General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-6066 | ConnectWise has released a security update for ConnectWise Automate™ that addresses a behavior in the ConnectWise Autom… | High (7.1) | 2026-04-20 | General Purpose |
| CVE-2026-39918 | Vvveb prior to 1.0.8.1 contains a code injection vulnerability in the installation endpoint where the subdir POST param… | Critical (9.8) | 2026-04-20 | General Purpose |
| CVE-2026-34429 | Vvveb prior to 1.0.8.1 contains a stored cross-site scripting vulnerability that allows authenticated users with media … | Medium (5.4) | 2026-04-20 | General Purpose |
| CVE-2026-34428 | Vvveb prior to 1.0.8.1 contains a server-side request forgery vulnerability in the oEmbedProxy action of the editor/edi… | High (7.7) | 2026-04-20 | General Purpose |
| CVE-2026-34427 | Vvveb prior to 1.0.8.1 contains a privilege escalation vulnerability in the admin user profile save endpoint that allow… | High (8.8) | 2026-04-20 | General Purpose |