PatchSiren

bigsk1 CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW bigsk1 CVE published 2026-04-08

CVE-2026-5803

CVE-2026-5803 is a server-side request forgery vulnerability in bigsk1 openai-realtime-ui up to 188ccde27fdf3d8fab8da81f3893468f53b2797c. The vulnerability has a CVSS score of 2.1 and is considered low severity. The affected component is an unknown function of the file server.js of the API Proxy Endpoint. The vulnerability can be exploited remotely, allowing attackers to manipulate the Query argument, whi [truncated]