Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: attack-types Clear
ID Title
CVE-2026-41500 Command Injection in electerm-project (CVE-2026-41500)
command injection in electerm-project (CVE-2026-41500). Successful exploitation can lead to full system takeover. Exploitable via ``releaseInfo.name``. Mitigation: upgrade to `> 3.2.0` or later.
CVE-2026-41501 Command Injection in electerm (CVE-2026-41501)
command injection in electerm (CVE-2026-41501). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `> 3.2.0` or later.
CVE-2026-8126 Vulnerability in sqli (CVE-2026-8126)
vulnerability in sqli (CVE-2026-8126). Risk of unauthorized operations or information disclosure.
CVE-2026-8128 Vulnerability in sqli (CVE-2026-8128)
vulnerability in sqli (CVE-2026-8128). Risk of unauthorized operations or information disclosure.
CVE-2026-8125 Vulnerability in sqli (CVE-2026-8125)
vulnerability in sqli (CVE-2026-8125). Risk of unauthorized operations or information disclosure.
CVE-2026-8123 Vulnerability in c (CVE-2026-8123)
vulnerability in c (CVE-2026-8123). Risk of unauthorized operations or information disclosure.
CVE-2026-8122 Vulnerability in c (CVE-2026-8122)
vulnerability in c (CVE-2026-8122). Risk of unauthorized operations or information disclosure.
CVE-2026-8120 Vulnerability in c (CVE-2026-8120)
vulnerability in c (CVE-2026-8120). Risk of unauthorized operations or information disclosure.
CVE-2026-8121 Vulnerability in c (CVE-2026-8121)
vulnerability in c (CVE-2026-8121). Risk of unauthorized operations or information disclosure.
CVE-2026-8119 Vulnerability in c (CVE-2026-8119)
vulnerability in c (CVE-2026-8119). Risk of unauthorized operations or information disclosure.
CVE-2026-8117 Cross-Site Scripting (XSS) in CVE-2026-8117 (CVE-2026-8117)
cross-site scripting in CVE-2026-8117 (CVE-2026-8117). Risk of unauthorized operations or information disclosure.
CVE-2026-8116 Path Traversal in path-traversal (CVE-2026-8116)
path traversal in path-traversal (CVE-2026-8116). Risk of unauthorized operations or information disclosure.
CVE-2026-8115 Path Traversal in path-traversal (CVE-2026-8115)
path traversal in path-traversal (CVE-2026-8115). Risk of unauthorized operations or information disclosure.
CVE-2026-42880 Information Disclosure in argo-cd (CVE-2026-42880)
vulnerability in argo-cd (CVE-2026-42880). Confidential information can be exposed externally.
CVE-2026-8114 Vulnerability in sqli (CVE-2026-8114)
vulnerability in sqli (CVE-2026-8114). Risk of unauthorized operations or information disclosure.
CVE-2026-8034 Vulnerability in ssrf (CVE-2026-8034)
vulnerability in ssrf (CVE-2026-8034). Risk of unauthorized operations or information disclosure.
CVE-2026-8113 Path Traversal in path-traversal (CVE-2026-8113)
path traversal in path-traversal (CVE-2026-8113). Risk of unauthorized operations or information disclosure.
CVE-2026-6736 Vulnerability in CVE-2026-6736 (CVE-2026-6736)
vulnerability in CVE-2026-6736 (CVE-2026-6736). Risk of unauthorized operations or information disclosure.
CVE-2026-7541 Vulnerability in dos (CVE-2026-7541)
vulnerability in dos (CVE-2026-7541). Risk of unauthorized operations or information disclosure.
CVE-2026-41929 Cross-Site Scripting (XSS) in CVE-2026-41929 (CVE-2026-41929)
cross-site scripting in CVE-2026-41929 (CVE-2026-41929). Risk of unauthorized operations or information disclosure.
CVE-2026-41105 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-41105)
SSRF in ssrf (CVE-2026-41105). Confidential information can be exposed externally.
CVE-2026-40214 Vulnerability in dos (CVE-2026-40214)
vulnerability in dos (CVE-2026-40214). Risk of unauthorized operations or information disclosure.
CVE-2026-33109 Vulnerability in apache (CVE-2026-33109)
vulnerability in apache (CVE-2026-33109). Successful exploitation can lead to full system takeover.
CVE-2026-33844 Vulnerability in apache (CVE-2026-33844)
vulnerability in apache (CVE-2026-33844). Successful exploitation can lead to full system takeover.
CVE-2026-33823 Vulnerability in microsoft (CVE-2026-33823)
vulnerability in microsoft (CVE-2026-33823). Confidential information can be exposed externally.
CVE-2026-35428 Command Injection in microsoft (CVE-2026-35428)
command injection in microsoft (CVE-2026-35428). Successful exploitation can lead to full system takeover.
