Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-13753 |
|
Vulnerability in CVE-2026-13753 (CVE-2026-13753)
vulnerability in CVE-2026-13753 (CVE-2026-13753). Confidential information can be exposed externally.
|
| CVE-2026-43825 |
|
Unsafe Deserialization in apache (CVE-2026-43825)
vulnerability in apache (CVE-2026-43825). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40140 |
|
Vulnerability in beyondtrust (CVE-2026-40140)
vulnerability in beyondtrust (CVE-2026-40140). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40138 |
|
Authentication Bypass in beyondtrust (CVE-2026-40138)
authentication bypass in beyondtrust (CVE-2026-40138). Successful exploitation can lead to full system takeover.
|
| CVE-2025-53831 |
|
Cross-Site Scripting (XSS) in CVE-2025-53831 (CVE-2025-53831)
cross-site scripting in CVE-2025-53831 (CVE-2025-53831). Confidential information can be exposed externally.
|
| CVE-2026-59195 |
|
Path Traversal in pnpm (CVE-2026-59195)
path traversal in pnpm (CVE-2026-59195). Data can be tampered with by attackers. Exploitable via ``pnpm``. Mitigation: upgrade to `11.8.0` or later.
|
| CVE-2026-59196 |
|
Path Traversal in pnpm (CVE-2026-59196)
path traversal in pnpm (CVE-2026-59196). Data can be tampered with by attackers. Exploitable via ``node_modules``. Mitigation: upgrade to `11.7.0` or later.
|
| CVE-2026-59194 |
|
Path Traversal in pnpm (CVE-2026-59194)
path traversal in pnpm (CVE-2026-59194). Data can be tampered with by attackers. Exploitable via ``patchedDependencies``. Mitigation: upgrade to `10.34.4` or later.
|
| CVE-2025-53829 |
|
Vulnerability in path-traversal (CVE-2025-53829)
vulnerability in path-traversal (CVE-2025-53829). Successful exploitation can lead to full system takeover.
|
| CVE-2025-53828 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2025-53828)
SSRF in ssrf (CVE-2025-53828). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13698 |
|
Vulnerability in dos (CVE-2026-13698)
vulnerability in dos (CVE-2026-13698). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58380 |
|
Vulnerability in dos (CVE-2026-58380)
vulnerability in dos (CVE-2026-58380). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13708 |
|
Vulnerability in dos (CVE-2026-13708)
vulnerability in dos (CVE-2026-13708). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13705 |
|
Out-of-Bounds Read in CVE-2026-13705 (CVE-2026-13705)
vulnerability in CVE-2026-13705 (CVE-2026-13705). Confidential information can be exposed externally.
|
| CVE-2026-6901 |
|
Vulnerability in CVE-2026-6901 (CVE-2026-6901)
vulnerability in CVE-2026-6901 (CVE-2026-6901). Confidential information can be exposed externally.
|
| CVE-2026-6900 |
|
Vulnerability in CVE-2026-6900 (CVE-2026-6900)
vulnerability in CVE-2026-6900 (CVE-2026-6900). Confidential information can be exposed externally.
|
| CVE-2026-49297 |
|
Path Traversal in apache-airflow-providers-google (CVE-2026-49297)
path traversal in apache-airflow-providers-google (CVE-2026-49297). Data can be tampered with by attackers. Exploitable via ``GCSToSFTPOperator``. Mitigation: upgrade to `22.2.1` or later.
