Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-43021 |
|
Vulnerability in c (CVE-2026-43021)
vulnerability in c (CVE-2026-43021). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43020 |
|
Out-of-Bounds Write in linux (CVE-2026-43020)
out-of-bounds write in linux (CVE-2026-43020). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43019 |
|
Use-After-Free in linux (CVE-2026-43019)
vulnerability in linux (CVE-2026-43019). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43018 |
|
Use-After-Free in linux (CVE-2026-43018)
vulnerability in linux (CVE-2026-43018). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43017 |
|
Vulnerability in linux (CVE-2026-43017)
vulnerability in linux (CVE-2026-43017). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31764 |
|
Vulnerability in linux (CVE-2026-31764)
vulnerability in linux (CVE-2026-31764). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31763 |
|
Vulnerability in linux (CVE-2026-31763)
vulnerability in linux (CVE-2026-31763). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31762 |
|
Vulnerability in c (CVE-2026-31762)
vulnerability in c (CVE-2026-31762). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31761 |
|
Vulnerability in linux (CVE-2026-31761)
vulnerability in linux (CVE-2026-31761). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31760 |
|
Vulnerability in linux (CVE-2026-31760)
vulnerability in linux (CVE-2026-31760). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31753 |
|
Vulnerability in linux (CVE-2026-31753)
vulnerability in linux (CVE-2026-31753). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31754 |
|
Vulnerability in linux (CVE-2026-31754)
vulnerability in linux (CVE-2026-31754). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31755 |
|
Vulnerability in linux (CVE-2026-31755)
vulnerability in linux (CVE-2026-31755). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31759 |
|
Vulnerability in linux (CVE-2026-31759)
vulnerability in linux (CVE-2026-31759). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31758 |
|
Use-After-Free in linux (CVE-2026-31758)
vulnerability in linux (CVE-2026-31758). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31757 |
|
Vulnerability in linux (CVE-2026-31757)
vulnerability in linux (CVE-2026-31757). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31756 |
|
Vulnerability in linux (CVE-2026-31756)
vulnerability in linux (CVE-2026-31756). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31730 |
|
Vulnerability in linux (CVE-2026-31730)
vulnerability in linux (CVE-2026-31730). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31731 |
|
Use-After-Free in linux (CVE-2026-31731)
vulnerability in linux (CVE-2026-31731). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31431 KEV |
|
[KEV] Vulnerability in Linux redhat (CVE-2026-31431)
vulnerability in Linux redhat (CVE-2026-31431). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-41940 KEV |
|
[KEV] Vulnerability in Webpros cpanel-whm-and-wp2-wordpress-squared (CVE-2026-41940)
vulnerability in Webpros cpanel-whm-and-wp2-wordpress-squared (CVE-2026-41940). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-44015 |
|
SSRF (Server-Side Request Forgery) in github.com/0xJacky/Nginx-UI (CVE-2026-44015)
SSRF in github.com/0xJacky/Nginx-UI (CVE-2026-44015). Confidential information can be exposed externally. Exploitable via `GET /api/settings`.
|
| CVE-2026-30246 |
|
Information Disclosure in github.com/gofiber/fiber/v3 (CVE-2026-30246)
vulnerability in github.com/gofiber/fiber/v3 (CVE-2026-30246). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.2.0` or later.
|
| CVE-2026-32202 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2026-32202)
vulnerability in Microsoft windows (CVE-2026-32202). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-1708 KEV |
|
[KEV] Path Traversal in Connectwise screenconnect (CVE-2024-1708)
path traversal in Connectwise screenconnect (CVE-2024-1708). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-6553 |
|
Vulnerability in typo3/cms-backend (CVE-2026-6553)
vulnerability in typo3/cms-backend (CVE-2026-6553). Confidential information can be exposed externally. Exploitable via ``SetupModuleController``. Mitigation: upgrade to `14.3.0` or later.
