Changeflow GovPing Data Privacy & Cybersecurity CERT-Bund Security Advisories
Favicon for wid.cert-bund.de

CERT-Bund Security Advisories

RSS

Tuesday, March 17, 2026

Favicon for wid.cert-bund.de

Langflow Vulnerabilities Allow Code Execution and Security Bypass

CERT-Bund has issued a security advisory (WID-SEC-2026-0747) regarding critical vulnerabilities in Langflow versions <=1.8.1 and <1.7.2. These flaws allow remote code execution and security bypass, with a CVSS base score of 10.0. Mitigation is available.

Urgent Notice Cybersecurity
Favicon for wid.cert-bund.de

OpenCTI Vulnerability Allows Bypassing Security Measures

CERT-Bund has issued a security advisory for OpenCTI, a cyber threat intelligence platform. A vulnerability (CVE) allows remote, authenticated attackers to bypass security measures. The advisory affects OpenCTI versions prior to 6.9.1.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Mattermost Vulnerabilities: Remote Attack Possible

CERT-Bund has issued a security advisory regarding multiple vulnerabilities in Mattermost Server versions prior to 11.4.0, 11.3.1, 11.2.3, 10.11.11, 11.6.0, 10.11.13, 11.5.1, 11.4.3, and 10.11.13. These vulnerabilities have a CVSS base score of 7.3 and allow for remote attacks.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

ImageMagick Vulnerability Allows Remote Denial of Service

CERT-Bund has issued a security advisory for ImageMagick, detailing a vulnerability that allows remote denial of service attacks. The advisory affects versions prior to Open Source ImageMagick <7.1.2-17 and <6.9.13-42, impacting Linux, UNIX, and Windows systems.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

OpenClaw AI Assistant Vulnerabilities

CERT-Bund has issued a security advisory for OpenClaw, an AI assistant, detailing multiple vulnerabilities with a high CVSS base score of 8.1. The advisory urges users to mitigate the risks associated with privilege escalation and confidential information disclosure.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Octopus Deploy Vulnerability Allows Remote File Manipulation

CERT-Bund has issued a security advisory for Octopus Deploy, detailing a vulnerability that allows remote authenticated attackers to manipulate files. The advisory affects specific versions of Octopus Deploy running on Linux and Windows and provides mitigation information.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

CPython Vulnerabilities Allow File Manipulation and DoS

CERT-Bund has issued a security advisory regarding multiple vulnerabilities in CPython versions prior to 3.15.0. These vulnerabilities can be exploited by authenticated remote attackers to manipulate files or cause a denial-of-service condition. The advisory provides mitigation information for affected systems.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

FFmpeg Vulnerability Allows Denial of Service and Information Disclosure

CERT-Bund has issued a security advisory (WID-SEC-2026-0740) regarding a vulnerability in the FFmpeg RV60 video decoder. The vulnerability allows remote attackers to cause a Denial of Service or disclose information. Affected versions include Open Source ffmpeg <8.1, 8.0, and 8.0.1.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

libexif Vulnerability Allows Code Execution and Denial-of-Service

CERT-Bund has issued a security advisory regarding a vulnerability in the libexif library (versions <=0.6.25). The vulnerability allows local attackers to execute arbitrary code, cause a denial-of-service, or disclose confidential information. Mitigation is available.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Vercel Next.js Vulnerabilities Allow DoS or Security Bypass

CERT-Bund has issued a security advisory for Vercel Next.js, detailing vulnerabilities that could allow remote attackers to perform Denial of Service attacks or bypass security measures. The advisory affects versions prior to 16.1.7 and 15.5.13, with a CVSS base score of 6.5.

Priority review Notice Cybersecurity

Showing 1–10 of 27 changes

1 2 3

Get CERT-Bund Security Advisories alerts

We'll email you when CERT-Bund Security Advisories publishes new changes.

Free. Unsubscribe anytime.