|
| CVE-2026-49042 |
|
Vulnerability in org.apache.camel:camel-langchain4j-tools (CVE-2026-49042)
vulnerability in org.apache.camel:camel-langchain4j-tools (CVE-2026-49042). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-4249 |
|
Vulnerability in dos (CVE-2026-4249)
vulnerability in dos (CVE-2026-4249). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46587 |
|
Vulnerability in org.apache.camel:camel-couchbase (CVE-2026-46587)
vulnerability in org.apache.camel:camel-couchbase (CVE-2026-46587). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46588 |
|
Vulnerability in org.apache.camel:camel-couchdb (CVE-2026-46588)
vulnerability in org.apache.camel:camel-couchdb (CVE-2026-46588). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-9165 |
|
Vulnerability in dos (CVE-2026-9165)
vulnerability in dos (CVE-2026-9165). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55993 |
|
Vulnerability in org.apache.camel:camel-atmosphere-websocket (CVE-2026-55993)
vulnerability in org.apache.camel:camel-atmosphere-websocket (CVE-2026-55993). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-55994 |
|
Vulnerability in org.apache.camel:camel-iggy (CVE-2026-55994)
vulnerability in org.apache.camel:camel-iggy (CVE-2026-55994). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46591 |
|
Vulnerability in org.apache.camel:camel-neo4j (CVE-2026-46591)
vulnerability in org.apache.camel:camel-neo4j (CVE-2026-46591). Data can be tampered with by attackers. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46585 |
|
Vulnerability in org.apache.camel:camel-lucene (CVE-2026-46585)
vulnerability in org.apache.camel:camel-lucene (CVE-2026-46585). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46726 |
|
Vulnerability in org.apache.camel:camel-vertx-websocket (CVE-2026-46726)
vulnerability in org.apache.camel:camel-vertx-websocket (CVE-2026-46726). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46590 |
|
Unsafe Deserialization in org.apache.camel:camel-pqc (CVE-2026-46590)
vulnerability in org.apache.camel:camel-pqc (CVE-2026-46590). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46592 |
|
Vulnerability in org.apache.camel:camel-cxf-soap (CVE-2026-46592)
vulnerability in org.apache.camel:camel-cxf-soap (CVE-2026-46592). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-24012 |
|
Vulnerability in apache-iotdb (CVE-2026-24012)
vulnerability in apache-iotdb (CVE-2026-24012). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.0.8` or later.
|
| CVE-2026-14809 |
|
SQL Injection in sqli (CVE-2026-14809)
SQL injection in sqli (CVE-2026-14809). Confidential information can be exposed externally.
|
| CVE-2026-46457 |
|
Vulnerability in org.apache.camel:camel-nats (CVE-2026-46457)
vulnerability in org.apache.camel:camel-nats (CVE-2026-46457). Data can be tampered with by attackers. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-43865 |
|
Unsafe Deserialization in org.apache.camel:camel-hazelcast (CVE-2026-43865)
vulnerability in org.apache.camel:camel-hazelcast (CVE-2026-43865). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-43866 |
|
Unsafe Deserialization in org.apache.camel:camel-jms (CVE-2026-43866)
vulnerability in org.apache.camel:camel-jms (CVE-2026-43866). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-42527 |
|
Unsafe Deserialization in org.apache.camel:camel-jms (CVE-2026-42527)
vulnerability in org.apache.camel:camel-jms (CVE-2026-42527). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-40859 |
|
Unsafe Deserialization in org.apache.camel:camel-vertx-http (CVE-2026-40859)
vulnerability in org.apache.camel:camel-vertx-http (CVE-2026-40859). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.20.0` or later.
|
| CVE-2026-11855 |
|
Vulnerability in wordpress (CVE-2026-11855)
vulnerability in wordpress (CVE-2026-11855). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11766 |
|
Vulnerability in wordpress (CVE-2026-11766)
vulnerability in wordpress (CVE-2026-11766). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11962 |
|
Vulnerability in wordpress (CVE-2026-11962)
vulnerability in wordpress (CVE-2026-11962). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12083 |
|
Vulnerability in wordpress (CVE-2026-12083)
vulnerability in wordpress (CVE-2026-12083). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14802 |
|
A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
|
| CVE-2026-10830 |
|
Vulnerability in wordpress (CVE-2026-10830)
vulnerability in wordpress (CVE-2026-10830). Successful exploitation can lead to full system takeover.
|
| CVE-2024-6228 |
|
Vulnerability in wordpress (CVE-2024-6228)
vulnerability in wordpress (CVE-2024-6228). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14778 |
|
Vulnerability in CVE-2026-14778 (CVE-2026-14778)
vulnerability in CVE-2026-14778 (CVE-2026-14778). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14772 |
|
Vulnerability in sqli (CVE-2026-14772)
vulnerability in sqli (CVE-2026-14772). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14771 |
|
Vulnerability in sqli (CVE-2026-14771)
vulnerability in sqli (CVE-2026-14771). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14770 |
|
Vulnerability in sqli (CVE-2026-14770)
vulnerability in sqli (CVE-2026-14770). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14769 |
|
Vulnerability in sqli (CVE-2026-14769)
vulnerability in sqli (CVE-2026-14769). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14768 |
|
Vulnerability in sqli (CVE-2026-14768)
vulnerability in sqli (CVE-2026-14768). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14763 |
|
Vulnerability in sqli (CVE-2026-14763)
vulnerability in sqli (CVE-2026-14763). Risk of unauthorized operations or information disclosure.
|