Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-49496 Use-After-Free in c (CVE-2026-49496)
vulnerability in c (CVE-2026-49496). Risk of unauthorized operations or information disclosure.
CVE-2026-49495 Vulnerability in nsa (CVE-2026-49495)
vulnerability in nsa (CVE-2026-49495). Risk of unauthorized operations or information disclosure.
CVE-2026-49069 Cross-Site Scripting (XSS) in CVE-2026-49069 (CVE-2026-49069)
cross-site scripting in CVE-2026-49069 (CVE-2026-49069). Risk of unauthorized operations or information disclosure.
CVE-2025-71330 Vulnerability in image-size (CVE-2025-71330)
vulnerability in image-size (CVE-2025-71330). Risk of unauthorized operations or information disclosure.
CVE-2025-71329 Vulnerability in image-size (CVE-2025-71329)
vulnerability in image-size (CVE-2025-71329). Risk of unauthorized operations or information disclosure.
CVE-2024-58350 Vulnerability in dos (CVE-2024-58350)
vulnerability in dos (CVE-2024-58350). Risk of unauthorized operations or information disclosure.
GHSA-8qfp-2r92-r39w Vulnerability in @easytipsportal/pos-adapters (GHSA-8qfp-2r92-r39w)
vulnerability in @easytipsportal/pos-adapters (GHSA-8qfp-2r92-r39w). Risk of unauthorized operations or information disclosure.
GHSA-h3m2-g8jh-9p37 Vulnerability in argoncrypt (GHSA-h3m2-g8jh-9p37)
vulnerability in argoncrypt (GHSA-h3m2-g8jh-9p37). Risk of unauthorized operations or information disclosure. Exploitable via ``require``.
MINI-v3cr-8r9f-7pm3 MINI-v3cr-8r9f-7pm3
MINI-46v9-5hx4-wh5v MINI-46v9-5hx4-wh5v
MINI-c99g-vj9j-m8h5 MINI-c99g-vj9j-m8h5
MINI-543j-26p3-xqcx MINI-543j-26p3-xqcx
MINI-qxj4-j538-mhq5 MINI-qxj4-j538-mhq5
MINI-c3r2-rqwj-x58j MINI-c3r2-rqwj-x58j
MINI-446w-6v3c-rv67 MINI-446w-6v3c-rv67
MINI-9qpr-82gc-9wjf MINI-9qpr-82gc-9wjf
MINI-q6fv-4378-8576 MINI-q6fv-4378-8576
MINI-733g-7vwv-88fc MINI-733g-7vwv-88fc
CGA-r43q-x6hp-5h9p CGA-r43q-x6hp-5h9p
GHSA-ggqm-v4hp-cw69 Vulnerability in martinez-polygon-clipping-simul-dalton (GHSA-ggqm-v4hp-cw69)
vulnerability in martinez-polygon-clipping-simul-dalton (GHSA-ggqm-v4hp-cw69). Risk of unauthorized operations or information disclosure.
MINI-f7f3-r962-pq98 MINI-f7f3-r962-pq98
MINI-w9wv-5xcr-gp6g MINI-w9wv-5xcr-gp6g
MINI-fq7m-4prc-8jm2 MINI-fq7m-4prc-8jm2
MINI-g28f-w2fj-763g MINI-g28f-w2fj-763g
MINI-f8xw-rw74-6fg9 MINI-f8xw-rw74-6fg9
USN-8419-1 Vulnerability in libhttp-daemon-perl (USN-8419-1)
vulnerability in libhttp-daemon-perl (USN-8419-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.01-1ubuntu0.14.04~esm2` or later.
