Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-15121 |
|
Use-After-Free in google (CVE-2026-15121)
vulnerability in google (CVE-2026-15121). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15123 |
|
Vulnerability in google (CVE-2026-15123)
vulnerability in google (CVE-2026-15123). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15124 |
|
Vulnerability in google (CVE-2026-15124)
vulnerability in google (CVE-2026-15124). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15125 |
|
Authorization Flaw in google (CVE-2026-15125)
vulnerability in google (CVE-2026-15125). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15126 |
|
Use-After-Free in google (CVE-2026-15126)
vulnerability in google (CVE-2026-15126). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15120 |
|
Use-After-Free in google (CVE-2026-15120)
vulnerability in google (CVE-2026-15120). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15122 |
|
Vulnerability in google (CVE-2026-15122)
vulnerability in google (CVE-2026-15122). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15127 |
|
Cross-Site Scripting (XSS) in google (CVE-2026-15127)
cross-site scripting in google (CVE-2026-15127). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15128 |
|
Cross-Site Scripting (XSS) in google (CVE-2026-15128)
cross-site scripting in google (CVE-2026-15128). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15109 |
|
Vulnerability in google (CVE-2026-15109)
vulnerability in google (CVE-2026-15109). Confidential information can be exposed externally.
|
| CVE-2026-15110 |
|
Use-After-Free in google (CVE-2026-15110)
vulnerability in google (CVE-2026-15110). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15111 |
|
Use-After-Free in google (CVE-2026-15111)
vulnerability in google (CVE-2026-15111). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15112 |
|
Use-After-Free in Google chrome (CVE-2026-15112)
vulnerability in Google chrome (CVE-2026-15112). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15113 |
|
Use-After-Free in google (CVE-2026-15113)
vulnerability in google (CVE-2026-15113). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15114 |
|
Out-of-Bounds Read in google (CVE-2026-15114)
vulnerability in google (CVE-2026-15114). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15115 |
|
Vulnerability in google (CVE-2026-15115)
vulnerability in google (CVE-2026-15115). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15116 |
|
Use-After-Free in google (CVE-2026-15116)
vulnerability in google (CVE-2026-15116). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15117 |
|
Use-After-Free in google (CVE-2026-15117)
vulnerability in google (CVE-2026-15117). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15118 |
|
Use-After-Free in google (CVE-2026-15118)
vulnerability in google (CVE-2026-15118). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15107 |
|
Use-After-Free in google (CVE-2026-15107)
vulnerability in google (CVE-2026-15107). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15108 |
|
Vulnerability in google (CVE-2026-15108)
vulnerability in google (CVE-2026-15108). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6352 |
|
Authorization Flaw in gitlab (CVE-2026-6352)
vulnerability in gitlab (CVE-2026-6352). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8472 |
|
Vulnerability in gitlab (CVE-2026-8472)
vulnerability in gitlab (CVE-2026-8472). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7492 |
|
Vulnerability in gitlab (CVE-2026-7492)
vulnerability in gitlab (CVE-2026-7492). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6896 |
|
Cross-Site Scripting (XSS) in gitlab (CVE-2026-6896)
cross-site scripting in gitlab (CVE-2026-6896). Confidential information can be exposed externally.
|
| CVE-2026-0288 |
|
Out-of-Bounds Write in dos (CVE-2026-0288)
out-of-bounds write in dos (CVE-2026-0288). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13320 |
|
Cross-Site Scripting (XSS) in gitlab (CVE-2026-13320)
cross-site scripting in gitlab (CVE-2026-13320). Confidential information can be exposed externally.
|
| CVE-2026-13151 |
|
Authorization Flaw in gitlab (CVE-2026-13151)
vulnerability in gitlab (CVE-2026-13151). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-12506 |
|
Vulnerability in gitlab (CVE-2025-12506)
vulnerability in gitlab (CVE-2025-12506). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11827 |
|
Vulnerability in gitlab (CVE-2026-11827)
vulnerability in gitlab (CVE-2026-11827). Confidential information can be exposed externally.
|
| CVE-2026-8801 |
|
Vulnerability in progress (CVE-2026-8801)
vulnerability in progress (CVE-2026-8801). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8651 |
|
Vulnerability in progress (CVE-2026-8651)
vulnerability in progress (CVE-2026-8651). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8650 |
|
Vulnerability in path-traversal (CVE-2026-8650)
vulnerability in path-traversal (CVE-2026-8650). Confidential information can be exposed externally.
