Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2020-14562 |
|
Vulnerability in java (CVE-2020-14562)
vulnerability in java (CVE-2020-14562). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `11.0.8, 14.0.2` or later.
|
| CVE-2020-14556 |
|
Vulnerability in java (CVE-2020-14556)
vulnerability in java (CVE-2020-14556). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.0, 8.0.261, 11.0.8, 14.0.2` or later.
|
| CVE-2026-43100 |
|
Vulnerability in c (CVE-2026-43100)
vulnerability in c (CVE-2026-43100). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43090 |
|
Vulnerability in c (CVE-2026-43090)
vulnerability in c (CVE-2026-43090). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43252 |
|
Vulnerability in c (CVE-2026-43252)
vulnerability in c (CVE-2026-43252). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43236 |
|
Use-After-Free in c (CVE-2026-43236)
vulnerability in c (CVE-2026-43236). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43237 |
|
Use-After-Free in c (CVE-2026-43237)
vulnerability in c (CVE-2026-43237). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43234 |
|
Vulnerability in c (CVE-2026-43234)
vulnerability in c (CVE-2026-43234). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43227 |
|
Vulnerability in c (CVE-2026-43227)
vulnerability in c (CVE-2026-43227). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43213 |
|
Vulnerability in c (CVE-2026-43213)
vulnerability in c (CVE-2026-43213). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43214 |
|
Vulnerability in c (CVE-2026-43214)
vulnerability in c (CVE-2026-43214). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43209 |
|
Vulnerability in c (CVE-2026-43209)
vulnerability in c (CVE-2026-43209). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43201 |
|
Vulnerability in c (CVE-2026-43201)
vulnerability in c (CVE-2026-43201). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43196 |
|
In the Linux kernel, the following vulnerability has been resolved:
soc: ti: pruss: Fix double...
In the Linux kernel, the following vulnerability has been resolved:
soc: ti: pruss: Fix double...
|
| CVE-2026-43186 |
|
Vulnerability in c (CVE-2026-43186)
vulnerability in c (CVE-2026-43186). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43190 |
|
Out-of-Bounds Read in c (CVE-2026-43190)
vulnerability in c (CVE-2026-43190). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43181 |
|
Vulnerability in c (CVE-2026-43181)
vulnerability in c (CVE-2026-43181). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43164 |
|
Vulnerability in c (CVE-2026-43164)
vulnerability in c (CVE-2026-43164). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43167 |
|
Vulnerability in c (CVE-2026-43167)
vulnerability in c (CVE-2026-43167). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43134 |
|
Vulnerability in c (CVE-2026-43134)
vulnerability in c (CVE-2026-43134). Confidential information can be exposed externally.
|
| CVE-2026-43114 |
|
Vulnerability in c (CVE-2026-43114)
vulnerability in c (CVE-2026-43114). Confidential information can be exposed externally.
|
| CVE-2026-43118 |
|
Vulnerability in c (CVE-2026-43118)
vulnerability in c (CVE-2026-43118). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43119 |
|
Vulnerability in c (CVE-2026-43119)
vulnerability in c (CVE-2026-43119). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43097 |
|
Vulnerability in c (CVE-2026-43097)
vulnerability in c (CVE-2026-43097). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43084 |
|
Use-After-Free in c (CVE-2026-43084)
vulnerability in c (CVE-2026-43084). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43080 |
|
Vulnerability in c (CVE-2026-43080)
vulnerability in c (CVE-2026-43080). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43086 |
|
Vulnerability in c (CVE-2026-43086)
vulnerability in c (CVE-2026-43086). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43074 |
|
Vulnerability in c (CVE-2026-43074)
vulnerability in c (CVE-2026-43074). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43075 |
|
Out-of-Bounds Write in c (CVE-2026-43075)
out-of-bounds write in c (CVE-2026-43075). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43079 |
|
Vulnerability in c (CVE-2026-43079)
vulnerability in c (CVE-2026-43079). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43882 |
|
Vulnerability in wwbn/avideo (CVE-2026-43882)
vulnerability in wwbn/avideo (CVE-2026-43882). Risk of unauthorized operations or information disclosure. Exploitable via ``title``.
|
| CVE-2026-44903 |
|
Cross-Site Scripting (XSS) in github.com/prometheus/prometheus (CVE-2026-44903)
cross-site scripting in github.com/prometheus/prometheus (CVE-2026-44903). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.311.3` or later.