CGA-qhgj-wh56-w944 CGA-qhgj-wh56-w944
MINI-cjc2-f5r8-2r9m MINI-cjc2-f5r8-2r9m
MINI-62mf-h9q4-7m9c MINI-62mf-h9q4-7m9c
MINI-9w9w-gfp9-jf3f MINI-9w9w-gfp9-jf3f
MINI-62r9-35m2-3r8p MINI-62r9-35m2-3r8p
MINI-rrqr-6g9j-r9fp MINI-rrqr-6g9j-r9fp
MINI-pm4x-5449-7v75 MINI-pm4x-5449-7v75
MINI-52c8-6799-c3wr MINI-52c8-6799-c3wr
MINI-xxw5-h5r2-5rm8 MINI-xxw5-h5r2-5rm8
MINI-vffv-r52g-79jq MINI-vffv-r52g-79jq
MINI-p9fq-345w-6hxc MINI-p9fq-345w-6hxc
MINI-fwc3-c24f-3vhg MINI-fwc3-c24f-3vhg
MINI-qj83-ghgv-6g5p MINI-qj83-ghgv-6g5p
MINI-j4f3-qchh-6chh MINI-j4f3-qchh-6chh
CVE-2026-49397 Information Disclosure in github.com/nezhahq/nezha (CVE-2026-49397)
vulnerability in github.com/nezhahq/nezha (CVE-2026-49397). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/v1/service`. Mitigation: upgrade to `2.0.14` or later.
CVE-2026-49396 Cross-Site Request Forgery (CSRF) in github.com/nezhahq/nezha (CVE-2026-49396)
vulnerability in github.com/nezhahq/nezha (CVE-2026-49396). Data can be tampered with by attackers. Exploitable via `GET /api/v1/cron/`. Mitigation: upgrade to `2.0.14` or later.
CVE-2026-48031 Vulnerability in github.com/dhax/go-base (CVE-2026-48031)
vulnerability in github.com/dhax/go-base (CVE-2026-48031). Confidential information can be exposed externally. Exploitable via ``dev.env``. Mitigation: upgrade to `0.0.0-20260517152733-cc82b9740fa6` or later.
CVE-2026-48051 SSRF (Server-Side Request Forgery) in @papra/webhooks (CVE-2026-48051)
SSRF in @papra/webhooks (CVE-2026-48051). Risk of unauthorized operations or information disclosure. Exploitable via `POST /redirect`. Mitigation: upgrade to `0.3.3` or later.
CVE-2026-48037 Vulnerability in @hulumi/baseline (CVE-2026-48037)
vulnerability in @hulumi/baseline (CVE-2026-48037). Risk of unauthorized operations or information disclosure. Exploitable via ``AccountFoundation``. Mitigation: upgrade to `1.4.0` or later.
CVE-2026-48036 Vulnerability in @hulumi/drift (CVE-2026-48036)
vulnerability in @hulumi/drift (CVE-2026-48036). Risk of unauthorized operations or information disclosure. Exploitable via ``Mixed``. Mitigation: upgrade to `1.4.0` or later.
CVE-2026-48035 Vulnerability in @hulumi/baseline (CVE-2026-48035)
vulnerability in @hulumi/baseline (CVE-2026-48035). Risk of unauthorized operations or information disclosure. Exploitable via ``AccountFoundation``. Mitigation: upgrade to `1.4.0` or later.
CVE-2026-48034 Vulnerability in @hulumi/policies (CVE-2026-48034)
vulnerability in @hulumi/policies (CVE-2026-48034). Risk of unauthorized operations or information disclosure. Exploitable via ``SecureBucket``. Mitigation: upgrade to `1.4.0` or later.
CVE-2026-48033 Vulnerability in @hulumi/policies (CVE-2026-48033)
vulnerability in @hulumi/policies (CVE-2026-48033). Risk of unauthorized operations or information disclosure. Exploitable via ``SecureBucket``. Mitigation: upgrade to `1.4.0` or later.
CVE-2026-48032 Vulnerability in @hulumi/policies (CVE-2026-48032)
vulnerability in @hulumi/policies (CVE-2026-48032). Risk of unauthorized operations or information disclosure. Exploitable via ``G_OIDC_1``. Mitigation: upgrade to `1.4.0` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →