Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-49496 |
|
Use-After-Free in c (CVE-2026-49496)
vulnerability in c (CVE-2026-49496). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49495 |
|
Vulnerability in nsa (CVE-2026-49495)
vulnerability in nsa (CVE-2026-49495). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49069 |
|
Cross-Site Scripting (XSS) in CVE-2026-49069 (CVE-2026-49069)
cross-site scripting in CVE-2026-49069 (CVE-2026-49069). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-71330 |
|
Vulnerability in image-size (CVE-2025-71330)
vulnerability in image-size (CVE-2025-71330). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-71329 |
|
Vulnerability in image-size (CVE-2025-71329)
vulnerability in image-size (CVE-2025-71329). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-58350 |
|
Vulnerability in dos (CVE-2024-58350)
vulnerability in dos (CVE-2024-58350). Risk of unauthorized operations or information disclosure.
|
| GHSA-8qfp-2r92-r39w |
|
Vulnerability in @easytipsportal/pos-adapters (GHSA-8qfp-2r92-r39w)
vulnerability in @easytipsportal/pos-adapters (GHSA-8qfp-2r92-r39w). Risk of unauthorized operations or information disclosure.
|
| GHSA-h3m2-g8jh-9p37 |
|
Vulnerability in argoncrypt (GHSA-h3m2-g8jh-9p37)
vulnerability in argoncrypt (GHSA-h3m2-g8jh-9p37). Risk of unauthorized operations or information disclosure. Exploitable via ``require``.
|
| MINI-v3cr-8r9f-7pm3 |
|
MINI-v3cr-8r9f-7pm3 |
| MINI-46v9-5hx4-wh5v |
|
MINI-46v9-5hx4-wh5v |
| MINI-c99g-vj9j-m8h5 |
|
MINI-c99g-vj9j-m8h5 |
| MINI-543j-26p3-xqcx |
|
MINI-543j-26p3-xqcx |
| MINI-qxj4-j538-mhq5 |
|
MINI-qxj4-j538-mhq5 |
| MINI-c3r2-rqwj-x58j |
|
MINI-c3r2-rqwj-x58j |
| MINI-446w-6v3c-rv67 |
|
MINI-446w-6v3c-rv67 |
| MINI-9qpr-82gc-9wjf |
|
MINI-9qpr-82gc-9wjf |
| MINI-q6fv-4378-8576 |
|
MINI-q6fv-4378-8576 |
| MINI-733g-7vwv-88fc |
|
MINI-733g-7vwv-88fc |
| CGA-r43q-x6hp-5h9p |
|
CGA-r43q-x6hp-5h9p |
| GHSA-ggqm-v4hp-cw69 |
|
Vulnerability in martinez-polygon-clipping-simul-dalton (GHSA-ggqm-v4hp-cw69)
vulnerability in martinez-polygon-clipping-simul-dalton (GHSA-ggqm-v4hp-cw69). Risk of unauthorized operations or information disclosure.
|
| MINI-f7f3-r962-pq98 |
|
MINI-f7f3-r962-pq98 |
| MINI-w9wv-5xcr-gp6g |
|
MINI-w9wv-5xcr-gp6g |
| MINI-fq7m-4prc-8jm2 |
|
MINI-fq7m-4prc-8jm2 |
| MINI-g28f-w2fj-763g |
|
MINI-g28f-w2fj-763g |
| MINI-f8xw-rw74-6fg9 |
|
MINI-f8xw-rw74-6fg9 |
| USN-8419-1 |
|
Vulnerability in libhttp-daemon-perl (USN-8419-1)
vulnerability in libhttp-daemon-perl (USN-8419-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.01-1ubuntu0.14.04~esm2` or later.
|
| CGA-qhgj-wh56-w944 |
|
CGA-qhgj-wh56-w944 |
| MINI-cjc2-f5r8-2r9m |
|
MINI-cjc2-f5r8-2r9m |
| MINI-62mf-h9q4-7m9c |
|
MINI-62mf-h9q4-7m9c |
| MINI-9w9w-gfp9-jf3f |
|
MINI-9w9w-gfp9-jf3f |
| MINI-62r9-35m2-3r8p |
|
MINI-62r9-35m2-3r8p |
| MINI-rrqr-6g9j-r9fp |
|
MINI-rrqr-6g9j-r9fp |
| MINI-pm4x-5449-7v75 |
|
MINI-pm4x-5449-7v75 |
| MINI-52c8-6799-c3wr |
|
MINI-52c8-6799-c3wr |
| MINI-xxw5-h5r2-5rm8 |
|
MINI-xxw5-h5r2-5rm8 |
| MINI-vffv-r52g-79jq |
|
MINI-vffv-r52g-79jq |
| MINI-p9fq-345w-6hxc |
|
MINI-p9fq-345w-6hxc |
| MINI-fwc3-c24f-3vhg |
|
MINI-fwc3-c24f-3vhg |
| MINI-qj83-ghgv-6g5p |
|
MINI-qj83-ghgv-6g5p |
| MINI-j4f3-qchh-6chh |
|
MINI-j4f3-qchh-6chh |
| CVE-2026-49397 |
|
Information Disclosure in github.com/nezhahq/nezha (CVE-2026-49397)
vulnerability in github.com/nezhahq/nezha (CVE-2026-49397). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/v1/service`. Mitigation: upgrade to `2.0.14` or later.
|
| CVE-2026-49396 |
|
Cross-Site Request Forgery (CSRF) in github.com/nezhahq/nezha (CVE-2026-49396)
vulnerability in github.com/nezhahq/nezha (CVE-2026-49396). Data can be tampered with by attackers. Exploitable via `GET /api/v1/cron/`. Mitigation: upgrade to `2.0.14` or later.
|
| CVE-2026-48031 |
|
Vulnerability in github.com/dhax/go-base (CVE-2026-48031)
vulnerability in github.com/dhax/go-base (CVE-2026-48031). Confidential information can be exposed externally. Exploitable via ``dev.env``. Mitigation: upgrade to `0.0.0-20260517152733-cc82b9740fa6` or later.
|
| CVE-2026-48051 |
|
SSRF (Server-Side Request Forgery) in @papra/webhooks (CVE-2026-48051)
SSRF in @papra/webhooks (CVE-2026-48051). Risk of unauthorized operations or information disclosure. Exploitable via `POST /redirect`. Mitigation: upgrade to `0.3.3` or later.
|
| CVE-2026-48037 |
|
Vulnerability in @hulumi/baseline (CVE-2026-48037)
vulnerability in @hulumi/baseline (CVE-2026-48037). Risk of unauthorized operations or information disclosure. Exploitable via ``AccountFoundation``. Mitigation: upgrade to `1.4.0` or later.
|
| CVE-2026-48036 |
|
Vulnerability in @hulumi/drift (CVE-2026-48036)
vulnerability in @hulumi/drift (CVE-2026-48036). Risk of unauthorized operations or information disclosure. Exploitable via ``Mixed``. Mitigation: upgrade to `1.4.0` or later.
|
| CVE-2026-48035 |
|
Vulnerability in @hulumi/baseline (CVE-2026-48035)
vulnerability in @hulumi/baseline (CVE-2026-48035). Risk of unauthorized operations or information disclosure. Exploitable via ``AccountFoundation``. Mitigation: upgrade to `1.4.0` or later.
|
| CVE-2026-48034 |
|
Vulnerability in @hulumi/policies (CVE-2026-48034)
vulnerability in @hulumi/policies (CVE-2026-48034). Risk of unauthorized operations or information disclosure. Exploitable via ``SecureBucket``. Mitigation: upgrade to `1.4.0` or later.
|
| CVE-2026-48033 |
|
Vulnerability in @hulumi/policies (CVE-2026-48033)
vulnerability in @hulumi/policies (CVE-2026-48033). Risk of unauthorized operations or information disclosure. Exploitable via ``SecureBucket``. Mitigation: upgrade to `1.4.0` or later.
|
| CVE-2026-48032 |
|
Vulnerability in @hulumi/policies (CVE-2026-48032)
vulnerability in @hulumi/policies (CVE-2026-48032). Risk of unauthorized operations or information disclosure. Exploitable via ``G_OIDC_1``. Mitigation: upgrade to `1.4.0` or later.
|