Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-56274 | Flowise before 3.1.2 contains multiple OS command injection vulnerabilities in the Custom MCP Server feature due to inc… | Critical (9.9) | 2026-06-23 | Environment Specific |
| CVE-2026-56263 | Crawl4AI before 0.8.7 contains a stored cross-site scripting vulnerability in the monitor dashboard that renders crawl … | Medium (6.1) | 2026-06-23 | Environment Specific |
| CVE-2026-56258 | Crawl4AI before 0.8.8 contains an arbitrary file write vulnerability in the screenshot and PDF endpoints that allows un… | High (8.1) | 2026-06-23 | Environment Specific |
| CVE-2026-56248 | Cap-go capgo (capgo-backend) before 12.128.12 contains an unauthenticated denial-of-service vulnerability arising from … | High (7.5) | 2026-06-23 | Environment Specific |
| CVE-2026-56243 | Capgo before 12.128.2 contains a security control bypass vulnerability where the PostgREST/RLS plane accepts plaintext … | High (8.1) | 2026-06-23 | Environment Specific |