Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-9694 |
|
Vulnerability in gitlab (CVE-2026-9694)
vulnerability in gitlab (CVE-2026-9694). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-8464 |
|
Path Traversal in path-traversal (CVE-2026-8464)
path traversal in path-traversal (CVE-2026-8464). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7250 |
|
Vulnerability in gitlab (CVE-2026-7250)
vulnerability in gitlab (CVE-2026-7250). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-6277 |
|
Authorization Flaw in gitlab (CVE-2026-6277)
vulnerability in gitlab (CVE-2026-6277). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-8589 |
|
Cross-Site Scripting (XSS) in gitlab (CVE-2026-8589)
cross-site scripting in gitlab (CVE-2026-8589). Confidential information can be exposed externally. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-6552 |
|
Vulnerability in gitlab (CVE-2026-6552)
vulnerability in gitlab (CVE-2026-6552). Confidential information can be exposed externally. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-6269 |
|
Authorization Flaw in gitlab (CVE-2026-6269)
vulnerability in gitlab (CVE-2026-6269). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| MINI-7mhj-4fgh-6hvx |
|
MINI-7mhj-4fgh-6hvx |
| CVE-2026-53912 |
|
Information Disclosure in CVE-2026-53912 (CVE-2026-53912)
vulnerability in CVE-2026-53912 (CVE-2026-53912). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3553 |
|
Authorization Flaw in gitlab (CVE-2026-3553)
vulnerability in gitlab (CVE-2026-3553). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-10733 |
|
Vulnerability in gitlab (CVE-2026-10733)
vulnerability in gitlab (CVE-2026-10733). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-1500 |
|
Vulnerability in gitlab (CVE-2026-1500)
vulnerability in gitlab (CVE-2026-1500). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2026-4764 |
|
Vulnerability in CVE-2026-4764 (CVE-2026-4764)
vulnerability in CVE-2026-4764 (CVE-2026-4764). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-32959 |
|
Vulnerability in CVE-2023-32959 (CVE-2023-32959)
vulnerability in CVE-2023-32959 (CVE-2023-32959). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-25969 |
|
Vulnerability in CVE-2023-25969 (CVE-2023-25969)
vulnerability in CVE-2023-25969 (CVE-2023-25969). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-47150 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2022-47150)
vulnerability in csrf (CVE-2022-47150). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10087 |
|
Cross-Site Scripting (XSS) in gitlab (CVE-2026-10087)
cross-site scripting in gitlab (CVE-2026-10087). Confidential information can be exposed externally. Mitigation: upgrade to `18.10.8, 18.11.5, 19.0.2` or later.
|
| CVE-2022-45813 |
|
Vulnerability in CVE-2022-45813 (CVE-2022-45813)
vulnerability in CVE-2022-45813 (CVE-2022-45813). Risk of unauthorized operations or information disclosure.
|
| MINI-3qv8-9w4g-qm96 |
|
MINI-3qv8-9w4g-qm96 |
| MINI-2q7r-p6wh-2cwr |
|
MINI-2q7r-p6wh-2cwr |
| MINI-xh84-cjgx-rp4m |
|
MINI-xh84-cjgx-rp4m |
| MAL-2026-5639 |
|
Vulnerability in @tt-aem-tt4a/shared-components (MAL-2026-5639)
vulnerability in @tt-aem-tt4a/shared-components (MAL-2026-5639). Risk of unauthorized operations or information disclosure.
|
| MINI-pwj5-5m52-3mvw |
|
MINI-pwj5-5m52-3mvw |
| MINI-c68c-rh94-h9jf |
|
MINI-c68c-rh94-h9jf |
| MINI-8rv7-v2j2-jfv8 |
|
MINI-8rv7-v2j2-jfv8 |
| MINI-xx3v-6w99-m3qx |
|
MINI-xx3v-6w99-m3qx |
| MINI-5w5v-c75g-35g5 |
|
MINI-5w5v-c75g-35g5 |
| MINI-q5cc-9fc3-49rr |
|
MINI-q5cc-9fc3-49rr |
| MINI-f348-v4gp-ffr8 |
|
MINI-f348-v4gp-ffr8 |
| MINI-p2r5-9xgj-7r2j |
|
MINI-p2r5-9xgj-7r2j |
| MINI-r6ff-vg4f-8vfx |
|
MINI-r6ff-vg4f-8vfx |
| MINI-qj6q-24wc-rmpr |
|
MINI-qj6q-24wc-rmpr |
| MINI-p7j3-87rq-qqxm |
|
MINI-p7j3-87rq-qqxm |
| MINI-hc9x-55f2-f467 |
|
MINI-hc9x-55f2-f467 |
| SUSE-SU-2026:2369-1 |
|
Vulnerability in unbound (SUSE-SU-2026:2369-1)
vulnerability in unbound (SUSE-SU-2026:2369-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.20.0-150100.10.25.1` or later.
|
| USN-8421-1 |
|
Vulnerability in ironic (USN-8421-1)
vulnerability in ironic (USN-8421-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:20.1.0-0ubuntu1.3` or later.
|
| SUSE-SU-2026:2368-1 |
|
Vulnerability in strongswan (SUSE-SU-2026:2368-1)
vulnerability in strongswan (SUSE-SU-2026:2368-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.9.11-150400.19.35.1` or later.
|
| CVE-2026-53423 |
|
Vulnerability in membrane_mp4_plugin (CVE-2026-53423)
vulnerability in membrane_mp4_plugin (CVE-2026-53423). Risk of unauthorized operations or information disclosure. Exploitable via ``membrane_mp4_plugin``. Mitigation: upgrade to `0.36.7` or later.
|
| RLSA-2026:24470 |
|
Vulnerability in podman (RLSA-2026:24470)
vulnerability in podman (RLSA-2026:24470). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7:5.8.2-3.el10_2` or later.
|
| RLSA-2026:24716 |
|
Vulnerability in yggdrasil (RLSA-2026:24716)
vulnerability in yggdrasil (RLSA-2026:24716). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:0.4.9-5.el10_2` or later.
|
| RLSA-2026:24338 |
|
Vulnerability in bind (RLSA-2026:24338)
vulnerability in bind (RLSA-2026:24338). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2:9.18.33-15.el10_2.2` or later.
|
| RLSA-2026:24347 |
|
Vulnerability in frr (RLSA-2026:24347)
vulnerability in frr (RLSA-2026:24347). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:10.4.4-1.el10_2` or later.
|
| RLSA-2026:24758 |
|
Vulnerability in libyang (RLSA-2026:24758)
vulnerability in libyang (RLSA-2026:24758). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:2.1.148-4.el10_2` or later.
|
| RLSA-2026:24331 |
|
Vulnerability in cockpit-image-builder (RLSA-2026:24331)
vulnerability in cockpit-image-builder (RLSA-2026:24331). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:94.3-1.el10_2` or later.
|
| RLSA-2026:24348 |
|
Vulnerability in postgresql-jdbc (RLSA-2026:24348)
vulnerability in postgresql-jdbc (RLSA-2026:24348). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:42.7.2-1.el10_2.2` or later.
|
| RLSA-2026:22963 |
|
Vulnerability in samba (RLSA-2026:22963)
vulnerability in samba (RLSA-2026:22963). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:4.23.5-109.el10_2` or later.
|
| RLSA-2026:24371 |
|
Vulnerability in frr (RLSA-2026:24371)
vulnerability in frr (RLSA-2026:24371). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:8.5.3-13.el9_8` or later.
|
| RLSA-2026:24367 |
|
Vulnerability in bind (RLSA-2026:24367)
vulnerability in bind (RLSA-2026:24367). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2:9.16.23-40.el9_8.2` or later.
|
| RLSA-2026:24368 |
|
Vulnerability in bind9.18 (RLSA-2026:24368)
vulnerability in bind9.18 (RLSA-2026:24368). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2:9.18.29-14.el9_8.2` or later.
|
| RLSA-2026:24369 |
|
Vulnerability in unbound (RLSA-2026:24369)
vulnerability in unbound (RLSA-2026:24369). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:1.24.2-3.el9_8.1` or later.
|