Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-55552 |
|
Path Traversal in org.yamcs:yamcs-core (CVE-2026-55552)
path traversal in org.yamcs:yamcs-core (CVE-2026-55552). Confidential information can be exposed externally. Mitigation: upgrade to `5.12.0` or later.
|
| CVE-2026-82253 |
|
Path Traversal in path-traversal (CVE-2026-82253)
path traversal in path-traversal (CVE-2026-82253). Confidential information can be exposed externally.
|
| CVE-2026-54083 |
|
Path Traversal in c (CVE-2026-54083)
path traversal in c (CVE-2026-54083). Data can be tampered with by attackers.
|
| CVE-2026-81730 |
|
Path Traversal in CVE-2026-81730 (CVE-2026-81730)
path traversal in CVE-2026-81730 (CVE-2026-81730). Data can be tampered with by attackers.
|
| CVE-2026-54732 |
|
Path Traversal in libreoffice-convert (CVE-2026-54732)
path traversal in libreoffice-convert (CVE-2026-54732). Data can be tampered with by attackers. Exploitable via ``path.basename``. Mitigation: upgrade to `1.8.2` or later.
|
| CVE-2026-40526 |
|
Path Traversal in path-traversal (CVE-2026-40526)
path traversal in path-traversal (CVE-2026-40526). Confidential information can be exposed externally. Exploitable via `GET /public/get-file/{path}`.
|
| CVE-2026-75328 |
|
Path Traversal in CVE-2026-75328 (CVE-2026-75328)
path traversal in CVE-2026-75328 (CVE-2026-75328). Confidential information can be exposed externally.
|
| CVE-2026-81028 |
|
Path Traversal in cpp (CVE-2026-81028)
path traversal in cpp (CVE-2026-81028). Confidential information can be exposed externally.
|
| CVE-2026-54550 |
|
Path Traversal in org.codehaus.izpack:izpack-installer (CVE-2026-54550)
path traversal in org.codehaus.izpack:izpack-installer (CVE-2026-54550). Data can be tampered with by attackers. Exploitable via ``targetPath``.
|
| CVE-2026-57171 |
|
Path Traversal in CVE-2026-57171 (CVE-2026-57171)
path traversal in CVE-2026-57171 (CVE-2026-57171). Data can be tampered with by attackers.
|
| CVE-2026-80104 |
|
Path Traversal in CVE-2026-80104 (CVE-2026-80104)
path traversal in CVE-2026-80104 (CVE-2026-80104). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79773 |
|
Path Traversal in CVE-2026-79773 (CVE-2026-79773)
path traversal in CVE-2026-79773 (CVE-2026-79773). Confidential information can be exposed externally.
|
| CVE-2026-57863 |
|
Path Traversal in path-traversal (CVE-2026-57863)
path traversal in path-traversal (CVE-2026-57863). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78638 |
|
Path Traversal in path-traversal (CVE-2026-78638)
path traversal in path-traversal (CVE-2026-78638). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78677 |
|
GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone_options, allowing...
GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone_options, allowing...
|
| CVE-2026-34968 |
|
Adminer before 5.4.3 contains an arbitrary file deletion vulnerability in SQLite mode where the...
Adminer before 5.4.3 contains an arbitrary file deletion vulnerability in SQLite mode where the...
|
| CVE-2026-78435 |
|
Path Traversal in path-traversal (CVE-2026-78435)
path traversal in path-traversal (CVE-2026-78435). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76842 |
|
Path Traversal in CVE-2026-76842 (CVE-2026-76842)
path traversal in CVE-2026-76842 (CVE-2026-76842). Confidential information can be exposed externally.
|
| CVE-2026-62383 |
|
Path Traversal in c (CVE-2026-62383)
path traversal in c (CVE-2026-62383). Confidential information can be exposed externally.
|
| CVE-2026-64679 |
|
Path Traversal in github.com/runatlantis/atlantis (CVE-2026-64679)
path traversal in github.com/runatlantis/atlantis (CVE-2026-64679). Data can be tampered with by attackers. Exploitable via ``workspace``. Mitigation: upgrade to `0.45.0` or later.
|
| CVE-2026-53584 |
|
Path Traversal in c (CVE-2026-53584)
path traversal in c (CVE-2026-53584). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63179 |
|
Path Traversal in winter/wn-backend-module (CVE-2026-63179)
path traversal in winter/wn-backend-module (CVE-2026-63179). Confidential information can be exposed externally. Exploitable via ``BrandSetting.custom_css``. Mitigation: upgrade to `1.2.13` or later.
|
| CVE-2026-73255 |
|
Path Traversal in c (CVE-2026-73255)
path traversal in c (CVE-2026-73255). Confidential information can be exposed externally.
