Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    0
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-47664

    Pathling: $import-pnp operation enables authenticated SSRF, credential leakage, and warehouse data poisoning

    Last Modified: Aug 10, 2026
    Published: Aug 07, 2026

    CVE-2026-47663

    Pathling: Typed CRUD/search/batch providers can lead to server-wide PHI exfiltration and cross-resource mutation

    Last Modified: Aug 10, 2026
    Published: Aug 07, 2026

    CVE-2026-47662

    Pathling $bulk-submit allows bearer-token exfiltration and persistent warehouse poisoning via unvalidated manifest output URLs

    Last Modified: Aug 13, 2026
    Published: Aug 07, 2026

    CVE-2026-47661

    Pathling has path traversal in $result endpoint that allows arbitrary warehouse file read

    Last Modified: Aug 11, 2026
    Published: Aug 07, 2026

    CVE-2026-47660

    Pathling: Explicit oauthMetadataUrl in bulk-submit allows OAuth client credential exfiltration

    Last Modified: Aug 08, 2026
    Published: Aug 07, 2026
    Items Per Page