CVE-2026-32207 Cross-Site Scripting (XSS) in microsoft (CVE-2026-32207)
cross-site scripting in microsoft (CVE-2026-32207). Successful exploitation can lead to full system takeover.
CVE-2026-42449 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-42449)
SSRF in ssrf (CVE-2026-42449). Confidential information can be exposed externally.
CVE-2026-41691 Path Traversal in path-traversal (CVE-2026-41691)
path traversal in path-traversal (CVE-2026-41691). Risk of unauthorized operations or information disclosure.
CVE-2026-42499 Vulnerability in dos (CVE-2026-42499)
vulnerability in dos (CVE-2026-42499). Risk of unauthorized operations or information disclosure.
CVE-2026-39823 Vulnerability in CVE-2026-39823 (CVE-2026-39823)
vulnerability in CVE-2026-39823 (CVE-2026-39823). Risk of unauthorized operations or information disclosure.
CVE-2026-41902 Vulnerability in laravel (CVE-2026-41902)
vulnerability in laravel (CVE-2026-41902). Confidential information can be exposed externally. Exploitable via `Referer header`.
CVE-2025-63703 Vulnerability in npm (CVE-2025-63703)
vulnerability in npm (CVE-2025-63703). Successful exploitation can lead to full system takeover.
CVE-2025-63704 Vulnerability in prototype-pollution (CVE-2025-63704)
vulnerability in prototype-pollution (CVE-2025-63704). Successful exploitation can lead to full system takeover.
CVE-2026-36458 Code Injection in sqli (CVE-2026-36458)
code injection in sqli (CVE-2026-36458). Successful exploitation can lead to full system takeover.
CVE-2026-32686 Vulnerability in dos (CVE-2026-32686)
vulnerability in dos (CVE-2026-32686). Risk of unauthorized operations or information disclosure.
CVE-2025-63706 Code Injection in npm (CVE-2025-63706)
code injection in npm (CVE-2025-63706). Successful exploitation can lead to full system takeover.
CVE-2025-67202 Cross-Site Scripting (XSS) in CVE-2025-67202 (CVE-2025-67202)
cross-site scripting in CVE-2025-67202 (CVE-2025-67202). Risk of unauthorized operations or information disclosure.
CVE-2026-8094 Code Injection in firefox (CVE-2026-8094)
code injection in firefox (CVE-2026-8094). Successful exploitation can lead to full system takeover.
CVE-2026-8091 Vulnerability in firefox (CVE-2026-8091)
vulnerability in firefox (CVE-2026-8091). Successful exploitation can lead to full system takeover.
SUSE-SU-2026:1749-1 Vulnerability in SUSE-SU-2026:1749-1 (SUSE-SU-2026:1749-1)
vulnerability in SUSE-SU-2026:1749-1 (SUSE-SU-2026:1749-1). Risk of unauthorized operations or information disclosure.
CVE-2026-44406 Vulnerability in privilege-escalation (CVE-2026-44406)
vulnerability in privilege-escalation (CVE-2026-44406). Risk of unauthorized operations or information disclosure.
SUSE-SU-2026:1745-1 Vulnerability in dos (SUSE-SU-2026:1745-1)
vulnerability in dos (SUSE-SU-2026:1745-1). Risk of unauthorized operations or information disclosure. Exploitable via ``header_rules``.
SUSE-SU-2026:1744-1 Vulnerability in dos (SUSE-SU-2026:1744-1)
vulnerability in dos (SUSE-SU-2026:1744-1). Risk of unauthorized operations or information disclosure.
SUSE-SU-2026:1743-1 Vulnerability in dos (SUSE-SU-2026:1743-1)
vulnerability in dos (SUSE-SU-2026:1743-1). Risk of unauthorized operations or information disclosure.
SUSE-SU-2026:1742-1 Vulnerability in dos (SUSE-SU-2026:1742-1)
vulnerability in dos (SUSE-SU-2026:1742-1). Risk of unauthorized operations or information disclosure. Exploitable via ``setContext``.
SUSE-SU-2026:1741-1 Vulnerability in privilege-escalation (SUSE-SU-2026:1741-1)
vulnerability in privilege-escalation (SUSE-SU-2026:1741-1). Risk of unauthorized operations or information disclosure.
SUSE-SU-2026:1740-1 Vulnerability in django (SUSE-SU-2026:1740-1)
vulnerability in django (SUSE-SU-2026:1740-1). Risk of unauthorized operations or information disclosure. Exploitable via ``ASGIRequest``.
CVE-2026-42216 Out-of-Bounds Read in openexr (CVE-2026-42216)
vulnerability in openexr (CVE-2026-42216). Confidential information can be exposed externally. Exploitable via ``c13e0e1320a6652e02c5c90c6dbd984d532efe44``.
CVE-2026-42217 Vulnerability in openexr (CVE-2026-42217)
vulnerability in openexr (CVE-2026-42217). Successful exploitation can lead to full system takeover. Exploitable via ``ImfIDManifest.cpp``.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →