Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-qqc8-47v3-69rx |
|
MINI-qqc8-47v3-69rx |
| MINI-6g27-9jqw-g4mg |
|
MINI-6g27-9jqw-g4mg |
| MINI-f7cp-2c6v-jpx4 |
|
MINI-f7cp-2c6v-jpx4 |
| MINI-5p55-rcvv-wxx9 |
|
MINI-5p55-rcvv-wxx9 |
| MINI-qgc8-x9mr-pwq5 |
|
MINI-qgc8-x9mr-pwq5 |
| ROOT-APP-PYPI-CVE-2025-69225 |
|
Vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69225)
vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69225). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.10.11+root.io.4` or later.
|
| ROOT-APP-PYPI-CVE-2025-69226 |
|
Vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69226)
vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69226). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.10.11+root.io.4` or later.
|
| SUSE-SU-2026:22075-1 |
|
Vulnerability in elemental-operator (SUSE-SU-2026:22075-1)
vulnerability in elemental-operator (SUSE-SU-2026:22075-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.7.5-slfo.1.1_1.1` or later.
|
| SUSE-SU-2026:22074-1 |
|
Vulnerability in elemental-toolkit (SUSE-SU-2026:22074-1)
vulnerability in elemental-toolkit (SUSE-SU-2026:22074-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.2.9-slfo.1.1_1.1` or later.
|
| SUSE-SU-2026:2330-1 |
|
Vulnerability in mariadb (SUSE-SU-2026:2330-1)
vulnerability in mariadb (SUSE-SU-2026:2330-1). Risk of unauthorized operations or information disclosure. Exploitable via ``wsrep_sst_receive_address``. Mitigation: upgrade to `11.8.8-150700.3.15.1` or later.
|
| SUSE-SU-2026:2329-1 |
|
Vulnerability in xen (SUSE-SU-2026:2329-1)
vulnerability in xen (SUSE-SU-2026:2329-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.18.5_18-150600.3.50.1` or later.
|
| SUSE-SU-2026:2328-1 |
|
Vulnerability in xen (SUSE-SU-2026:2328-1)
vulnerability in xen (SUSE-SU-2026:2328-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.17.6_12-150500.3.73.1` or later.
|
| CVE-2026-9067 |
|
Unrestricted File Upload in wordpress (CVE-2026-9067)
vulnerability in wordpress (CVE-2026-9067). Confidential information can be exposed externally.
|
| CVE-2026-9060 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9060)
cross-site scripting in wordpress (CVE-2026-9060). Risk of unauthorized operations or information disclosure. Exploitable via ``unfiltered_html``.
|
| CVE-2026-8071 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-8071)
cross-site scripting in wordpress (CVE-2026-8071). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3326 |
|
SQL Injection in wordpress (CVE-2026-3326)
SQL injection in wordpress (CVE-2026-3326). Confidential information can be exposed externally.
|
| CVE-2026-29116 |
|
Vulnerability in dos (CVE-2026-29116)
vulnerability in dos (CVE-2026-29116). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-29115 |
|
Vulnerability in dos (CVE-2026-29115)
vulnerability in dos (CVE-2026-29115). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-29114 |
|
Vulnerability in CVE-2026-29114 (CVE-2026-29114)
vulnerability in CVE-2026-29114 (CVE-2026-29114). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11815 |
|
Unsafe Deserialization in CVE-2026-11815 (CVE-2026-11815)
vulnerability in CVE-2026-11815 (CVE-2026-11815). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10846 |
|
Vulnerability in nlnetlabs (CVE-2026-10846)
vulnerability in nlnetlabs (CVE-2026-10846). Data can be tampered with by attackers.
|
| ROOT-OS-DEBIAN-11-CVE-2026-34002 |
|
Vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34002)
vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34002). Confidential information can be exposed externally. Mitigation: upgrade to `2:1.20.11-1+deb11u17.root.io.9` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-34000 |
|
Vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34000)
vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34000). Confidential information can be exposed externally. Mitigation: upgrade to `2:1.20.11-1+deb11u17.root.io.9` or later.
