A vulnerability was found in SillyTavern 1.13.4/1.16.0 and classified as critical. This issue affects some unknown processing of the file /api/search/visit of the component localhost/IPv6. Executing a manipulation can lead to server-side request forgery.
This vulnerability is registered as CVE-2026-34526. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability has been found in Open vSwitch up to 3.3.8/3.4.5/3.5.3/3.6.2/3.7.0 and classified as critical. This vulnerability affects unknown code of the component FTP alg Handler. Performing a manipulation results in memory corruption.
This vulnerability is cataloged as CVE-2026-34956. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.
A vulnerability, which was classified as problematic, was found in ci4-cms-erp ci4ms 0.28.5.0. This affects an unknown part of the component Administrative Interface. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-34571. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in ci4-cms-erp ci4ms 0.28.5.0. Affected by this issue is some unknown functionality. This manipulation of the argument tag name causes cross site scripting.
This vulnerability is tracked as CVE-2026-34559. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability classified as problematic was found in ci4-cms-erp ci4ms 0.28.5.0. Affected by this vulnerability is an unknown functionality. The manipulation of the argument category title results in cross site scripting.
This vulnerability is identified as CVE-2026-34569. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability classified as problematic has been found in ci4-cms-erp ci4ms up to 0.31.0.0. Affected is an unknown function of the component Posts Section. The manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-34565. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability described as problematic has been identified in ci4-cms-erp ci4ms 0.28.5.0. This impacts an unknown function. Executing a manipulation can lead to cross site scripting.
The identification of this vulnerability is CVE-2026-34568. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability marked as problematic has been reported in ci4-cms-erp ci4ms 0.28.5.0. This affects an unknown function of the component Categories Section. Performing a manipulation results in cross site scripting.
This vulnerability was named CVE-2026-34567. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability labeled as problematic has been found in ci4-cms-erp ci4ms 0.28.5.0. The impacted element is an unknown function. Such manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2026-34566. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability identified as problematic has been detected in ci4-cms-erp ci4ms up to 0.31.0.0. The affected element is an unknown function of the component Pages Section. This manipulation causes cross site scripting.
This vulnerability is handled as CVE-2026-34564. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.