Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-qvwq-6fx8-x2g4 |
|
MINI-qvwq-6fx8-x2g4 |
| ECHO-8d43-d1f0-e240 |
|
ECHO-8d43-d1f0-e240 |
| ECHO-116d-d9cc-0896 |
|
ECHO-116d-d9cc-0896 |
| MINI-jhq7-wr7v-jx45 |
|
MINI-jhq7-wr7v-jx45 |
| ECHO-b327-9a88-af60 |
|
ECHO-b327-9a88-af60 |
| ECHO-5726-e3cf-761a |
|
ECHO-5726-e3cf-761a |
| ECHO-f8cf-c148-b804 |
|
ECHO-f8cf-c148-b804 |
| ECHO-54b7-8613-980b |
|
ECHO-54b7-8613-980b |
| ECHO-acbd-3259-3098 |
|
ECHO-acbd-3259-3098 |
| ECHO-4f98-920f-67e1 |
|
ECHO-4f98-920f-67e1 |
| ECHO-3eee-74b4-9c54 |
|
ECHO-3eee-74b4-9c54 |
| USN-8371-1 |
|
Vulnerability in linux-azure-6.17 (USN-8371-1)
vulnerability in linux-azure-6.17 (USN-8371-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.17.0-1017.17~24.04.1` or later.
|
| MINI-mp8w-jgq5-5x86 |
|
MINI-mp8w-jgq5-5x86 |
| SUSE-SU-2026:21987-1 |
|
Vulnerability in SUSE-SU-2026:21987-1 (SUSE-SU-2026:21987-1)
vulnerability in SUSE-SU-2026:21987-1 (SUSE-SU-2026:21987-1). Risk of unauthorized operations or information disclosure.
|
| MINI-2444-jqr8-cjqf |
|
MINI-2444-jqr8-cjqf |
| MINI-f2wm-89hr-ggg6 |
|
MINI-f2wm-89hr-ggg6 |
| CVE-2026-9844 |
|
Vulnerability in CVE-2026-9844 (CVE-2026-9844)
vulnerability in CVE-2026-9844 (CVE-2026-9844). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7313 |
|
CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from...
CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from...
|
| CVE-2026-7312 |
|
Vulnerability in progress (CVE-2026-7312)
vulnerability in progress (CVE-2026-7312). Confidential information can be exposed externally.
|
| CVE-2026-7201 |
|
CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity...
CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity...
|
| CVE-2026-7198 |
|
Vulnerability in progress (CVE-2026-7198)
vulnerability in progress (CVE-2026-7198). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7195 |
|
CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x,...
CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x,...
|
| CVE-2026-49782 |
|
Vulnerability in CVE-2026-49782 (CVE-2026-49782)
vulnerability in CVE-2026-49782 (CVE-2026-49782). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43965 |
|
Path Traversal in path-traversal (CVE-2026-43965)
path traversal in path-traversal (CVE-2026-43965). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42795 |
|
Vulnerability in CVE-2026-42795 (CVE-2026-42795)
vulnerability in CVE-2026-42795 (CVE-2026-42795). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41918 |
|
Vulnerability in CVE-2026-41918 (CVE-2026-41918)
vulnerability in CVE-2026-41918 (CVE-2026-41918). Confidential information can be exposed externally.
|
| CVE-2026-39555 |
|
Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection.
...
Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection.
...
|
| CVE-2026-39553 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2026-39552 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2026-35717 |
|
Vulnerability in vivotek (CVE-2026-35717)
vulnerability in vivotek (CVE-2026-35717). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-32685 |
|
Path Traversal in path-traversal (CVE-2026-32685)
path traversal in path-traversal (CVE-2026-32685). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-32250 |
|
Cross-Site Scripting (XSS) in CVE-2026-32250 (CVE-2026-32250)
cross-site scripting in CVE-2026-32250 (CVE-2026-32250). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28116 |
|
Cross-Site Scripting (XSS) in CVE-2026-28116 (CVE-2026-28116)
cross-site scripting in CVE-2026-28116 (CVE-2026-28116). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-27351 |
|
Vulnerability in CVE-2026-27351 (CVE-2026-27351)
vulnerability in CVE-2026-27351 (CVE-2026-27351). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10622 |
|
Vulnerability in CVE-2026-10622 (CVE-2026-10622)
vulnerability in CVE-2026-10622 (CVE-2026-10622). Confidential information can be exposed externally.
|
| CVE-2026-10621 |
|
Vulnerability in path-traversal (CVE-2026-10621)
vulnerability in path-traversal (CVE-2026-10621). Data can be tampered with by attackers.
|
| CVE-2026-10611 |
|
Authentication Bypass in misp (CVE-2026-10611)
authentication bypass in misp (CVE-2026-10611). Successful exploitation can lead to full system takeover.
|
| CVE-2025-69369 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2025-68886 |
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
|
| CVE-2025-58897 |
|
Vulnerability in CVE-2025-58897 (CVE-2025-58897)
vulnerability in CVE-2025-58897 (CVE-2025-58897). Successful exploitation can lead to full system takeover.
|
| CVE-2025-58707 |
|
Vulnerability in CVE-2025-58707 (CVE-2025-58707)
vulnerability in CVE-2025-58707 (CVE-2025-58707). Successful exploitation can lead to full system takeover.
|
| CVE-2019-25719 |
|
Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software...
Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software...
|
| CVE-2019-25717 |
|
Vulnerability in draeger (CVE-2019-25717)
vulnerability in draeger (CVE-2019-25717). Risk of unauthorized operations or information disclosure.
|
| USN-8238-2 |
|
Vulnerability in editorconfig-core (USN-8238-2)
vulnerability in editorconfig-core (USN-8238-2). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.12.0-2ubuntu0.1~esm3` or later.
|
| ROOT-APP-NPM-GHSA-5c6j-r48x-rmvq |
|
Vulnerability in @rootio/serialize-javascript (ROOT-APP-NPM-GHSA-5c6j-r48x-rmvq)
vulnerability in @rootio/serialize-javascript (ROOT-APP-NPM-GHSA-5c6j-r48x-rmvq). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.0.0-root.io.2, 5.0.1-root.io.1, 6.0.2-root.io.1, 6.0.2-root.io.2, 4.0.0-root.io.1, 5.0.1-root.io.2` or later.
|
| MINI-9jfj-w974-7pj6 |
|
MINI-9jfj-w974-7pj6 |
| MINI-5325-f646-f788 |
|
MINI-5325-f646-f788 |
| MINI-frmw-w96f-c89x |
|
MINI-frmw-w96f-c89x |
| MINI-hfww-43xq-xhf6 |
|
MINI-hfww-43xq-xhf6 |
| MINI-cr34-r4r3-mv58 |
|
MINI-cr34-r4r3-mv58 |