Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
MINI-qvwq-6fx8-x2g4 MINI-qvwq-6fx8-x2g4
ECHO-8d43-d1f0-e240 ECHO-8d43-d1f0-e240
ECHO-116d-d9cc-0896 ECHO-116d-d9cc-0896
MINI-jhq7-wr7v-jx45 MINI-jhq7-wr7v-jx45
ECHO-b327-9a88-af60 ECHO-b327-9a88-af60
ECHO-5726-e3cf-761a ECHO-5726-e3cf-761a
ECHO-f8cf-c148-b804 ECHO-f8cf-c148-b804
ECHO-54b7-8613-980b ECHO-54b7-8613-980b
ECHO-acbd-3259-3098 ECHO-acbd-3259-3098
ECHO-4f98-920f-67e1 ECHO-4f98-920f-67e1
ECHO-3eee-74b4-9c54 ECHO-3eee-74b4-9c54
USN-8371-1 Vulnerability in linux-azure-6.17 (USN-8371-1)
vulnerability in linux-azure-6.17 (USN-8371-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.17.0-1017.17~24.04.1` or later.
MINI-mp8w-jgq5-5x86 MINI-mp8w-jgq5-5x86
SUSE-SU-2026:21987-1 Vulnerability in SUSE-SU-2026:21987-1 (SUSE-SU-2026:21987-1)
vulnerability in SUSE-SU-2026:21987-1 (SUSE-SU-2026:21987-1). Risk of unauthorized operations or information disclosure.
MINI-2444-jqr8-cjqf MINI-2444-jqr8-cjqf
MINI-f2wm-89hr-ggg6 MINI-f2wm-89hr-ggg6
CVE-2026-9844 Vulnerability in CVE-2026-9844 (CVE-2026-9844)
vulnerability in CVE-2026-9844 (CVE-2026-9844). Risk of unauthorized operations or information disclosure.
CVE-2026-7313 CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from...
CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from...
CVE-2026-7312 Vulnerability in progress (CVE-2026-7312)
vulnerability in progress (CVE-2026-7312). Confidential information can be exposed externally.
CVE-2026-7201 CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity...
CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity...
CVE-2026-7198 Vulnerability in progress (CVE-2026-7198)
vulnerability in progress (CVE-2026-7198). Successful exploitation can lead to full system takeover.
CVE-2026-7195 CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x,...
CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x,...
CVE-2026-49782 Vulnerability in CVE-2026-49782 (CVE-2026-49782)
vulnerability in CVE-2026-49782 (CVE-2026-49782). Risk of unauthorized operations or information disclosure.
CVE-2026-43965 Path Traversal in path-traversal (CVE-2026-43965)
path traversal in path-traversal (CVE-2026-43965). Risk of unauthorized operations or information disclosure.
CVE-2026-42795 Vulnerability in CVE-2026-42795 (CVE-2026-42795)
vulnerability in CVE-2026-42795 (CVE-2026-42795). Risk of unauthorized operations or information disclosure.
CVE-2026-41918 Vulnerability in CVE-2026-41918 (CVE-2026-41918)
vulnerability in CVE-2026-41918 (CVE-2026-41918). Confidential information can be exposed externally.
CVE-2026-39555 Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection. ...
Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection. ...
CVE-2026-39553 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
CVE-2026-39552 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
CVE-2026-35717 Vulnerability in vivotek (CVE-2026-35717)
vulnerability in vivotek (CVE-2026-35717). Risk of unauthorized operations or information disclosure.
CVE-2026-32685 Path Traversal in path-traversal (CVE-2026-32685)
path traversal in path-traversal (CVE-2026-32685). Risk of unauthorized operations or information disclosure.
CVE-2026-32250 Cross-Site Scripting (XSS) in CVE-2026-32250 (CVE-2026-32250)
cross-site scripting in CVE-2026-32250 (CVE-2026-32250). Risk of unauthorized operations or information disclosure.
CVE-2026-28116 Cross-Site Scripting (XSS) in CVE-2026-28116 (CVE-2026-28116)
cross-site scripting in CVE-2026-28116 (CVE-2026-28116). Risk of unauthorized operations or information disclosure.
CVE-2026-27351 Vulnerability in CVE-2026-27351 (CVE-2026-27351)
vulnerability in CVE-2026-27351 (CVE-2026-27351). Risk of unauthorized operations or information disclosure.
CVE-2026-10622 Vulnerability in CVE-2026-10622 (CVE-2026-10622)
vulnerability in CVE-2026-10622 (CVE-2026-10622). Confidential information can be exposed externally.
CVE-2026-10621 Vulnerability in path-traversal (CVE-2026-10621)
vulnerability in path-traversal (CVE-2026-10621). Data can be tampered with by attackers.
CVE-2026-10611 Authentication Bypass in misp (CVE-2026-10611)
authentication bypass in misp (CVE-2026-10611). Successful exploitation can lead to full system takeover.
CVE-2025-69369 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
CVE-2025-68886 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
CVE-2025-58897 Vulnerability in CVE-2025-58897 (CVE-2025-58897)
vulnerability in CVE-2025-58897 (CVE-2025-58897). Successful exploitation can lead to full system takeover.
CVE-2025-58707 Vulnerability in CVE-2025-58707 (CVE-2025-58707)
vulnerability in CVE-2025-58707 (CVE-2025-58707). Successful exploitation can lead to full system takeover.
CVE-2019-25719 Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software...
Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software...
CVE-2019-25717 Vulnerability in draeger (CVE-2019-25717)
vulnerability in draeger (CVE-2019-25717). Risk of unauthorized operations or information disclosure.
USN-8238-2 Vulnerability in editorconfig-core (USN-8238-2)
vulnerability in editorconfig-core (USN-8238-2). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.12.0-2ubuntu0.1~esm3` or later.
ROOT-APP-NPM-GHSA-5c6j-r48x-rmvq Vulnerability in @rootio/serialize-javascript (ROOT-APP-NPM-GHSA-5c6j-r48x-rmvq)
vulnerability in @rootio/serialize-javascript (ROOT-APP-NPM-GHSA-5c6j-r48x-rmvq). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.0.0-root.io.2, 5.0.1-root.io.1, 6.0.2-root.io.1, 6.0.2-root.io.2, 4.0.0-root.io.1, 5.0.1-root.io.2` or later.
MINI-9jfj-w974-7pj6 MINI-9jfj-w974-7pj6
MINI-5325-f646-f788 MINI-5325-f646-f788
MINI-frmw-w96f-c89x MINI-frmw-w96f-c89x
MINI-hfww-43xq-xhf6 MINI-hfww-43xq-xhf6
MINI-cr34-r4r3-mv58 MINI-cr34-r4r3-mv58

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →