Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MGASA-2026-0190 |
|
Vulnerability in golang-x-net (MGASA-2026-0190)
vulnerability in golang-x-net (MGASA-2026-0190). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.7.0-2.1.mga9` or later.
|
| MGASA-2026-0189 |
|
Vulnerability in libssh (MGASA-2026-0189)
vulnerability in libssh (MGASA-2026-0189). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.10.6-1.1.mga9` or later.
|
| MGASA-2026-0191 |
|
Vulnerability in libxmp (MGASA-2026-0191)
vulnerability in libxmp (MGASA-2026-0191). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.5.0-2.1.mga9` or later.
|
| MGASA-2026-0187 |
|
Vulnerability in tor (MGASA-2026-0187)
vulnerability in tor (MGASA-2026-0187). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.4.9.8-1.mga9` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46307 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46307)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46307). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46304 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46304)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46304). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46306 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46306)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46306). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46312 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46312)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46312). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46291 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46291)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46291). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46274 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46274)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46274). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46280 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46280)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46280). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46275 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46275)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46275). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-12-CVE-2026-46294 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46294)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-12-CVE-2026-46294). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.1.174-1.root.io.145, 6.1.174-1.root.io.144` or later.
|
| ROOT-OS-DEBIAN-13-CVE-2026-46275 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46275)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46275). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.90-2.root.io.137, 6.12.90-2.root.io.138` or later.
|
| ROOT-OS-DEBIAN-13-CVE-2026-46274 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46274)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-46274). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.90-2.root.io.137, 6.12.90-2.root.io.138` or later.
|
| CVE-2026-26239 |
|
Vulnerability in qnap (CVE-2026-26239)
vulnerability in qnap (CVE-2026-26239). Data can be tampered with by attackers.
|
| CVE-2026-26237 |
|
Vulnerability in qnap (CVE-2026-26237)
vulnerability in qnap (CVE-2026-26237). Confidential information can be exposed externally.
|
| CVE-2026-24724 |
|
Authorization Flaw in qnap (CVE-2026-24724)
vulnerability in qnap (CVE-2026-24724). Confidential information can be exposed externally.
|
| CVE-2026-24720 |
|
Vulnerability in qnap (CVE-2026-24720)
vulnerability in qnap (CVE-2026-24720). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-24719 |
|
OS Command Injection in qnap (CVE-2026-24719)
OS command injection in qnap (CVE-2026-24719). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24717 |
|
Path Traversal in path-traversal (CVE-2026-24717)
path traversal in path-traversal (CVE-2026-24717). Confidential information can be exposed externally.
|
| CVE-2026-24716 |
|
Vulnerability in dos (CVE-2026-24716)
vulnerability in dos (CVE-2026-24716). Successful exploitation can lead to full system takeover.
|
| CVE-2026-22899 |
|
Vulnerability in dos (CVE-2026-22899)
vulnerability in dos (CVE-2026-22899). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-22893 |
|
OS Command Injection in qnap (CVE-2026-22893)
OS command injection in qnap (CVE-2026-22893). Successful exploitation can lead to full system takeover.
|
| CVE-2025-66281 |
|
Vulnerability in dos (CVE-2025-66281)
vulnerability in dos (CVE-2025-66281). Successful exploitation can lead to full system takeover.
|
| CVE-2025-66280 |
|
Vulnerability in qnap (CVE-2025-66280)
vulnerability in qnap (CVE-2025-66280). Successful exploitation can lead to full system takeover.
|
| CVE-2025-66279 |
|
OS Command Injection in qnap (CVE-2025-66279)
OS command injection in qnap (CVE-2025-66279). Successful exploitation can lead to full system takeover.
|
| CVE-2025-66273 |
|
OS Command Injection in qnap (CVE-2025-66273)
OS command injection in qnap (CVE-2025-66273). Successful exploitation can lead to full system takeover.
|
| CVE-2025-62851 |
|
Path Traversal in path-traversal (CVE-2025-62851)
path traversal in path-traversal (CVE-2025-62851). Confidential information can be exposed externally.
|
| CVE-2025-62850 |
|
Vulnerability in dos (CVE-2025-62850)
vulnerability in dos (CVE-2025-62850). Successful exploitation can lead to full system takeover.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46274 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46274)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46274). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46312 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46312)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46312). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46291 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46291)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46291). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46275 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46275)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46275). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46304 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46304)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46304). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46307 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46307)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46307). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46294 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46294)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46294). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| ROOT-OS-DEBIAN-11-CVE-2026-46280 |
|
Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46280)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-46280). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
|
| CVE-2025-59382 |
|
Vulnerability in CVE-2025-59382 (CVE-2025-59382)
vulnerability in CVE-2025-59382 (CVE-2025-59382). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-66276 |
|
Vulnerability in qnap (CVE-2025-66276)
vulnerability in qnap (CVE-2025-66276). Successful exploitation can lead to full system takeover.
|
| CVE-2025-58468 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-58468)
vulnerability in csrf (CVE-2025-58468). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46532 |
|
Out-of-Bounds Read in c (CVE-2026-46532)
vulnerability in c (CVE-2026-46532). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45542 |
|
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a heap buffer overflow exists in the Security Scheme 2 (SRP6a) session-setup p...
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a heap buffer overflow exists in the Security Scheme 2 (SRP6a) session-setup path of the protocomm component. The first-phase handler (handle_session_command0() in components/pro...
|
| CVE-2026-45541 |
|
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a NULL-pointer dereference exists in the WebSocket subprotocol-negotiation pat...
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a NULL-pointer dereference exists in the WebSocket subprotocol-negotiation path of the esp_http_server component. While parsing the client-supplied Sec-WebSocket-Protocol request...
|
| CVE-2026-45329 |
|
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, several ESP-TEE secure-service wrappers in esp_secure_services.c and esp_secure_services_iram.c vali...
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, several ESP-TEE secure-service wrappers in esp_secure_services.c and esp_secure_services_iram.c validated only some of the caller-supplied pointer arguments, leaving input pointer arguments unchecked....
|
| CVE-2026-45328 |
|
Vulnerability in c (CVE-2026-45328)
vulnerability in c (CVE-2026-45328). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45160 |
|
Out-of-Bounds Read in c (CVE-2026-45160)
vulnerability in c (CVE-2026-45160). Risk of unauthorized operations or information disclosure.
|
| CLEANSTART-2026-VN16911 |
|
Vulnerability in wave (CLEANSTART-2026-VN16911)
vulnerability in wave (CLEANSTART-2026-VN16911). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.13.1-r0` or later.
|
| CVE-2026-46546 |
|
Vulnerability in frappe (CVE-2026-46546)
vulnerability in frappe (CVE-2026-46546). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44634 |
|
Vulnerability in CVE-2026-44634 (CVE-2026-44634)
vulnerability in CVE-2026-44634 (CVE-2026-44634). Risk of unauthorized operations or information disclosure.
|