Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-jcpf-prg8-6276 |
|
MINI-jcpf-prg8-6276 |
| MINI-8mmx-x2c5-p8qv |
|
MINI-8mmx-x2c5-p8qv |
| CVE-2026-47725 |
|
Privilege Escalation in github.com/juev/nebula-mesh (CVE-2026-47725)
vulnerability in github.com/juev/nebula-mesh (CVE-2026-47725). Risk of unauthorized operations or information disclosure. Exploitable via `GET /ui/logout`. Mitigation: upgrade to `0.3.3` or later.
|
| MINI-6rx3-3696-8cmr |
|
MINI-6rx3-3696-8cmr |
| CVE-2026-47724 |
|
Vulnerability in github.com/juev/nebula-mesh (CVE-2026-47724)
vulnerability in github.com/juev/nebula-mesh (CVE-2026-47724). Successful exploitation can lead to full system takeover. Exploitable via ``loadAccessibleCA``. Mitigation: upgrade to `0.3.4` or later.
|
| CVE-2026-47723 |
|
Vulnerability in github.com/juev/nebula-mesh (CVE-2026-47723)
vulnerability in github.com/juev/nebula-mesh (CVE-2026-47723). Risk of unauthorized operations or information disclosure. Exploitable via ``grep``. Mitigation: upgrade to `0.3.1` or later.
|
| MINI-h2f2-5h93-q6mp |
|
MINI-h2f2-5h93-q6mp |
| MINI-3v6x-pm82-mm8c |
|
MINI-3v6x-pm82-mm8c |
| CVE-2026-47722 |
|
Code Injection in github.com/juev/nebula-mesh (CVE-2026-47722)
code injection in github.com/juev/nebula-mesh (CVE-2026-47722). Risk of unauthorized operations or information disclosure. Exploitable via ``ListenHost``. Mitigation: upgrade to `0.3.2` or later.
|
| MINI-rwpr-4gpc-r6cm |
|
MINI-rwpr-4gpc-r6cm |
| MINI-vg2p-gc35-4jwq |
|
MINI-vg2p-gc35-4jwq |
| MINI-4fmv-v76g-wqw2 |
|
MINI-4fmv-v76g-wqw2 |
| MINI-626q-6cp2-gvx3 |
|
MINI-626q-6cp2-gvx3 |
| CVE-2026-47721 |
|
Vulnerability in fuxa-server (CVE-2026-47721)
vulnerability in fuxa-server (CVE-2026-47721). Risk of unauthorized operations or information disclosure. Exploitable via `POST /api/scheduler`.
|
| CVE-2026-47720 |
|
SQL Injection in fuxa-server (CVE-2026-47720)
SQL injection in fuxa-server (CVE-2026-47720). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/daq`.
|
| CVE-2026-47719 |
|
SSRF (Server-Side Request Forgery) in fuxa-server (CVE-2026-47719)
SSRF in fuxa-server (CVE-2026-47719). Confidential information can be exposed externally. Exploitable via ``property.address``.
|
| MINI-6f82-56p2-qcxc |
|
MINI-6f82-56p2-qcxc |
| CVE-2026-47712 |
|
Path Traversal in dulwich (CVE-2026-47712)
path traversal in dulwich (CVE-2026-47712). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.2.5` or later.
|
| CVE-2026-47693 |
|
Vulnerability in poweradmin/poweradmin (CVE-2026-47693)
vulnerability in poweradmin/poweradmin (CVE-2026-47693). Confidential information can be exposed externally. Exploitable via ``user``. Mitigation: upgrade to `4.3.3` or later.
|
| CVE-2026-47252 |
|
Code Injection in github.com/julien040/anyquery/plugins/chrome (CVE-2026-47252)
code injection in github.com/julien040/anyquery/plugins/chrome (CVE-2026-47252). Successful exploitation can lead to full system takeover. Exploitable via ``chrome_tabs``. Mitigation: upgrade to `0.0.0-20240826075852-c651df0b8767` or later.
|
| CVE-2026-47691 |
|
Vulnerability in io.netty:netty-resolver-dns (CVE-2026-47691)
vulnerability in io.netty:netty-resolver-dns (CVE-2026-47691). Confidential information can be exposed externally. Exploitable via ``DnsResolveContext``. Mitigation: upgrade to `4.1.135.Final` or later.
|
| CVE-2026-47244 |
|
Vulnerability in io.netty:netty-codec-http2 (CVE-2026-47244)
vulnerability in io.netty:netty-codec-http2 (CVE-2026-47244). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.1.135.Final` or later.
|
| CVE-2026-46340 |
|
Vulnerability in io.netty:netty-transport-sctp (CVE-2026-46340)
vulnerability in io.netty:netty-transport-sctp (CVE-2026-46340). Risk of unauthorized operations or information disclosure. Exploitable via ``complete``. Mitigation: upgrade to `4.1.135.Final` or later.
|
| CVE-2026-45674 |
|
Vulnerability in io.netty:netty-resolver-dns (CVE-2026-45674)
vulnerability in io.netty:netty-resolver-dns (CVE-2026-45674). Confidential information can be exposed externally. Mitigation: upgrade to `4.1.135.Final` or later.
|
| CVE-2026-45673 |
|
Vulnerability in io.netty:netty-resolver-dns (CVE-2026-45673)
vulnerability in io.netty:netty-resolver-dns (CVE-2026-45673). Data can be tampered with by attackers. Exploitable via ``DnsQueryIdSpace``. Mitigation: upgrade to `4.1.135.Final` or later.
|
| CVE-2026-45536 |
|
Information Disclosure in io.netty:netty-transport-native-epoll (CVE-2026-45536)
vulnerability in io.netty:netty-transport-native-epoll (CVE-2026-45536). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.1.135.Final` or later.
|
| CVE-2026-45416 |
|
Vulnerability in io.netty:netty-handler (CVE-2026-45416)
vulnerability in io.netty:netty-handler (CVE-2026-45416). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.1.135.Final` or later.
|
| CVE-2026-45034 |
|
Unsafe Deserialization in phpoffice/phpspreadsheet (CVE-2026-45034)
vulnerability in phpoffice/phpspreadsheet (CVE-2026-45034). Risk of unauthorized operations or information disclosure. Exploitable via ``parse_url``. Mitigation: upgrade to `1.30.5` or later.
|
| MINI-ff3v-h5wj-qc69 |
|
MINI-ff3v-h5wj-qc69 |
| MINI-q6gq-cwfg-p7vx |
|
MINI-q6gq-cwfg-p7vx |
| CVE-2026-44894 |
|
Vulnerability in io.netty:netty-codec-classes-quic (CVE-2026-44894)
vulnerability in io.netty:netty-codec-classes-quic (CVE-2026-44894). Data can be tampered with by attackers. Mitigation: upgrade to `4.2.15.Final` or later.
|
| MINI-4c5j-rp5j-6v55 |
|
MINI-4c5j-rp5j-6v55 |
| MINI-93cx-q4g5-77w5 |
|
MINI-93cx-q4g5-77w5 |
| MINI-m362-prqh-8h3f |
|
MINI-m362-prqh-8h3f |
| MINI-p22v-rrvp-43xh |
|
MINI-p22v-rrvp-43xh |
| MINI-v798-rf85-r59v |
|
MINI-v798-rf85-r59v |
| MINI-88w2-vfpv-xw35 |
|
MINI-88w2-vfpv-xw35 |
| MINI-3pf5-j66h-xccx |
|
MINI-3pf5-j66h-xccx |
| MINI-6wjc-qqq3-534c |
|
MINI-6wjc-qqq3-534c |
| MINI-gmp8-cvm7-vjxp |
|
MINI-gmp8-cvm7-vjxp |
| MINI-q92r-q9f9-rgwx |
|
MINI-q92r-q9f9-rgwx |
| MINI-vxr6-x887-348j |
|
MINI-vxr6-x887-348j |
| MINI-3qh2-hq5x-gpv6 |
|
MINI-3qh2-hq5x-gpv6 |
| MINI-w2qj-qvfr-4vhj |
|
MINI-w2qj-qvfr-4vhj |
| MINI-m7w6-p28q-mjqr |
|
MINI-m7w6-p28q-mjqr |
| MINI-wggj-hvh3-7856 |
|
MINI-wggj-hvh3-7856 |
| MINI-q4hx-mhw7-rhp8 |
|
MINI-q4hx-mhw7-rhp8 |
| MINI-wph4-wvqg-m49w |
|
MINI-wph4-wvqg-m49w |
| MINI-wp34-gx5g-4g6r |
|
MINI-wp34-gx5g-4g6r |
| MINI-jhm2-xf77-x329 |
|
MINI-jhm2-xf77-x329 |