Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-68552 |
|
Vulnerability in c (CVE-2026-68552)
vulnerability in c (CVE-2026-68552). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61556 |
|
Vulnerability in dos (CVE-2026-61556)
vulnerability in dos (CVE-2026-61556). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54743 |
|
Cross-Site Scripting (XSS) in CVE-2026-54743 (CVE-2026-54743)
cross-site scripting in CVE-2026-54743 (CVE-2026-54743). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12634 |
|
Out-of-Bounds Write in c (CVE-2026-12634)
out-of-bounds write in c (CVE-2026-12634). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12633 |
|
Out-of-Bounds Write in c (CVE-2026-12633)
out-of-bounds write in c (CVE-2026-12633). Data can be tampered with by attackers.
|
| CVE-2026-12522 |
|
Out-of-Bounds Write in c (CVE-2026-12522)
out-of-bounds write in c (CVE-2026-12522). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76647 |
|
Information Disclosure in CVE-2026-76647 (CVE-2026-76647)
vulnerability in CVE-2026-76647 (CVE-2026-76647). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76572 |
|
Vulnerability in CVE-2026-76572 (CVE-2026-76572)
vulnerability in CVE-2026-76572 (CVE-2026-76572). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76574 |
|
Vulnerability in sqli (CVE-2026-76574)
vulnerability in sqli (CVE-2026-76574). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68559 |
|
Vulnerability in CVE-2026-68559 (CVE-2026-68559)
vulnerability in CVE-2026-68559 (CVE-2026-68559). Confidential information can be exposed externally.
|
| CVE-2026-68560 |
|
OS Command Injection in c (CVE-2026-68560)
OS command injection in c (CVE-2026-68560). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68561 |
|
Privilege Escalation in CVE-2026-68561 (CVE-2026-68561)
vulnerability in CVE-2026-68561 (CVE-2026-68561). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68899 |
|
Unrestricted File Upload in CVE-2026-68899 (CVE-2026-68899)
vulnerability in CVE-2026-68899 (CVE-2026-68899). Confidential information can be exposed externally.
|
| CVE-2026-68900 |
|
Cross-Site Scripting (XSS) in CVE-2026-68900 (CVE-2026-68900)
cross-site scripting in CVE-2026-68900 (CVE-2026-68900). Confidential information can be exposed externally.
|
| CVE-2026-68901 |
|
Vulnerability in CVE-2026-68901 (CVE-2026-68901)
vulnerability in CVE-2026-68901 (CVE-2026-68901). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67189 |
|
Cross-Site Scripting (XSS) in CVE-2026-67189 (CVE-2026-67189)
cross-site scripting in CVE-2026-67189 (CVE-2026-67189). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68558 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-68558 (CVE-2026-68558)
SSRF in CVE-2026-68558 (CVE-2026-68558). Confidential information can be exposed externally.
|
| CVE-2026-55085 |
|
Cross-Site Scripting (XSS) in CVE-2026-55085 (CVE-2026-55085)
cross-site scripting in CVE-2026-55085 (CVE-2026-55085). Confidential information can be exposed externally.
|
| CVE-2026-19508 |
|
Buffer Overflow in c (CVE-2026-19508)
vulnerability in c (CVE-2026-19508). Successful exploitation can lead to full system takeover. Exploitable via ``jst_post.c``.
|
| CVE-2026-19505 |
|
Vulnerability in c (CVE-2026-19505)
vulnerability in c (CVE-2026-19505). Successful exploitation can lead to full system takeover. Exploitable via ``jst_functions.c``.
|
| CVE-2026-17590 |
|
Vulnerability in c (CVE-2026-17590)
vulnerability in c (CVE-2026-17590). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53965 |
|
Vulnerability in mcp/sdk (CVE-2026-53965)
vulnerability in mcp/sdk (CVE-2026-53965). Risk of unauthorized operations or information disclosure. Exploitable via ``memory_limit``. Mitigation: upgrade to `0.7.1` or later.
|
| CVE-2026-61807 |
|
Cross-Site Scripting (XSS) in snipe/snipe-it (CVE-2026-61807)
cross-site scripting in snipe/snipe-it (CVE-2026-61807). Risk of unauthorized operations or information disclosure. Exploitable via ``b224cc636c6780386e3f73f03d1171f52ab4c37a``. Mitigation: upgrade to `8.6.2` or later.
