Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-81718 |
|
Vulnerability in CVE-2026-81718 (CVE-2026-81718)
vulnerability in CVE-2026-81718 (CVE-2026-81718). Confidential information can be exposed externally.
|
| CVE-2026-79084 |
|
Vulnerability in google (CVE-2026-79084)
vulnerability in google (CVE-2026-79084). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74889 |
|
Vulnerability in CVE-2026-74889 (CVE-2026-74889)
vulnerability in CVE-2026-74889 (CVE-2026-74889). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65777 |
|
Vulnerability in microsoft (CVE-2026-65777)
vulnerability in microsoft (CVE-2026-65777). Data can be tampered with by attackers.
|
| CVE-2026-9201 |
|
Vulnerability in langflow (CVE-2026-9201)
vulnerability in langflow (CVE-2026-9201). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59651 |
|
Vulnerability in CVE-2026-59651 (CVE-2026-59651)
vulnerability in CVE-2026-59651 (CVE-2026-59651). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4648 |
|
Vulnerability in CVE-2026-4648 (CVE-2026-4648)
vulnerability in CVE-2026-4648 (CVE-2026-4648). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50044 |
|
Vulnerability in CVE-2026-50044 (CVE-2026-50044)
vulnerability in CVE-2026-50044 (CVE-2026-50044). Confidential information can be exposed externally.
|
| CVE-2024-23564 |
|
Vulnerability in CVE-2024-23564 (CVE-2024-23564)
vulnerability in CVE-2024-23564 (CVE-2024-23564). Confidential information can be exposed externally.
|
| CVE-2026-35146 |
|
Vulnerability in hcltech (CVE-2026-35146)
vulnerability in hcltech (CVE-2026-35146). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-63579 |
|
Information Disclosure in CVE-2025-63579 (CVE-2025-63579)
vulnerability in CVE-2025-63579 (CVE-2025-63579). Confidential information can be exposed externally.
|
| CVE-2026-14868 |
|
Vulnerability in arcinformatique (CVE-2026-14868)
vulnerability in arcinformatique (CVE-2026-14868). Confidential information can be exposed externally.
|
| CVE-2026-49852 |
|
Authentication Bypass in joserfc (CVE-2026-49852)
authentication bypass in joserfc (CVE-2026-49852). Risk of unauthorized operations or information disclosure. Exploitable via ``joserfc.jwt.decode``. Mitigation: upgrade to `1.6.8` or later.
|
| CVE-2026-7830 |
|
Vulnerability in cpp (CVE-2026-7830)
vulnerability in cpp (CVE-2026-7830). Confidential information can be exposed externally.
|
| CVE-2026-41860 |
|
Vulnerability in CVE-2026-41860 (CVE-2026-41860)
vulnerability in CVE-2026-41860 (CVE-2026-41860). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `282.1.9` or later.
|
| CVE-2026-8878 |
|
Vulnerability in securly (CVE-2026-8878)
vulnerability in securly (CVE-2026-8878). Confidential information can be exposed externally.
|
| CVE-2026-45363 |
|
Vulnerability in jwt (CVE-2026-45363)
vulnerability in jwt (CVE-2026-45363). Confidential information can be exposed externally. Exploitable via ``enforce_hmac_key_length``. Mitigation: upgrade to `2.10.3` or later.
|
| CVE-2026-45787 |
|
Vulnerability in electerm (CVE-2026-45787)
vulnerability in electerm (CVE-2026-45787). Confidential information can be exposed externally. Mitigation: upgrade to `3.9.5` or later.
|
| CVE-2026-44523 |
|
Vulnerability in github.com/enchant97/note-mark/backend (CVE-2026-44523)
vulnerability in github.com/enchant97/note-mark/backend (CVE-2026-44523). Confidential information can be exposed externally. Exploitable via ``JWT_SECRET``. Mitigation: upgrade to `0.0.0-20260501152247-18b587758667` or later.
|
| CVE-2026-44351 |
|
Vulnerability in fast-jwt (CVE-2026-44351)
vulnerability in fast-jwt (CVE-2026-44351). Confidential information can be exposed externally. Exploitable via ``Buffer``. Mitigation: upgrade to `6.2.4` or later.
|
| CVE-2026-33361 |
|
Vulnerability in CVE-2026-33361 (CVE-2026-33361)
vulnerability in CVE-2026-33361 (CVE-2026-33361). Confidential information can be exposed externally.
|
| CVE-2026-5363 |
|
Vulnerability in tp-link (CVE-2026-5363)
vulnerability in tp-link (CVE-2026-5363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5889 |
|
Vulnerability in google (CVE-2026-5889)
vulnerability in google (CVE-2026-5889). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39349 |
|
Vulnerability in orangehrm (CVE-2026-39349)
vulnerability in orangehrm (CVE-2026-39349). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.8.1` or later.
