Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-17029 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary code due to an out...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary code due to an out...
CVE-2026-17004 Vulnerability in dos (CVE-2026-17004)
vulnerability in dos (CVE-2026-17004). Risk of unauthorized operations or information disclosure.
CVE-2026-16987 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to...
CVE-2026-16982 Out-of-Bounds Write in dos (CVE-2026-16982)
out-of-bounds write in dos (CVE-2026-16982). Risk of unauthorized operations or information disclosure.
CVE-2026-16975 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary...
CVE-2026-16967 Vulnerability in ibm (CVE-2026-16967)
vulnerability in ibm (CVE-2026-16967). Successful exploitation can lead to full system takeover.
CVE-2026-16961 SQL Injection in sqli (CVE-2026-16961)
SQL injection in sqli (CVE-2026-16961). Confidential information can be exposed externally.
CVE-2026-16929 Out-of-Bounds Write in ibm (CVE-2026-16929)
out-of-bounds write in ibm (CVE-2026-16929). Risk of unauthorized operations or information disclosure.
CVE-2026-16908 Path Traversal in path-traversal (CVE-2026-16908)
path traversal in path-traversal (CVE-2026-16908). Successful exploitation can lead to full system takeover.
CVE-2026-16898 Vulnerability in ibm (CVE-2026-16898)
vulnerability in ibm (CVE-2026-16898). Successful exploitation can lead to full system takeover.
CVE-2026-16896 Vulnerability in ibm (CVE-2026-16896)
vulnerability in ibm (CVE-2026-16896). Confidential information can be exposed externally.
CVE-2026-16887 IBM i 7.6 could allow a remote attacker to cause a denial of service due to an out-of-bounds write.
IBM i 7.6 could allow a remote attacker to cause a denial of service due to an out-of-bounds write.
CVE-2026-16878 Out-of-Bounds Read in ibm (CVE-2026-16878)
vulnerability in ibm (CVE-2026-16878). Risk of unauthorized operations or information disclosure.
CVE-2026-16871 Out-of-Bounds Write in ibm (CVE-2026-16871)
out-of-bounds write in ibm (CVE-2026-16871). Risk of unauthorized operations or information disclosure.
CVE-2026-16868 Vulnerability in dos (CVE-2026-16868)
vulnerability in dos (CVE-2026-16868). Successful exploitation can lead to full system takeover.
CVE-2026-16867 Authentication Bypass in ibm (CVE-2026-16867)
authentication bypass in ibm (CVE-2026-16867). Successful exploitation can lead to full system takeover.
CVE-2026-16861 Out-of-Bounds Read in dos (CVE-2026-16861)
vulnerability in dos (CVE-2026-16861). Risk of unauthorized operations or information disclosure.
CVE-2026-16859 Out-of-Bounds Read in ibm (CVE-2026-16859)
vulnerability in ibm (CVE-2026-16859). Risk of unauthorized operations or information disclosure.
CVE-2026-16853 Out-of-Bounds Read in ibm (CVE-2026-16853)
vulnerability in ibm (CVE-2026-16853). Risk of unauthorized operations or information disclosure.
CVE-2026-16815 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and...
CVE-2026-16722 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain unauthorized...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain unauthorized...
CVE-2026-16713 Vulnerability in ibm (CVE-2026-16713)
vulnerability in ibm (CVE-2026-16713). Risk of unauthorized operations or information disclosure.
CVE-2026-16692 Out-of-Bounds Write in dos (CVE-2026-16692)
out-of-bounds write in dos (CVE-2026-16692). Risk of unauthorized operations or information disclosure.
CVE-2026-16674 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary...
CVE-2026-14875 Vulnerability in ibm (CVE-2026-14875)
vulnerability in ibm (CVE-2026-14875). Successful exploitation can lead to full system takeover.
CVE-2026-14525 Vulnerability in ibm (CVE-2026-14525)
vulnerability in ibm (CVE-2026-14525). Confidential information can be exposed externally.
CVE-2026-13460 Vulnerability in ibm (CVE-2026-13460)
vulnerability in ibm (CVE-2026-13460). Confidential information can be exposed externally.
CVE-2026-13365 Cross-Site Request Forgery (CSRF) in ibm (CVE-2026-13365)
vulnerability in ibm (CVE-2026-13365). Data can be tampered with by attackers.
CVE-2026-10571 Unsafe Deserialization in dos (CVE-2026-10571)
vulnerability in dos (CVE-2026-10571). Risk of unauthorized operations or information disclosure.
CVE-2026-73482 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73482)
vulnerability in csrf (CVE-2026-73482). Data can be tampered with by attackers.
CVE-2026-73481 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73481)
vulnerability in csrf (CVE-2026-73481). Risk of unauthorized operations or information disclosure.
CVE-2026-73038 Cross-Site Scripting (XSS) in CVE-2026-73038 (CVE-2026-73038)
cross-site scripting in CVE-2026-73038 (CVE-2026-73038). Risk of unauthorized operations or information disclosure.
CVE-2026-73037 Cross-Site Scripting (XSS) in CVE-2026-73037 (CVE-2026-73037)
cross-site scripting in CVE-2026-73037 (CVE-2026-73037). Risk of unauthorized operations or information disclosure.
CVE-2026-72777 Next AI Draw.io through 0.4.16 contains a server-side request forgery vulnerability in the POST ...
Next AI Draw.io through 0.4.16 contains a server-side request forgery vulnerability in the POST ...
CVE-2026-18071 Privilege Escalation in ibm (CVE-2026-18071)
vulnerability in ibm (CVE-2026-18071). Successful exploitation can lead to full system takeover.
CVE-2026-17220 Vulnerability in dos (CVE-2026-17220)
vulnerability in dos (CVE-2026-17220). Risk of unauthorized operations or information disclosure.
CVE-2026-17197 Authentication Bypass in ibm (CVE-2026-17197)
authentication bypass in ibm (CVE-2026-17197). Successful exploitation can lead to full system takeover.
CVE-2024-58374 SQL Injection in sqli (CVE-2024-58374)
SQL injection in sqli (CVE-2024-58374). Confidential information can be exposed externally.
CVE-2026-67614 Vulnerability in CVE-2026-67614 (CVE-2026-67614)
vulnerability in CVE-2026-67614 (CVE-2026-67614). Successful exploitation can lead to full system takeover.
CVE-2026-59109 Vulnerability in sqli (CVE-2026-59109)
vulnerability in sqli (CVE-2026-59109). Successful exploitation can lead to full system takeover.
CVE-2026-72741 Vulnerability in CVE-2026-72741 (CVE-2026-72741)
vulnerability in CVE-2026-72741 (CVE-2026-72741). Confidential information can be exposed externally.
CVE-2019-25765 SQL Injection in sqli (CVE-2019-25765)
SQL injection in sqli (CVE-2019-25765). Confidential information can be exposed externally.
CVE-2026-67613 Path Traversal in c (CVE-2026-67613)
path traversal in c (CVE-2026-67613). Confidential information can be exposed externally.
CVE-2026-73266 Vulnerability in CVE-2026-73266 (CVE-2026-73266)
vulnerability in CVE-2026-73266 (CVE-2026-73266). Confidential information can be exposed externally.
CVE-2026-55402 Out-of-Bounds Read in dos (CVE-2026-55402)
vulnerability in dos (CVE-2026-55402). Risk of unauthorized operations or information disclosure.
CVE-2026-13048 Path Traversal in CVE-2026-13048 (CVE-2026-13048)
path traversal in CVE-2026-13048 (CVE-2026-13048). Data can be tampered with by attackers.
CVE-2022-4993 Vulnerability in CVE-2022-4993 (CVE-2022-4993)
vulnerability in CVE-2022-4993 (CVE-2022-4993). Confidential information can be exposed externally. Exploitable via ``_AUTO``.
CVE-2026-13051 Vulnerability in CVE-2026-13051 (CVE-2026-13051)
vulnerability in CVE-2026-13051 (CVE-2026-13051). Confidential information can be exposed externally. Exploitable via ``_AUTO``.
CVE-2026-24059 Privilege Escalation in CVE-2026-24059 (CVE-2026-24059)
vulnerability in CVE-2026-24059 (CVE-2026-24059). Confidential information can be exposed externally. Exploitable via `GET /api/v1/user/actions/runners/registration-token`.
CVE-2026-73566 Vulnerability in tar (CVE-2026-73566)
vulnerability in tar (CVE-2026-73566). Risk of unauthorized operations or information disclosure. Exploitable via ``tar``. Mitigation: upgrade to `7.5.21` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →