CGI abuses Family for Nessus

IDNameSeverity
342663SonicWall SMA 1000 Series <= 12.4.3-03453 / 12.5.x <= 12.5.0-02835 Multiple Vulnerabilities (SNWLID-2026-0016)
critical
342639Dell iDRAC9 7.0.x < 7.00.00.182 / 7.20.x < 7.20.30.50 Improper Access Control (DSA-2026-374)
medium
342634Dell PowerProtect Cyber Recovery < 20.3.0.0 Multiple Vulnerabilities (DSA-2026-370)
high
342633ManageEngine PAM360 < Build 8561 SQLi (CVE-2026-14828)
high
342632ManageEngine Access Manager Plus < Build 4405 SQLi (CVE-2026-14828)
high
342631ManageEngine Password Manager Pro < Build 13235 SQLi (CVE-2026-14828)
high
342614Roundcube Webmail 1.6.x < 1.6.18 / 1.7.x < 1.7.3 Multiple Vulnerabilities
high
342361Jenkins plugins Multiple Vulnerabilities (2026-09-02)
high
342360Jenkins LTS < 2.568.3 / Jenkins weekly < 2.580 Multiple Vulnerabilities
high
342267ServiceNow Platform Unauthenticated Blind SQL Injection (CVE-2024-8924)
high
341085GitLab 18.3 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-4398)
medium
340724GitLab 12.8 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-77801)
medium
340723GitLab 11.3 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-3035)
medium
340688GitLab 13.1 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-7487)
low
340157GitLab 18.9 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-18252)
high
340156GitLab 19.1 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-15387)
medium
339647Dotnetnuke < 10.3.3 Unauthorized likes on private journal posts (GHSA-r4c4-vmqp-vxf2)
high
339646Dotnetnuke < 10.3.3 User registration approval authorization bypass (GHSA-fpr5-67pq-3hf5)
high
339645Dotnetnuke < 10.3.3 Authorization bypass in image processor (GHSA-g8w5-h3rm-g8rj)
high
339644Dotnetnuke < 10.3.3 Portal administrator remote code execution (GHSA-hxc3-xv8x-w2g3)
high
339554Dotnetnuke < 10.3.3 Optional JavaScript restrictions for HTML module content (GHSA-mjq6-87j6-5f4g)
high
339513Dotnetnuke < 10.3.3 Unauthorized comments on private journal posts (GHSA-86mr-4mmw-j9g2)
high
339498Dotnetnuke < 10.3.3 Content approval workflow bypass (GHSA-56m6-r25g-78x6)
high
339497Dotnetnuke < 10.3.3 Permission precedence flaw in module permissions (GHSA-hqgc-qj63-mx24)
high
339491Dotnetnuke < 10.3.3 Server-Side request forgery in journal module (GHSA-hmwm-c2hx-wmxh)
high
339489Dotnetnuke < 13.3.3 Stored XSS potentially leading to host privilege escalation (GHSA-38xj-rgg3-5cjj)
high
339488Dotnetnuke < 10.3.3 GroupEdit postback tampering lets one group owner update another group (GHSA-4q79-2m2q-gw8w)
high
339476Dotnetnuke < 10.3.3 Unauthorized file metadata disclosure in restricted folders (GHSA-74j7-h73j-qmc9)
high
339039GitLab 18.8 < 19.0.6 / 19.1 < 19.1.4 / 19.2 < 19.2.2 (CVE-2026-10053)
high
338746Oracle Primavera P6 Enterprise Project Portfolio Management (August 2026 CSPU)
medium
338744Kibana 8.x < 8.19.17 / 9.0.x < 9.3.6 / 9.4.x < 9.4.3 Vulnerability (ESA-2026-94)
high
338743Kibana 8.x < 8.19.20 / 9.x < 9.4.5 Multiple Vulnerabilities (ESA-2026-92 / ESA-2026-98 / ESA-2026-100 / ESA-2026-104 / ESA-2026-105 / ESA-2026-106 / ESA-2026-110)
high
338742Kibana 8.x < 8.19.20 / 9.0.x < 9.3.8 / 9.4.x < 9.4.5 Denial of Service (ESA-2026-101)
medium
338741Kibana 8.x < 8.19.20 / 9.x < 9.4.5 Multiple Vulnerabilities (ESA-2026-87 / ESA-2026-88)
high
338740Kibana 8.19.x < 8.19.20 / 9.x < 9.4.5 Cross-Site Request Forgery (ESA-2026-99)
high
338739Kibana 9.3.x < 9.3.8 / 9.4.x < 9.4.4 Denial of Service (ESA-2026-91)
medium
338738Kibana 8.12.x < 8.19.19 / 9.0.x < 9.3.8 / 9.4.x < 9.4.4 Multiple Vulnerabilities (ESA-2026-102 / ESA-2026-108)
medium
338737Kibana 9.4.x < 9.4.4 Privilege Escalation (ESA-2026-83)
medium
338736Kibana 9.1.x < 9.4.5 Multiple Vulnerabilities (ESA-2026-97 / ESA-2026-89)
high
338735Kibana 9.4.x < 9.4.5 / 9.5.x < 9.5.1 Incorrect Authorization (ESA-2026-124)
high
338734Kibana 9.1.x < 9.4.5 / 9.5.x < 9.5.1 Privilege Escalation (ESA-2026-128)
medium
338733Kibana 8.x < 8.19.20 / 9.0.x < 9.3.5 / 9.4.x < 9.4.2 Denial of Service (ESA-2026-136)
low
338732Kibana 8.9.x < 8.19.19 / 9.x < 9.4.5 Missing Authorization (ESA-2026-86)
high
338731Kibana 8.19.x < 8.19.20 / 9.x < 9.4.5 / 9.5.x < 9.5.1 Multiple Vulnerabilities (ESA-2026-126 / ESA-2026-127 / ESA-2026-129)
high
338730Kibana 8.9.x < 8.19.20 / 9.x < 9.4.5 Missing Authorization (ESA-2026-95)
medium
338729Kibana 8.5.x < 8.19.20 / 9.x < 9.4.5 Missing Authorization (ESA-2026-96)
high
338728Kibana 9.2.x < 9.4.5 Incorrect Authorization (ESA-2026-82)
medium
338727Kibana 8.x < 8.19.20 / 9.x < 9.4.4 Incorrect Authorization (ESA-2026-90)
medium
338331Mattermost Server 10.11.x < 10.11.22 / 11.7.x < 11.7.7 Multiple Vulnerabilities (MMSA-2026-00672, MMSA-2026-00675, MMSA-2026-00704)
medium
338330Mattermost Server 11.7.x < 11.7.7 / 11.8.x < 11.8.4 Incorrect Authorization (MMSA-2026-00718)
medium