Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| UBUNTU-CVE-2026-46272 |
|
Vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46272)
vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46272). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-46251 |
|
Vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46251)
vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46251). Successful exploitation can lead to full system takeover.
|
| UBUNTU-CVE-2025-71314 |
|
Vulnerability in linux-hwe-edge (UBUNTU-CVE-2025-71314)
vulnerability in linux-hwe-edge (UBUNTU-CVE-2025-71314). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2025-71313 |
|
Vulnerability in linux-hwe-edge (UBUNTU-CVE-2025-71313)
vulnerability in linux-hwe-edge (UBUNTU-CVE-2025-71313). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-46246 |
|
Vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46246)
vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46246). Successful exploitation can lead to full system takeover. Exploitable via ``devm_``.
|
| UBUNTU-CVE-2026-46247 |
|
Vulnerability in linux-azure (UBUNTU-CVE-2026-46247)
vulnerability in linux-azure (UBUNTU-CVE-2026-46247). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-46255 |
|
Vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46255)
vulnerability in linux-hwe-edge (UBUNTU-CVE-2026-46255). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-46254 |
|
Vulnerability in linux-azure (UBUNTU-CVE-2026-46254)
vulnerability in linux-azure (UBUNTU-CVE-2026-46254). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-46259 |
|
Vulnerability in linux (UBUNTU-CVE-2026-46259)
vulnerability in linux (UBUNTU-CVE-2026-46259). Successful exploitation can lead to full system takeover.
|
| UBUNTU-CVE-2026-49940 |
|
Vulnerability in libnet-cidr-set-perl (UBUNTU-CVE-2026-49940)
vulnerability in libnet-cidr-set-perl (UBUNTU-CVE-2026-49940). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-8829 |
|
Vulnerability in libhtml-parser-perl (UBUNTU-CVE-2026-8829)
vulnerability in libhtml-parser-perl (UBUNTU-CVE-2026-8829). Confidential information can be exposed externally.
|
| UBUNTU-CVE-2026-49942 |
|
Vulnerability in libnet-cidr-set-perl (UBUNTU-CVE-2026-49942)
vulnerability in libnet-cidr-set-perl (UBUNTU-CVE-2026-49942). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-49941 |
|
Vulnerability in libnet-cidr-set-perl (UBUNTU-CVE-2026-49941)
vulnerability in libnet-cidr-set-perl (UBUNTU-CVE-2026-49941). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-5078 |
|
Vulnerability in node-morgan (UBUNTU-CVE-2026-5078)
vulnerability in node-morgan (UBUNTU-CVE-2026-5078). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-37460 |
|
Vulnerability in quagga (UBUNTU-CVE-2026-37460)
vulnerability in quagga (UBUNTU-CVE-2026-37460). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.2.1-1ubuntu0.2+esm4` or later.
|
| ALSA-2026:23258 |
|
Vulnerability in bpftool (ALSA-2026:23258)
vulnerability in bpftool (ALSA-2026:23258). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.18.0-553.129.1.el8_10` or later.
|
| ALSA-2026:23231 |
|
Vulnerability in python3-unbound (ALSA-2026:23231)
vulnerability in python3-unbound (ALSA-2026:23231). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.24.2-7.el10_2.1` or later.
|
| ALSA-2026:23102 |
|
Vulnerability in delve (ALSA-2026:23102)
vulnerability in delve (ALSA-2026:23102). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.26.1-2.el10_2` or later.
|
| CVE-2026-2596 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-10777 |
|
A vulnerability was identified in ealpha072 Student-Management-System up to...
A vulnerability was identified in ealpha072 Student-Management-System up to...
|
| CVE-2026-10775 |
|
Vulnerability in sglang (CVE-2026-10775)
vulnerability in sglang (CVE-2026-10775). Risk of unauthorized operations or information disclosure.
|
| DEBIAN-CVE-2026-46447 |
|
Vulnerability in ironic (DEBIAN-CVE-2026-46447)
vulnerability in ironic (DEBIAN-CVE-2026-46447). Data can be tampered with by attackers. Mitigation: upgrade to `1:21.4.4-0+deb12u1` or later.
|
| CVE-2026-46447 |
|
OpenStack Ironic allows Boot Script Injection
OpenStack Ironic allows Boot Script Injection
|
| CVE-2026-22055 |
|
Vulnerability in netapp (CVE-2026-22055)
vulnerability in netapp (CVE-2026-22055). Successful exploitation can lead to full system takeover.
|
| CVE-2026-22054 |
|
Vulnerability in netapp (CVE-2026-22054)
vulnerability in netapp (CVE-2026-22054). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10771 |
|
A vulnerability was found in crmeb crmeb_java 1.4. Affected is the function RestTemplate...
