Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-14355 |
|
Vulnerability in debian (CVE-2026-14355)
vulnerability in debian (CVE-2026-14355). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47906 |
|
Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third...
Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third...
|
| CVE-2026-46052 |
|
Vulnerability in c (CVE-2026-46052)
vulnerability in c (CVE-2026-46052). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-51092 |
|
OS Command Injection in command-injection (CVE-2024-51092)
OS command injection in command-injection (CVE-2024-51092). Confidential information can be exposed externally. Exploitable via ``version_netsnmp``.
|
| CVE-2026-3843 |
|
SQL Injection in sqli (CVE-2026-3843)
SQL injection in sqli (CVE-2026-3843). Successful exploitation can lead to full system takeover.
|
| CVE-2024-3566 |
|
Command Injection in node (CVE-2024-3566)
command injection in node (CVE-2024-3566). Successful exploitation can lead to full system takeover. Exploitable via ``cmd.exe``. Mitigation: upgrade to `18.19.0` or later.
|
| CVE-2023-46734 |
|
Cross-Site Scripting (XSS) in symfony (CVE-2023-46734)
cross-site scripting in symfony (CVE-2023-46734). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-34752 |
|
SQL Injection in sqli (CVE-2023-34752)
SQL injection in sqli (CVE-2023-34752). Successful exploitation can lead to full system takeover.
|
| CVE-2022-36534 |
|
Command Injection in syncovery (CVE-2022-36534)
command injection in syncovery (CVE-2022-36534). Successful exploitation can lead to full system takeover.
|
| CVE-2022-36536 |
|
Vulnerability in syncovery (CVE-2022-36536)
vulnerability in syncovery (CVE-2022-36536). Successful exploitation can lead to full system takeover.
|
| CVE-2019-11050 |
|
Out-of-Bounds Read in canonical (CVE-2019-11050)
vulnerability in canonical (CVE-2019-11050). Risk of unauthorized operations or information disclosure.
|
| CVE-2019-11049 |
|
Vulnerability in microsoft (CVE-2019-11049)
vulnerability in microsoft (CVE-2019-11049). Risk of unauthorized operations or information disclosure.
|
| CVE-2019-11044 |
|
Vulnerability in tenable (CVE-2019-11044)
vulnerability in tenable (CVE-2019-11044). Risk of unauthorized operations or information disclosure.
|
| CVE-2019-11046 |
|
Out-of-Bounds Read in debian (CVE-2019-11046)
vulnerability in debian (CVE-2019-11046). Risk of unauthorized operations or information disclosure.
|
| CVE-2019-11045 |
|
Vulnerability in fedoraproject (CVE-2019-11045)
vulnerability in fedoraproject (CVE-2019-11045). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-10672 |
|
FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.aries.transaction.jms.internal.XaPooledConnectionFactory (aka...
FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.aries.transaction.jms.internal.XaPooledConnectionFactory (aka aries.transaction.jms).
|
| CVE-2017-17671 |
|
Path Traversal in apache (CVE-2017-17671)
path traversal in apache (CVE-2017-17671). Successful exploitation can lead to full system takeover.
|
| CVE-2017-17094 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-17094)
cross-site scripting in wordpress (CVE-2017-17094). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-17093 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-17093)
cross-site scripting in wordpress (CVE-2017-17093). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-17092 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-17092)
cross-site scripting in wordpress (CVE-2017-17092). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-8809 |
|
Vulnerability in mediawiki (CVE-2017-8809)
vulnerability in mediawiki (CVE-2017-8809). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16642 |
|
Out-of-Bounds Read in c (CVE-2017-16642)
vulnerability in c (CVE-2017-16642). Confidential information can be exposed externally.
|
| CVE-2017-12869 |
|
Vulnerability in simplesamlphp (CVE-2017-12869)
vulnerability in simplesamlphp (CVE-2017-12869). Data can be tampered with by attackers.
|
| CVE-2016-10510 |
|
Cross-Site Scripting (XSS) in kohanaframework (CVE-2016-10510)
cross-site scripting in kohanaframework (CVE-2016-10510). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11107 |
|
Cross-Site Scripting (XSS) in phpldapadmin-project (CVE-2017-11107)
cross-site scripting in phpldapadmin-project (CVE-2017-11107). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-4473 |
|
Use-After-Free in c (CVE-2016-4473)
vulnerability in c (CVE-2016-4473). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9428 |
|
Path Traversal in path-traversal (CVE-2017-9428)
path traversal in path-traversal (CVE-2017-9428). Confidential information can be exposed externally.
|
| CVE-2017-6817 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-6817)
cross-site scripting in wordpress (CVE-2017-6817). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-6816 |
|
Authorization Flaw in wordpress (CVE-2017-6816)
vulnerability in wordpress (CVE-2017-6816). Data can be tampered with by attackers.
|
| CVE-2017-6815 |
|
Vulnerability in wordpress (CVE-2017-6815)
vulnerability in wordpress (CVE-2017-6815). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-6814 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-6814)
cross-site scripting in wordpress (CVE-2017-6814). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5612 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-5612)
cross-site scripting in wordpress (CVE-2017-5612). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5611 |
|
SQL Injection in wordpress (CVE-2017-5611)
SQL injection in wordpress (CVE-2017-5611). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5610 |
|
Information Disclosure in wordpress (CVE-2017-5610)
vulnerability in wordpress (CVE-2017-5610). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-10160 |
|
Vulnerability in c (CVE-2016-10160)
vulnerability in c (CVE-2016-10160). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10159 |
|
Vulnerability in c (CVE-2016-10159)
vulnerability in c (CVE-2016-10159). Risk of unauthorized operations or information disclosure.
|