Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-82452 |
|
Vulnerability in c (CVE-2026-82452)
vulnerability in c (CVE-2026-82452). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54788 |
|
Vulnerability in datadog-opentelemetry (CVE-2026-54788)
vulnerability in datadog-opentelemetry (CVE-2026-54788). Risk of unauthorized operations or information disclosure. Exploitable via ``tracecontext``. Mitigation: upgrade to `0.3.3` or later.
|
| CVE-2026-82253 |
|
Path Traversal in path-traversal (CVE-2026-82253)
path traversal in path-traversal (CVE-2026-82253). Confidential information can be exposed externally.
|
| CVE-2026-81526 |
|
Vulnerability in CVE-2026-81526 (CVE-2026-81526)
vulnerability in CVE-2026-81526 (CVE-2026-81526). Data can be tampered with by attackers.
|
| CVE-2026-55609 |
|
Vulnerability in consciousness-explorer (CVE-2026-55609)
vulnerability in consciousness-explorer (CVE-2026-55609). Data can be tampered with by attackers. Exploitable via ``export_state``. Mitigation: upgrade to `1.1.2` or later.
|
| CVE-2026-55571 |
|
Vulnerability in djust (CVE-2026-55571)
vulnerability in djust (CVE-2026-55571). Data can be tampered with by attackers. Exploitable via ``LiveViewConsumer``. Mitigation: upgrade to `1.0.4` or later.
|
| CVE-2026-77651 |
|
Vulnerability in CVE-2026-77651 (CVE-2026-77651)
vulnerability in CVE-2026-77651 (CVE-2026-77651). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77650 |
|
Vulnerability in CVE-2026-77650 (CVE-2026-77650)
vulnerability in CVE-2026-77650 (CVE-2026-77650). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77649 |
|
Vulnerability in CVE-2026-77649 (CVE-2026-77649)
vulnerability in CVE-2026-77649 (CVE-2026-77649). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47699 |
|
Path Traversal in CVE-2026-47699 (CVE-2026-47699)
path traversal in CVE-2026-47699 (CVE-2026-47699). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72814 |
|
Path Traversal in CVE-2026-72814 (CVE-2026-72814)
path traversal in CVE-2026-72814 (CVE-2026-72814). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73290 |
|
Authorization Flaw in CVE-2026-73290 (CVE-2026-73290)
vulnerability in CVE-2026-73290 (CVE-2026-73290). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73289 |
|
Authorization Flaw in CVE-2026-73289 (CVE-2026-73289)
vulnerability in CVE-2026-73289 (CVE-2026-73289). Confidential information can be exposed externally.
|
| CVE-2026-73288 |
|
Vulnerability in CVE-2026-73288 (CVE-2026-73288)
vulnerability in CVE-2026-73288 (CVE-2026-73288). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73287 |
|
Vulnerability in CVE-2026-73287 (CVE-2026-73287)
vulnerability in CVE-2026-73287 (CVE-2026-73287). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73286 |
|
Authorization Flaw in CVE-2026-73286 (CVE-2026-73286)
vulnerability in CVE-2026-73286 (CVE-2026-73286). Confidential information can be exposed externally.
|
| CVE-2026-73285 |
|
Authorization Flaw in CVE-2026-73285 (CVE-2026-73285)
vulnerability in CVE-2026-73285 (CVE-2026-73285). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73284 |
|
Privilege Escalation in CVE-2026-73284 (CVE-2026-73284)
vulnerability in CVE-2026-73284 (CVE-2026-73284). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73265 |
|
Vulnerability in CVE-2026-73265 (CVE-2026-73265)
vulnerability in CVE-2026-73265 (CVE-2026-73265). Confidential information can be exposed externally.
|
| CVE-2026-46369 |
|
Vulnerability in nimiq-blockchain (CVE-2026-46369)
vulnerability in nimiq-blockchain (CVE-2026-46369). Data can be tampered with by attackers. Mitigation: upgrade to `1.5.1` or later.
|
| CVE-2026-72925 |
|
Cross-Site Scripting (XSS) in CVE-2026-72925 (CVE-2026-72925)
cross-site scripting in CVE-2026-72925 (CVE-2026-72925). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71282 |
|
SQL Injection in CVE-2026-71282 (CVE-2026-71282)
SQL injection in CVE-2026-71282 (CVE-2026-71282). Confidential information can be exposed externally.
|
| CVE-2026-71278 |
|
Code Injection in CVE-2026-71278 (CVE-2026-71278)
code injection in CVE-2026-71278 (CVE-2026-71278). Successful exploitation can lead to full system takeover. Exploitable via `POST /calc-rule/create`.
|
| CVE-2026-71277 |
|
Authentication Bypass in CVE-2026-71277 (CVE-2026-71277)
authentication bypass in CVE-2026-71277 (CVE-2026-71277). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-71202 |
|
Vulnerability in CVE-2026-71202 (CVE-2026-71202)
vulnerability in CVE-2026-71202 (CVE-2026-71202). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47618 |
|
SSRF (Server-Side Request Forgery) in nvidia (CVE-2026-47618)
SSRF in nvidia (CVE-2026-47618). Confidential information can be exposed externally.
|
| CVE-2026-68930 |
|
Vulnerability in russh (CVE-2026-68930)
vulnerability in russh (CVE-2026-68930). Data can be tampered with by attackers. Exploitable via ``russh``. Mitigation: upgrade to `0.62.5` or later.
