Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-55831 |
|
Vulnerability in io.netty:netty-codec-http (CVE-2026-55831)
vulnerability in io.netty:netty-codec-http (CVE-2026-55831). Risk of unauthorized operations or information disclosure. Exploitable via ``DefaultSpdySettingsFrame``. Mitigation: upgrade to `4.1.136.Final` or later.
|
| CVE-2026-55833 |
|
Vulnerability in io.netty:netty-codec-http (CVE-2026-55833)
vulnerability in io.netty:netty-codec-http (CVE-2026-55833). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.1.136.Final` or later.
|
| CVE-2026-15905 |
|
Use-After-Free in google (CVE-2026-15905)
vulnerability in google (CVE-2026-15905). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15903 |
|
Out-of-Bounds Read in google (CVE-2026-15903)
vulnerability in google (CVE-2026-15903). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15904 |
|
Use-After-Free in google (CVE-2026-15904)
vulnerability in google (CVE-2026-15904). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15902 |
|
Use-After-Free in google (CVE-2026-15902)
vulnerability in google (CVE-2026-15902). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64624 |
|
Vulnerability in freerdp (CVE-2026-64624)
vulnerability in freerdp (CVE-2026-64624). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55550 |
|
Privilege Escalation in CVE-2026-55550 (CVE-2026-55550)
vulnerability in CVE-2026-55550 (CVE-2026-55550). Data can be tampered with by attackers. Exploitable via ``manager``.
|
| CVE-2026-55544 |
|
Vulnerability in CVE-2026-55544 (CVE-2026-55544)
vulnerability in CVE-2026-55544 (CVE-2026-55544). Data can be tampered with by attackers. Exploitable via ``nxtc__...``.
|
| CVE-2026-51031 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-51031)
SSRF in ssrf (CVE-2026-51031). Confidential information can be exposed externally.
|
| CVE-2026-16324 |
|
Vulnerability in CVE-2026-16324 (CVE-2026-16324)
vulnerability in CVE-2026-16324 (CVE-2026-16324). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-51316 |
|
Vulnerability in dos (CVE-2024-51316)
vulnerability in dos (CVE-2024-51316). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56624 |
|
Vulnerability in apache (CVE-2026-56624)
vulnerability in apache (CVE-2026-56624). Confidential information can be exposed externally.
|
| CVE-2026-56623 |
|
Path Traversal in apache (CVE-2026-56623)
path traversal in apache (CVE-2026-56623). Confidential information can be exposed externally.
|
| CVE-2026-56452 |
|
Path Traversal in c (CVE-2026-56452)
path traversal in c (CVE-2026-56452). Data can be tampered with by attackers.
|
| CVE-2026-44508 |
|
Vulnerability in CVE-2026-44508 (CVE-2026-44508)
vulnerability in CVE-2026-44508 (CVE-2026-44508). Confidential information can be exposed externally.
|
| CVE-2026-47130 |
|
Vulnerability in CVE-2026-47130 (CVE-2026-47130)
vulnerability in CVE-2026-47130 (CVE-2026-47130). Data can be tampered with by attackers. Exploitable via ``member``.
|
| CVE-2026-47129 |
|
Vulnerability in CVE-2026-47129 (CVE-2026-47129)
vulnerability in CVE-2026-47129 (CVE-2026-47129). Data can be tampered with by attackers. Exploitable via ``activateUser``.
|
| CVE-2026-13381 |
|
Vulnerability in vsee (CVE-2026-13381)
vulnerability in vsee (CVE-2026-13381). Confidential information can be exposed externally.
|
| CVE-2026-13380 |
|
Vulnerability in vsee (CVE-2026-13380)
vulnerability in vsee (CVE-2026-13380). Confidential information can be exposed externally.
|
| CVE-2026-53591 |
|
Authentication Bypass in laravel (CVE-2026-53591)
authentication bypass in laravel (CVE-2026-53591). Data can be tampered with by attackers. Exploitable via ``last_reply_from``.
|
| CVE-2026-53593 |
|
Unrestricted File Upload in laravel (CVE-2026-53593)
vulnerability in laravel (CVE-2026-53593). Successful exploitation can lead to full system takeover. Exploitable via `POST /uploads/upload`.
|
| CVE-2026-15788 |
|
Vulnerability in mobyproject (CVE-2026-15788)
vulnerability in mobyproject (CVE-2026-15788). Confidential information can be exposed externally.
|
| CVE-2026-64619 |
|
Vulnerability in CVE-2026-64619 (CVE-2026-64619)
vulnerability in CVE-2026-64619 (CVE-2026-64619). Confidential information can be exposed externally.