|
| CVE-2024-57726 KEV |
|
[KEV] Vulnerability in Simplehelp auth (CVE-2024-57726)
vulnerability in Simplehelp auth (CVE-2024-57726). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-57728 KEV |
|
[KEV] Path Traversal in Simplehelp path-traversal (CVE-2024-57728)
path traversal in Simplehelp path-traversal (CVE-2024-57728). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-7399 KEV |
|
[KEV] Path Traversal in Samsung magicinfo-9-server (CVE-2024-7399)
path traversal in Samsung magicinfo-9-server (CVE-2024-7399). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-29635 KEV |
|
[KEV] Command Injection in D-link dir-823x (CVE-2025-29635)
command injection in D-link dir-823x (CVE-2025-29635). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-39987 KEV |
|
[KEV] Vulnerability in Marimo remote-attack (CVE-2026-39987)
vulnerability in Marimo remote-attack (CVE-2026-39987). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-33825 KEV |
|
[KEV] Vulnerability in Microsoft defender (CVE-2026-33825)
vulnerability in Microsoft defender (CVE-2026-33825). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-27351 KEV |
|
[KEV] Authentication Bypass in Papercut ngmf (CVE-2023-27351)
authentication bypass in Papercut ngmf (CVE-2023-27351). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-20133 KEV |
|
[KEV] Information Disclosure in Cisco catalyst-sd-wan-manager (CVE-2026-20133)
vulnerability in Cisco catalyst-sd-wan-manager (CVE-2026-20133). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-20122 KEV |
|
[KEV] Vulnerability in Cisco catalyst-sd-wan-manger (CVE-2026-20122)
vulnerability in Cisco catalyst-sd-wan-manger (CVE-2026-20122). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-2749 KEV |
|
[KEV] Path Traversal in Kentico path-traversal (CVE-2025-2749)
path traversal in Kentico path-traversal (CVE-2025-2749). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-27199 KEV |
|
[KEV] Vulnerability in Jetbrains teamcity (CVE-2024-27199)
vulnerability in Jetbrains teamcity (CVE-2024-27199). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-32975 KEV |
|
[KEV] Authentication Bypass in Quest kace-systems-management-appliance-sma (CVE-2025-32975)
authentication bypass in Quest kace-systems-management-appliance-sma (CVE-2025-32975). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-48700 KEV |
|
[KEV] Cross-Site Scripting (XSS) in Synacor zimbra-collaboration-suite-zcs (CVE-2025-48700)
cross-site scripting in Synacor zimbra-collaboration-suite-zcs (CVE-2025-48700). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-20128 KEV |
|
[KEV] Vulnerability in Cisco catalyst-sd-wan-manager (CVE-2026-20128)
vulnerability in Cisco catalyst-sd-wan-manager (CVE-2026-20128). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-46605 |
|
Vulnerability in dell (CVE-2025-46605)
vulnerability in dell (CVE-2025-46605). Confidential information can be exposed externally.
|
| CVE-2025-46606 |
|
Vulnerability in dell (CVE-2025-46606)
vulnerability in dell (CVE-2025-46606). Confidential information can be exposed externally.
|
| CVE-2026-35153 |
|
Vulnerability in dell (CVE-2026-35153)
vulnerability in dell (CVE-2026-35153). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35074 |
|
OS Command Injection in dell (CVE-2026-35074)
OS command injection in dell (CVE-2026-35074). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35073 |
|
OS Command Injection in dell (CVE-2026-35073)
OS command injection in dell (CVE-2026-35073). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35072 |
|
OS Command Injection in dell (CVE-2026-35072)
OS command injection in dell (CVE-2026-35072). Successful exploitation can lead to full system takeover.
|
| CVE-2026-23853 |
|
Vulnerability in dell (CVE-2026-23853)
vulnerability in dell (CVE-2026-23853). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43995 |
|
SSRF (Server-Side Request Forgery) in flowise (CVE-2026-43995)
SSRF in flowise (CVE-2026-43995). Risk of unauthorized operations or information disclosure. Exploitable via ``httpSecurity.ts``. Mitigation: upgrade to `3.1.0` or later.
|
| CVE-2026-32179 |
|
Vulnerability in Microsoft.Native.Quic.MsQuic.OpenSSL (CVE-2026-32179)
vulnerability in Microsoft.Native.Quic.MsQuic.OpenSSL (CVE-2026-32179). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.4.18` or later.
|
| CVE-2026-34197 KEV |
|
[KEV] Vulnerability in Apache activemq (CVE-2026-34197)
vulnerability in Apache activemq (CVE-2026-34197). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|