This allows for remote exploitation, and the exploit has been publicly disclosed. **Recommendations** Upgrade to version 2.56.0 or later.
PT-2026-22042
6.5
2026-02-25
Unknown · Fosrl Pangolin · CVE-2026-3209
**Name of the Vulnerable Software and Affected Versions** fosrl Pangolin versions up to 1.15.4-s.3 **Description** A flaw exists in the Role Handler component of fosrl Pangolin. Specifically, the `verifyRoleAccess`/`verifyApiKeyRoleAccess` function is susceptible to manipulation, resulting in improper access controls. Remote exploitation is possible, and the exploit has been publicly disclosed. **Recommendations** Upgrade to version 1.15.4-s.4.