|
| CVE-2026-64194 |
|
Vulnerability in c (CVE-2026-64194)
vulnerability in c (CVE-2026-64194). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63731 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-63731 (CVE-2026-63731)
SSRF in CVE-2026-63731 (CVE-2026-63731). Confidential information can be exposed externally.
|
| CVE-2026-63108 |
|
Vulnerability in CVE-2026-63108 (CVE-2026-63108)
vulnerability in CVE-2026-63108 (CVE-2026-63108). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63771 |
|
Vulnerability in CVE-2026-63771 (CVE-2026-63771)
vulnerability in CVE-2026-63771 (CVE-2026-63771). Confidential information can be exposed externally.
|
| CVE-2026-63769 |
|
SSRF (Server-Side Request Forgery) in c (CVE-2026-63769)
SSRF in c (CVE-2026-63769). Confidential information can be exposed externally.
|
| CVE-2026-63770 |
|
Vulnerability in CVE-2026-63770 (CVE-2026-63770)
vulnerability in CVE-2026-63770 (CVE-2026-63770). Confidential information can be exposed externally.
|
| CVE-2026-63107 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-63107 (CVE-2026-63107)
SSRF in CVE-2026-63107 (CVE-2026-63107). Confidential information can be exposed externally. Exploitable via `Host header`.
|
| CVE-2026-48389 |
|
Vulnerability in adobe (CVE-2026-48389)
vulnerability in adobe (CVE-2026-48389). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12341 |
|
Authentication Bypass in sailpoint (CVE-2026-12341)
authentication bypass in sailpoint (CVE-2026-12341). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64612 |
|
Vulnerability in dos (CVE-2026-64612)
vulnerability in dos (CVE-2026-64612). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55626 |
|
Authentication Bypass in neutrinolabs (CVE-2026-55626)
authentication bypass in neutrinolabs (CVE-2026-55626). Confidential information can be exposed externally.
|
| CVE-2026-48812 |
|
Authentication Bypass in laravel (CVE-2026-48812)
authentication bypass in laravel (CVE-2026-48812). Confidential information can be exposed externally. Exploitable via ``token_type``.
|
| CVE-2026-64191 |
|
Out-of-Bounds Read in c (CVE-2026-64191)
vulnerability in c (CVE-2026-64191). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64206 |
|
Vulnerability in linux (CVE-2026-64206)
vulnerability in linux (CVE-2026-64206). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64188 |
|
Use-After-Free in c (CVE-2026-64188)
vulnerability in c (CVE-2026-64188). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64189 |
|
Vulnerability in c (CVE-2026-64189)
vulnerability in c (CVE-2026-64189). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58484 |
|
Path Traversal in network-ai (CVE-2026-58484)
path traversal in network-ai (CVE-2026-58484). Data can be tampered with by attackers. Exploitable via ``path``. Mitigation: upgrade to `5.12.2` or later.
|
| CVE-2026-54538 |
|
Vulnerability in neutrinolabs (CVE-2026-54538)
vulnerability in neutrinolabs (CVE-2026-54538). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44178 |
|
Vulnerability in dos (CVE-2026-44178)
vulnerability in dos (CVE-2026-44178). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46555 |
|
Path Traversal in path-traversal (CVE-2026-46555)
path traversal in path-traversal (CVE-2026-46555). Confidential information can be exposed externally. Exploitable via `Host header`.
|
| CVE-2026-41521 |
|
Vulnerability in dos (CVE-2026-41521)
vulnerability in dos (CVE-2026-41521). Confidential information can be exposed externally.
|
| CVE-2026-39879 |
|
Vulnerability in c (CVE-2026-39879)
vulnerability in c (CVE-2026-39879). Risk of unauthorized operations or information disclosure. Exploitable via ``afsql_dd_run_query``.
|
| CVE-2026-35591 |
|
Vulnerability in libvips (CVE-2026-35591)
vulnerability in libvips (CVE-2026-35591). Successful exploitation can lead to full system takeover. Exploitable via ``tiffload``.
|
| CVE-2026-32825 |
|
Vulnerability in rails (CVE-2026-32825)
vulnerability in rails (CVE-2026-32825). Confidential information can be exposed externally.
|
| CVE-2026-32824 |
|
Open Redirect in CVE-2026-32824 (CVE-2026-32824)
vulnerability in CVE-2026-32824 (CVE-2026-32824). Confidential information can be exposed externally. Exploitable via ``forwardToUrl``.
|
| CVE-2026-33327 |
|
Vulnerability in libvips (CVE-2026-33327)
vulnerability in libvips (CVE-2026-33327). Successful exploitation can lead to full system takeover. Exploitable via ``vipsload``.
|