|
| USN-8417-1 |
|
Vulnerability in tomcat9 (USN-8417-1)
vulnerability in tomcat9 (USN-8417-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.0.16-3ubuntu0.18.04.2+esm8` or later.
|
| GHSA-jxcv-3994-r8xf |
|
Vulnerability in xnder-wrapper-module (GHSA-jxcv-3994-r8xf)
vulnerability in xnder-wrapper-module (GHSA-jxcv-3994-r8xf). Risk of unauthorized operations or information disclosure.
|
| GHSA-5vr8-6v9x-3vxm |
|
Vulnerability in xnder-sdk (GHSA-5vr8-6v9x-3vxm)
vulnerability in xnder-sdk (GHSA-5vr8-6v9x-3vxm). Risk of unauthorized operations or information disclosure.
|
| BELL-CVE-2026-46322 |
|
BELL-CVE-2026-46322 |
| BELL-CVE-2026-46329 |
|
BELL-CVE-2026-46329 |
| BELL-CVE-2026-46324 |
|
BELL-CVE-2026-46324 |
| BELL-CVE-2026-46327 |
|
BELL-CVE-2026-46327 |
| BELL-CVE-2026-46321 |
|
BELL-CVE-2026-46321 |
| BELL-CVE-2026-46325 |
|
BELL-CVE-2026-46325 |
| BELL-CVE-2026-46319 |
|
BELL-CVE-2026-46319 |
| BELL-CVE-2026-46318 |
|
CVE-2026-46318 does not affect BellSoft software
CVE-2026-46318 does not affect BellSoft software
|
| BELL-CVE-2026-46320 |
|
BELL-CVE-2026-46320 |
| BELL-CVE-2026-46330 |
|
BELL-CVE-2026-46330 |
| BELL-CVE-2026-46323 |
|
BELL-CVE-2026-46323 |
| BELL-CVE-2026-46317 |
|
BELL-CVE-2026-46317 |
| BELL-CVE-2026-46315 |
|
BELL-CVE-2026-46315 |
| BELL-CVE-2026-46316 |
|
BELL-CVE-2026-46316 |
| CGA-hxjr-48xq-vgjq |
|
CGA-hxjr-48xq-vgjq |
| CGA-phc7-6966-mf2p |
|
CGA-phc7-6966-mf2p |
| CVE-2026-26241 |
|
Vulnerability in qnap (CVE-2026-26241)
vulnerability in qnap (CVE-2026-26241). Data can be tampered with by attackers.
|
| DEBIAN-CVE-2026-11837 |
|
Vulnerability in ansible (DEBIAN-CVE-2026-11837)
vulnerability in ansible (DEBIAN-CVE-2026-11837). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26240 |
|
Vulnerability in qnap (CVE-2026-26240)
vulnerability in qnap (CVE-2026-26240). Data can be tampered with by attackers.
|
| CVE-2026-11837 |
|
Vulnerability in privilege-escalation (CVE-2026-11837)
vulnerability in privilege-escalation (CVE-2026-11837). Successful exploitation can lead to full system takeover.
|
| CVE-2025-8444 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2025-8444)
cross-site scripting in wordpress (CVE-2025-8444). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-11837 |
|
Vulnerability in ansible (UBUNTU-CVE-2026-11837)
vulnerability in ansible (UBUNTU-CVE-2026-11837). Successful exploitation can lead to full system takeover.
|
| MGASA-2026-0188 |
|
Vulnerability in jq (MGASA-2026-0188)
vulnerability in jq (MGASA-2026-0188). Risk of unauthorized operations or information disclosure. Exploitable via ``jv_string_vfmt``. Mitigation: upgrade to `1.6-3.1.mga9` or later.
|
| MGASA-2026-0186 |
|
Updated libxpm packages fix security vulnerability
Updated libxpm packages fix security vulnerability
|