CVE-2026-40074
Medium Severity
Description
SvelteKit is a framework for rapidly developing robust, performant web applications using Svelte. Prior to 2.57.1, redirect, when called from inside the handle...
Related Vulnerabilities
- CVE-2026-29145: CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled v MEDIUM
- CVE-2026-40227: In systemd 260 before 261, a local unprivileged user can trigger an assert via an IPC API call with MEDIUM
- CVE-2026-6031: A vulnerability has been found in code-projects Simple IT Discussion Forum 1.0. This affects an unkn MEDIUM
- CVE-2026-40225: In udev in systemd before 260, local root execution can occur via malicious hardware devices and uns MEDIUM
- CVE-2026-5479: In wolfSSL's EVP layer, the ChaCha20-Poly1305 AEAD decryption path in wolfSSL_EVP_CipherFinal (and r HIGH
Related Coverage
Threat Actors