Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-21346 |
|
Out-of-Bounds Write in adobe (CVE-2026-21346)
out-of-bounds write in adobe (CVE-2026-21346). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21347 |
|
Vulnerability in adobe (CVE-2026-21347)
vulnerability in adobe (CVE-2026-21347). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21342 |
|
Out-of-Bounds Write in adobe (CVE-2026-21342)
out-of-bounds write in adobe (CVE-2026-21342). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21343 |
|
Out-of-Bounds Read in adobe (CVE-2026-21343)
vulnerability in adobe (CVE-2026-21343). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21341 |
|
Out-of-Bounds Write in adobe (CVE-2026-21341)
out-of-bounds write in adobe (CVE-2026-21341). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21527 |
|
Vulnerability in microsoft (CVE-2026-21527)
vulnerability in microsoft (CVE-2026-21527). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21350 |
|
Vulnerability in adobe (CVE-2026-21350)
vulnerability in adobe (CVE-2026-21350). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21351 |
|
Use-After-Free in adobe (CVE-2026-21351)
vulnerability in adobe (CVE-2026-21351). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21357 |
|
Vulnerability in adobe (CVE-2026-21357)
vulnerability in adobe (CVE-2026-21357). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21358 |
|
Vulnerability in adobe (CVE-2026-21358)
vulnerability in adobe (CVE-2026-21358). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21332 |
|
Out-of-Bounds Read in adobe (CVE-2026-21332)
vulnerability in adobe (CVE-2026-21332). Confidential information can be exposed externally.
|
| CVE-2026-21324 |
|
Out-of-Bounds Read in adobe (CVE-2026-21324)
vulnerability in adobe (CVE-2026-21324). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21325 |
|
Out-of-Bounds Read in adobe (CVE-2026-21325)
vulnerability in adobe (CVE-2026-21325). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21326 |
|
Use-After-Free in adobe (CVE-2026-21326)
vulnerability in adobe (CVE-2026-21326). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21327 |
|
Out-of-Bounds Write in adobe (CVE-2026-21327)
out-of-bounds write in adobe (CVE-2026-21327). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21328 |
|
Out-of-Bounds Write in adobe (CVE-2026-21328)
out-of-bounds write in adobe (CVE-2026-21328). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21329 |
|
Use-After-Free in adobe (CVE-2026-21329)
vulnerability in adobe (CVE-2026-21329). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21330 |
|
Vulnerability in adobe (CVE-2026-21330)
vulnerability in adobe (CVE-2026-21330). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21318 |
|
Out-of-Bounds Write in adobe (CVE-2026-21318)
out-of-bounds write in adobe (CVE-2026-21318). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21319 |
|
Out-of-Bounds Read in adobe (CVE-2026-21319)
vulnerability in adobe (CVE-2026-21319). Confidential information can be exposed externally.
|
| CVE-2026-21320 |
|
Use-After-Free in adobe (CVE-2026-21320)
vulnerability in adobe (CVE-2026-21320). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21321 |
|
Vulnerability in adobe (CVE-2026-21321)
vulnerability in adobe (CVE-2026-21321). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21322 |
|
Out-of-Bounds Read in adobe (CVE-2026-21322)
vulnerability in adobe (CVE-2026-21322). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21323 |
|
Use-After-Free in adobe (CVE-2026-21323)
vulnerability in adobe (CVE-2026-21323). Successful exploitation can lead to full system takeover.
|
| CVE-2025-64157 |
|
Vulnerability in fortinet (CVE-2025-64157)
vulnerability in fortinet (CVE-2025-64157). Successful exploitation can lead to full system takeover.
|
| CVE-2025-55018 |
|
Vulnerability in fortinet (CVE-2025-55018)
vulnerability in fortinet (CVE-2025-55018). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21513 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2026-21513)
vulnerability in Microsoft windows (CVE-2026-21513). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-21525 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2026-21525)
vulnerability in Microsoft windows (CVE-2026-21525). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-21510 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2026-21510)
vulnerability in Microsoft windows (CVE-2026-21510). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-21533 KEV |
|
[KEV] Privilege Escalation in Microsoft windows (CVE-2026-21533)
vulnerability in Microsoft windows (CVE-2026-21533). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-21519 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2026-21519)
vulnerability in Microsoft windows (CVE-2026-21519). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-21514 KEV |
|
[KEV] Vulnerability in Microsoft office (CVE-2026-21514)
vulnerability in Microsoft office (CVE-2026-21514). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-23903 |
|
Vulnerability in spring (CVE-2026-23903)
vulnerability in spring (CVE-2026-23903). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-11953 KEV |
|
[KEV] OS Command Injection in React native community react-native-community (CVE-2025-11953)
OS command injection in React native community react-native-community (CVE-2025-11953). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-24423 KEV |
|
[KEV] Vulnerability in Smartertools smartermail (CVE-2026-24423)
vulnerability in Smartertools smartermail (CVE-2026-24423). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-37094 |
|
Vulnerability in espocrm (CVE-2020-37094)
vulnerability in espocrm (CVE-2020-37094). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2025-40551 KEV |
|
[KEV] Unsafe Deserialization in Solarwinds web-help-desk (CVE-2025-40551)
vulnerability in Solarwinds web-help-desk (CVE-2025-40551). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-39935 KEV |
|
[KEV] SSRF (Server-Side Request Forgery) in Gitlab community-and-enterprise-editions (CVE-2021-39935)
SSRF in Gitlab community-and-enterprise-editions (CVE-2021-39935). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-64328 KEV |
|
[KEV] OS Command Injection in Sangoma freepbx (CVE-2025-64328)
OS command injection in Sangoma freepbx (CVE-2025-64328). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2019-19006 KEV |
|
[KEV] Authentication Bypass in Sangoma freepbx (CVE-2019-19006)
authentication bypass in Sangoma freepbx (CVE-2019-19006). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2025-24293 |
|
Command Injection in CVE-2025-24293 (CVE-2025-24293)
command injection in CVE-2025-24293 (CVE-2025-24293). Successful exploitation can lead to full system takeover.
|
| CGA-7jqj-8457-jm46 |
|
Vulnerability in amazon-ecs-agent-fips (CGA-7jqj-8457-jm46)
vulnerability in amazon-ecs-agent-fips (CGA-7jqj-8457-jm46). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.100.1-r2` or later.
|
| CVE-2026-1281 KEV |
|
[KEV] Code Injection in Ivanti endpoint-manager-mobile-epmm (CVE-2026-1281)
code injection in Ivanti endpoint-manager-mobile-epmm (CVE-2026-1281). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-24869 |
|
Use-After-Free in mozilla (CVE-2026-24869)
vulnerability in mozilla (CVE-2026-24869). Successful exploitation can lead to full system takeover.
|
| CVE-2026-22795 |
|
Vulnerability in dos (CVE-2026-22795)
vulnerability in dos (CVE-2026-22795). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-69419 |
|
Out-of-Bounds Write in dos (CVE-2025-69419)
out-of-bounds write in dos (CVE-2025-69419). Confidential information can be exposed externally.
|
| CVE-2025-69420 |
|
Vulnerability in dos (CVE-2025-69420)
vulnerability in dos (CVE-2025-69420). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-69421 |
|
Vulnerability in dos (CVE-2025-69421)
vulnerability in dos (CVE-2025-69421). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-69418 |
|
Vulnerability in openssl (CVE-2025-69418)
vulnerability in openssl (CVE-2025-69418). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-68160 |
|
Out-of-Bounds Write in dos (CVE-2025-68160)
out-of-bounds write in dos (CVE-2025-68160). Risk of unauthorized operations or information disclosure.
|