Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-75332 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-75332)
SSRF in ssrf (CVE-2026-75332). Confidential information can be exposed externally.
|
| CVE-2026-75340 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-75340)
SSRF in ssrf (CVE-2026-75340). Confidential information can be exposed externally.
|
| CVE-2025-62341 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2025-62341)
SSRF in ssrf (CVE-2025-62341). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65956 |
|
Vulnerability in privilege-escalation (CVE-2026-65956)
vulnerability in privilege-escalation (CVE-2026-65956). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47665 |
|
Cross-Site Scripting (XSS) in CVE-2026-47665 (CVE-2026-47665)
cross-site scripting in CVE-2026-47665 (CVE-2026-47665). Confidential information can be exposed externally.
|
| CVE-2026-47666 |
|
Cross-Site Scripting (XSS) in CVE-2026-47666 (CVE-2026-47666)
cross-site scripting in CVE-2026-47666 (CVE-2026-47666). Confidential information can be exposed externally.
|
| CVE-2026-75331 |
|
Unrestricted File Upload in CVE-2026-75331 (CVE-2026-75331)
vulnerability in CVE-2026-75331 (CVE-2026-75331). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75333 |
|
Path Traversal in path-traversal (CVE-2026-75333)
path traversal in path-traversal (CVE-2026-75333). Confidential information can be exposed externally.
|
| CVE-2026-65930 |
|
Cross-Site Scripting (XSS) in CVE-2026-65930 (CVE-2026-65930)
cross-site scripting in CVE-2026-65930 (CVE-2026-65930). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63360 |
|
Cross-Site Scripting (XSS) in CVE-2026-63360 (CVE-2026-63360)
cross-site scripting in CVE-2026-63360 (CVE-2026-63360). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16809 |
|
Cross-Site Scripting (XSS) in CVE-2026-16809 (CVE-2026-16809)
cross-site scripting in CVE-2026-16809 (CVE-2026-16809). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52103 |
|
Vulnerability in CVE-2026-52103 (CVE-2026-52103)
vulnerability in CVE-2026-52103 (CVE-2026-52103). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15973 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-15973)
cross-site scripting in c (CVE-2026-15973). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39275 |
|
Cross-Site Scripting (XSS) in CVE-2026-39275 (CVE-2026-39275)
cross-site scripting in CVE-2026-39275 (CVE-2026-39275). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61480 |
|
Vulnerability in dos (CVE-2025-61480)
vulnerability in dos (CVE-2025-61480). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61479 |
|
Vulnerability in dos (CVE-2025-61479)
vulnerability in dos (CVE-2025-61479). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-51675 |
|
Vulnerability in dos (CVE-2025-51675)
vulnerability in dos (CVE-2025-51675). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61478 |
|
Vulnerability in dos (CVE-2025-61478)
vulnerability in dos (CVE-2025-61478). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-79921 |
|
Vulnerability in dos (CVE-2026-79921)
vulnerability in dos (CVE-2026-79921). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62326 |
|
Vulnerability in dos (CVE-2026-62326)
vulnerability in dos (CVE-2026-62326). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61792 |
|
Path Traversal in path-traversal (CVE-2026-61792)
path traversal in path-traversal (CVE-2026-61792). Confidential information can be exposed externally.
|
| CVE-2026-77652 |
|
A heap-based buffer overflow vulnerability exists in the Dia diagram editor WPG file format...
A heap-based buffer overflow vulnerability exists in the Dia diagram editor WPG file format...
|
| CVE-2026-74770 |
|
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
|
| CVE-2026-71172 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-71172)
SSRF in ssrf (CVE-2026-71172). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71054 |
|
Vulnerability in c (CVE-2026-71054)
vulnerability in c (CVE-2026-71054). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68863 |
|
Dell PowerProtect One, versions 20.1.0.0 and below, contain a Stack-based Buffer Overflow...
