Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-46wm-6hpr-r2c9 |
|
MINI-46wm-6hpr-r2c9 |
| MINI-v8cm-h6xc-2ffp |
|
MINI-v8cm-h6xc-2ffp |
| MINI-phpg-5h2q-m4c6 |
|
MINI-phpg-5h2q-m4c6 |
| MINI-qf3p-4hj8-h565 |
|
MINI-qf3p-4hj8-h565 |
| MINI-v7j7-43qv-cc4v |
|
MINI-v7j7-43qv-cc4v |
| MINI-vg2w-jc94-q4j5 |
|
MINI-vg2w-jc94-q4j5 |
| MINI-6g35-cq5x-5xhq |
|
MINI-6g35-cq5x-5xhq |
| MINI-f492-mwpc-5869 |
|
MINI-f492-mwpc-5869 |
| MINI-2qff-84p3-wp2c |
|
MINI-2qff-84p3-wp2c |
| MINI-8gw5-5x2r-6p22 |
|
MINI-8gw5-5x2r-6p22 |
| MINI-4pf5-xx9x-4x3w |
|
MINI-4pf5-xx9x-4x3w |
| MINI-wc64-63gm-pjm3 |
|
MINI-wc64-63gm-pjm3 |
| MINI-3qq4-68wg-qf7p |
|
MINI-3qq4-68wg-qf7p |
| MINI-fwq2-c665-fvph |
|
MINI-fwq2-c665-fvph |
| MINI-vgv8-j5j6-5w46 |
|
MINI-vgv8-j5j6-5w46 |
| MINI-597h-r7mg-96r6 |
|
MINI-597h-r7mg-96r6 |
| MINI-gfh7-3p8r-7vpv |
|
MINI-gfh7-3p8r-7vpv |
| SUSE-SU-2026:22072-1 |
|
Vulnerability in graphite2 (SUSE-SU-2026:22072-1)
vulnerability in graphite2 (SUSE-SU-2026:22072-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.3.14-slfo.1.1_2.1` or later.
|
| ROOT-APP-MAVEN-CVE-2024-12798 |
|
Vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2024-12798)
vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2024-12798). Data can be tampered with by attackers. Mitigation: upgrade to `1.4.11-root.io.5, 1.1.3-root.io.2` or later.
|
| ROOT-APP-MAVEN-CVE-2025-11226 |
|
Vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2025-11226)
vulnerability in io.root.ch.qos.logback:logback-core (ROOT-APP-MAVEN-CVE-2025-11226). Confidential information can be exposed externally. Mitigation: upgrade to `1.5.18-root.io.1, 1.4.11-root.io.5, 1.1.3-root.io.2` or later.
|
| CGA-3cx9-gq56-cp35 |
|
CGA-3cx9-gq56-cp35 |
| MINI-p448-wfvx-mxfh |
|
MINI-p448-wfvx-mxfh |
| MINI-h6qg-47hx-mwrg |
|
MINI-h6qg-47hx-mwrg |
| MINI-4hxr-2qgx-crfx |
|
MINI-4hxr-2qgx-crfx |
| MINI-jg3w-q7gm-7v23 |
|
MINI-jg3w-q7gm-7v23 |
| MINI-37v4-x4pj-j524 |
|
MINI-37v4-x4pj-j524 |
| MINI-gr22-f76g-79xc |
|
MINI-gr22-f76g-79xc |
| MINI-62v8-5qhc-7626 |
|
MINI-62v8-5qhc-7626 |
| MINI-c3fc-4q5c-wgx5 |
|
MINI-c3fc-4q5c-wgx5 |
| GHSA-xv3p-wcmf-6hp8 |
|
Vulnerability in cookie-parser-legacy (GHSA-xv3p-wcmf-6hp8)
vulnerability in cookie-parser-legacy (GHSA-xv3p-wcmf-6hp8). Risk of unauthorized operations or information disclosure. Exploitable via ``moustick``.
|
| GHSA-979m-vm48-369f |
|
Vulnerability in moustick (GHSA-979m-vm48-369f)
vulnerability in moustick (GHSA-979m-vm48-369f). Risk of unauthorized operations or information disclosure. Exploitable via ``moustick``.
|
| MINI-33rg-wh88-w3qf |
|
MINI-33rg-wh88-w3qf |
| MINI-2874-9229-2c93 |
|
MINI-2874-9229-2c93 |
| MINI-7c3h-qhq5-7fpr |
|
MINI-7c3h-qhq5-7fpr |
| CGA-7j52-257x-qfpp |
|
CGA-7j52-257x-qfpp |
| MINI-h5xw-ffrj-wvv9 |
|
MINI-h5xw-ffrj-wvv9 |
| MINI-q6w6-9hfq-px96 |
|
MINI-q6w6-9hfq-px96 |
| CVE-2026-49742 |
|
Path Traversal in typo3/cms-core (CVE-2026-49742)
path traversal in typo3/cms-core (CVE-2026-49742). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-49741 |
|
SQL Injection in typo3/cms-core (CVE-2026-49741)
SQL injection in typo3/cms-core (CVE-2026-49741). Risk of unauthorized operations or information disclosure. Exploitable via ``form_definition``. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-49740 |
|
Unsafe Deserialization in typo3/cms-core (CVE-2026-49740)
vulnerability in typo3/cms-core (CVE-2026-49740). Risk of unauthorized operations or information disclosure. Exploitable via ``VariableFrontend``. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-49738 |
|
Path Traversal in typo3/cms-core (CVE-2026-49738)
path traversal in typo3/cms-core (CVE-2026-49738). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47352 |
|
Vulnerability in typo3/cms-core (CVE-2026-47352)
vulnerability in typo3/cms-core (CVE-2026-47352). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47351 |
|
Information Disclosure in typo3/cms-core (CVE-2026-47351)
vulnerability in typo3/cms-core (CVE-2026-47351). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47350 |
|
Vulnerability in typo3/cms-core (CVE-2026-47350)
vulnerability in typo3/cms-core (CVE-2026-47350). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47349 |
|
Vulnerability in typo3/cms-core (CVE-2026-47349)
vulnerability in typo3/cms-core (CVE-2026-47349). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47348 |
|
Cross-Site Scripting (XSS) in typo3/cms-core (CVE-2026-47348)
cross-site scripting in typo3/cms-core (CVE-2026-47348). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47347 |
|
Open Redirect in typo3/cms-core (CVE-2026-47347)
vulnerability in typo3/cms-core (CVE-2026-47347). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47346 |
|
Vulnerability in typo3/cms-core (CVE-2026-47346)
vulnerability in typo3/cms-core (CVE-2026-47346). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-47343 |
|
Vulnerability in typo3/cms-core (CVE-2026-47343)
vulnerability in typo3/cms-core (CVE-2026-47343). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|
| CVE-2026-11607 |
|
Vulnerability in typo3/cms-core (CVE-2026-11607)
vulnerability in typo3/cms-core (CVE-2026-11607). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.3.3` or later.
|