Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: cwe Clear
ID Title
CVE-2024-27686 Vulnerability in dos (CVE-2024-27686)
vulnerability in dos (CVE-2024-27686). Risk of unauthorized operations or information disclosure.
CVE-2024-46507 Code Injection in yeti-platform (CVE-2024-46507)
code injection in yeti-platform (CVE-2024-46507). Risk of unauthorized operations or information disclosure.
CVE-2024-45257 Command Injection in CVE-2024-45257 (CVE-2024-45257)
command injection in CVE-2024-45257 (CVE-2024-45257). Risk of unauthorized operations or information disclosure.
CVE-2024-30167 Command Injection in CVE-2024-30167 (CVE-2024-30167)
command injection in CVE-2024-30167 (CVE-2024-30167). Risk of unauthorized operations or information disclosure.
CVE-2024-33724 Cross-Site Scripting (XSS) in CVE-2024-33724 (CVE-2024-33724)
cross-site scripting in CVE-2024-33724 (CVE-2024-33724). Risk of unauthorized operations or information disclosure.
CVE-2024-33288 SQL Injection in sqli (CVE-2024-33288)
SQL injection in sqli (CVE-2024-33288). Risk of unauthorized operations or information disclosure.
CVE-2024-33722 SQL Injection in sqli (CVE-2024-33722)
SQL injection in sqli (CVE-2024-33722). Risk of unauthorized operations or information disclosure.
CVE-2023-47268 Command Injection in cpp (CVE-2023-47268)
command injection in cpp (CVE-2023-47268). Risk of unauthorized operations or information disclosure.
CVE-2026-8138 Buffer Overflow in CVE-2026-8138 (CVE-2026-8138)
vulnerability in CVE-2026-8138 (CVE-2026-8138). Successful exploitation can lead to full system takeover.
CVE-2026-8137 Buffer Overflow in CVE-2026-8137 (CVE-2026-8137)
vulnerability in CVE-2026-8137 (CVE-2026-8137). Successful exploitation can lead to full system takeover.
CVE-2026-42278 Vulnerability in CVE-2026-42278 (CVE-2026-42278)
vulnerability in CVE-2026-42278 (CVE-2026-42278). Risk of unauthorized operations or information disclosure.
CVE-2022-45899 OS Command Injection in CVE-2022-45899 (CVE-2022-45899)
OS command injection in CVE-2022-45899 (CVE-2022-45899). Risk of unauthorized operations or information disclosure.
CVE-2022-26523 Vulnerability in dos (CVE-2022-26523)
vulnerability in dos (CVE-2022-26523). Risk of unauthorized operations or information disclosure.
CVE-2023-42345 Cross-Site Scripting (XSS) in CVE-2023-42345 (CVE-2023-42345)
cross-site scripting in CVE-2023-42345 (CVE-2023-42345). Risk of unauthorized operations or information disclosure.
CVE-2023-42343 Cross-Site Scripting (XSS) in CVE-2023-42343 (CVE-2023-42343)
cross-site scripting in CVE-2023-42343 (CVE-2023-42343). Risk of unauthorized operations or information disclosure.
CVE-2023-42344 XXE (XML External Entity) in CVE-2023-42344 (CVE-2023-42344)
vulnerability in CVE-2023-42344 (CVE-2023-42344). Risk of unauthorized operations or information disclosure.
CVE-2022-26522 Vulnerability in dos (CVE-2022-26522)
vulnerability in dos (CVE-2022-26522). Successful exploitation can lead to full system takeover.
CVE-2022-23961 Cross-Site Scripting (XSS) in CVE-2022-23961 (CVE-2022-23961)
cross-site scripting in CVE-2022-23961 (CVE-2022-23961). Risk of unauthorized operations or information disclosure.
CVE-2026-8136 Cross-Site Scripting (XSS) in CVE-2026-8136 (CVE-2026-8136)
cross-site scripting in CVE-2026-8136 (CVE-2026-8136). Risk of unauthorized operations or information disclosure.
CVE-2026-8133 Vulnerability in sqli (CVE-2026-8133)
vulnerability in sqli (CVE-2026-8133). Risk of unauthorized operations or information disclosure.
CVE-2026-8132 Vulnerability in sqli (CVE-2026-8132)
vulnerability in sqli (CVE-2026-8132). Risk of unauthorized operations or information disclosure.
CVE-2026-44298 Path Traversal in kimai/kimai (CVE-2026-44298)
path traversal in kimai/kimai (CVE-2026-44298). Risk of unauthorized operations or information disclosure. Exploitable via ``ROLE_SYSTE_ADMIN``. Mitigation: upgrade to `2.56` or later.
CVE-2026-43944 Vulnerability in electerm (CVE-2026-43944)
vulnerability in electerm (CVE-2026-43944). Successful exploitation can lead to full system takeover. Exploitable via ``opts``. Mitigation: upgrade to `> 3.8.8` or later.
CVE-2026-8129 Vulnerability in sqli (CVE-2026-8129)
vulnerability in sqli (CVE-2026-8129). Risk of unauthorized operations or information disclosure.
CVE-2026-8130 Vulnerability in sqli (CVE-2026-8130)
vulnerability in sqli (CVE-2026-8130). Risk of unauthorized operations or information disclosure.
