Vulnerability Directory
If you’re currently using these frameworks in your application’s tech stack, your application could be vulnerable.
Secure drop-in replacements for open source software from HeroDevs helps you stay secure, compliant, and compatible while you migrate.
Switch to Never-Ending Support (NES) from HeroDevs to immediately mitigate these vulnerabilities.
Severity
ID
Technology
Libraries Affected
Category
Version(s) Affected
Published Date
High
.NET
.NET
Integer Overflow or Wraparound
Remote Code Execution
Microsoft.WindowsDesktop.App >= 6.0.0 <= 6.0.43
Aug 13, 2026
High
.NET
.NET
Heap-based Buffer Overflow
Microsoft.WindowsDesktop.App >= 6.0.0 <= 6.0.43
Aug 13, 2026
High
.NET
.NET
Integer Overflow or Wraparound
Heap-based Buffer Overflow
Microsoft.WindowsDesktop.App >= 6.0.0 <= 6.0.43
Aug 13, 2026
High
Node.js
Node.js
Use After Free
22.x <= 22.23.1; 24.x <= 24.18.0; 26.x <= 26.5.0; All End-of-Life release lines, including 16.x, 18.x, and 20.x
Aug 13, 2026
Medium
Jackson
jackson-core
Denial of Service
>=2.15.0 <=2.18.5, >=2.19.0 <2.21.1
Aug 12, 2026
High
Angular
Angular
Cache Poisoning
>=22.0.0-next.0 <22.0.2, >=21.0.0-next.0 <21.2.19, >=20.0.0-next.0 <20.3.27, <=19.2.25
Aug 10, 2026
High
Angular
Angular
Cross-Site Scripting
<=19.2.25, >=20.0.0-next.0 <20.3.27, >=21.0.0-next.0 <21.2.19, >=22.0.0-next.0 <22.0.1
Aug 10, 2026
Medium
Spring
Spring Security
Authorization Bypass
>=4.2.0 <=4.2.20, >=5.5.0 <=5.5.8, >=5.7.0 <=5.7.24, >=5.8.0 <=5.8.26, >=6.0.0 <=6.0.8, >=6.1.0 <=6.1.9, >=6.2.0 <=6.2.8, >=6.3.0 <=6.3.17, >=6.4.0 <=6.4.17, >=6.5.0 <=6.5.10
Aug 10, 2026
High
.NET
.NET
Uncontrolled Resource Consumption
Improper Input Validation (4.16)
System.Security.Cryptography.Xml >= 6.0.0 <= 6.0.2
Aug 10, 2026
High
.NET
.NET
Improper Input Validation (4.16)
Stack-based Buffer Overflow
System.Security.Cryptography.Xml >= 6.0.0 <= 6.0.2
Aug 10, 2026
Critical
Rails
Rails
Information Exposure
activestorage < 7.2.3.2; >= 8.0, < 8.0.5.1; >= 8.1, < 8.1.3.1
Aug 10, 2026
Low
Apache Tomcat
Apache Tomcat
Incorrectly Configured Access Control
>=8.5.0 <=8.5.100, >=9.0.0.M1 <9.0.119, >=10.1.0-M1 <10.1.56, >=11.0.0-M1 <11.0.23
Aug 7, 2026
High
Hazelcast
Hazelcast Platform
Authorization Bypass
>=5.0 <=5.1.7, >=5.2.0 <5.2.5, >=5.3.0 <5.3.5
Aug 7, 2026
High
Hazelcast
Hazelcast Platform
Authorization Bypass
<=5.1.7, >=5.2.0 <5.2.5, >=5.3.0 <5.3.5
Aug 7, 2026
No results found
Please enter a valid Vulnerability ID number or Technology name.
