Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2023-45795 | A cross-site scripting vulnerability in the Builder Component of Pilz PASvisu before 1.14.1 allows a local unauthentica… | High (7.8) | 2026-06-22 | Environment Specific |
| CVE-2026-44913 | Improper escaping of database table names in the CaptureChangeMySQL Processor included with Apache NiFi 1.2.0 through 2… | Unknown | 2026-06-22 | Environment Specific |
| CVE-2026-44911 | Authorization handling for component configuration verification requests in Apache NiFi 1.15.0 through 2.9.0 allows cli… | Unknown | 2026-06-22 | Environment Specific |
| CVE-2025-66336 | Apache Doris MCP Server contains a SQL injection vulnerability in a metadata query path. A user-controlled database nam… | High (8.1) | 2026-06-22 | Environment Specific |
| CVE-2025-62198 | An authenticated user can perform XSS. This issue affects Apache Atlas versions 2.4.0 and earlier. Users are recommen… | Medium (5.4) | 2026-06-22 | Environment Specific |