|
| CVE-2026-58389 |
|
Vulnerability in apache (CVE-2026-58389)
vulnerability in apache (CVE-2026-58389). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73429 |
|
Vulnerability in russh (CVE-2026-73429)
vulnerability in russh (CVE-2026-73429). Risk of unauthorized operations or information disclosure. Exploitable via ``russh``. Mitigation: upgrade to `0.62.4` or later.
|
| CVE-2026-73430 |
|
Vulnerability in russh (CVE-2026-73430)
vulnerability in russh (CVE-2026-73430). Risk of unauthorized operations or information disclosure. Exploitable via ``russh``. Mitigation: upgrade to `0.62.4` or later.
|
| CVE-2026-25800 |
|
Vulnerability in CVE-2026-25800 (CVE-2026-25800)
vulnerability in CVE-2026-25800 (CVE-2026-25800). Risk of unauthorized operations or information disclosure. Exploitable via ``Assembler``.
|
| CVE-2026-15957 |
|
Vulnerability in Amazon aws (CVE-2026-15957)
vulnerability in Amazon aws (CVE-2026-15957). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60080 |
|
Use-After-Free in apache (CVE-2026-60080)
vulnerability in apache (CVE-2026-60080). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46428 |
|
Vulnerability in lettre (CVE-2026-46428)
vulnerability in lettre (CVE-2026-46428). Risk of unauthorized operations or information disclosure. Exploitable via ``rustls``. Mitigation: upgrade to `0.11.22` or later.
|
| CVE-2026-55407 |
|
Vulnerability in buffa (CVE-2026-55407)
vulnerability in buffa (CVE-2026-55407). Risk of unauthorized operations or information disclosure. Exploitable via ``decode_unknown_field``. Mitigation: upgrade to `0.8.0` or later.
|
| CVE-2026-55406 |
|
Information Disclosure in buffa (CVE-2026-55406)
vulnerability in buffa (CVE-2026-55406). Risk of unauthorized operations or information disclosure. Exploitable via ``buffa``. Mitigation: upgrade to `0.7.0` or later.
|
| CVE-2026-45612 |
|
Out-of-Bounds Read in c (CVE-2026-45612)
vulnerability in c (CVE-2026-45612). Confidential information can be exposed externally.
|
| CVE-2026-47164 |
|
Vulnerability in CVE-2026-47164 (CVE-2026-47164)
vulnerability in CVE-2026-47164 (CVE-2026-47164). Confidential information can be exposed externally.
|
| CVE-2026-47160 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-47160)
SSRF in ssrf (CVE-2026-47160). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47159 |
|
Authentication Bypass in CVE-2026-47159 (CVE-2026-47159)
authentication bypass in CVE-2026-47159 (CVE-2026-47159). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47158 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-47158 (CVE-2026-47158)
vulnerability in CVE-2026-47158 (CVE-2026-47158). Data can be tampered with by attackers.
|
| CVE-2026-55771 |
|
Code Injection in com.cedarpolicy:cedar-java (CVE-2026-55771)
code injection in com.cedarpolicy:cedar-java (CVE-2026-55771). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.9.0` or later.
|
| CVE-2026-53531 |
|
Vulnerability in ratex-parser (CVE-2026-53531)
vulnerability in ratex-parser (CVE-2026-53531). Risk of unauthorized operations or information disclosure. Exploitable via ``SIGABRT``. Mitigation: upgrade to `0.1.11` or later.
|
| CVE-2026-53530 |
|
Vulnerability in ratex-parser (CVE-2026-53530)
vulnerability in ratex-parser (CVE-2026-53530). Risk of unauthorized operations or information disclosure. Exploitable via ``parse_symbol_inner``. Mitigation: upgrade to `0.1.11` or later.
|
| CVE-2026-52829 |
|
Vulnerability in zebra-network (CVE-2026-52829)
vulnerability in zebra-network (CVE-2026-52829). Risk of unauthorized operations or information disclosure. Exploitable via ``zebrad``. Mitigation: upgrade to `7.0.0` or later.
|
| CVE-2026-52734 |
|
Vulnerability in zebrad (CVE-2026-52734)
vulnerability in zebrad (CVE-2026-52734). Risk of unauthorized operations or information disclosure. Exploitable via ``zebrad``. Mitigation: upgrade to `4.5.0` or later.
|
| CVE-2026-52733 |
|
Vulnerability in zebra-state (CVE-2026-52733)
vulnerability in zebra-state (CVE-2026-52733). Data can be tampered with by attackers. Exploitable via ``zebrad``. Mitigation: upgrade to `7.0.0` or later.
|
| CVE-2026-52736 |
|
Vulnerability in zebra-state (CVE-2026-52736)
vulnerability in zebra-state (CVE-2026-52736). Risk of unauthorized operations or information disclosure. Exploitable via ``zebrad``. Mitigation: upgrade to `7.0.0` or later.
|
| CVE-2026-52732 |
|
Vulnerability in zebrad (CVE-2026-52732)
vulnerability in zebrad (CVE-2026-52732). Risk of unauthorized operations or information disclosure. Exploitable via ``zebrad``. Mitigation: upgrade to `4.5.0` or later.
|
| CVE-2026-53346 |
|
Out-of-Bounds Read in c (CVE-2026-53346)
vulnerability in c (CVE-2026-53346). Confidential information can be exposed externally.
|