|
| CVE-2026-55694 |
|
Vulnerability in snipe/snipe-it (CVE-2026-55694)
vulnerability in snipe/snipe-it (CVE-2026-55694). Risk of unauthorized operations or information disclosure. Exploitable via `GET /stored-eula-file/{filename}`. Mitigation: upgrade to `8.6.3` or later.
|
| CVE-2026-55703 |
|
Vulnerability in snipe/snipe-it (CVE-2026-55703)
vulnerability in snipe/snipe-it (CVE-2026-55703). Risk of unauthorized operations or information disclosure. Exploitable via `GET /maintenances/5`. Mitigation: upgrade to `8.6.3` or later.
|
| CVE-2026-16938 |
|
Vulnerability in c (CVE-2026-16938)
vulnerability in c (CVE-2026-16938). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72716 |
|
Vulnerability in CVE-2026-72716 (CVE-2026-72716)
vulnerability in CVE-2026-72716 (CVE-2026-72716). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72717 |
|
Code Injection in CVE-2026-72717 (CVE-2026-72717)
code injection in CVE-2026-72717 (CVE-2026-72717). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71867 |
|
SQL Injection in CVE-2026-71867 (CVE-2026-71867)
SQL injection in CVE-2026-71867 (CVE-2026-71867). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71868 |
|
Code Injection in CVE-2026-71868 (CVE-2026-71868)
code injection in CVE-2026-71868 (CVE-2026-71868). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71869 |
|
Code Injection in CVE-2026-71869 (CVE-2026-71869)
code injection in CVE-2026-71869 (CVE-2026-71869). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71871 |
|
Code Injection in CVE-2026-71871 (CVE-2026-71871)
code injection in CVE-2026-71871 (CVE-2026-71871). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71864 |
|
Code Injection in CVE-2026-71864 (CVE-2026-71864)
code injection in CVE-2026-71864 (CVE-2026-71864). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71865 |
|
Code Injection in CVE-2026-71865 (CVE-2026-71865)
code injection in CVE-2026-71865 (CVE-2026-71865). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71866 |
|
SQL Injection in CVE-2026-71866 (CVE-2026-71866)
SQL injection in CVE-2026-71866 (CVE-2026-71866). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69159 |
|
Out-of-Bounds Read in c (CVE-2026-69159)
vulnerability in c (CVE-2026-69159). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63652 |
|
Vulnerability in c (CVE-2026-63652)
vulnerability in c (CVE-2026-63652). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63633 |
|
Vulnerability in c (CVE-2026-63633)
vulnerability in c (CVE-2026-63633). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63117 |
|
Vulnerability in c (CVE-2026-63117)
vulnerability in c (CVE-2026-63117). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.28.0` or later.
|
| CVE-2026-62680 |
|
Path Traversal in CVE-2026-62680 (CVE-2026-62680)
path traversal in CVE-2026-62680 (CVE-2026-62680). Confidential information can be exposed externally.
|
| CVE-2026-62681 |
|
Code Injection in react (CVE-2026-62681)
code injection in react (CVE-2026-62681). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62682 |
|
Code Injection in CVE-2026-62682 (CVE-2026-62682)
code injection in CVE-2026-62682 (CVE-2026-62682). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55648 |
|
Vulnerability in c (CVE-2026-55648)
vulnerability in c (CVE-2026-55648). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55564 |
|
Out-of-Bounds Read in c (CVE-2026-55564)
vulnerability in c (CVE-2026-55564). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55194 |
|
Vulnerability in c (CVE-2026-55194)
vulnerability in c (CVE-2026-55194). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55193 |
|
Vulnerability in c (CVE-2026-55193)
vulnerability in c (CVE-2026-55193). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55192 |
|
Out-of-Bounds Read in c (CVE-2026-55192)
vulnerability in c (CVE-2026-55192). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55191 |
|
Vulnerability in c (CVE-2026-55191)
vulnerability in c (CVE-2026-55191). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75147 |
|
Out-of-Bounds Read in c (CVE-2026-75147)
vulnerability in c (CVE-2026-75147). Confidential information can be exposed externally.
|
| CVE-2026-75146 |
|
Out-of-Bounds Read in c (CVE-2026-75146)
vulnerability in c (CVE-2026-75146). Confidential information can be exposed externally.
|