Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-10068 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-10068 (CVE-2026-10068)
SSRF in CVE-2026-10068 (CVE-2026-10068). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10067 |
|
Buffer Overflow in CVE-2026-10067 (CVE-2026-10067)
vulnerability in CVE-2026-10067 (CVE-2026-10067). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10066 |
|
Buffer Overflow in CVE-2026-10066 (CVE-2026-10066)
vulnerability in CVE-2026-10066 (CVE-2026-10066). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10065 |
|
Buffer Overflow in CVE-2026-10065 (CVE-2026-10065)
vulnerability in CVE-2026-10065 (CVE-2026-10065). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10064 |
|
Buffer Overflow in trendnet (CVE-2026-10064)
vulnerability in trendnet (CVE-2026-10064). Risk of unauthorized operations or information disclosure.
|
| CVE-2018-25404 |
|
SQL Injection in sqli (CVE-2018-25404)
SQL injection in sqli (CVE-2018-25404). Confidential information can be exposed externally.
|
| CVE-2018-25403 |
|
SQL Injection in sqli (CVE-2018-25403)
SQL injection in sqli (CVE-2018-25403). Confidential information can be exposed externally.
|
| CVE-2018-25402 |
|
SQL Injection in sqli (CVE-2018-25402)
SQL injection in sqli (CVE-2018-25402). Confidential information can be exposed externally.
|
| CVE-2018-25401 |
|
SQL Injection in sqli (CVE-2018-25401)
SQL injection in sqli (CVE-2018-25401). Confidential information can be exposed externally.
|
| CVE-2018-25400 |
|
SQL Injection in sqli (CVE-2018-25400)
SQL injection in sqli (CVE-2018-25400). Confidential information can be exposed externally.
|
| CVE-2018-25399 |
|
SQL Injection in sqli (CVE-2018-25399)
SQL injection in sqli (CVE-2018-25399). Confidential information can be exposed externally.
|
| CVE-2018-25398 |
|
SQL Injection in sqli (CVE-2018-25398)
SQL injection in sqli (CVE-2018-25398). Confidential information can be exposed externally.
|
| CVE-2018-25397 |
|
Cross-Site Request Forgery (CSRF) in CVE-2018-25397 (CVE-2018-25397)
vulnerability in CVE-2018-25397 (CVE-2018-25397). Risk of unauthorized operations or information disclosure.
|
| CVE-2018-25396 |
|
Vulnerability in CVE-2018-25396 (CVE-2018-25396)
vulnerability in CVE-2018-25396 (CVE-2018-25396). Confidential information can be exposed externally.
|
| CVE-2018-25395 |
|
SQL Injection in sqli (CVE-2018-25395)
SQL injection in sqli (CVE-2018-25395). Confidential information can be exposed externally.
|
| CVE-2018-25394 |
|
SQL Injection in sqli (CVE-2018-25394)
SQL injection in sqli (CVE-2018-25394). Confidential information can be exposed externally.
|
| CVE-2018-25393 |
|
Path Traversal in path-traversal (CVE-2018-25393)
path traversal in path-traversal (CVE-2018-25393). Confidential information can be exposed externally.
|
| CVE-2018-25392 |
|
SQL Injection in sqli (CVE-2018-25392)
SQL injection in sqli (CVE-2018-25392). Confidential information can be exposed externally.
|
| CVE-2018-25391 |
|
Vulnerability in CVE-2018-25391 (CVE-2018-25391)
vulnerability in CVE-2018-25391 (CVE-2018-25391). Data can be tampered with by attackers.
|
| CVE-2018-25390 |
|
SQL Injection in sqli (CVE-2018-25390)
SQL injection in sqli (CVE-2018-25390). Confidential information can be exposed externally.
|
| CVE-2018-25389 |
|
SQL Injection in sqli (CVE-2018-25389)
SQL injection in sqli (CVE-2018-25389). Confidential information can be exposed externally.
|
| CVE-2018-25388 |
|
Unrestricted File Upload in CVE-2018-25388 (CVE-2018-25388)
vulnerability in CVE-2018-25388 (CVE-2018-25388). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25387 |
|
Cross-Site Request Forgery (CSRF) in CVE-2018-25387 (CVE-2018-25387)
vulnerability in CVE-2018-25387 (CVE-2018-25387). Risk of unauthorized operations or information disclosure.
|
| CVE-2018-25386 |
|
SQL Injection in sqli (CVE-2018-25386)
SQL injection in sqli (CVE-2018-25386). Confidential information can be exposed externally.