|
| CVE-2024-28755 |
|
Vulnerability in dos (CVE-2024-28755)
vulnerability in dos (CVE-2024-28755). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-29549 |
|
Vulnerability in mozilla (CVE-2023-29549)
vulnerability in mozilla (CVE-2023-29549). Data can be tampered with by attackers.
|
| CVE-2017-11317 KEV |
|
[KEV] Vulnerability in Telerik user-interface-ui-for-aspnet-ajax (CVE-2017-11317)
vulnerability in Telerik user-interface-ui-for-aspnet-ajax (CVE-2017-11317). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-1000486 KEV |
|
[KEV] Vulnerability in Primetek primefaces-application (CVE-2017-1000486)
vulnerability in Primetek primefaces-application (CVE-2017-1000486). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-42216 |
|
A Broken or Risky Cryptographic Algorithm exists in AnonAddy 0.8.5 via VerificationController.php.
A Broken or Risky Cryptographic Algorithm exists in AnonAddy 0.8.5 via VerificationController.php.
|
| CVE-2018-15811 KEV |
|
[KEV] Vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-15811)
vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-15811). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-18325 KEV |
|
[KEV] Vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-18325)
vulnerability in Dotnetnuke (dnn) dotnetnuke-dnn (CVE-2018-18325). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-7565 |
|
Vulnerability in schneider-electric (CVE-2020-7565)
vulnerability in schneider-electric (CVE-2020-7565). Confidential information can be exposed externally.
|
| CVE-2020-3549 |
|
Vulnerability in cisco (CVE-2020-3549)
vulnerability in cisco (CVE-2020-3549). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14090 |
|
Vulnerability in trendmicro (CVE-2017-14090)
vulnerability in trendmicro (CVE-2017-14090). Confidential information can be exposed externally.
|
| CVE-2017-1271 |
|
Vulnerability in ibm (CVE-2017-1271)
vulnerability in ibm (CVE-2017-1271). Confidential information can be exposed externally.
|
| CVE-2017-17436 |
|
Vulnerability in vaulteksafe (CVE-2017-17436)
vulnerability in vaulteksafe (CVE-2017-17436). Successful exploitation can lead to full system takeover.
|
| CVE-2017-13699 |
|
Vulnerability in moxa (CVE-2017-13699)
vulnerability in moxa (CVE-2017-13699). Confidential information can be exposed externally.
|
| CVE-2017-8174 |
|
Vulnerability in huawei (CVE-2017-8174)
vulnerability in huawei (CVE-2017-8174). Confidential information can be exposed externally.
|
| CVE-2017-1375 |
|
Vulnerability in ibm (CVE-2017-1375)
vulnerability in ibm (CVE-2017-1375). Confidential information can be exposed externally.
|
| CVE-2012-6707 |
|
Vulnerability in wordpress (CVE-2012-6707)
vulnerability in wordpress (CVE-2012-6707). Confidential information can be exposed externally.
|
| CVE-2017-14797 |
|
Vulnerability in philips (CVE-2017-14797)
vulnerability in philips (CVE-2017-14797). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9645 |
|
Vulnerability in mirion (CVE-2017-9645)
vulnerability in mirion (CVE-2017-9645). Confidential information can be exposed externally.
|
| CVE-2017-14262 |
|
Vulnerability in samsung (CVE-2017-14262)
vulnerability in samsung (CVE-2017-14262). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12871 |
|
Vulnerability in simplesamlphp (CVE-2017-12871)
vulnerability in simplesamlphp (CVE-2017-12871). Confidential information can be exposed externally.
|
| CVE-2014-9975 |
|
Vulnerability in google (CVE-2014-9975)
vulnerability in google (CVE-2014-9975). Successful exploitation can lead to full system takeover.
|
| CVE-2015-0575 |
|
Vulnerability in google (CVE-2015-0575)
vulnerability in google (CVE-2015-0575). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1224 |
|
Vulnerability in ibm (CVE-2017-1224)
vulnerability in ibm (CVE-2017-1224). Confidential information can be exposed externally.
|
| CVE-2017-7673 |
|
Vulnerability in apache (CVE-2017-7673)
vulnerability in apache (CVE-2017-7673). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7905 |
|
Vulnerability in ge (CVE-2017-7905)
vulnerability in ge (CVE-2017-7905). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7903 |
|
Vulnerability in rockwellautomation (CVE-2017-7903)
vulnerability in rockwellautomation (CVE-2017-7903). Successful exploitation can lead to full system takeover.
|