Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-18532 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-19756 Path Traversal in path-traversal (CVE-2026-19756)
path traversal in path-traversal (CVE-2026-19756). Risk of unauthorized operations or information disclosure.
CVE-2026-19753 SSRF (Server-Side Request Forgery) in CVE-2026-19753 (CVE-2026-19753)
SSRF in CVE-2026-19753 (CVE-2026-19753). Risk of unauthorized operations or information disclosure.
CVE-2026-3883 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-73843 Vulnerability in CVE-2026-73843 (CVE-2026-73843)
vulnerability in CVE-2026-73843 (CVE-2026-73843). Successful exploitation can lead to full system takeover.
CVE-2026-73842 Privilege Escalation in CVE-2026-73842 (CVE-2026-73842)
vulnerability in CVE-2026-73842 (CVE-2026-73842). Successful exploitation can lead to full system takeover.
CVE-2026-73841 Vulnerability in CVE-2026-73841 (CVE-2026-73841)
vulnerability in CVE-2026-73841 (CVE-2026-73841). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.2.0` or later.
CVE-2026-73840 Authentication Bypass in CVE-2026-73840 (CVE-2026-73840)
authentication bypass in CVE-2026-73840 (CVE-2026-73840). Risk of unauthorized operations or information disclosure. Exploitable via `POST /api/v1alpha1/autobuild`.
CVE-2026-73667 OS Command Injection in c (CVE-2026-73667)
OS command injection in c (CVE-2026-73667). Successful exploitation can lead to full system takeover.
CVE-2026-73666 Vulnerability in CVE-2026-73666 (CVE-2026-73666)
vulnerability in CVE-2026-73666 (CVE-2026-73666). Confidential information can be exposed externally.
CVE-2026-73665 Vulnerability in CVE-2026-73665 (CVE-2026-73665)
vulnerability in CVE-2026-73665 (CVE-2026-73665). Risk of unauthorized operations or information disclosure.
CVE-2026-73664 Privilege Escalation in CVE-2026-73664 (CVE-2026-73664)
vulnerability in CVE-2026-73664 (CVE-2026-73664). Risk of unauthorized operations or information disclosure.
CVE-2026-73663 SQL Injection in CVE-2026-73663 (CVE-2026-73663)
SQL injection in CVE-2026-73663 (CVE-2026-73663). Risk of unauthorized operations or information disclosure.
CVE-2026-73662 OS Command Injection in CVE-2026-73662 (CVE-2026-73662)
OS command injection in CVE-2026-73662 (CVE-2026-73662). Risk of unauthorized operations or information disclosure.
CVE-2026-73661 Vulnerability in CVE-2026-73661 (CVE-2026-73661)
vulnerability in CVE-2026-73661 (CVE-2026-73661). Risk of unauthorized operations or information disclosure.
CVE-2026-73660 OS Command Injection in CVE-2026-73660 (CVE-2026-73660)
OS command injection in CVE-2026-73660 (CVE-2026-73660). Risk of unauthorized operations or information disclosure.
CVE-2026-73659 Path Traversal in CVE-2026-73659 (CVE-2026-73659)
path traversal in CVE-2026-73659 (CVE-2026-73659). Confidential information can be exposed externally.
CVE-2026-73658 Vulnerability in CVE-2026-73658 (CVE-2026-73658)
vulnerability in CVE-2026-73658 (CVE-2026-73658). Confidential information can be exposed externally.
CVE-2026-73657 Path Traversal in CVE-2026-73657 (CVE-2026-73657)
path traversal in CVE-2026-73657 (CVE-2026-73657). Risk of unauthorized operations or information disclosure. Exploitable via `POST /api/v1/runs/`.
CVE-2026-73479 Vulnerability in CVE-2026-73479 (CVE-2026-73479)
vulnerability in CVE-2026-73479 (CVE-2026-73479). Risk of unauthorized operations or information disclosure.
CVE-2026-73408 SQL Injection in CVE-2026-73408 (CVE-2026-73408)
SQL injection in CVE-2026-73408 (CVE-2026-73408). Successful exploitation can lead to full system takeover.
CVE-2026-73039 Vulnerability in CVE-2026-73039 (CVE-2026-73039)
vulnerability in CVE-2026-73039 (CVE-2026-73039). Risk of unauthorized operations or information disclosure.
CVE-2026-72857 Vulnerability in CVE-2026-72857 (CVE-2026-72857)
vulnerability in CVE-2026-72857 (CVE-2026-72857). Confidential information can be exposed externally.
CVE-2026-72856 Vulnerability in CVE-2026-72856 (CVE-2026-72856)
vulnerability in CVE-2026-72856 (CVE-2026-72856). Confidential information can be exposed externally. Exploitable via `PUT /api/global/users/tenant/owner`.
CVE-2026-72855 SSRF (Server-Side Request Forgery) in CVE-2026-72855 (CVE-2026-72855)
SSRF in CVE-2026-72855 (CVE-2026-72855). Confidential information can be exposed externally.
CVE-2026-72853 SQL Injection in sqli (CVE-2026-72853)
SQL injection in sqli (CVE-2026-72853). Successful exploitation can lead to full system takeover.