A vulnerability was found in crmeb crmeb_java 1.4. Affected is the function RestTemplate...
|
| DEBIAN-CVE-2026-49941 |
|
Vulnerability in libnet-cidr-set-perl (DEBIAN-CVE-2026-49941)
vulnerability in libnet-cidr-set-perl (DEBIAN-CVE-2026-49941). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.21-1` or later.
|
| DEBIAN-CVE-2026-49940 |
|
Vulnerability in libnet-cidr-set-perl (DEBIAN-CVE-2026-49940)
vulnerability in libnet-cidr-set-perl (DEBIAN-CVE-2026-49940). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.21-1` or later.
|
| DEBIAN-CVE-2026-49942 |
|
Vulnerability in libnet-cidr-set-perl (DEBIAN-CVE-2026-49942)
vulnerability in libnet-cidr-set-perl (DEBIAN-CVE-2026-49942). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.21-1` or later.
|
| CVE-2026-52793 |
|
Authentication Bypass in froxlor/froxlor (CVE-2026-52793)
authentication bypass in froxlor/froxlor (CVE-2026-52793). Confidential information can be exposed externally. Exploitable via `POST /index.php`. Mitigation: upgrade to `2.3.7` or later.
|
| CVE-2026-44182 |
|
Vulnerability in jupyter_enterprise_gateway (CVE-2026-44182)
vulnerability in jupyter_enterprise_gateway (CVE-2026-44182). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/kernels`. Mitigation: upgrade to `3.3.0` or later.
|
| CVE-2026-44181 |
|
Vulnerability in jupyter_enterprise_gateway (CVE-2026-44181)
vulnerability in jupyter_enterprise_gateway (CVE-2026-44181). Successful exploitation can lead to full system takeover. Exploitable via ``KERNEL_XXX``. Mitigation: upgrade to `3.3.0` or later.
|
| CVE-2026-44180 |
|
Vulnerability in jupyter_enterprise_gateway (CVE-2026-44180)
vulnerability in jupyter_enterprise_gateway (CVE-2026-44180). Successful exploitation can lead to full system takeover. Exploitable via ``KERNEL_UID``. Mitigation: upgrade to `3.3.0` or later.
|
| MINI-vhph-7f32-6rjq |
|
MINI-vhph-7f32-6rjq |
| MINI-rqpx-wh7f-2hxw |
|
MINI-rqpx-wh7f-2hxw |
| MINI-7gj3-32gj-rcmw |
|
MINI-7gj3-32gj-rcmw |
| CVE-2026-44023 |
|
Path Traversal in docling-core (CVE-2026-44023)
path traversal in docling-core (CVE-2026-44023). Confidential information can be exposed externally. Mitigation: upgrade to `2.74.1` or later.
|
| CVE-2026-44019 |
|
Vulnerability in docling-core (CVE-2026-44019)
vulnerability in docling-core (CVE-2026-44019). Confidential information can be exposed externally. Mitigation: upgrade to `2.74.1` or later.
|
| CVE-2026-47214 |
|
Vulnerability in docling (CVE-2026-47214)
vulnerability in docling (CVE-2026-47214). Confidential information can be exposed externally. Mitigation: upgrade to `2.94.0` or later.
|
| CVE-2026-44022 |
|
Path Traversal in docling (CVE-2026-44022)
path traversal in docling (CVE-2026-44022). Confidential information can be exposed externally. Mitigation: upgrade to `2.91.0` or later.
|
| CVE-2026-44020 |
|
XXE (XML External Entity) in docling (CVE-2026-44020)
vulnerability in docling (CVE-2026-44020). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.74.0` or later.
|
| CVE-2026-44018 |
|
Vulnerability in docling (CVE-2026-44018)
vulnerability in docling (CVE-2026-44018). Confidential information can be exposed externally. Mitigation: upgrade to `2.91.0` or later.
|
| CVE-2026-44016 |
|
Code Injection in docling (CVE-2026-44016)
code injection in docling (CVE-2026-44016). Confidential information can be exposed externally. Mitigation: upgrade to `2.91.0` or later.
|
| ECHO-9113-79e2-ca65 |
|
ECHO-9113-79e2-ca65 |
| CVE-2026-43980 |
|
Cross-Site Scripting (XSS) in malla (CVE-2026-43980)
cross-site scripting in malla (CVE-2026-43980). Risk of unauthorized operations or information disclosure.
|
| ECHO-1919-21b7-3a3e |
|
ECHO-1919-21b7-3a3e |
| CVE-2026-41234 |
|
Vulnerability in froxlor/froxlor (CVE-2026-41234)
vulnerability in froxlor/froxlor (CVE-2026-41234). Data can be tampered with by attackers. Exploitable via ``DomainZones.add``. Mitigation: upgrade to `2.3.7` or later.
|
| CVE-2026-40898 |
|
Vulnerability in github.com/quic-go/quic-go (CVE-2026-40898)
vulnerability in github.com/quic-go/quic-go (CVE-2026-40898). Risk of unauthorized operations or information disclosure. Exploitable via ``http.Header``. Mitigation: upgrade to `0.59.1` or later.
|
| ROOT-APP-PYPI-CVE-2023-22946 |
|
Vulnerability in rootio-pyspark (ROOT-APP-PYPI-CVE-2023-22946)
vulnerability in rootio-pyspark (ROOT-APP-PYPI-CVE-2023-22946). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.3.0+root.io.1, 3.3.0+root.io.2, 3.3.0+root.io.3` or later.
|
| ROOT-APP-PYPI-CVE-2022-31777 |
|
Vulnerability in rootio-pyspark (ROOT-APP-PYPI-CVE-2022-31777)
vulnerability in rootio-pyspark (ROOT-APP-PYPI-CVE-2022-31777). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.3.0+root.io.2, 3.3.0+root.io.3` or later.
|