Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jafarakhondali

#17659of 53,632
15.2Total CVSS
Vulnerabilities · 2
High
2
PT-2026-41185
7.4
2026-05-14
Hmbown · Codewhale · CVE-2026-45373
**Name of the Vulnerable Software and Affected Versions** CodeWhale versions prior to 0.8.26 **Description** Server-Side Request Forgery (SSRF) occurs when the application fails to properly validate IPv6 addresses provided directly in a URL, such as `http://[::1]`. While the system validates hostnames that resolve to private IPv6 addresses, direct IPv6 input bypasses these defenses, potentially allowing access to local restricted resources. **Recommendations** Update to version 0.8.26.
PT-2023-6726
7.8
2023-08-22
Unknown · Webui-Aria2 · CVE-2023-39141
**Name of the Vulnerable Software and Affected Versions** webui-aria2 version 4fe2e **Description** The issue is related to a path traversal vulnerability in the WebUI-Aria2 interface. This vulnerability is due to incorrect restriction of the directory path name with limited access. Exploitation of this issue may allow a remote attacker to disclose protected information. **Recommendations** For version 4fe2e, consider restricting access to sensitive directories to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.