Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-41035 |
|
In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort...
In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort...
|
| CVE-2026-34197 KEV |
|
[KEV] Vulnerability in Apache activemq (CVE-2026-34197)
vulnerability in Apache activemq (CVE-2026-34197). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-40176 |
|
Vulnerability in composer/composer (CVE-2026-40176)
vulnerability in composer/composer (CVE-2026-40176). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.2.27` or later.
|
| CVE-2026-40261 |
|
Vulnerability in composer/composer (CVE-2026-40261)
vulnerability in composer/composer (CVE-2026-40261). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.2.27` or later.
|
| CVE-2026-6361 |
|
Vulnerability in google (CVE-2026-6361)
vulnerability in google (CVE-2026-6361). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6362 |
|
Use-After-Free in google (CVE-2026-6362)
vulnerability in google (CVE-2026-6362). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6364 |
|
Out-of-Bounds Read in google (CVE-2026-6364)
vulnerability in google (CVE-2026-6364). Confidential information can be exposed externally.
|
| CVE-2026-6363 |
|
Vulnerability in google (CVE-2026-6363)
vulnerability in google (CVE-2026-6363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6318 |
|
Use-After-Free in google (CVE-2026-6318)
vulnerability in google (CVE-2026-6318). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6360 |
|
Use-After-Free in google (CVE-2026-6360)
vulnerability in google (CVE-2026-6360). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6319 |
|
Use-After-Free in google (CVE-2026-6319)
vulnerability in google (CVE-2026-6319). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6358 |
|
Use-After-Free in google (CVE-2026-6358)
vulnerability in google (CVE-2026-6358). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6314 |
|
Out-of-Bounds Write in google (CVE-2026-6314)
out-of-bounds write in google (CVE-2026-6314). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6317 |
|
Use-After-Free in google (CVE-2026-6317)
vulnerability in google (CVE-2026-6317). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6316 |
|
Use-After-Free in google (CVE-2026-6316)
vulnerability in google (CVE-2026-6316). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6315 |
|
Use-After-Free in google (CVE-2026-6315)
vulnerability in google (CVE-2026-6315). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6312 |
|
Vulnerability in google (CVE-2026-6312)
vulnerability in google (CVE-2026-6312). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6308 |
|
Out-of-Bounds Read in google (CVE-2026-6308)
vulnerability in google (CVE-2026-6308). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6309 |
|
Use-After-Free in google (CVE-2026-6309)
vulnerability in google (CVE-2026-6309). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6310 |
|
Use-After-Free in google (CVE-2026-6310)
vulnerability in google (CVE-2026-6310). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6311 |
|
Vulnerability in google (CVE-2026-6311)
vulnerability in google (CVE-2026-6311). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6301 |
|
Vulnerability in google (CVE-2026-6301)
vulnerability in google (CVE-2026-6301). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6302 |
|
Use-After-Free in google (CVE-2026-6302)
vulnerability in google (CVE-2026-6302). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6304 |
|
Use-After-Free in google (CVE-2026-6304)
vulnerability in google (CVE-2026-6304). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6306 |
|
Vulnerability in google (CVE-2026-6306)
vulnerability in google (CVE-2026-6306). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6303 |
|
Use-After-Free in google (CVE-2026-6303)
vulnerability in google (CVE-2026-6303). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6305 |
|
Vulnerability in google (CVE-2026-6305)
vulnerability in google (CVE-2026-6305). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6296 |
|
Vulnerability in google (CVE-2026-6296)
vulnerability in google (CVE-2026-6296). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6299 |
|
Use-After-Free in google (CVE-2026-6299)
vulnerability in google (CVE-2026-6299). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6300 |
|
Use-After-Free in google (CVE-2026-6300)
vulnerability in google (CVE-2026-6300). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6298 |
|
Vulnerability in google (CVE-2026-6298)
vulnerability in google (CVE-2026-6298). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21727 |
|
Vulnerability in grafana (CVE-2026-21727)
vulnerability in grafana (CVE-2026-21727). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-41118 |
|
Information Disclosure in github.com/grafana/pyroscope (CVE-2025-41118)
vulnerability in github.com/grafana/pyroscope (CVE-2025-41118). Confidential information can be exposed externally. Mitigation: upgrade to `1.15.2, 1.16.1` or later.
|
| CVE-2026-20186 |
|
Command Injection in dos (CVE-2026-20186)
command injection in dos (CVE-2026-20186). Successful exploitation can lead to full system takeover.
|
| CVE-2026-20148 |
|
Path Traversal in path-traversal (CVE-2026-20148)
path traversal in path-traversal (CVE-2026-20148). Confidential information can be exposed externally.
|
| CVE-2026-30461 |
|
Command Injection in thedaylightstudio (CVE-2026-30461)
command injection in thedaylightstudio (CVE-2026-30461). Confidential information can be exposed externally.
|
| CVE-2026-56370 |
|
Out-of-Bounds Read in Magick.NET-Q16-AnyCPU (CVE-2026-56370)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-56370). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.12.0` or later.
|
| CVE-2026-39387 |
|
Vulnerability in path-traversal (CVE-2026-39387)
vulnerability in path-traversal (CVE-2026-39387). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40688 |
|
Out-of-Bounds Write in fortinet (CVE-2026-40688)
out-of-bounds write in fortinet (CVE-2026-40688). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33414 |
|
OS Command Injection in github.com/containers/podman (CVE-2026-33414)
OS command injection in github.com/containers/podman (CVE-2026-33414). Successful exploitation can lead to full system takeover. Exploitable via ``fmt.Sprintf``. Mitigation: upgrade to `5.8.2` or later.
|
| CVE-2026-27299 |
|
Vulnerability in adobe (CVE-2026-27299)
vulnerability in adobe (CVE-2026-27299). Confidential information can be exposed externally.
|
| CVE-2026-27300 |
|
Vulnerability in adobe (CVE-2026-27300)
vulnerability in adobe (CVE-2026-27300). Confidential information can be exposed externally.
|
| CVE-2026-27301 |
|
Vulnerability in adobe (CVE-2026-27301)
vulnerability in adobe (CVE-2026-27301). Confidential information can be exposed externally.
|
| CVE-2026-27293 |
|
Vulnerability in adobe (CVE-2026-27293)
vulnerability in adobe (CVE-2026-27293). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27294 |
|
Out-of-Bounds Read in adobe (CVE-2026-27294)
vulnerability in adobe (CVE-2026-27294). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27295 |
|
Out-of-Bounds Write in adobe (CVE-2026-27295)
out-of-bounds write in adobe (CVE-2026-27295). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27296 |
|
Vulnerability in adobe (CVE-2026-27296)
vulnerability in adobe (CVE-2026-27296). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27297 |
|
Vulnerability in adobe (CVE-2026-27297)
vulnerability in adobe (CVE-2026-27297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27298 |
|
Vulnerability in adobe (CVE-2026-27298)
vulnerability in adobe (CVE-2026-27298). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27290 |
|
Vulnerability in adobe (CVE-2026-27290)
vulnerability in adobe (CVE-2026-27290). Successful exploitation can lead to full system takeover.
|