|
| CVE-2026-8800 |
|
Authorization Flaw in progress (CVE-2026-8800)
vulnerability in progress (CVE-2026-8800). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8649 |
|
Vulnerability in progress (CVE-2026-8649)
vulnerability in progress (CVE-2026-8649). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59946 |
|
Path Traversal in composer/composer (CVE-2026-59946)
path traversal in composer/composer (CVE-2026-59946). Confidential information can be exposed externally. Exploitable via ``bin``. Mitigation: upgrade to `2.2.29` or later.
|
| CVE-2026-59947 |
|
Vulnerability in composer/composer (CVE-2026-59947)
vulnerability in composer/composer (CVE-2026-59947). Confidential information can be exposed externally. Exploitable via ``repositories``. Mitigation: upgrade to `2.2.29` or later.
|
| CVE-2026-59948 |
|
Path Traversal in composer/composer (CVE-2026-59948)
path traversal in composer/composer (CVE-2026-59948). Successful exploitation can lead to full system takeover. Exploitable via ``install``. Mitigation: upgrade to `2.2.29` or later.
|
| CVE-2026-59819 |
|
Vulnerability in litellm (CVE-2026-59819)
vulnerability in litellm (CVE-2026-59819). Confidential information can be exposed externally. Exploitable via ``litellm_params``. Mitigation: upgrade to `1.83.10-stable` or later.
|
| CVE-2026-59820 |
|
Path Traversal in litellm (CVE-2026-59820)
path traversal in litellm (CVE-2026-59820). Data can be tampered with by attackers. Exploitable via `POST /v1/skills`. Mitigation: upgrade to `1.83.7-stable` or later.
|
| CVE-2026-59821 |
|
Code Injection in litellm (CVE-2026-59821)
code injection in litellm (CVE-2026-59821). Successful exploitation can lead to full system takeover. Exploitable via `POST /guardrails`. Mitigation: upgrade to `1.82.0-stable` or later.
|
| CVE-2026-59822 |
|
Authentication Bypass in litellm (CVE-2026-59822)
authentication bypass in litellm (CVE-2026-59822). Confidential information can be exposed externally. Exploitable via ``Authorization``. Mitigation: upgrade to `1.84.0` or later.
|
| CVE-2026-59882 |
|
Vulnerability in guzzlehttp/psr7 (CVE-2026-59882)
vulnerability in guzzlehttp/psr7 (CVE-2026-59882). Risk of unauthorized operations or information disclosure. Exploitable via ``SERVER_NAME``. Mitigation: upgrade to `2.12.3` or later.
|
| CVE-2026-59883 |
|
Information Disclosure in guzzlehttp/guzzle (CVE-2026-59883)
vulnerability in guzzlehttp/guzzle (CVE-2026-59883). Risk of unauthorized operations or information disclosure. Exploitable via ``CookieJar``. Mitigation: upgrade to `7.12.3` or later.
|
| CVE-2026-56776 |
|
Vulnerability in n8n (CVE-2026-56776)
vulnerability in n8n (CVE-2026-56776). Risk of unauthorized operations or information disclosure. Exploitable via `POST /workflows/{workflowId}/test-runs/new`. Mitigation: upgrade to `2.25.7` or later.
|
| CVE-2026-56360 |
|
Vulnerability in n8n (CVE-2026-56360)
vulnerability in n8n (CVE-2026-56360). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.6.2` or later.
|
| CVE-2026-56359 |
|
Cross-Site Scripting (XSS) in n8n (CVE-2026-56359)
cross-site scripting in n8n (CVE-2026-56359). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.6.4` or later.
|
| CVE-2026-56362 |
|
Vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-56362)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-56362). Risk of unauthorized operations or information disclosure. Exploitable via ``OpenPixelCache``. Mitigation: upgrade to `14.10.3` or later.
|
| CVE-2026-56374 |
|
Out-of-Bounds Read in Magick.NET-Q16-AnyCPU (CVE-2026-56374)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-56374). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.12.0` or later.
|
| CVE-2026-22927 |
|
Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
|