|
| CVE-2026-7317 |
|
Vulnerability in getgrav/grav (CVE-2026-7317)
vulnerability in getgrav/grav (CVE-2026-7317). Risk of unauthorized operations or information disclosure. Exploitable via ``FILECACHE_UNSERIALIZE_TRIGGERED``. Mitigation: upgrade to `2.0.0-beta.2` or later.
|
| CVE-2026-44167 |
|
Vulnerability in phpseclib/phpseclib (CVE-2026-44167)
vulnerability in phpseclib/phpseclib (CVE-2026-44167). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.0.29` or later.
|
| CVE-2026-39852 |
|
Authorization Flaw in io.quarkus:quarkus-vertx-http (CVE-2026-39852)
vulnerability in io.quarkus:quarkus-vertx-http (CVE-2026-39852). Confidential information can be exposed externally. Mitigation: upgrade to `3.35.1.1` or later.
|
| CVE-2026-35579 |
|
Authentication Bypass in github.com/coredns/coredns (CVE-2026-35579)
authentication bypass in github.com/coredns/coredns (CVE-2026-35579). Successful exploitation can lead to full system takeover. Exploitable via ``tsigStatus``. Mitigation: upgrade to `1.14.3` or later.
|
| CVE-2026-39383 |
|
SSRF (Server-Side Request Forgery) in github.com/gotenberg/gotenberg/v8 (CVE-2026-39383)
SSRF in github.com/gotenberg/gotenberg/v8 (CVE-2026-39383). Confidential information can be exposed externally. Exploitable via ``FilterDeadline``. Mitigation: upgrade to `8.31.0` or later.
|
| CVE-2026-44331 |
|
SQL Injection in c (CVE-2026-44331)
SQL injection in c (CVE-2026-44331). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35453 |
|
Cross-Site Scripting (XSS) in phpoffice/phpspreadsheet (CVE-2026-35453)
cross-site scripting in phpoffice/phpspreadsheet (CVE-2026-35453). Risk of unauthorized operations or information disclosure. Exploitable via ``formatColor``. Mitigation: upgrade to `1.30.4` or later.
|
| CVE-2026-34084 |
|
Unsafe Deserialization in phpoffice/phpspreadsheet (CVE-2026-34084)
vulnerability in phpoffice/phpspreadsheet (CVE-2026-34084). Successful exploitation can lead to full system takeover. Exploitable via ``is_file``. Mitigation: upgrade to `1.30.3` or later.
|
| CVE-2026-33975 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-33975)
SSRF in ssrf (CVE-2026-33975). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-32936 |
|
Vulnerability in github.com/coredns/coredns (CVE-2026-32936)
vulnerability in github.com/coredns/coredns (CVE-2026-32936). Risk of unauthorized operations or information disclosure. Exploitable via ``dns``. Mitigation: upgrade to `1.14.3` or later.
|
| CVE-2026-33190 |
|
Authentication Bypass in github.com/coredns/coredns (CVE-2026-33190)
authentication bypass in github.com/coredns/coredns (CVE-2026-33190). Confidential information can be exposed externally. Mitigation: upgrade to `1.14.3` or later.
|
| CVE-2026-33489 |
|
Vulnerability in github.com/coredns/coredns (CVE-2026-33489)
vulnerability in github.com/coredns/coredns (CVE-2026-33489). Confidential information can be exposed externally. Mitigation: upgrade to `1.14.3` or later.
|
| CVE-2026-33420 |
|
Vulnerability in dani-garcia (CVE-2026-33420)
vulnerability in dani-garcia (CVE-2026-33420). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/organizations/{org_id}/collections/details`.
|
| CVE-2026-32934 |
|
Vulnerability in github.com/coredns/coredns (CVE-2026-32934)
vulnerability in github.com/coredns/coredns (CVE-2026-32934). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.14.3` or later.
|
| CVE-2026-31835 |
|
Vulnerability in dos (CVE-2026-31835)
vulnerability in dos (CVE-2026-31835). Risk of unauthorized operations or information disclosure. Exploitable via ``authenticatorData``.
|
| CVE-2026-7412 |
|
SSRF (Server-Side Request Forgery) in org.eclipse.basyx:basyx.sdk (CVE-2026-7412)
SSRF in org.eclipse.basyx:basyx.sdk (CVE-2026-7412). Confidential information can be exposed externally. Mitigation: upgrade to `2.0.0-milestone-10` or later.
|
| CVE-2026-43065 |
|
Vulnerability in c (CVE-2026-43065)
vulnerability in c (CVE-2026-43065). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43069 |
|
Vulnerability in c (CVE-2026-43069)
vulnerability in c (CVE-2026-43069). Risk of unauthorized operations or information disclosure.
|