Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CGA-5xq4-3vwm-2rg6 CGA-5xq4-3vwm-2rg6
CGA-hr99-f8jg-2v2v CGA-hr99-f8jg-2v2v
CGA-mpqv-9rcg-5f2m CGA-mpqv-9rcg-5f2m
CGA-7x9r-rm3p-549m CGA-7x9r-rm3p-549m
CGA-h2vg-f34j-r754 CGA-h2vg-f34j-r754
CGA-85pm-hx42-m62q CGA-85pm-hx42-m62q
CGA-2xxw-65m9-xjqg CGA-2xxw-65m9-xjqg
CGA-vv56-27gg-2xrg CGA-vv56-27gg-2xrg
CGA-qwv9-9x49-6mwh CGA-qwv9-9x49-6mwh
CGA-923x-w8g2-r837 CGA-923x-w8g2-r837
CGA-xh6c-8rcc-xv88 CGA-xh6c-8rcc-xv88
CGA-6hhp-4mx7-qm3p CGA-6hhp-4mx7-qm3p
CGA-2j8j-6h2x-3h63 CGA-2j8j-6h2x-3h63
CGA-5qc8-43gr-vxrh CGA-5qc8-43gr-vxrh
CGA-v3v4-fwqv-v7vr CGA-v3v4-fwqv-v7vr
CGA-63j8-mxx2-wjfh CGA-63j8-mxx2-wjfh
CVE-2026-47383 Cross-Site Scripting (XSS) in nocodb (CVE-2026-47383)
cross-site scripting in nocodb (CVE-2026-47383). Risk of unauthorized operations or information disclosure. Exploitable via ``localStorage``. Mitigation: upgrade to `2026.05.1` or later.
CVE-2026-47382 SSRF (Server-Side Request Forgery) in nocodb (CVE-2026-47382)
SSRF in nocodb (CVE-2026-47382). Risk of unauthorized operations or information disclosure. Exploitable via ``localhost``. Mitigation: upgrade to `2026.05.1` or later.
CVE-2026-9270 Vulnerability in binary (CVE-2026-9270)
vulnerability in binary (CVE-2026-9270). Confidential information can be exposed externally.
CVE-2026-48102 Out-of-Bounds Read in cpp (CVE-2026-48102)
vulnerability in cpp (CVE-2026-48102). Risk of unauthorized operations or information disclosure.
CVE-2026-48101 Vulnerability in 7-zip (CVE-2026-48101)
vulnerability in 7-zip (CVE-2026-48101). Confidential information can be exposed externally.
CVE-2026-11362 Vulnerability in binary (CVE-2026-11362)
vulnerability in binary (CVE-2026-11362). Successful exploitation can lead to full system takeover.
CVE-2026-11336 Vulnerability in CVE-2026-11336 (CVE-2026-11336)
vulnerability in CVE-2026-11336 (CVE-2026-11336). Risk of unauthorized operations or information disclosure.
SUSE-SU-2026:22076-1 Vulnerability in kernel-default (SUSE-SU-2026:22076-1)
vulnerability in kernel-default (SUSE-SU-2026:22076-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.0-160000.34.1` or later.
SUSE-SU-2026:22043-1 Vulnerability in kernel-obs-build (SUSE-SU-2026:22043-1)
vulnerability in kernel-obs-build (SUSE-SU-2026:22043-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.0-160000.34.1` or later.
CVE-2026-47381 Vulnerability in nocodb (CVE-2026-47381)
vulnerability in nocodb (CVE-2026-47381). Risk of unauthorized operations or information disclosure. Exploitable via ``testConnection``. Mitigation: upgrade to `2026.05.1` or later.
CVE-2026-47380 Vulnerability in nocodb (CVE-2026-47380)
vulnerability in nocodb (CVE-2026-47380). Risk of unauthorized operations or information disclosure. Exploitable via ``auth.service.ts``. Mitigation: upgrade to `2026.04.1` or later.
CVE-2026-47379 Information Disclosure in nocodb (CVE-2026-47379)
vulnerability in nocodb (CVE-2026-47379). Risk of unauthorized operations or information disclosure. Exploitable via ``View.ts``. Mitigation: upgrade to `2026.05.1` or later.
