Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-62688 |
|
Vulnerability in microsoft (CVE-2026-62688)
vulnerability in microsoft (CVE-2026-62688). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61939 |
|
Use after free in Winlogon allows an authorized attacker to elevate privileges locally.
Use after free in Winlogon allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-61938 |
|
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-61937 |
|
Vulnerability in microsoft (CVE-2026-61937)
vulnerability in microsoft (CVE-2026-61937). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61936 |
|
Vulnerability in microsoft (CVE-2026-61936)
vulnerability in microsoft (CVE-2026-61936). Data can be tampered with by attackers.
|
| CVE-2026-61934 |
|
Use-After-Free in microsoft (CVE-2026-61934)
vulnerability in microsoft (CVE-2026-61934). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61933 |
|
Out-of-Bounds Read in microsoft (CVE-2026-61933)
vulnerability in microsoft (CVE-2026-61933). Confidential information can be exposed externally.
|
| CVE-2026-61932 |
|
Vulnerability in microsoft (CVE-2026-61932)
vulnerability in microsoft (CVE-2026-61932). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61930 |
|
Vulnerability in microsoft (CVE-2026-61930)
vulnerability in microsoft (CVE-2026-61930). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61929 |
|
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-61928 |
|
Vulnerability in microsoft (CVE-2026-61928)
vulnerability in microsoft (CVE-2026-61928). Data can be tampered with by attackers.
|
| CVE-2026-61927 |
|
Vulnerability in microsoft (CVE-2026-61927)
vulnerability in microsoft (CVE-2026-61927). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61926 |
|
Vulnerability in microsoft (CVE-2026-61926)
vulnerability in microsoft (CVE-2026-61926). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61925 |
|
Authorization Flaw in microsoft (CVE-2026-61925)
vulnerability in microsoft (CVE-2026-61925). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61924 |
|
Out-of-Bounds Read in microsoft (CVE-2026-61924)
vulnerability in microsoft (CVE-2026-61924). Confidential information can be exposed externally.
|
| CVE-2026-61923 |
|
Vulnerability in microsoft (CVE-2026-61923)
vulnerability in microsoft (CVE-2026-61923). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61921 |
|
Out-of-Bounds Read in microsoft (CVE-2026-61921)
vulnerability in microsoft (CVE-2026-61921). Confidential information can be exposed externally.
|
| CVE-2026-61920 |
|
Vulnerability in microsoft (CVE-2026-61920)
vulnerability in microsoft (CVE-2026-61920). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61918 |
|
Out-of-Bounds Read in microsoft (CVE-2026-61918)
vulnerability in microsoft (CVE-2026-61918). Confidential information can be exposed externally.
|
| CVE-2026-61368 |
|
Vulnerability in microsoft (CVE-2026-61368)
vulnerability in microsoft (CVE-2026-61368). Confidential information can be exposed externally.
|
| CVE-2026-61366 |
|
Vulnerability in microsoft (CVE-2026-61366)
vulnerability in microsoft (CVE-2026-61366). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61365 |
|
Vulnerability in microsoft (CVE-2026-61365)
vulnerability in microsoft (CVE-2026-61365). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61364 |
|
Vulnerability in microsoft (CVE-2026-61364)
vulnerability in microsoft (CVE-2026-61364). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61363 |
|
Vulnerability in microsoft (CVE-2026-61363)
vulnerability in microsoft (CVE-2026-61363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61361 |
|
Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.
Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.
|
| CVE-2026-61358 |
|
Vulnerability in microsoft (CVE-2026-61358)
vulnerability in microsoft (CVE-2026-61358). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61356 |
|
Vulnerability in microsoft (CVE-2026-61356)
vulnerability in microsoft (CVE-2026-61356). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61355 |
|
Vulnerability in microsoft (CVE-2026-61355)
vulnerability in microsoft (CVE-2026-61355). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61353 |
|
Vulnerability in microsoft (CVE-2026-61353)
vulnerability in microsoft (CVE-2026-61353). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61352 |
|
Vulnerability in microsoft (CVE-2026-61352)
vulnerability in microsoft (CVE-2026-61352). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48483 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-48483)
SSRF in ssrf (CVE-2026-48483). Risk of unauthorized operations or information disclosure. Exploitable via ``safeKy``.
|
| CVE-2026-47704 |
|
Vulnerability in CVE-2026-47704 (CVE-2026-47704)
vulnerability in CVE-2026-47704 (CVE-2026-47704). Risk of unauthorized operations or information disclosure. Exploitable via ``typebotId``.
|
| CVE-2026-9214 |
|
Vulnerability in CVE-2026-9214 (CVE-2026-9214)
vulnerability in CVE-2026-9214 (CVE-2026-9214). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73079 |
|
Path Traversal in path-traversal (CVE-2026-73079)
path traversal in path-traversal (CVE-2026-73079). Confidential information can be exposed externally. Exploitable via `POST /responses/`. Mitigation: upgrade to `0.1.169` or later.
|
| CVE-2026-73078 |
|
Command Injection in CVE-2026-73078 (CVE-2026-73078)
command injection in CVE-2026-73078 (CVE-2026-73078). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73077 |
|
OS Command Injection in CVE-2026-73077 (CVE-2026-73077)
OS command injection in CVE-2026-73077 (CVE-2026-73077). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73076 |
|
Code Injection in CVE-2026-73076 (CVE-2026-73076)
code injection in CVE-2026-73076 (CVE-2026-73076). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73075 |
|
Vulnerability in c (CVE-2026-73075)
vulnerability in c (CVE-2026-73075). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73074 |
|
Vulnerability in c (CVE-2026-73074)
vulnerability in c (CVE-2026-73074). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73072 |
|
Vulnerability in c (CVE-2026-73072)
vulnerability in c (CVE-2026-73072). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73071 |
|
Use-After-Free in c (CVE-2026-73071)
vulnerability in c (CVE-2026-73071). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73070 |
|
Vulnerability in c (CVE-2026-73070)
vulnerability in c (CVE-2026-73070). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73069 |
|
SQL Injection in CVE-2026-73069 (CVE-2026-73069)
SQL injection in CVE-2026-73069 (CVE-2026-73069). Successful exploitation can lead to full system takeover. Exploitable via `PATCH /rest/metadata/fields/`.
|
| CVE-2026-73068 |
|
Vulnerability in CVE-2026-73068 (CVE-2026-73068)
vulnerability in CVE-2026-73068 (CVE-2026-73068). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/tooljet-db/organizations/`.
|
| CVE-2026-6727 |
|
Vulnerability in CVE-2026-6727 (CVE-2026-6727)
vulnerability in CVE-2026-6727 (CVE-2026-6727). Confidential information can be exposed externally.
|
| CVE-2026-6726 |
|
Vulnerability in jvn (CVE-2026-6726)
vulnerability in jvn (CVE-2026-6726). Confidential information can be exposed externally.
|
| CVE-2026-67180 |
|
OS Command Injection in CVE-2026-67180 (CVE-2026-67180)
OS command injection in CVE-2026-67180 (CVE-2026-67180). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67179 |
|
Vulnerability in CVE-2026-67179 (CVE-2026-67179)
vulnerability in CVE-2026-67179 (CVE-2026-67179). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/runAction`.
|
| CVE-2026-56721 |
|
Vulnerability in privilege-escalation (CVE-2026-56721)
vulnerability in privilege-escalation (CVE-2026-56721). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56720 |
|
Vulnerability in CVE-2026-56720 (CVE-2026-56720)
vulnerability in CVE-2026-56720 (CVE-2026-56720). Risk of unauthorized operations or information disclosure.
|