Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2025-70290 |
|
Vulnerability in CVE-2025-70290 (CVE-2025-70290)
vulnerability in CVE-2025-70290 (CVE-2025-70290). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79940 |
|
Vulnerability in CVE-2026-79940 (CVE-2026-79940)
vulnerability in CVE-2026-79940 (CVE-2026-79940). Data can be tampered with by attackers.
|
| CVE-2026-75325 |
|
Authentication Bypass in CVE-2026-75325 (CVE-2026-75325)
authentication bypass in CVE-2026-75325 (CVE-2026-75325). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71171 |
|
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
|
| CVE-2026-70419 |
|
OS Command Injection in CVE-2026-70419 (CVE-2026-70419)
OS command injection in CVE-2026-70419 (CVE-2026-70419). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51106 |
|
Vulnerability in cpp (CVE-2026-51106)
vulnerability in cpp (CVE-2026-51106). Confidential information can be exposed externally.
|
| CVE-2026-36851 |
|
Path Traversal in path-traversal (CVE-2026-36851)
path traversal in path-traversal (CVE-2026-36851). Confidential information can be exposed externally.
|
| CVE-2026-19485 |
|
Vulnerability in CVE-2026-19485 (CVE-2026-19485)
vulnerability in CVE-2026-19485 (CVE-2026-19485). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61165 |
|
Unrestricted File Upload in CVE-2025-61165 (CVE-2025-61165)
vulnerability in CVE-2025-61165 (CVE-2025-61165). Successful exploitation can lead to full system takeover.
|
| CVE-2025-61164 |
|
Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint.
Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint.
|
| CVE-2025-61162 |
|
Vulnerability in CVE-2025-61162 (CVE-2025-61162)
vulnerability in CVE-2025-61162 (CVE-2025-61162). Data can be tampered with by attackers.
|
| CVE-2026-80348 |
|
Vulnerability in CVE-2026-80348 (CVE-2026-80348)
vulnerability in CVE-2026-80348 (CVE-2026-80348). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80200 |
|
Open Redirect in CVE-2026-80200 (CVE-2026-80200)
vulnerability in CVE-2026-80200 (CVE-2026-80200). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-80214 |
|
OS Command Injection in CVE-2026-80214 (CVE-2026-80214)
OS command injection in CVE-2026-80214 (CVE-2026-80214). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58474 |
|
Code Injection in CVE-2026-58474 (CVE-2026-58474)
code injection in CVE-2026-58474 (CVE-2026-58474). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47837 |
|
Vulnerability in CVE-2026-47837 (CVE-2026-47837)
vulnerability in CVE-2026-47837 (CVE-2026-47837). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-56798 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-56798)
vulnerability in csrf (CVE-2025-56798). Successful exploitation can lead to full system takeover.
|
| CVE-2026-81032 |
|
Vulnerability in cpp (CVE-2026-81032)
vulnerability in cpp (CVE-2026-81032). Successful exploitation can lead to full system takeover.
|
| CVE-2026-81036 |
|
Open Redirect in CVE-2026-81036 (CVE-2026-81036)
vulnerability in CVE-2026-81036 (CVE-2026-81036). Confidential information can be exposed externally.
|
| CVE-2026-81034 |
|
Vulnerability in CVE-2026-81034 (CVE-2026-81034)
vulnerability in CVE-2026-81034 (CVE-2026-81034). Confidential information can be exposed externally.
|
| CVE-2026-81035 |
|
Vulnerability in CVE-2026-81035 (CVE-2026-81035)
vulnerability in CVE-2026-81035 (CVE-2026-81035). Data can be tampered with by attackers.
|
| CVE-2026-81030 |
|
Path Traversal in CVE-2026-81030 (CVE-2026-81030)
path traversal in CVE-2026-81030 (CVE-2026-81030). Confidential information can be exposed externally.
|
| CVE-2026-81028 |
|
Path Traversal in cpp (CVE-2026-81028)
path traversal in cpp (CVE-2026-81028). Confidential information can be exposed externally.
|
| CVE-2026-80428 |
|
Unsafe Deserialization in CVE-2026-80428 (CVE-2026-80428)
vulnerability in CVE-2026-80428 (CVE-2026-80428). Successful exploitation can lead to full system takeover.
|
| CVE-2026-81027 |
|
Vulnerability in c (CVE-2026-81027)
vulnerability in c (CVE-2026-81027). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-81029 |
|
Open Redirect in CVE-2026-81029 (CVE-2026-81029)
vulnerability in CVE-2026-81029 (CVE-2026-81029). Confidential information can be exposed externally.
|
| CVE-2026-80426 |
|
Cross-Site Scripting (XSS) in react (CVE-2026-80426)
cross-site scripting in react (CVE-2026-80426). Confidential information can be exposed externally.
|
| CVE-2026-80427 |
|
Vulnerability in CVE-2026-80427 (CVE-2026-80427)
vulnerability in CVE-2026-80427 (CVE-2026-80427). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48549 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-48549)
vulnerability in csrf (CVE-2026-48549). Data can be tampered with by attackers. Exploitable via `Cookie header`.
|
| CVE-2026-48548 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-48548)
vulnerability in csrf (CVE-2026-48548). Data can be tampered with by attackers.
|
| CVE-2026-54614 |
|
Vulnerability in cakephp/debug_kit (CVE-2026-54614)
vulnerability in cakephp/debug_kit (CVE-2026-54614). Risk of unauthorized operations or information disclosure. Exploitable via ``MailPreview``. Mitigation: upgrade to `5.2.4` or later.
|
| CVE-2026-54569 |
|
Vulnerability in senaite.core (CVE-2026-54569)
vulnerability in senaite.core (CVE-2026-54569). Successful exploitation can lead to full system takeover. Exploitable via `GET /senaite/bika_setup/`.
|
| CVE-2026-54606 |
|
Cross-Site Scripting (XSS) in suneditor (CVE-2026-54606)
cross-site scripting in suneditor (CVE-2026-54606). Risk of unauthorized operations or information disclosure. Exploitable via `GET /poc.js`. Mitigation: upgrade to `3.1.4` or later.
|
| CVE-2026-75062 |
|
Vulnerability in CVE-2026-75062 (CVE-2026-75062)
vulnerability in CVE-2026-75062 (CVE-2026-75062). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13480 |
|
Vulnerability in c (CVE-2026-13480)
vulnerability in c (CVE-2026-13480). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13481 |
|
Out-of-Bounds Read in c (CVE-2026-13481)
vulnerability in c (CVE-2026-13481). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13479 |
|
Out-of-Bounds Read in c (CVE-2026-13479)
vulnerability in c (CVE-2026-13479). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54511 |
|
Vulnerability in @logtape/syslog (CVE-2026-54511)
vulnerability in @logtape/syslog (CVE-2026-54511). Data can be tampered with by attackers. Mitigation: upgrade to `1.3.11` or later.
|
| CVE-2026-54550 |
|
Path Traversal in org.codehaus.izpack:izpack-installer (CVE-2026-54550)
path traversal in org.codehaus.izpack:izpack-installer (CVE-2026-54550). Data can be tampered with by attackers. Exploitable via ``targetPath``.
|
| CVE-2026-54523 |
|
Vulnerability in github.com/kyverno/kyverno (CVE-2026-54523)
vulnerability in github.com/kyverno/kyverno (CVE-2026-54523). Confidential information can be exposed externally. Exploitable via ``NamespacedMutatingPolicy``. Mitigation: upgrade to `1.18.2` or later.
|
| CVE-2026-54548 |
|
Vulnerability in kas (CVE-2026-54548)
vulnerability in kas (CVE-2026-54548). Risk of unauthorized operations or information disclosure. Exploitable via ``SSH_PRIVATE_KEY``. Mitigation: upgrade to `5.4` or later.
|
| CVE-2026-79902 |
|
Vulnerability in c (CVE-2026-79902)
vulnerability in c (CVE-2026-79902). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77801 |
|
Vulnerability in dos (CVE-2026-77801)
vulnerability in dos (CVE-2026-77801). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75896 |
|
Vulnerability in CVE-2026-75896 (CVE-2026-75896)
vulnerability in CVE-2026-75896 (CVE-2026-75896). Confidential information can be exposed externally.
|
| CVE-2026-75960 |
|
Vulnerability in CVE-2026-75960 (CVE-2026-75960)
vulnerability in CVE-2026-75960 (CVE-2026-75960). Confidential information can be exposed externally.
|
| CVE-2026-73108 |
|
Vulnerability in dos (CVE-2026-73108)
vulnerability in dos (CVE-2026-73108). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3035 |
|
Vulnerability in CVE-2026-3035 (CVE-2026-3035)
vulnerability in CVE-2026-3035 (CVE-2026-3035). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18252 |
|
Vulnerability in CVE-2026-18252 (CVE-2026-18252)
vulnerability in CVE-2026-18252 (CVE-2026-18252). Confidential information can be exposed externally.
|
| CVE-2026-12717 |
|
Vulnerability in CVE-2026-12717 (CVE-2026-12717)
vulnerability in CVE-2026-12717 (CVE-2026-12717). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15990 |
|
Path Traversal in wordpress (CVE-2026-15990)
path traversal in wordpress (CVE-2026-15990). Confidential information can be exposed externally.
|