CVE-2026-72851 SQL Injection in sqli (CVE-2026-72851)
SQL injection in sqli (CVE-2026-72851). Successful exploitation can lead to full system takeover.
CVE-2026-72850 Path Traversal in CVE-2026-72850 (CVE-2026-72850)
path traversal in CVE-2026-72850 (CVE-2026-72850). Successful exploitation can lead to full system takeover.
CVE-2026-72849 Cross-Site Request Forgery (CSRF) in CVE-2026-72849 (CVE-2026-72849)
vulnerability in CVE-2026-72849 (CVE-2026-72849). Confidential information can be exposed externally.
CVE-2026-72842 Vulnerability in path-traversal (CVE-2026-72842)
vulnerability in path-traversal (CVE-2026-72842). Successful exploitation can lead to full system takeover. Exploitable via ``lxc_name``.
CVE-2026-72841 Vulnerability in path-traversal (CVE-2026-72841)
vulnerability in path-traversal (CVE-2026-72841). Successful exploitation can lead to full system takeover.
CVE-2026-72840 Vulnerability in CVE-2026-72840 (CVE-2026-72840)
vulnerability in CVE-2026-72840 (CVE-2026-72840). Successful exploitation can lead to full system takeover.
CVE-2026-72839 Vulnerability in CVE-2026-72839 (CVE-2026-72839)
vulnerability in CVE-2026-72839 (CVE-2026-72839). Successful exploitation can lead to full system takeover.
CVE-2026-72776 Vulnerability in CVE-2026-72776 (CVE-2026-72776)
vulnerability in CVE-2026-72776 (CVE-2026-72776). Successful exploitation can lead to full system takeover. Exploitable via `POST /query`.
CVE-2026-56865 Vulnerability in CVE-2026-56865 (CVE-2026-56865)
vulnerability in CVE-2026-56865 (CVE-2026-56865). Successful exploitation can lead to full system takeover.
CVE-2026-56864 Vulnerability in CVE-2026-56864 (CVE-2026-56864)
vulnerability in CVE-2026-56864 (CVE-2026-56864). Confidential information can be exposed externally.
CVE-2026-56862 Vulnerability in CVE-2026-56862 (CVE-2026-56862)
vulnerability in CVE-2026-56862 (CVE-2026-56862). Risk of unauthorized operations or information disclosure.
CVE-2026-56860 Vulnerability in CVE-2026-56860 (CVE-2026-56860)
vulnerability in CVE-2026-56860 (CVE-2026-56860). Risk of unauthorized operations or information disclosure.
CVE-2026-56859 Vulnerability in CVE-2026-56859 (CVE-2026-56859)
vulnerability in CVE-2026-56859 (CVE-2026-56859). Risk of unauthorized operations or information disclosure.
CVE-2026-56858 Cross-Site Scripting (XSS) in CVE-2026-56858 (CVE-2026-56858)
cross-site scripting in CVE-2026-56858 (CVE-2026-56858). Risk of unauthorized operations or information disclosure.
CVE-2026-56853 Vulnerability in CVE-2026-56853 (CVE-2026-56853)
vulnerability in CVE-2026-56853 (CVE-2026-56853). Risk of unauthorized operations or information disclosure.
CVE-2026-33818 Vulnerability in CVE-2026-33818 (CVE-2026-33818)
vulnerability in CVE-2026-33818 (CVE-2026-33818). Risk of unauthorized operations or information disclosure.
CVE-2026-19752 SSRF (Server-Side Request Forgery) in CVE-2026-19752 (CVE-2026-19752)
SSRF in CVE-2026-19752 (CVE-2026-19752). Risk of unauthorized operations or information disclosure.
CVE-2026-19751 SSRF (Server-Side Request Forgery) in CVE-2026-19751 (CVE-2026-19751)
SSRF in CVE-2026-19751 (CVE-2026-19751). Risk of unauthorized operations or information disclosure.
CVE-2026-19750 Vulnerability in CVE-2026-19750 (CVE-2026-19750)
vulnerability in CVE-2026-19750 (CVE-2026-19750). Successful exploitation can lead to full system takeover.
CVE-2026-19749 Authentication Bypass in CVE-2026-19749 (CVE-2026-19749)
authentication bypass in CVE-2026-19749 (CVE-2026-19749). Risk of unauthorized operations or information disclosure.
CVE-2026-18511 Out-of-Bounds Write in ibm (CVE-2026-18511)
out-of-bounds write in ibm (CVE-2026-18511). Risk of unauthorized operations or information disclosure.
CVE-2026-73480 Vulnerability in CVE-2026-73480 (CVE-2026-73480)
vulnerability in CVE-2026-73480 (CVE-2026-73480). Risk of unauthorized operations or information disclosure.
CVE-2026-8715 Vulnerability in privilege-escalation (CVE-2026-8715)
vulnerability in privilege-escalation (CVE-2026-8715). Confidential information can be exposed externally.
CVE-2026-19748 Vulnerability in CVE-2026-19748 (CVE-2026-19748)
vulnerability in CVE-2026-19748 (CVE-2026-19748). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →