Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-60093 |
|
Vulnerability in org.apache.camel:camel-azure-storage-datalake (CVE-2026-60093)
vulnerability in org.apache.camel:camel-azure-storage-datalake (CVE-2026-60093). Confidential information can be exposed externally. Mitigation: upgrade to `4.22.0` or later.
|
| CVE-2026-66907 |
|
Vulnerability in org.apache.camel:camel-google-storage (CVE-2026-66907)
vulnerability in org.apache.camel:camel-google-storage (CVE-2026-66907). Confidential information can be exposed externally. Mitigation: upgrade to `4.22.0` or later.
|
| CVE-2026-66906 |
|
Vulnerability in org.apache.camel:camel-azure-storage-blob (CVE-2026-66906)
vulnerability in org.apache.camel:camel-azure-storage-blob (CVE-2026-66906). Confidential information can be exposed externally. Mitigation: upgrade to `4.22.0` or later.
|
| CVE-2026-63043 |
|
Vulnerability in apache (CVE-2026-63043)
vulnerability in apache (CVE-2026-63043). Confidential information can be exposed externally.
|
| CVE-2026-63490 |
|
Path Traversal in CVE-2026-63490 (CVE-2026-63490)
path traversal in CVE-2026-63490 (CVE-2026-63490). Confidential information can be exposed externally.
|
| CVE-2026-16230 |
|
Vulnerability in wordpress (CVE-2026-16230)
vulnerability in wordpress (CVE-2026-16230). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70337 |
|
Vulnerability in path-traversal (CVE-2026-70337)
vulnerability in path-traversal (CVE-2026-70337). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65810 |
|
Vulnerability in csharp (CVE-2026-65810)
vulnerability in csharp (CVE-2026-65810). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62837 |
|
Vulnerability in path-traversal (CVE-2026-62837)
vulnerability in path-traversal (CVE-2026-62837). Confidential information can be exposed externally.
|
| CVE-2026-21082 |
|
Vulnerability in path-traversal (CVE-2026-21082)
vulnerability in path-traversal (CVE-2026-21082). Confidential information can be exposed externally.
|
| CVE-2026-56794 |
|
Vulnerability in path-traversal (CVE-2026-56794)
vulnerability in path-traversal (CVE-2026-56794). Confidential information can be exposed externally.
|
| CVE-2026-15802 |
|
Vulnerability in wordpress (CVE-2026-15802)
vulnerability in wordpress (CVE-2026-15802). Data can be tampered with by attackers.
|
| CVE-2026-50454 |
|
Vulnerability in path-traversal (CVE-2026-50454)
vulnerability in path-traversal (CVE-2026-50454). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50426 |
|
Vulnerability in path-traversal (CVE-2026-50426)
vulnerability in path-traversal (CVE-2026-50426). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56196 |
|
Vulnerability in path-traversal (CVE-2026-56196)
vulnerability in path-traversal (CVE-2026-56196). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50663 |
|
Vulnerability in path-traversal (CVE-2026-50663)
vulnerability in path-traversal (CVE-2026-50663). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40400 |
|
Vulnerability in path-traversal (CVE-2026-40400)
vulnerability in path-traversal (CVE-2026-40400). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14903 |
|
Path Traversal in path-traversal (CVE-2026-14903)
path traversal in path-traversal (CVE-2026-14903). Confidential information can be exposed externally.
|
| CVE-2026-59792 |
|
Vulnerability in path-traversal (CVE-2026-59792)
vulnerability in path-traversal (CVE-2026-59792). Confidential information can be exposed externally.
|
| CVE-2026-8650 |
|
Vulnerability in path-traversal (CVE-2026-8650)
vulnerability in path-traversal (CVE-2026-8650). Confidential information can be exposed externally.
|
| CVE-2026-59996 |
|
Vulnerability in openbsd (CVE-2026-59996)
vulnerability in openbsd (CVE-2026-59996). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59995 |
|
Vulnerability in openbsd (CVE-2026-59995)
vulnerability in openbsd (CVE-2026-59995). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58522 |
|
Vulnerability in path-traversal (CVE-2026-58522)
vulnerability in path-traversal (CVE-2026-58522). Confidential information can be exposed externally.
|
| CVE-2026-57988 |
|
Vulnerability in path-traversal (CVE-2026-57988)
vulnerability in path-traversal (CVE-2026-57988). Data can be tampered with by attackers.
|
| CVE-2026-45188 |
|
Vulnerability in apache (CVE-2026-45188)
vulnerability in apache (CVE-2026-45188). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48569 |
|
Vulnerability in microsoft (CVE-2026-48569)
vulnerability in microsoft (CVE-2026-48569). Confidential information can be exposed externally.
