Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-10282 |
|
Vulnerability in CVE-2026-10282 (CVE-2026-10282)
vulnerability in CVE-2026-10282 (CVE-2026-10282). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10281 |
|
Authentication Bypass in @enderfga/claw-orchestrator (CVE-2026-10281)
authentication bypass in @enderfga/claw-orchestrator (CVE-2026-10281). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.5.6` or later.
|
| CVE-2026-10280 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-10280 (CVE-2026-10280)
SSRF in CVE-2026-10280 (CVE-2026-10280). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10279 |
|
Command Injection in CVE-2026-10279 (CVE-2026-10279)
command injection in CVE-2026-10279 (CVE-2026-10279). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10278 |
|
Path Traversal in path-traversal (CVE-2026-10278)
path traversal in path-traversal (CVE-2026-10278). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10277 |
|
Vulnerability in CVE-2026-10277 (CVE-2026-10277)
vulnerability in CVE-2026-10277 (CVE-2026-10277). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10276 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-10276 (CVE-2026-10276)
SSRF in CVE-2026-10276 (CVE-2026-10276). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-0072 |
|
Vulnerability in google (CVE-2026-0072)
vulnerability in google (CVE-2026-0072). Successful exploitation can lead to full system takeover.
|
| CVE-2024-52011 |
|
Command Injection in launch-editor (CVE-2024-52011)
command injection in launch-editor (CVE-2024-52011). Confidential information can be exposed externally. Exploitable via ``file``. Mitigation: upgrade to `2.9.0` or later.
|
| CGA-6wrf-p5j5-r7h4 |
|
CGA-6wrf-p5j5-r7h4 |
| MAL-2026-5149 |
|
Vulnerability in align_rest_api (MAL-2026-5149)
vulnerability in align_rest_api (MAL-2026-5149). Risk of unauthorized operations or information disclosure.
|
| RLSA-2026:22140 |
|
Vulnerability in httpd (RLSA-2026:22140)
vulnerability in httpd (RLSA-2026:22140). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:2.4.37-65.module+el8.10.0+40045+6ce8579b.6` or later.
|
| ROOT-OS-UBUNTU-2204-CVE-2026-4437 |
|
Vulnerability in rootio-glibc (ROOT-OS-UBUNTU-2204-CVE-2026-4437)
vulnerability in rootio-glibc (ROOT-OS-UBUNTU-2204-CVE-2026-4437). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.35-0ubuntu3.13.root.io.1` or later.
|
| ROOT-OS-UBUNTU-2204-CVE-2026-4438 |
|
Vulnerability in rootio-glibc (ROOT-OS-UBUNTU-2204-CVE-2026-4438)
vulnerability in rootio-glibc (ROOT-OS-UBUNTU-2204-CVE-2026-4438). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.35-0ubuntu3.13.root.io.1` or later.
|
| ROOT-OS-UBUNTU-2204-CVE-2026-4046 |
|
Vulnerability in rootio-glibc (ROOT-OS-UBUNTU-2204-CVE-2026-4046)
vulnerability in rootio-glibc (ROOT-OS-UBUNTU-2204-CVE-2026-4046). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.35-0ubuntu3.13.root.io.1` or later.
|
| CVE-2026-8643 |
|
Path Traversal in pip (CVE-2026-8643)
path traversal in pip (CVE-2026-8643). Data can be tampered with by attackers. Mitigation: upgrade to `26.1.2` or later.
|
| CVE-2026-8501 |
|
Vulnerability in CVE-2026-8501 (CVE-2026-8501)
vulnerability in CVE-2026-8501 (CVE-2026-8501). Successful exploitation can lead to full system takeover.
|
| DEBIAN-CVE-2026-46243 |
|
Vulnerability in linux (DEBIAN-CVE-2026-46243)
vulnerability in linux (DEBIAN-CVE-2026-46243). Confidential information can be exposed externally. Mitigation: upgrade to `5.10.257-1` or later.
|
| CVE-2026-46243 |
|
Vulnerability in linux (CVE-2026-46243)
vulnerability in linux (CVE-2026-46243). Confidential information can be exposed externally.
|
| CVE-2026-45267 |
|
Information Disclosure in CVE-2026-45267 (CVE-2026-45267)
vulnerability in CVE-2026-45267 (CVE-2026-45267). Confidential information can be exposed externally.
|
| CVE-2026-45266 |
|
Vulnerability in CVE-2026-45266 (CVE-2026-45266)
vulnerability in CVE-2026-45266 (CVE-2026-45266). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45264 |
|
Vulnerability in CVE-2026-45264 (CVE-2026-45264)
vulnerability in CVE-2026-45264 (CVE-2026-45264). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45159 |
|
Vulnerability in CVE-2026-45159 (CVE-2026-45159)
vulnerability in CVE-2026-45159 (CVE-2026-45159). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45157 |
|
Vulnerability in nextcloud (CVE-2026-45157)
vulnerability in nextcloud (CVE-2026-45157). Confidential information can be exposed externally. Mitigation: upgrade to `32.0.9, 33.0.3` or later.
|
| CVE-2026-45156 |
|
Authentication Bypass in CVE-2026-45156 (CVE-2026-45156)
authentication bypass in CVE-2026-45156 (CVE-2026-45156). Confidential information can be exposed externally.
|
| CVE-2026-45155 |
|
Vulnerability in CVE-2026-45155 (CVE-2026-45155)
vulnerability in CVE-2026-45155 (CVE-2026-45155). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45154 |
|
Vulnerability in CVE-2026-45154 (CVE-2026-45154)
vulnerability in CVE-2026-45154 (CVE-2026-45154). Risk of unauthorized operations or information disclosure.
|
| DEBIAN-CVE-2026-44740 |
|
Vulnerability in golang-github-go-git-go-billy (DEBIAN-CVE-2026-44740)
vulnerability in golang-github-go-git-go-billy (DEBIAN-CVE-2026-44740). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45153 |
|
Authentication Bypass in nextcloud (CVE-2026-45153)
authentication bypass in nextcloud (CVE-2026-45153). Confidential information can be exposed externally. Mitigation: upgrade to `33.1.0` or later.
|
| CVE-2026-45132 |
|
Code Injection in CVE-2026-45132 (CVE-2026-45132)
code injection in CVE-2026-45132 (CVE-2026-45132). Confidential information can be exposed externally.
|
| CVE-2026-45131 |
|
Code Injection in CVE-2026-45131 (CVE-2026-45131)
code injection in CVE-2026-45131 (CVE-2026-45131). Confidential information can be exposed externally.
|
| UBUNTU-CVE-2026-46243 |
|
Vulnerability in linux (UBUNTU-CVE-2026-46243)
vulnerability in linux (UBUNTU-CVE-2026-46243). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42679 |
|
Path Traversal in path-traversal (CVE-2026-42679)
path traversal in path-traversal (CVE-2026-42679). Confidential information can be exposed externally.
|
| CVE-2026-42678 |
|
Cross-Site Scripting (XSS) in CVE-2026-42678 (CVE-2026-42678)
cross-site scripting in CVE-2026-42678 (CVE-2026-42678). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42677 |
|
Vulnerability in CVE-2026-42677 (CVE-2026-42677)
vulnerability in CVE-2026-42677 (CVE-2026-42677). Confidential information can be exposed externally.
|
| CVE-2026-42676 |
|
Cross-Site Scripting (XSS) in CVE-2026-42676 (CVE-2026-42676)
cross-site scripting in CVE-2026-42676 (CVE-2026-42676). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42675 |
|
Vulnerability in CVE-2026-42675 (CVE-2026-42675)
vulnerability in CVE-2026-42675 (CVE-2026-42675). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42674 |
|
Vulnerability in CVE-2026-42674 (CVE-2026-42674)
vulnerability in CVE-2026-42674 (CVE-2026-42674). Data can be tampered with by attackers.
|
| CVE-2026-42673 |
|
Vulnerability in CVE-2026-42673 (CVE-2026-42673)
vulnerability in CVE-2026-42673 (CVE-2026-42673). Confidential information can be exposed externally.
|
| CVE-2026-42672 |
|
SQL Injection in sqli (CVE-2026-42672)
SQL injection in sqli (CVE-2026-42672). Confidential information can be exposed externally.
|
| CVE-2026-42671 |
|
Vulnerability in CVE-2026-42671 (CVE-2026-42671)
vulnerability in CVE-2026-42671 (CVE-2026-42671). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-38950 |
|
Unsafe Deserialization in deserialization (CVE-2026-38950)
vulnerability in deserialization (CVE-2026-38950). Successful exploitation can lead to full system takeover.
|
| CVE-2026-37227 |
|
Vulnerability in CVE-2026-37227 (CVE-2026-37227)
vulnerability in CVE-2026-37227 (CVE-2026-37227). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-37225 |
|
Vulnerability in CVE-2026-37225 (CVE-2026-37225)
vulnerability in CVE-2026-37225 (CVE-2026-37225). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-37224 |
|
Vulnerability in CVE-2026-37224 (CVE-2026-37224)
vulnerability in CVE-2026-37224 (CVE-2026-37224). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-37223 |
|
Vulnerability in CVE-2026-37223 (CVE-2026-37223)
vulnerability in CVE-2026-37223 (CVE-2026-37223). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-37222 |
|
Vulnerability in CVE-2026-37222 (CVE-2026-37222)
vulnerability in CVE-2026-37222 (CVE-2026-37222). Risk of unauthorized operations or information disclosure.
|
| DEBIAN-CVE-2026-10275 |
|
Vulnerability in opensc (DEBIAN-CVE-2026-10275)
vulnerability in opensc (DEBIAN-CVE-2026-10275). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.27.1-2` or later.
|
| CVE-2026-10275 |
|
Buffer Overflow in c (CVE-2026-10275)
vulnerability in c (CVE-2026-10275). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10274 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-10274 (CVE-2026-10274)
SSRF in CVE-2026-10274 (CVE-2026-10274). Risk of unauthorized operations or information disclosure.
|