Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
MGASA-2026-0190 Vulnerability in golang-x-net (MGASA-2026-0190)
vulnerability in golang-x-net (MGASA-2026-0190). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.7.0-2.1.mga9` or later.
MGASA-2026-0189 Vulnerability in libssh (MGASA-2026-0189)
vulnerability in libssh (MGASA-2026-0189). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.10.6-1.1.mga9` or later.
MGASA-2026-0191 Vulnerability in libxmp (MGASA-2026-0191)
vulnerability in libxmp (MGASA-2026-0191). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.5.0-2.1.mga9` or later.
MGASA-2026-0187 Vulnerability in tor (MGASA-2026-0187)
vulnerability in tor (MGASA-2026-0187). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.4.9.8-1.mga9` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46307 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46307)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46307). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46304 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46304)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46304). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46306 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46306)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46306). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46312 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46312)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46312). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46291 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46291)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46291). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46274 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46274)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46274). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46280 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46280)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46280). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46275 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46275)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46275). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-12-CVE-2026-46294 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46294)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46294). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
ROOT-OS-DEBIAN-13-CVE-2026-46275 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46275)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46275). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.90-2.root.io.137, 6.12.90-2.root.io.138` or later.
ROOT-OS-DEBIAN-13-CVE-2026-46274 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46274)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46274). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.90-2.root.io.137, 6.12.90-2.root.io.138` or later.
CVE-2026-26239 Vulnerability in qnap (CVE-2026-26239)
vulnerability in qnap (CVE-2026-26239). Data can be tampered with by attackers.
CVE-2026-26237 Vulnerability in qnap (CVE-2026-26237)
vulnerability in qnap (CVE-2026-26237). Confidential information can be exposed externally.
CVE-2026-24724 Authorization Flaw in qnap (CVE-2026-24724)
vulnerability in qnap (CVE-2026-24724). Confidential information can be exposed externally.
CVE-2026-24720 Vulnerability in qnap (CVE-2026-24720)
vulnerability in qnap (CVE-2026-24720). Risk of unauthorized operations or information disclosure.
CVE-2026-24719 OS Command Injection in qnap (CVE-2026-24719)
OS command injection in qnap (CVE-2026-24719). Successful exploitation can lead to full system takeover.
CVE-2026-24717 Path Traversal in path-traversal (CVE-2026-24717)
path traversal in path-traversal (CVE-2026-24717). Confidential information can be exposed externally.
CVE-2026-24716 Vulnerability in dos (CVE-2026-24716)
vulnerability in dos (CVE-2026-24716). Successful exploitation can lead to full system takeover.
CVE-2026-22899 Vulnerability in dos (CVE-2026-22899)
vulnerability in dos (CVE-2026-22899). Risk of unauthorized operations or information disclosure.
CVE-2026-22893 OS Command Injection in qnap (CVE-2026-22893)
OS command injection in qnap (CVE-2026-22893). Successful exploitation can lead to full system takeover.
CVE-2025-66281 Vulnerability in dos (CVE-2025-66281)
vulnerability in dos (CVE-2025-66281). Successful exploitation can lead to full system takeover.
CVE-2025-66280 Vulnerability in qnap (CVE-2025-66280)
vulnerability in qnap (CVE-2025-66280). Successful exploitation can lead to full system takeover.
CVE-2025-66279 OS Command Injection in qnap (CVE-2025-66279)
OS command injection in qnap (CVE-2025-66279). Successful exploitation can lead to full system takeover.
CVE-2025-66273 OS Command Injection in qnap (CVE-2025-66273)
OS command injection in qnap (CVE-2025-66273). Successful exploitation can lead to full system takeover.
CVE-2025-62851 Path Traversal in path-traversal (CVE-2025-62851)
path traversal in path-traversal (CVE-2025-62851). Confidential information can be exposed externally.
CVE-2025-62850 Vulnerability in dos (CVE-2025-62850)
vulnerability in dos (CVE-2025-62850). Successful exploitation can lead to full system takeover.
ROOT-OS-DEBIAN-11-CVE-2026-46274 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46274)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46274). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-46312 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46312)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46312). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-46291 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46291)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46291). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-46275 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46275)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46275). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-46304 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46304)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46304). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-46307 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46307)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46307). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-46294 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46294)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46294). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-46280 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46280)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46280). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
CVE-2025-59382 Vulnerability in CVE-2025-59382 (CVE-2025-59382)
vulnerability in CVE-2025-59382 (CVE-2025-59382). Risk of unauthorized operations or information disclosure.
CVE-2025-66276 Vulnerability in qnap (CVE-2025-66276)
vulnerability in qnap (CVE-2025-66276). Successful exploitation can lead to full system takeover.
CVE-2025-58468 Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-58468)
vulnerability in csrf (CVE-2025-58468). Successful exploitation can lead to full system takeover.
CVE-2026-46532 Out-of-Bounds Read in c (CVE-2026-46532)
vulnerability in c (CVE-2026-46532). Risk of unauthorized operations or information disclosure.
CVE-2026-45542 ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a heap buffer overflow exists in the Security Scheme 2 (SRP6a) session-setup p...
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a heap buffer overflow exists in the Security Scheme 2 (SRP6a) session-setup path of the protocomm component. The first-phase handler (handle_session_command0() in components/pro...
CVE-2026-45541 ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a NULL-pointer dereference exists in the WebSocket subprotocol-negotiation pat...
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a NULL-pointer dereference exists in the WebSocket subprotocol-negotiation path of the esp_http_server component. While parsing the client-supplied Sec-WebSocket-Protocol request...
CVE-2026-45329 ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, several ESP-TEE secure-service wrappers in esp_secure_services.c and esp_secure_services_iram.c vali...
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, several ESP-TEE secure-service wrappers in esp_secure_services.c and esp_secure_services_iram.c validated only some of the caller-supplied pointer arguments, leaving input pointer arguments unchecked....
CVE-2026-45328 Vulnerability in c (CVE-2026-45328)
vulnerability in c (CVE-2026-45328). Successful exploitation can lead to full system takeover.
CVE-2026-45160 Out-of-Bounds Read in c (CVE-2026-45160)
vulnerability in c (CVE-2026-45160). Risk of unauthorized operations or information disclosure.
CLEANSTART-2026-VN16911 Vulnerability in wave (CLEANSTART-2026-VN16911)
vulnerability in wave (CLEANSTART-2026-VN16911). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.13.1-r0` or later.
CVE-2026-46546 Vulnerability in frappe (CVE-2026-46546)
vulnerability in frappe (CVE-2026-46546). Risk of unauthorized operations or information disclosure.
CVE-2026-44634 Vulnerability in CVE-2026-44634 (CVE-2026-44634)
vulnerability in CVE-2026-44634 (CVE-2026-44634). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →