In the Triton MLflow plugin component for MLflow in earlier versions a medium severity vulnerability CVE-2026-47487 was detected. This vulnerability allows an attacker to read, write, or modify files outside the intended model repository. To address this issue, users should upgrade MLflow to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-47487.
Read more Data AnalyticsIn Apache NiFi versions 2.0.0 through 2.10.0 a critical severity vulnerability CVE-2026-68980 was detected. This vulnerability allows unauthorized asset deletion via the REST API. To address this issue, users should upgrade Apache NiFi to version 2.11.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-68980.
Read more Data AnalyticsIn Apache NiFi versions 1.5.0 through 2.10.0 a high severity vulnerability CVE-2026-68981 was detected. This vulnerability allows attackers to consume excessive amounts of memory through crafted requests. To address this issue, users should upgrade Apache NiFi to version 2.11.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-68981.
Read more Data AnalyticsIn cryptography component for Python versions prior to 49.0.0 a medium severity vulnerability CVE-2026-69248 was detected. This vulnerability allows attackers to bypass certificate name constraints. To address this issue, users should upgrade cryptography to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-69248.
Read more Application DevelopmentIn python-cryptography component for Python versions prior to 49.0.0 a high severity vulnerability CVE-2026-69249 was detected. This vulnerability allows an attacker to cause a denial of service. To address this issue, users should upgrade python-cryptography to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-69249.
Read more Application DevelopmentIn Apache NiFi versions 1.10.0 through 2.10.0 a medium severity vulnerability CVE-2026-62354 was detected. This vulnerability allows users with read access to override configuration settings. To address this issue, users should upgrade Apache NiFi to version 2.11.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-62354.
Read more Data AnalyticsIn Exclusive Addons for Elementor component for WordPress versions 2.7.9.8 and earlier a medium severity vulnerability CVE-2026-12231 was detected. This vulnerability allows authenticated attackers to inject arbitrary web scripts. To address this issue, users should upgrade Exclusive Addons for Elementor to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-12231.
Read more CMSIn Bouncy Castle component for Java versions before 1.85 a high severity vulnerability CVE-2026-59639 was detected. This vulnerability allows attackers to bypass signature verification. To address this issue, users should upgrade Bouncy Castle to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59639.
Read more Application DevelopmentIn the Bouncy Castle for Java component versions before 1.85 a high severity vulnerability CVE-2026-59651 was detected. This vulnerability allows an attacker who can supply or tamper with a keystore file to forge a valid MAC over modified contents. To address this issue, users should upgrade the Bouncy Castle for Java library to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59651.
Read more Application Development