Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CGA-5xq4-3vwm-2rg6 |
|
CGA-5xq4-3vwm-2rg6 |
| CGA-hr99-f8jg-2v2v |
|
CGA-hr99-f8jg-2v2v |
| CGA-mpqv-9rcg-5f2m |
|
CGA-mpqv-9rcg-5f2m |
| CGA-7x9r-rm3p-549m |
|
CGA-7x9r-rm3p-549m |
| CGA-h2vg-f34j-r754 |
|
CGA-h2vg-f34j-r754 |
| CGA-85pm-hx42-m62q |
|
CGA-85pm-hx42-m62q |
| CGA-2xxw-65m9-xjqg |
|
CGA-2xxw-65m9-xjqg |
| CGA-vv56-27gg-2xrg |
|
CGA-vv56-27gg-2xrg |
| CGA-qwv9-9x49-6mwh |
|
CGA-qwv9-9x49-6mwh |
| CGA-923x-w8g2-r837 |
|
CGA-923x-w8g2-r837 |
| CGA-xh6c-8rcc-xv88 |
|
CGA-xh6c-8rcc-xv88 |
| CGA-6hhp-4mx7-qm3p |
|
CGA-6hhp-4mx7-qm3p |
| CGA-2j8j-6h2x-3h63 |
|
CGA-2j8j-6h2x-3h63 |
| CGA-5qc8-43gr-vxrh |
|
CGA-5qc8-43gr-vxrh |
| CGA-v3v4-fwqv-v7vr |
|
CGA-v3v4-fwqv-v7vr |
| CGA-63j8-mxx2-wjfh |
|
CGA-63j8-mxx2-wjfh |
| CVE-2026-47383 |
|
Cross-Site Scripting (XSS) in nocodb (CVE-2026-47383)
cross-site scripting in nocodb (CVE-2026-47383). Risk of unauthorized operations or information disclosure. Exploitable via ``localStorage``. Mitigation: upgrade to `2026.05.1` or later.
|
| CVE-2026-47382 |
|
SSRF (Server-Side Request Forgery) in nocodb (CVE-2026-47382)
SSRF in nocodb (CVE-2026-47382). Risk of unauthorized operations or information disclosure. Exploitable via ``localhost``. Mitigation: upgrade to `2026.05.1` or later.
|
| CVE-2026-9270 |
|
Vulnerability in binary (CVE-2026-9270)
vulnerability in binary (CVE-2026-9270). Confidential information can be exposed externally.
|
| CVE-2026-48102 |
|
Out-of-Bounds Read in cpp (CVE-2026-48102)
vulnerability in cpp (CVE-2026-48102). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48101 |
|
Vulnerability in 7-zip (CVE-2026-48101)
vulnerability in 7-zip (CVE-2026-48101). Confidential information can be exposed externally.
|
| CVE-2026-11362 |
|
Vulnerability in binary (CVE-2026-11362)
vulnerability in binary (CVE-2026-11362). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11336 |
|
Vulnerability in CVE-2026-11336 (CVE-2026-11336)
vulnerability in CVE-2026-11336 (CVE-2026-11336). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:22076-1 |
|
Vulnerability in kernel-default (SUSE-SU-2026:22076-1)
vulnerability in kernel-default (SUSE-SU-2026:22076-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.0-160000.34.1` or later.
|
| SUSE-SU-2026:22043-1 |
|
Vulnerability in kernel-obs-build (SUSE-SU-2026:22043-1)
vulnerability in kernel-obs-build (SUSE-SU-2026:22043-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.0-160000.34.1` or later.
|
| CVE-2026-47381 |
|
Vulnerability in nocodb (CVE-2026-47381)
vulnerability in nocodb (CVE-2026-47381). Risk of unauthorized operations or information disclosure. Exploitable via ``testConnection``. Mitigation: upgrade to `2026.05.1` or later.
|
| CVE-2026-47380 |
|
Vulnerability in nocodb (CVE-2026-47380)
vulnerability in nocodb (CVE-2026-47380). Risk of unauthorized operations or information disclosure. Exploitable via ``auth.service.ts``. Mitigation: upgrade to `2026.04.1` or later.
|
| CVE-2026-47379 |
|
Information Disclosure in nocodb (CVE-2026-47379)
vulnerability in nocodb (CVE-2026-47379). Risk of unauthorized operations or information disclosure. Exploitable via ``View.ts``. Mitigation: upgrade to `2026.05.1` or later.
