Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Reimar Fritz

#20914of 53,633
11.9Total CVSS
Vulnerabilities · 2
Medium
2
PT-2026-47716
6.5
2026-06-09
Apache · Apache Answer · CVE-2026-34031
**Name of the Vulnerable Software and Affected Versions** Apache Answer versions prior to 2.0.1 **Description** The server fails to sufficiently validate user-supplied image URLs. This allows arbitrary external content to be embedded as profile images, potentially exposing users to unintended external requests and tracking by third-party servers. **Recommendations** Upgrade to version 2.0.1.
PT-2026-47717
5.4
2026-06-09
Apache · Apache Answer · CVE-2026-34033
**Name of the Vulnerable Software and Affected Versions** Apache Answer versions prior to 2.0.1 **Description** An issue exists where user-supplied content is included in notification emails without proper escaping. This allows authenticated users to perform Cross-Site Scripting (XSS), which is the injection of malicious scripts into benign websites, by injecting arbitrary HTML into emails sent to other users. **Recommendations** Upgrade to version 2.0.1.