- EPSS 1.48%
- Published 02.08.2026 22:06:18
- Last modified 04.08.2026 14:27:12
An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1
- EPSS 1.7%
- Published 30.07.2026 18:32:11
- Last modified 04.08.2026 05:16:40
Action Pack is a framework for handling and responding to web requests. In versions prior to 7.2.3.2, 8.0.5.1 and 8.1.3.1, Active Storage does not disable libvips operations marked unsafe for untrusted content, allowing a crafted upload to invoke suc...
1