Ash-Project Ash Admin
7 known vulnerabilities in Ash-Project Ash Admin, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-82722 CVSS 8.3 high Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_admin lets any client that can reach the admin…
- CVE-2026-82681 CVSS 2.0 low Improper Encoding or Escaping of Output vulnerability in ash-project ash_admin lets an attacker who controls a record's string primary key…
- CVE-2026-82673 CVSS 8.3 high Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) vulnerability in ash-project ash_admin allows writing…
- CVE-2026-81853 CVSS 2.3 low Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_admin turns a record-lookup URL into an equality oracle…
- CVE-2026-81852 CVSS 2.1 low Use of Insufficiently Random Values vulnerability in ash-project ash_admin ships a hardcoded, publicly known CSP nonce, defeating…
- CVE-2026-77850 CVSS 8.4 high Stored Cross-site Scripting vulnerability in ash-project ash_admin executes attacker-supplied record content as script in an…
- CVE-2026-75757 CVSS 8.3 high Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a…