|
| CVE-2026-47287 |
|
Vulnerability in path-traversal (CVE-2026-47287)
vulnerability in path-traversal (CVE-2026-47287). Data can be tampered with by attackers.
|
| CVE-2026-5422 |
|
Vulnerability in jupyter-server (CVE-2026-5422)
vulnerability in jupyter-server (CVE-2026-5422). Confidential information can be exposed externally. Mitigation: upgrade to `2.18.2` or later.
|
| CVE-2025-48977 |
|
Vulnerability in org.apache.ignite:ignite-core (CVE-2025-48977)
vulnerability in org.apache.ignite:ignite-core (CVE-2025-48977). Confidential information can be exposed externally. Mitigation: upgrade to `2.18.0` or later.
|
| CVE-2026-8134 |
|
Vulnerability in concrete5/concrete5 (CVE-2026-8134)
vulnerability in concrete5/concrete5 (CVE-2026-8134). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `9.5.1` or later.
|
| CVE-2026-8073 |
|
Vulnerability in wordpress (CVE-2026-8073)
vulnerability in wordpress (CVE-2026-8073). Confidential information can be exposed externally.
|
| CVE-2026-41612 |
|
Path Traversal in path-traversal (CVE-2026-41612)
path traversal in path-traversal (CVE-2026-41612). Confidential information can be exposed externally.
|
| CVE-2026-8209 |
|
Vulnerability in path-traversal (CVE-2026-8209)
vulnerability in path-traversal (CVE-2026-8209). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5966 |
|
Vulnerability in path-traversal (CVE-2026-5966)
vulnerability in path-traversal (CVE-2026-5966). Data can be tampered with by attackers.
|
| CVE-2024-27199 KEV |
|
[KEV] Vulnerability in Jetbrains teamcity (CVE-2024-27199)
vulnerability in Jetbrains teamcity (CVE-2024-27199). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-66737 |
|
Vulnerability in path-traversal (CVE-2025-66737)
vulnerability in path-traversal (CVE-2025-66737). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-64446 KEV |
|
[KEV] Vulnerability in Fortinet fortiweb (CVE-2025-64446)
vulnerability in Fortinet fortiweb (CVE-2025-64446). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-55752 |
|
Vulnerability in org.apache.tomcat:tomcat (CVE-2025-55752)
vulnerability in org.apache.tomcat:tomcat (CVE-2025-55752). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `9.0.109, 10.1.45, 11.0.11` or later.
|
| CVE-2024-43454 |
|
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
|
| CVE-2024-38258 |
|
Windows Remote Desktop Licensing Service Information Disclosure Vulnerability
Windows Remote Desktop Licensing Service Information Disclosure Vulnerability
|
| CVE-2023-42456 |
|
Path Traversal in sudo-rs (CVE-2023-42456)
path traversal in sudo-rs (CVE-2023-42456). Risk of unauthorized operations or information disclosure. Exploitable via ``useradd``. Mitigation: upgrade to `0.2.1` or later.
|
| CVE-2023-38185 |
|
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
|
| CVE-2023-35359 |
|
Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
|
| CVE-2023-23391 |
|
Office for Android Spoofing Vulnerability
Office for Android Spoofing Vulnerability
|
| CVE-2023-23379 |
|
Microsoft Defender for IoT Elevation of Privilege Vulnerability
Microsoft Defender for IoT Elevation of Privilege Vulnerability
|
| CVE-2022-37042 KEV |
|
[KEV] Path Traversal in Synacor zimbra-collaboration-suite-zcs (CVE-2022-37042)
path traversal in Synacor zimbra-collaboration-suite-zcs (CVE-2022-37042). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-38163 KEV |
|
[KEV] Vulnerability in Sap netweaver (CVE-2021-38163)
vulnerability in Sap netweaver (CVE-2021-38163). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-5410 KEV |
|
[KEV] Vulnerability in Vmware tanzu vmware-tanzu (CVE-2020-5410)
vulnerability in Vmware tanzu vmware-tanzu (CVE-2020-5410). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-22017 KEV |
|
[KEV] Vulnerability in Vmware vcenter-server (CVE-2021-22017)
vulnerability in Vmware vcenter-server (CVE-2021-22017). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-21972 KEV |
|
[KEV] Path Traversal in Vmware vcenter-server (CVE-2021-21972)
path traversal in Vmware vcenter-server (CVE-2021-21972). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|