Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
MINI-46wm-6hpr-r2c9 MINI-46wm-6hpr-r2c9
MINI-v8cm-h6xc-2ffp MINI-v8cm-h6xc-2ffp
MINI-phpg-5h2q-m4c6 MINI-phpg-5h2q-m4c6
MINI-qf3p-4hj8-h565 MINI-qf3p-4hj8-h565
MINI-v7j7-43qv-cc4v MINI-v7j7-43qv-cc4v
MINI-vg2w-jc94-q4j5 MINI-vg2w-jc94-q4j5
MINI-6g35-cq5x-5xhq MINI-6g35-cq5x-5xhq
MINI-f492-mwpc-5869 MINI-f492-mwpc-5869
MINI-2qff-84p3-wp2c MINI-2qff-84p3-wp2c
MINI-8gw5-5x2r-6p22 MINI-8gw5-5x2r-6p22
MINI-4pf5-xx9x-4x3w MINI-4pf5-xx9x-4x3w
MINI-wc64-63gm-pjm3 MINI-wc64-63gm-pjm3
MINI-3qq4-68wg-qf7p MINI-3qq4-68wg-qf7p
MINI-fwq2-c665-fvph MINI-fwq2-c665-fvph
MINI-vgv8-j5j6-5w46 MINI-vgv8-j5j6-5w46
MINI-597h-r7mg-96r6 MINI-597h-r7mg-96r6
MINI-gfh7-3p8r-7vpv MINI-gfh7-3p8r-7vpv
SUSE-SU-2026:22072-1 Vulnerability in graphite2 (SUSE-SU-2026:22072-1)
vulnerability in graphite2 (SUSE-SU-2026:22072-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.3.14-slfo.1.1_2.1` or later.
ROOT-APP-MAVEN-CVE-2024-12798 Vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2024-12798)
vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2024-12798). Data can be tampered with by attackers. Mitigation: upgrade to `1.4.11-root.io.5, 1.1.3-root.io.2` or later.
ROOT-APP-MAVEN-CVE-2025-11226 Vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2025-11226)
vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2025-11226). Confidential information can be exposed externally. Mitigation: upgrade to `1.5.18-root.io.1, 1.4.11-root.io.5, 1.1.3-root.io.2` or later.
CGA-3cx9-gq56-cp35 CGA-3cx9-gq56-cp35
MINI-p448-wfvx-mxfh MINI-p448-wfvx-mxfh
MINI-h6qg-47hx-mwrg MINI-h6qg-47hx-mwrg
MINI-4hxr-2qgx-crfx MINI-4hxr-2qgx-crfx
MINI-jg3w-q7gm-7v23 MINI-jg3w-q7gm-7v23
MINI-37v4-x4pj-j524 MINI-37v4-x4pj-j524
MINI-gr22-f76g-79xc MINI-gr22-f76g-79xc
MINI-62v8-5qhc-7626 MINI-62v8-5qhc-7626
MINI-c3fc-4q5c-wgx5 MINI-c3fc-4q5c-wgx5
GHSA-xv3p-wcmf-6hp8 Vulnerability in cookie-parser-legacy (GHSA-xv3p-wcmf-6hp8)
vulnerability in cookie-parser-legacy (GHSA-xv3p-wcmf-6hp8). Risk of unauthorized operations or information disclosure. Exploitable via ``moustick``.
GHSA-979m-vm48-369f Vulnerability in moustick (GHSA-979m-vm48-369f)
vulnerability in moustick (GHSA-979m-vm48-369f). Risk of unauthorized operations or information disclosure. Exploitable via ``moustick``.
MINI-33rg-wh88-w3qf MINI-33rg-wh88-w3qf
MINI-2874-9229-2c93 MINI-2874-9229-2c93
MINI-7c3h-qhq5-7fpr MINI-7c3h-qhq5-7fpr
CGA-7j52-257x-qfpp CGA-7j52-257x-qfpp
MINI-h5xw-ffrj-wvv9 MINI-h5xw-ffrj-wvv9
MINI-q6w6-9hfq-px96 MINI-q6w6-9hfq-px96
CVE-2026-49742 Path Traversal in typo3/cms-core (CVE-2026-49742)
path traversal in typo3/cms-core (CVE-2026-49742). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-49741 SQL Injection in typo3/cms-core (CVE-2026-49741)
SQL injection in typo3/cms-core (CVE-2026-49741). Risk of unauthorized operations or information disclosure. Exploitable via ``form_definition``. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-49740 Unsafe Deserialization in typo3/cms-core (CVE-2026-49740)
vulnerability in typo3/cms-core (CVE-2026-49740). Risk of unauthorized operations or information disclosure. Exploitable via ``VariableFrontend``. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-49738 Path Traversal in typo3/cms-core (CVE-2026-49738)
path traversal in typo3/cms-core (CVE-2026-49738). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47352 Vulnerability in typo3/cms-core (CVE-2026-47352)
vulnerability in typo3/cms-core (CVE-2026-47352). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47351 Information Disclosure in typo3/cms-core (CVE-2026-47351)
vulnerability in typo3/cms-core (CVE-2026-47351). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47350 Vulnerability in typo3/cms-core (CVE-2026-47350)
vulnerability in typo3/cms-core (CVE-2026-47350). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47349 Vulnerability in typo3/cms-core (CVE-2026-47349)
vulnerability in typo3/cms-core (CVE-2026-47349). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47348 Cross-Site Scripting (XSS) in typo3/cms-core (CVE-2026-47348)
cross-site scripting in typo3/cms-core (CVE-2026-47348). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47347 Open Redirect in typo3/cms-core (CVE-2026-47347)
vulnerability in typo3/cms-core (CVE-2026-47347). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47346 Vulnerability in typo3/cms-core (CVE-2026-47346)
vulnerability in typo3/cms-core (CVE-2026-47346). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-47343 Vulnerability in typo3/cms-core (CVE-2026-47343)
vulnerability in typo3/cms-core (CVE-2026-47343). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
CVE-2026-11607 Vulnerability in typo3/cms-core (CVE-2026-11607)
vulnerability in typo3/cms-core (CVE-2026-11607). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →