[{"id": "CVE-2025-4748", "title": "Absolute path traversal in zip:unzip/1,2", "datePublished": "2025-06-16T11:00:54.643Z", "dateUpdated": "2026-02-20T13:07:56.920Z", "details": "/cves/CVE-2025-4748.json"},{"id": "CVE-2025-4754", "title": "Missing Session Revocation on Logout in ash_authentication_phoenix", "datePublished": "2025-06-17T14:31:37.006Z", "dateUpdated": "2026-02-20T12:59:27.438Z", "details": "/cves/CVE-2025-4754.json"},{"id": "CVE-2025-48038", "title": "Unverified File Handles can Cause Excessive Use of System Resources", "datePublished": "2025-09-11T08:13:04.030Z", "dateUpdated": "2026-02-20T13:07:53.913Z", "details": "/cves/CVE-2025-48038.json"},{"id": "CVE-2025-48039", "title": "Unverified Paths can Cause Excessive Use of System Resources", "datePublished": "2025-09-11T08:13:36.878Z", "dateUpdated": "2026-02-20T13:07:49.726Z", "details": "/cves/CVE-2025-48039.json"},{"id": "CVE-2025-48040", "title": "Malicious Key Exchange Messages may Lead to Excessive Resource Consumption", "datePublished": "2025-09-11T08:14:19.671Z", "dateUpdated": "2026-02-20T13:07:55.465Z", "details": "/cves/CVE-2025-48040.json"},{"id": "CVE-2025-48041", "title": "SSH_FXP_OPENDIR may Lead to Exhaustion of File Handles", "datePublished": "2025-09-11T08:14:20.508Z", "dateUpdated": "2026-02-20T13:07:52.365Z", "details": "/cves/CVE-2025-48041.json"},{"id": "CVE-2025-48042", "title": "Before action hooks may execute in certain scenarios despite a request being forbidden", "datePublished": "2025-09-07T16:01:01.470Z", "dateUpdated": "2026-02-20T12:59:30.565Z", "details": "/cves/CVE-2025-48042.json"},{"id": "CVE-2025-48043", "title": "Bypass and runtime policies that can never pass may be incorrectly applied in filter authorization", "datePublished": "2025-10-10T15:57:29.225Z", "dateUpdated": "2026-02-20T12:59:29.839Z", "details": "/cves/CVE-2025-48043.json"},{"id": "CVE-2025-48044", "title": "Authorization bypass when bypass policy condition evaluates to true", "datePublished": "2025-10-17T13:52:53.644Z", "dateUpdated": "2026-02-20T11:32:17.944Z", "details": "/cves/CVE-2025-48044.json"},{"id": "CVE-2026-21618", "title": "Cross-site scripting (XSS) in OAuth Device Authorization screen", "datePublished": "2026-01-19T14:22:46.770Z", "dateUpdated": "2026-01-21T03:45:42.733Z", "details": "/cves/CVE-2026-21618.json"},{"id": "CVE-2026-21619", "title": "Unsafe Deserialization of Erlang Terms in hex_core", "datePublished": "2026-02-27T17:57:11.513Z", "dateUpdated": "2026-02-28T03:47:44.873Z", "details": "/cves/CVE-2026-21619.json"},{"id": "CVE-2026-21620", "title": "TFTP Path Traversal", "datePublished": "2026-02-20T10:57:08.620Z", "dateUpdated": "2026-02-21T03:52:43.999Z", "details": "/cves/CVE-2026-21620.json"},{"id": "CVE-2026-23939", "title": "Path Traversal in Local File Store Backend", "datePublished": "2026-02-26T19:41:18.762Z", "dateUpdated": "2026-02-27T03:57:08.485Z", "details": "/cves/CVE-2026-23939.json"}]