CVE-2026-47378 Vulnerability in nocodb (CVE-2026-47378)
vulnerability in nocodb (CVE-2026-47378). Risk of unauthorized operations or information disclosure. Exploitable via ``sanitizeListArgsForPublicView``. Mitigation: upgrade to `2026.04.1` or later.
openSUSE-SU-2026:20914-1 Vulnerability in openSUSE-SU-2026:20914-1 (openSUSE-SU-2026:20914-1)
vulnerability in openSUSE-SU-2026:20914-1 (openSUSE-SU-2026:20914-1). Risk of unauthorized operations or information disclosure.
CVE-2026-47377 Open Redirect in nocodb (CVE-2026-47377)
vulnerability in nocodb (CVE-2026-47377). Risk of unauthorized operations or information disclosure. Exploitable via ``hashRedirect``. Mitigation: upgrade to `2026.04.1` or later.
CVE-2026-47376 Cross-Site Scripting (XSS) in nocodb (CVE-2026-47376)
cross-site scripting in nocodb (CVE-2026-47376). Risk of unauthorized operations or information disclosure. Exploitable via ``dataset.token``. Mitigation: upgrade to `2026.04.1` or later.
CVE-2026-47375 SQL Injection in nocodb (CVE-2026-47375)
SQL injection in nocodb (CVE-2026-47375). Risk of unauthorized operations or information disclosure. Exploitable via ``columnAdd``. Mitigation: upgrade to `2026.04.1` or later.
CVE-2026-47279 Vulnerability in nocodb (CVE-2026-47279)
vulnerability in nocodb (CVE-2026-47279). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/v2/public/shared-view/`. Mitigation: upgrade to `2026.05.1` or later.
OESA-2026-2581 Vulnerability in kernel (OESA-2026-2581)
vulnerability in kernel (OESA-2026-2581). Risk of unauthorized operations or information disclosure. Exploitable via ``rx_classifier_drops``. Mitigation: upgrade to `6.6.0-145.1.14.152.oe2403sp1` or later.
CGA-95m8-jfw4-qwph CGA-95m8-jfw4-qwph
CGA-jq5c-hx26-2942 CGA-jq5c-hx26-2942
CGA-8gxh-j5cq-qpg4 CGA-8gxh-j5cq-qpg4
CGA-pm52-8p8h-xc59 CGA-pm52-8p8h-xc59
CGA-897h-9fhv-34f2 CGA-897h-9fhv-34f2
CGA-v4v3-6cxc-492w CGA-v4v3-6cxc-492w
CGA-q8jm-q54r-cf98 CGA-q8jm-q54r-cf98
CGA-h5w4-v678-wp84 CGA-h5w4-v678-wp84
CGA-f7fx-4wqq-m2g6 CGA-f7fx-4wqq-m2g6
CGA-rwh4-j332-7x6g CGA-rwh4-j332-7x6g
CGA-jq9w-r4mj-qq8g CGA-jq9w-r4mj-qq8g
OESA-2026-2580 Vulnerability in kernel (OESA-2026-2580)
vulnerability in kernel (OESA-2026-2580). Risk of unauthorized operations or information disclosure. Exploitable via ``netlabelctl``. Mitigation: upgrade to `5.10.0-317.0.0.220.oe2203sp4` or later.
OESA-2026-2579 Vulnerability in kernel (OESA-2026-2579)
vulnerability in kernel (OESA-2026-2579). Risk of unauthorized operations or information disclosure. Exploitable via ``len``. Mitigation: upgrade to `4.19.90-2606.1.0.0375.oe2003sp4` or later.
OESA-2026-2578 Vulnerability in ruby (OESA-2026-2578)
vulnerability in ruby (OESA-2026-2578). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.5.8-138.oe2003sp4` or later.
OESA-2026-2577 Vulnerability in samba (OESA-2026-2577)
vulnerability in samba (OESA-2026-2577). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.11.12-38.oe2003sp4` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →