Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-72642 |
|
The native inference process that Elasticsearch uses to evaluate uploaded machine learning models...
The native inference process that Elasticsearch uses to evaluate uploaded machine learning models...
|
| CVE-2026-6471 |
|
Vulnerability in postgresql (CVE-2026-6471)
vulnerability in postgresql (CVE-2026-6471). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6464 |
|
Vulnerability in postgresql (CVE-2026-6464)
vulnerability in postgresql (CVE-2026-6464). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18408 |
|
Vulnerability in postgresql (CVE-2026-18408)
vulnerability in postgresql (CVE-2026-18408). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19385 |
|
Vulnerability in postgresql (CVE-2026-19385)
vulnerability in postgresql (CVE-2026-19385). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15742 |
|
Vulnerability in postgresql (CVE-2026-15742)
vulnerability in postgresql (CVE-2026-15742). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16238 |
|
Vulnerability in postgresql (CVE-2026-16238)
vulnerability in postgresql (CVE-2026-16238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16239 |
|
Vulnerability in postgresql (CVE-2026-16239)
vulnerability in postgresql (CVE-2026-16239). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14677 |
|
Vulnerability in postgresql (CVE-2026-14677)
vulnerability in postgresql (CVE-2026-14677). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14679 |
|
Vulnerability in postgresql (CVE-2026-14679)
vulnerability in postgresql (CVE-2026-14679). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14680 |
|
Vulnerability in postgresql (CVE-2026-14680)
vulnerability in postgresql (CVE-2026-14680). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15741 |
|
SQL Injection in sqli (CVE-2026-15741)
SQL injection in sqli (CVE-2026-15741). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14669 |
|
Vulnerability in postgresql (CVE-2026-14669)
vulnerability in postgresql (CVE-2026-14669). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14668 |
|
Vulnerability in postgresql (CVE-2026-14668)
vulnerability in postgresql (CVE-2026-14668). Confidential information can be exposed externally.
|
| CVE-2026-14676 |
|
Vulnerability in postgresql (CVE-2026-14676)
vulnerability in postgresql (CVE-2026-14676). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14670 |
|
Vulnerability in postgresql (CVE-2026-14670)
vulnerability in postgresql (CVE-2026-14670). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14671 |
|
Vulnerability in postgresql (CVE-2026-14671)
vulnerability in postgresql (CVE-2026-14671). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14664 |
|
Vulnerability in postgresql (CVE-2026-14664)
vulnerability in postgresql (CVE-2026-14664). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14662 |
|
Vulnerability in postgresql (CVE-2026-14662)
vulnerability in postgresql (CVE-2026-14662). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18692 |
|
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
|
| CVE-2026-18691 |
|
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
|
| CVE-2026-17346 |
|
The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON /...
The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON /...
|
| CVE-2026-51304 |
|
Use-After-Free in dos (CVE-2026-51304)
vulnerability in dos (CVE-2026-51304). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-51296 |
|
Use-After-Free in sqlite (CVE-2026-51296)
vulnerability in sqlite (CVE-2026-51296). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-51297 |
|
Use-After-Free in sqlite (CVE-2026-51297)
vulnerability in sqlite (CVE-2026-51297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51302 |
|
Use-After-Free in dos (CVE-2026-51302)
vulnerability in dos (CVE-2026-51302). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66373 |
|
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE,...
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE,...
|
| CVE-2026-13078 |
|
Vulnerability in mongodb (CVE-2026-13078)
vulnerability in mongodb (CVE-2026-13078). Confidential information can be exposed externally.
|
| CVE-2026-13077 |
|
Out-of-Bounds Read in mongodb (CVE-2026-13077)
vulnerability in mongodb (CVE-2026-13077). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13072 |
|
Vulnerability in mongodb (CVE-2026-13072)
vulnerability in mongodb (CVE-2026-13072). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13059 |
|
Vulnerability in mongodb (CVE-2026-13059)
vulnerability in mongodb (CVE-2026-13059). Confidential information can be exposed externally.
|
| CVE-2026-47835 |
|
Vulnerability in CVE-2026-47835 (CVE-2026-47835)
vulnerability in CVE-2026-47835 (CVE-2026-47835). Confidential information can be exposed externally.
|
| CVE-2026-48163 |
|
OS Command Injection in mariadb (CVE-2026-48163)
OS command injection in mariadb (CVE-2026-48163). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48165 |
|
OS Command Injection in mariadb (CVE-2026-48165)
OS command injection in mariadb (CVE-2026-48165). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44168 |
|
OS Command Injection in mariadb (CVE-2026-44168)
OS command injection in mariadb (CVE-2026-44168). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11933 |
|
Post-authentication use-after-free in server-side JavaScript BSON-to-array conversion
Post-authentication use-after-free in server-side JavaScript BSON-to-array conversion
|
| CVE-2026-9753 |
|
Vulnerability in mongodb (CVE-2026-9753)
vulnerability in mongodb (CVE-2026-9753). Confidential information can be exposed externally. Mitigation: upgrade to `7.0.35, 8.0.24, 8.2.10, 8.3.3` or later.
|
| CVE-2026-9742 |
|
Vulnerability in mongodb (CVE-2026-9742)
vulnerability in mongodb (CVE-2026-9742). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.2.10, 8.3.3` or later.
|
| CVE-2026-9740 |
|
Vulnerability in mongodb (CVE-2026-9740)
vulnerability in mongodb (CVE-2026-9740). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.0.35, 8.0.24, 8.2.10, 8.3.3` or later.
|
| CVE-2026-11824 |
|
SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate
SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate
|
| CVE-2026-11822 |
|
SQLite before 3.53.2 Memory Corruption in FTS5 Extension
SQLite before 3.53.2 Memory Corruption in FTS5 Extension
|
| CVE-2026-11400 |
|
AWS-JDBC Wrapper: Privilege Escalation in Aurora PostgreSQL instance
AWS-JDBC Wrapper: Privilege Escalation in Aurora PostgreSQL instance
|
| CVE-2026-47784 |
|
Vulnerability in memcached (CVE-2026-47784)
vulnerability in memcached (CVE-2026-47784). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.6.42` or later.
|
| CVE-2026-47783 |
|
Vulnerability in memcached (CVE-2026-47783)
vulnerability in memcached (CVE-2026-47783). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.6.42` or later.
|
| CVE-2026-6476 |
|
SQL Injection in postgresql (CVE-2026-6476)
SQL injection in postgresql (CVE-2026-6476). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `17.10.0, 18.4.0` or later.
|
| CVE-2026-6473 |
|
Vulnerability in postgresql (CVE-2026-6473)
vulnerability in postgresql (CVE-2026-6473). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
|
| CVE-2026-6479 |
|
Vulnerability in postgresql (CVE-2026-6479)
vulnerability in postgresql (CVE-2026-6479). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
|
| CVE-2026-6475 |
|
Vulnerability in postgresql (CVE-2026-6475)
vulnerability in postgresql (CVE-2026-6475). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
|
| CVE-2026-6477 |
|
Vulnerability in postgresql (CVE-2026-6477)
vulnerability in postgresql (CVE-2026-6477). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
|
| CVE-2026-6637 |
|
SQL Injection in postgresql (CVE-2026-6637)
SQL injection in postgresql (CVE-2026-6637). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
|