Researchers
Back
Mathias Tausig
#7252
of 55,053
38.8
Total CVSS
Vulnerabilities
·
6
Medium
3
High
3
PT-2026-66445
7.6
2026-07-30
Dfir Iris
·
Iris-Web
·
CVE-2026-16969
The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the assets function.
PT-2026-66446
4.2
2026-07-30
Dfir Iris
·
Iris-Web
·
CVE-2026-16970
The IRIS web application in version 2.4.26 and possibly others contains a logout functionality which is ineffective. Stolen session cookies can therefore be misused for a long time.
PT-2026-66447
5.9
2026-07-30
Dfir Iris
·
Iris-Web
·
CVE-2026-16971
The IRIS web application in version 2.4.26 and possibly others does not protect its MFA validation against brute-force attacks.
PT-2026-66448
7.6
2026-07-30
Dfir Iris
·
Iris-Web
·
CVE-2026-18360
The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the custom attributes function.
PT-2026-66449
7.6
2026-07-30
Dfir Iris
·
Iris-Web
·
CVE-2026-18361
The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the datastore upload function.
PT-2026-66450
5.9
2026-07-30
Dfir Iris
·
Iris-Web
·
CVE-2026-18362
The IRIS web application in version 2.4.26 and possibly others does not protect its user authentication against brute-force attacks.