Dell PowerProtect One, versions 20.1.0.0 and below, contain a Stack-based Buffer Overflow...
|
| CVE-2026-68861 |
|
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
|
| CVE-2026-68000 |
|
Vulnerability in sqli (CVE-2026-68000)
vulnerability in sqli (CVE-2026-68000). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49809 |
|
SQL Injection in sqli (CVE-2026-49809)
SQL injection in sqli (CVE-2026-49809). Confidential information can be exposed externally.
|
| CVE-2026-26445 |
|
Vulnerability in dos (CVE-2026-26445)
vulnerability in dos (CVE-2026-26445). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26446 |
|
Vulnerability in dos (CVE-2026-26446)
vulnerability in dos (CVE-2026-26446). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26447 |
|
Use-After-Free in dos (CVE-2026-26447)
vulnerability in dos (CVE-2026-26447). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-70293 |
|
Vulnerability in dos (CVE-2025-70293)
vulnerability in dos (CVE-2025-70293). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-70340 |
|
Vulnerability in privilege-escalation (CVE-2025-70340)
vulnerability in privilege-escalation (CVE-2025-70340). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75466 |
|
Vulnerability in dos (CVE-2026-75466)
vulnerability in dos (CVE-2026-75466). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75325 |
|
Authentication Bypass in CVE-2026-75325 (CVE-2026-75325)
authentication bypass in CVE-2026-75325 (CVE-2026-75325). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71171 |
|
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
|
| CVE-2026-51106 |
|
Vulnerability in cpp (CVE-2026-51106)
vulnerability in cpp (CVE-2026-51106). Confidential information can be exposed externally.
|
| CVE-2026-36851 |
|
Path Traversal in path-traversal (CVE-2026-36851)
path traversal in path-traversal (CVE-2026-36851). Confidential information can be exposed externally.
|
| CVE-2025-56798 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-56798)
vulnerability in csrf (CVE-2025-56798). Successful exploitation can lead to full system takeover.
|
| CVE-2020-15876 |
|
Vulnerability in sqli (CVE-2020-15876)
vulnerability in sqli (CVE-2020-15876). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-15878 |
|
Vulnerability in sqli (CVE-2020-15878)
vulnerability in sqli (CVE-2020-15878). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48549 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-48549)
vulnerability in csrf (CVE-2026-48549). Data can be tampered with by attackers. Exploitable via `Cookie header`.
|
| CVE-2026-48548 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-48548)
vulnerability in csrf (CVE-2026-48548). Data can be tampered with by attackers.
|
| CVE-2026-54569 |
|
Vulnerability in senaite.core (CVE-2026-54569)
vulnerability in senaite.core (CVE-2026-54569). Successful exploitation can lead to full system takeover. Exploitable via `GET /senaite/bika_setup/`.
|
| CVE-2026-54606 |
|
Cross-Site Scripting (XSS) in suneditor (CVE-2026-54606)
cross-site scripting in suneditor (CVE-2026-54606). Risk of unauthorized operations or information disclosure. Exploitable via `GET /poc.js`. Mitigation: upgrade to `3.1.4` or later.
|
| CVE-2026-80560 |
|
Vulnerability in privilege-escalation (CVE-2026-80560)
vulnerability in privilege-escalation (CVE-2026-80560). Successful exploitation can lead to full system takeover.
|
| CVE-2026-74752 |
|
Vulnerability in privilege-escalation (CVE-2026-74752)
vulnerability in privilege-escalation (CVE-2026-74752). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54523 |
|
Vulnerability in github.com/kyverno/kyverno (CVE-2026-54523)
vulnerability in github.com/kyverno/kyverno (CVE-2026-54523). Confidential information can be exposed externally. Exploitable via ``NamespacedMutatingPolicy``. Mitigation: upgrade to `1.18.2` or later.
|
| CVE-2026-79902 |
|
Vulnerability in c (CVE-2026-79902)
vulnerability in c (CVE-2026-79902). Risk of unauthorized operations or information disclosure.
|