|
| CVE-2026-63490 |
|
Path Traversal in CVE-2026-63490 (CVE-2026-63490)
path traversal in CVE-2026-63490 (CVE-2026-63490). Confidential information can be exposed externally.
|
| CVE-2026-76832 |
|
Path Traversal in path-traversal (CVE-2026-76832)
path traversal in path-traversal (CVE-2026-76832). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76337 |
|
Path Traversal in splunk (CVE-2026-76337)
path traversal in splunk (CVE-2026-76337). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76576 |
|
Path Traversal in vue (CVE-2026-76576)
path traversal in vue (CVE-2026-76576). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62680 |
|
Path Traversal in CVE-2026-62680 (CVE-2026-62680)
path traversal in CVE-2026-62680 (CVE-2026-62680). Confidential information can be exposed externally.
|
| CVE-2026-19942 |
|
Path Traversal in wordpress (CVE-2026-19942)
path traversal in wordpress (CVE-2026-19942). Data can be tampered with by attackers.
|
| CVE-2026-52875 |
|
Path Traversal in CVE-2026-52875 (CVE-2026-52875)
path traversal in CVE-2026-52875 (CVE-2026-52875). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.6.0` or later.
|
| CVE-2026-52872 |
|
Path Traversal in CVE-2026-52872 (CVE-2026-52872)
path traversal in CVE-2026-52872 (CVE-2026-52872). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.5.0` or later.
|
| CVE-2026-47699 |
|
Path Traversal in CVE-2026-47699 (CVE-2026-47699)
path traversal in CVE-2026-47699 (CVE-2026-47699). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50186 |
|
Path Traversal in dos (CVE-2026-50186)
path traversal in dos (CVE-2026-50186). Successful exploitation can lead to full system takeover. Exploitable via `GET /exports/`.
|
| CVE-2026-73974 |
|
Path Traversal in linuxfabrik-lib (CVE-2026-73974)
path traversal in linuxfabrik-lib (CVE-2026-73974). Confidential information can be exposed externally. Exploitable via ``nagios``. Mitigation: upgrade to `6.1.0` or later.
|
| CVE-2026-52607 |
|
Path Traversal in path-traversal (CVE-2026-52607)
path traversal in path-traversal (CVE-2026-52607). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52610 |
|
Path Traversal in path-traversal (CVE-2026-52610)
path traversal in path-traversal (CVE-2026-52610). Confidential information can be exposed externally.
|
| CVE-2026-74907 |
|
Path Traversal in path-traversal (CVE-2026-74907)
path traversal in path-traversal (CVE-2026-74907). Confidential information can be exposed externally.
|
| CVE-2026-40506 |
|
Path Traversal in path-traversal (CVE-2026-40506)
path traversal in path-traversal (CVE-2026-40506). Data can be tampered with by attackers.
|
| CVE-2026-63667 |
|
Path Traversal in CVE-2026-63667 (CVE-2026-63667)
path traversal in CVE-2026-63667 (CVE-2026-63667). Confidential information can be exposed externally.
|
| CVE-2026-17604 |
|
Path Traversal in wordpress (CVE-2026-17604)
path traversal in wordpress (CVE-2026-17604). Confidential information can be exposed externally.
|
| CVE-2026-14524 |
|
Path Traversal in wordpress (CVE-2026-14524)
path traversal in wordpress (CVE-2026-14524). Data can be tampered with by attackers.
|
| CVE-2026-74764 |
|
Path Traversal in path-traversal (CVE-2026-74764)
path traversal in path-traversal (CVE-2026-74764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18855 |
|
Path Traversal in wordpress (CVE-2026-18855)
path traversal in wordpress (CVE-2026-18855). Data can be tampered with by attackers.
|
| CVE-2026-14484 |
|
Path Traversal in wordpress (CVE-2026-14484)
path traversal in wordpress (CVE-2026-14484). Data can be tampered with by attackers.
|
| CVE-2026-19880 |
|
Path Traversal in CVE-2026-19880 (CVE-2026-19880)
path traversal in CVE-2026-19880 (CVE-2026-19880). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19829 |
|
Path Traversal in path-traversal (CVE-2026-19829)
path traversal in path-traversal (CVE-2026-19829). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19828 |
|
Path Traversal in path-traversal (CVE-2026-19828)
path traversal in path-traversal (CVE-2026-19828). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19827 |
|
Path Traversal in path-traversal (CVE-2026-19827)
path traversal in path-traversal (CVE-2026-19827). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72814 |
|
Path Traversal in CVE-2026-72814 (CVE-2026-72814)
path traversal in CVE-2026-72814 (CVE-2026-72814). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19763 |
|
Path Traversal in path-traversal (CVE-2026-19763)
path traversal in path-traversal (CVE-2026-19763). Risk of unauthorized operations or information disclosure.
|