CVE-2026-8131 Vulnerability in sqli (CVE-2026-8131)
vulnerability in sqli (CVE-2026-8131). Risk of unauthorized operations or information disclosure.
CVE-2026-43943 OS Command Injection in electerm (CVE-2026-43943)
OS command injection in electerm (CVE-2026-43943). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.7.9` or later.
CVE-2026-43940 Path Traversal in electerm (CVE-2026-43940)
path traversal in electerm (CVE-2026-43940). Successful exploitation can lead to full system takeover. Exploitable via ``runWidget``. Mitigation: upgrade to `3.7.16` or later.
CVE-2026-43941 Vulnerability in electerm (CVE-2026-43941)
vulnerability in electerm (CVE-2026-43941). Successful exploitation can lead to full system takeover. Exploitable via ``shell.openExternal``.
CVE-2026-43942 Information Disclosure in electerm (CVE-2026-43942)
vulnerability in electerm (CVE-2026-43942). Confidential information can be exposed externally. Exploitable via ``process.env``.
CVE-2026-42275 Path Traversal in path-traversal (CVE-2026-42275)
path traversal in path-traversal (CVE-2026-42275). Confidential information can be exposed externally.
CVE-2026-42274 Vulnerability in CVE-2026-42274 (CVE-2026-42274)
vulnerability in CVE-2026-42274 (CVE-2026-42274). Risk of unauthorized operations or information disclosure.
CVE-2026-42273 Vulnerability in CVE-2026-42273 (CVE-2026-42273)
vulnerability in CVE-2026-42273 (CVE-2026-42273). Risk of unauthorized operations or information disclosure.
CVE-2026-42272 Vulnerability in CVE-2026-42272 (CVE-2026-42272)
vulnerability in CVE-2026-42272 (CVE-2026-42272). Risk of unauthorized operations or information disclosure.
CVE-2026-42271 Command Injection in litellm (CVE-2026-42271)
command injection in litellm (CVE-2026-42271). Successful exploitation can lead to full system takeover. Exploitable via `POST /mcp-rest/test/connection`.
CVE-2026-42261 Vulnerability in ssrf (CVE-2026-42261)
vulnerability in ssrf (CVE-2026-42261). Confidential information can be exposed externally. Exploitable via `POST /api/skills/fetch-remote`.
CVE-2026-42264 Vulnerability in CVE-2026-42264 (CVE-2026-42264)
vulnerability in CVE-2026-42264 (CVE-2026-42264). Confidential information can be exposed externally.
CVE-2026-42203 Vulnerability in CVE-2026-42203 (CVE-2026-42203)
vulnerability in CVE-2026-42203 (CVE-2026-42203). Risk of unauthorized operations or information disclosure. Exploitable via `POST /prompts/test`.
CVE-2026-41900 OS Command Injection in CVE-2026-41900 (CVE-2026-41900)
OS command injection in CVE-2026-41900 (CVE-2026-41900). Successful exploitation can lead to full system takeover.
CVE-2026-41645 Code Injection in projectdiscovery (CVE-2026-41645)
code injection in projectdiscovery (CVE-2026-41645). Confidential information can be exposed externally.
CVE-2026-41646 Vulnerability in projectdiscovery (CVE-2026-41646)
vulnerability in projectdiscovery (CVE-2026-41646). Confidential information can be exposed externally.
CVE-2026-42150 Cross-Site Scripting (XSS) in CVE-2026-42150 (CVE-2026-42150)
cross-site scripting in CVE-2026-42150 (CVE-2026-42150). Risk of unauthorized operations or information disclosure.
CVE-2026-41501 Command Injection in electerm (CVE-2026-41501)
command injection in electerm (CVE-2026-41501). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `> 3.2.0` or later.
CVE-2026-41500 Command Injection in electerm-project (CVE-2026-41500)
command injection in electerm-project (CVE-2026-41500). Successful exploitation can lead to full system takeover. Exploitable via ``releaseInfo.name``. Mitigation: upgrade to `> 3.2.0` or later.
CVE-2026-41498 Vulnerability in symfony (CVE-2026-41498)
vulnerability in symfony (CVE-2026-41498). Risk of unauthorized operations or information disclosure.
CVE-2026-8127 Vulnerability in CVE-2026-8127 (CVE-2026-8127)
vulnerability in CVE-2026-8127 (CVE-2026-8127). Risk of unauthorized operations or information disclosure.
CVE-2026-8128 Vulnerability in sqli (CVE-2026-8128)
vulnerability in sqli (CVE-2026-8128). Risk of unauthorized operations or information disclosure.
CVE-2026-8126 Vulnerability in sqli (CVE-2026-8126)
vulnerability in sqli (CVE-2026-8126). Risk of unauthorized operations or information disclosure.
CVE-2026-6737 Vulnerability in CVE-2026-6737 (CVE-2026-6737)
vulnerability in CVE-2026-6737 (CVE-2026-6737). Risk of unauthorized operations or information disclosure.
CVE-2026-3508 Out-of-Bounds Read in CVE-2026-3508 (CVE-2026-3508)
vulnerability in CVE-2026-3508 (CVE-2026-3508). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →