As part of our ongoing research and consulting efforts, we frequently discover vulnerabilities in third-party products. Committed to enhancing the security of the digital ecosystem, we publish detailed security advisories according our vulnerability disclosure policy. You can find the full security advisories with complete details in our Github repository.
Below is an overview of our latest security advisories:
-
LibreChat Server-Side Request Forgery (CVE-2025-69222)
January 8, 2026 -
LibreChat Insufficient Access Control on Agent Files (CVE-2025-69220)
January 8, 2026 -
LibreChat Insufficient Access Control on Agent Permission Queries (CVE-2025-69221)
January 8, 2026 -
Checkmk Cross Site Scripting (CVE-2025-39663)
October 30, 2025 -
Checkmk Agent Privilege Escalation via Insecure Temporary Files (CVE-2025-32919)
October 13, 2025 -
Checkmk Path Traversal (CVE-2025-39664)
October 13, 2025 -
Filebrowser Insecure Password Handling (CVE-2025-52997)
July 24, 2025 -
Filebrowser Password Protection of Links Bypassable (CVE-2025-52996)
July 24, 2025