Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
MINI-qqc8-47v3-69rx MINI-qqc8-47v3-69rx
MINI-6g27-9jqw-g4mg MINI-6g27-9jqw-g4mg
MINI-f7cp-2c6v-jpx4 MINI-f7cp-2c6v-jpx4
MINI-5p55-rcvv-wxx9 MINI-5p55-rcvv-wxx9
MINI-qgc8-x9mr-pwq5 MINI-qgc8-x9mr-pwq5
ROOT-APP-PYPI-CVE-2025-69225 Vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69225)
vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69225). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.10.11+root.io.4` or later.
ROOT-APP-PYPI-CVE-2025-69226 Vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69226)
vulnerability in rootio-aiohttp (ROOT-APP-PYPI-CVE-2025-69226). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.10.11+root.io.4` or later.
SUSE-SU-2026:22075-1 Vulnerability in elemental-operator (SUSE-SU-2026:22075-1)
vulnerability in elemental-operator (SUSE-SU-2026:22075-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.7.5-slfo.1.1_1.1` or later.
SUSE-SU-2026:22074-1 Vulnerability in elemental-toolkit (SUSE-SU-2026:22074-1)
vulnerability in elemental-toolkit (SUSE-SU-2026:22074-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.2.9-slfo.1.1_1.1` or later.
SUSE-SU-2026:2330-1 Vulnerability in mariadb (SUSE-SU-2026:2330-1)
vulnerability in mariadb (SUSE-SU-2026:2330-1). Risk of unauthorized operations or information disclosure. Exploitable via ``wsrep_sst_receive_address``. Mitigation: upgrade to `11.8.8-150700.3.15.1` or later.
SUSE-SU-2026:2329-1 Vulnerability in xen (SUSE-SU-2026:2329-1)
vulnerability in xen (SUSE-SU-2026:2329-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.18.5_18-150600.3.50.1` or later.
SUSE-SU-2026:2328-1 Vulnerability in xen (SUSE-SU-2026:2328-1)
vulnerability in xen (SUSE-SU-2026:2328-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.17.6_12-150500.3.73.1` or later.
CVE-2026-9067 Unrestricted File Upload in wordpress (CVE-2026-9067)
vulnerability in wordpress (CVE-2026-9067). Confidential information can be exposed externally.
CVE-2026-9060 Cross-Site Scripting (XSS) in wordpress (CVE-2026-9060)
cross-site scripting in wordpress (CVE-2026-9060). Risk of unauthorized operations or information disclosure. Exploitable via ``unfiltered_html``.
CVE-2026-8071 Cross-Site Scripting (XSS) in wordpress (CVE-2026-8071)
cross-site scripting in wordpress (CVE-2026-8071). Successful exploitation can lead to full system takeover.
CVE-2026-3326 SQL Injection in wordpress (CVE-2026-3326)
SQL injection in wordpress (CVE-2026-3326). Confidential information can be exposed externally.
CVE-2026-29116 Vulnerability in dos (CVE-2026-29116)
vulnerability in dos (CVE-2026-29116). Risk of unauthorized operations or information disclosure.
CVE-2026-29115 Vulnerability in dos (CVE-2026-29115)
vulnerability in dos (CVE-2026-29115). Risk of unauthorized operations or information disclosure.
CVE-2026-29114 Vulnerability in CVE-2026-29114 (CVE-2026-29114)
vulnerability in CVE-2026-29114 (CVE-2026-29114). Risk of unauthorized operations or information disclosure.
CVE-2026-11815 Unsafe Deserialization in CVE-2026-11815 (CVE-2026-11815)
vulnerability in CVE-2026-11815 (CVE-2026-11815). Risk of unauthorized operations or information disclosure.
CVE-2026-10846 Vulnerability in nlnetlabs (CVE-2026-10846)
vulnerability in nlnetlabs (CVE-2026-10846). Data can be tampered with by attackers.
ROOT-OS-DEBIAN-11-CVE-2026-34002 Vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34002)
vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34002). Confidential information can be exposed externally. Mitigation: upgrade to `2:1.20.11-1+deb11u17.root.io.9` or later.
ROOT-OS-DEBIAN-11-CVE-2026-34000 Vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34000)
vulnerability in rootio-xorg-server (ROOT-OS-DEBIAN-11-CVE-2026-34000). Confidential information can be exposed externally. Mitigation: upgrade to `2:1.20.11-1+deb11u17.root.io.9` or later.
USN-8417-1 Vulnerability in tomcat9 (USN-8417-1)
vulnerability in tomcat9 (USN-8417-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.0.16-3ubuntu0.18.04.2+esm8` or later.
GHSA-jxcv-3994-r8xf Vulnerability in xnder-wrapper-module (GHSA-jxcv-3994-r8xf)
vulnerability in xnder-wrapper-module (GHSA-jxcv-3994-r8xf). Risk of unauthorized operations or information disclosure.
GHSA-5vr8-6v9x-3vxm Vulnerability in xnder-sdk (GHSA-5vr8-6v9x-3vxm)
vulnerability in xnder-sdk (GHSA-5vr8-6v9x-3vxm). Risk of unauthorized operations or information disclosure.
BELL-CVE-2026-46322 BELL-CVE-2026-46322
BELL-CVE-2026-46329 BELL-CVE-2026-46329
BELL-CVE-2026-46324 BELL-CVE-2026-46324
BELL-CVE-2026-46327 BELL-CVE-2026-46327
BELL-CVE-2026-46321 BELL-CVE-2026-46321
BELL-CVE-2026-46325 BELL-CVE-2026-46325
BELL-CVE-2026-46319 BELL-CVE-2026-46319
BELL-CVE-2026-46318 CVE-2026-46318 does not affect BellSoft software
CVE-2026-46318 does not affect BellSoft software
BELL-CVE-2026-46320 BELL-CVE-2026-46320
BELL-CVE-2026-46330 BELL-CVE-2026-46330
BELL-CVE-2026-46323 BELL-CVE-2026-46323
BELL-CVE-2026-46317 BELL-CVE-2026-46317
BELL-CVE-2026-46315 BELL-CVE-2026-46315
BELL-CVE-2026-46316 BELL-CVE-2026-46316
CGA-hxjr-48xq-vgjq CGA-hxjr-48xq-vgjq
CGA-phc7-6966-mf2p CGA-phc7-6966-mf2p
CVE-2026-26241 Vulnerability in qnap (CVE-2026-26241)
vulnerability in qnap (CVE-2026-26241). Data can be tampered with by attackers.
DEBIAN-CVE-2026-11837 Vulnerability in ansible (DEBIAN-CVE-2026-11837)
vulnerability in ansible (DEBIAN-CVE-2026-11837). Risk of unauthorized operations or information disclosure.
CVE-2026-26240 Vulnerability in qnap (CVE-2026-26240)
vulnerability in qnap (CVE-2026-26240). Data can be tampered with by attackers.
CVE-2026-11837 Vulnerability in privilege-escalation (CVE-2026-11837)
vulnerability in privilege-escalation (CVE-2026-11837). Successful exploitation can lead to full system takeover.
CVE-2025-8444 Cross-Site Scripting (XSS) in wordpress (CVE-2025-8444)
cross-site scripting in wordpress (CVE-2025-8444). Risk of unauthorized operations or information disclosure.
UBUNTU-CVE-2026-11837 Vulnerability in ansible (UBUNTU-CVE-2026-11837)
vulnerability in ansible (UBUNTU-CVE-2026-11837). Successful exploitation can lead to full system takeover.
MGASA-2026-0188 Vulnerability in jq (MGASA-2026-0188)
vulnerability in jq (MGASA-2026-0188). Risk of unauthorized operations or information disclosure. Exploitable via ``jv_string_vfmt``. Mitigation: upgrade to `1.6-3.1.mga9` or later.
MGASA-2026-0186 Updated libxpm packages fix security vulnerability
Updated libxpm packages fix security vulnerability

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →