Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-41500 |
|
Command Injection in electerm-project (CVE-2026-41500)
command injection in electerm-project (CVE-2026-41500). Successful exploitation can lead to full system takeover. Exploitable via ``releaseInfo.name``. Mitigation: upgrade to `> 3.2.0` or later.
|
| CVE-2026-41501 |
|
Command Injection in electerm (CVE-2026-41501)
command injection in electerm (CVE-2026-41501). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `> 3.2.0` or later.
|
| CVE-2026-8126 |
|
Vulnerability in sqli (CVE-2026-8126)
vulnerability in sqli (CVE-2026-8126). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8128 |
|
Vulnerability in sqli (CVE-2026-8128)
vulnerability in sqli (CVE-2026-8128). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8125 |
|
Vulnerability in sqli (CVE-2026-8125)
vulnerability in sqli (CVE-2026-8125). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8123 |
|
Vulnerability in c (CVE-2026-8123)
vulnerability in c (CVE-2026-8123). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8122 |
|
Vulnerability in c (CVE-2026-8122)
vulnerability in c (CVE-2026-8122). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8120 |
|
Vulnerability in c (CVE-2026-8120)
vulnerability in c (CVE-2026-8120). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8121 |
|
Vulnerability in c (CVE-2026-8121)
vulnerability in c (CVE-2026-8121). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8119 |
|
Vulnerability in c (CVE-2026-8119)
vulnerability in c (CVE-2026-8119). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8117 |
|
Cross-Site Scripting (XSS) in CVE-2026-8117 (CVE-2026-8117)
cross-site scripting in CVE-2026-8117 (CVE-2026-8117). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8116 |
|
Path Traversal in path-traversal (CVE-2026-8116)
path traversal in path-traversal (CVE-2026-8116). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8115 |
|
Path Traversal in path-traversal (CVE-2026-8115)
path traversal in path-traversal (CVE-2026-8115). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42880 |
|
Information Disclosure in argo-cd (CVE-2026-42880)
vulnerability in argo-cd (CVE-2026-42880). Confidential information can be exposed externally.
|
| CVE-2026-8114 |
|
Vulnerability in sqli (CVE-2026-8114)
vulnerability in sqli (CVE-2026-8114). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8034 |
|
Vulnerability in ssrf (CVE-2026-8034)
vulnerability in ssrf (CVE-2026-8034). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8113 |
|
Path Traversal in path-traversal (CVE-2026-8113)
path traversal in path-traversal (CVE-2026-8113). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6736 |
|
Vulnerability in CVE-2026-6736 (CVE-2026-6736)
vulnerability in CVE-2026-6736 (CVE-2026-6736). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7541 |
|
Vulnerability in dos (CVE-2026-7541)
vulnerability in dos (CVE-2026-7541). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41929 |
|
Cross-Site Scripting (XSS) in CVE-2026-41929 (CVE-2026-41929)
cross-site scripting in CVE-2026-41929 (CVE-2026-41929). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41105 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-41105)
SSRF in ssrf (CVE-2026-41105). Confidential information can be exposed externally.
|
| CVE-2026-40214 |
|
Vulnerability in dos (CVE-2026-40214)
vulnerability in dos (CVE-2026-40214). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-33109 |
|
Vulnerability in apache (CVE-2026-33109)
vulnerability in apache (CVE-2026-33109). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33844 |
|
Vulnerability in apache (CVE-2026-33844)
vulnerability in apache (CVE-2026-33844). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33823 |
|
Vulnerability in microsoft (CVE-2026-33823)
vulnerability in microsoft (CVE-2026-33823). Confidential information can be exposed externally.
|
| CVE-2026-35428 |
|
Command Injection in microsoft (CVE-2026-35428)
command injection in microsoft (CVE-2026-35428). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32207 |
|
Cross-Site Scripting (XSS) in microsoft (CVE-2026-32207)
cross-site scripting in microsoft (CVE-2026-32207). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42449 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-42449)
SSRF in ssrf (CVE-2026-42449). Confidential information can be exposed externally.
|
| CVE-2026-41691 |
|
Path Traversal in path-traversal (CVE-2026-41691)
path traversal in path-traversal (CVE-2026-41691). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42499 |
|
Vulnerability in dos (CVE-2026-42499)
vulnerability in dos (CVE-2026-42499). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39823 |
|
Vulnerability in CVE-2026-39823 (CVE-2026-39823)
vulnerability in CVE-2026-39823 (CVE-2026-39823). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41902 |
|
Vulnerability in laravel (CVE-2026-41902)
vulnerability in laravel (CVE-2026-41902). Confidential information can be exposed externally. Exploitable via `Referer header`.
|
| CVE-2025-63703 |
|
Vulnerability in npm (CVE-2025-63703)
vulnerability in npm (CVE-2025-63703). Successful exploitation can lead to full system takeover.
|
| CVE-2025-63704 |
|
Vulnerability in prototype-pollution (CVE-2025-63704)
vulnerability in prototype-pollution (CVE-2025-63704). Successful exploitation can lead to full system takeover.
|
| CVE-2026-36458 |
|
Code Injection in sqli (CVE-2026-36458)
code injection in sqli (CVE-2026-36458). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32686 |
|
Vulnerability in dos (CVE-2026-32686)
vulnerability in dos (CVE-2026-32686). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-63706 |
|
Code Injection in npm (CVE-2025-63706)
code injection in npm (CVE-2025-63706). Successful exploitation can lead to full system takeover.
|
| CVE-2025-67202 |
|
Cross-Site Scripting (XSS) in CVE-2025-67202 (CVE-2025-67202)
cross-site scripting in CVE-2025-67202 (CVE-2025-67202). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8094 |
|
Code Injection in firefox (CVE-2026-8094)
code injection in firefox (CVE-2026-8094). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8091 |
|
Vulnerability in firefox (CVE-2026-8091)
vulnerability in firefox (CVE-2026-8091). Successful exploitation can lead to full system takeover.
|
| SUSE-SU-2026:1749-1 |
|
Vulnerability in SUSE-SU-2026:1749-1 (SUSE-SU-2026:1749-1)
vulnerability in SUSE-SU-2026:1749-1 (SUSE-SU-2026:1749-1). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44406 |
|
Vulnerability in privilege-escalation (CVE-2026-44406)
vulnerability in privilege-escalation (CVE-2026-44406). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:1745-1 |
|
Vulnerability in dos (SUSE-SU-2026:1745-1)
vulnerability in dos (SUSE-SU-2026:1745-1). Risk of unauthorized operations or information disclosure. Exploitable via ``header_rules``.
|
| SUSE-SU-2026:1744-1 |
|
Vulnerability in dos (SUSE-SU-2026:1744-1)
vulnerability in dos (SUSE-SU-2026:1744-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:1743-1 |
|
Vulnerability in dos (SUSE-SU-2026:1743-1)
vulnerability in dos (SUSE-SU-2026:1743-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:1742-1 |
|
Vulnerability in dos (SUSE-SU-2026:1742-1)
vulnerability in dos (SUSE-SU-2026:1742-1). Risk of unauthorized operations or information disclosure. Exploitable via ``setContext``.
|
| SUSE-SU-2026:1741-1 |
|
Vulnerability in privilege-escalation (SUSE-SU-2026:1741-1)
vulnerability in privilege-escalation (SUSE-SU-2026:1741-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:1740-1 |
|
Vulnerability in django (SUSE-SU-2026:1740-1)
vulnerability in django (SUSE-SU-2026:1740-1). Risk of unauthorized operations or information disclosure. Exploitable via ``ASGIRequest``.
|
| CVE-2026-42216 |
|
Out-of-Bounds Read in openexr (CVE-2026-42216)
vulnerability in openexr (CVE-2026-42216). Confidential information can be exposed externally. Exploitable via ``c13e0e1320a6652e02c5c90c6dbd984d532efe44``.
|
| CVE-2026-42217 |
|
Vulnerability in openexr (CVE-2026-42217)
vulnerability in openexr (CVE-2026-42217). Successful exploitation can lead to full system takeover. Exploitable via ``ImfIDManifest.cpp``.
|