|
| CVE-2026-47378 |
|
Vulnerability in nocodb (CVE-2026-47378)
vulnerability in nocodb (CVE-2026-47378). Risk of unauthorized operations or information disclosure. Exploitable via ``sanitizeListArgsForPublicView``. Mitigation: upgrade to `2026.04.1` or later.
|
| openSUSE-SU-2026:20914-1 |
|
Vulnerability in openSUSE-SU-2026:20914-1 (openSUSE-SU-2026:20914-1)
vulnerability in openSUSE-SU-2026:20914-1 (openSUSE-SU-2026:20914-1). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47377 |
|
Open Redirect in nocodb (CVE-2026-47377)
vulnerability in nocodb (CVE-2026-47377). Risk of unauthorized operations or information disclosure. Exploitable via ``hashRedirect``. Mitigation: upgrade to `2026.04.1` or later.
|
| CVE-2026-47376 |
|
Cross-Site Scripting (XSS) in nocodb (CVE-2026-47376)
cross-site scripting in nocodb (CVE-2026-47376). Risk of unauthorized operations or information disclosure. Exploitable via ``dataset.token``. Mitigation: upgrade to `2026.04.1` or later.
|
| CVE-2026-47375 |
|
SQL Injection in nocodb (CVE-2026-47375)
SQL injection in nocodb (CVE-2026-47375). Risk of unauthorized operations or information disclosure. Exploitable via ``columnAdd``. Mitigation: upgrade to `2026.04.1` or later.
|
| CVE-2026-47279 |
|
Vulnerability in nocodb (CVE-2026-47279)
vulnerability in nocodb (CVE-2026-47279). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/v2/public/shared-view/`. Mitigation: upgrade to `2026.05.1` or later.
|
| OESA-2026-2581 |
|
Vulnerability in kernel (OESA-2026-2581)
vulnerability in kernel (OESA-2026-2581). Risk of unauthorized operations or information disclosure. Exploitable via ``rx_classifier_drops``. Mitigation: upgrade to `6.6.0-145.1.14.152.oe2403sp1` or later.
|
| CGA-95m8-jfw4-qwph |
|
CGA-95m8-jfw4-qwph |
| CGA-jq5c-hx26-2942 |
|
CGA-jq5c-hx26-2942 |
| CGA-8gxh-j5cq-qpg4 |
|
CGA-8gxh-j5cq-qpg4 |
| CGA-pm52-8p8h-xc59 |
|
CGA-pm52-8p8h-xc59 |
| CGA-897h-9fhv-34f2 |
|
CGA-897h-9fhv-34f2 |
| CGA-v4v3-6cxc-492w |
|
CGA-v4v3-6cxc-492w |
| CGA-q8jm-q54r-cf98 |
|
CGA-q8jm-q54r-cf98 |
| CGA-h5w4-v678-wp84 |
|
CGA-h5w4-v678-wp84 |
| CGA-f7fx-4wqq-m2g6 |
|
CGA-f7fx-4wqq-m2g6 |
| CGA-rwh4-j332-7x6g |
|
CGA-rwh4-j332-7x6g |
| CGA-jq9w-r4mj-qq8g |
|
CGA-jq9w-r4mj-qq8g |
| OESA-2026-2580 |
|
Vulnerability in kernel (OESA-2026-2580)
vulnerability in kernel (OESA-2026-2580). Risk of unauthorized operations or information disclosure. Exploitable via ``netlabelctl``. Mitigation: upgrade to `5.10.0-317.0.0.220.oe2203sp4` or later.
|
| OESA-2026-2579 |
|
Vulnerability in kernel (OESA-2026-2579)
vulnerability in kernel (OESA-2026-2579). Risk of unauthorized operations or information disclosure. Exploitable via ``len``. Mitigation: upgrade to `4.19.90-2606.1.0.0375.oe2003sp4` or later.
|
| OESA-2026-2578 |
|
Vulnerability in ruby (OESA-2026-2578)
vulnerability in ruby (OESA-2026-2578). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.5.8-138.oe2003sp4` or later.
|
| OESA-2026-2577 |
|
Vulnerability in samba (OESA-2026-2577)
vulnerability in samba (OESA-2026-2577). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.11.12-38.oe2003sp4` or later.
|