Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

M.J Dhurgesh

#21225of 57,485
13.6Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-104669
7.5
2026-10-05
Gitahead · Gitahead · CVE-2026-105295
GitAhead 2.5.0 through 2.7.1 contains an insecure update mechanism that installs downloaded updates without integrity or signature verification and permanently ignores TLS errors after one SSL error dialog. Network attackers presenting an invalid certificate once can intercept later automatic update checks, offer a fake version, and execute code as the user upon installation.
PT-2026-102395
6.1
2026-09-28
Httpdbg · Httpdbg · CVE-2026-102333
**Name of the Vulnerable Software and Affected Versions** httpdbg versions prior to 2.2.1 **Description** The web interface fails to validate URL schemes in recorded HTTP request URLs that are rendered as clickable links. An attacker who can control the recorded traffic can provide URLs using the `javascript:` scheme. When these links are clicked, malicious scripts execute within the application origin, potentially granting the attacker access to captured request and response data, including headers and tokens. This is a Stored Cross-Site Scripting (XSS) issue, where a script is permanently stored on the target server and executed in the victim's browser. **Recommendations** Update to version 2.2.1 or later.