|
| CVE-2018-25385 |
|
SQL Injection in sqli (CVE-2018-25385)
SQL injection in sqli (CVE-2018-25385). Confidential information can be exposed externally.
|
| CVE-2018-25384 |
|
Cross-Site Scripting (XSS) in CVE-2018-25384 (CVE-2018-25384)
cross-site scripting in CVE-2018-25384 (CVE-2018-25384). Risk of unauthorized operations or information disclosure.
|
| CVE-2018-25383 |
|
Vulnerability in CVE-2018-25383 (CVE-2018-25383)
vulnerability in CVE-2018-25383 (CVE-2018-25383). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25382 |
|
SQL Injection in sqli (CVE-2018-25382)
SQL injection in sqli (CVE-2018-25382). Confidential information can be exposed externally.
|
| SUSE-SU-2026:21917-1 |
|
Vulnerability in SUSE-SU-2026:21917-1 (SUSE-SU-2026:21917-1)
vulnerability in SUSE-SU-2026:21917-1 (SUSE-SU-2026:21917-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:21885-1 |
|
Vulnerability in SUSE-SU-2026:21885-1 (SUSE-SU-2026:21885-1)
vulnerability in SUSE-SU-2026:21885-1 (SUSE-SU-2026:21885-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:21899-1 |
|
Vulnerability in SUSE-SU-2026:21899-1 (SUSE-SU-2026:21899-1)
vulnerability in SUSE-SU-2026:21899-1 (SUSE-SU-2026:21899-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:21918-1 |
|
Vulnerability in SUSE-SU-2026:21918-1 (SUSE-SU-2026:21918-1)
vulnerability in SUSE-SU-2026:21918-1 (SUSE-SU-2026:21918-1). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44495 |
|
Code Injection in axios (CVE-2026-44495)
code injection in axios (CVE-2026-44495). Confidential information can be exposed externally. Exploitable via ``Object.prototype.transformResponse``. Mitigation: upgrade to `1.15.0` or later.
|
| CVE-2026-44494 |
|
Vulnerability in axios (CVE-2026-44494)
vulnerability in axios (CVE-2026-44494). Confidential information can be exposed externally. Exploitable via `Authorization header`. Mitigation: upgrade to `1.15.0` or later.
|
| RLSA-2026:18480 |
|
Vulnerability in linux-sgx (RLSA-2026:18480)
vulnerability in linux-sgx (RLSA-2026:18480). Data can be tampered with by attackers. Mitigation: upgrade to `0:2.26-7.el10` or later.
|
| RLSA-2026:18344 |
|
Vulnerability in mingw-glib2 (RLSA-2026:18344)
vulnerability in mingw-glib2 (RLSA-2026:18344). Data can be tampered with by attackers. Mitigation: upgrade to `0:2.87.0-1.el10` or later.
|
| RLSA-2026:19155 |
|
Vulnerability in python-markdown (RLSA-2026:19155)
vulnerability in python-markdown (RLSA-2026:19155). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:3.5.1-6.el10_2.1` or later.
|
| RLSA-2026:19151 |
|
Vulnerability in jq (RLSA-2026:19151)
vulnerability in jq (RLSA-2026:19151). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:1.7.1-11.el10_2.2` or later.
|
| RLSA-2026:18162 |
|
Vulnerability in iputils (RLSA-2026:18162)
vulnerability in iputils (RLSA-2026:18162). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:20240905-5.el10` or later.
|
| RLSA-2026:19150 |
|
Vulnerability in libtiff (RLSA-2026:19150)
vulnerability in libtiff (RLSA-2026:19150). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:4.6.0-8.el10_2.1` or later.
|
| RLSA-2026:19149 |
|
Vulnerability in dovecot (RLSA-2026:19149)
vulnerability in dovecot (RLSA-2026:19149). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:2.3.21-19.el10_2` or later.
|
| RLSA-2026:19142 |
|
Vulnerability in freerdp (RLSA-2026:19142)
vulnerability in freerdp (RLSA-2026:19142). Successful exploitation can lead to full system takeover. Exploitable via ``nBlockAlign``. Mitigation: upgrade to `2:3.10.3-12.el10_2.5` or later.
|
| RLSA-2026:19068 |
|
Vulnerability in systemd (RLSA-2026:19068)
vulnerability in systemd (RLSA-2026:19068). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:257-23.el10_2.1.rocky.0.1` or later.
|
| RLSA-2026:19126 |
|
Vulnerability in yggdrasil (RLSA-2026:19126)
vulnerability in yggdrasil (RLSA-2026:19126). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:0.4.9-4.el10_2` or later.
|
| RLSA-2026:19138 |
|
Vulnerability in fence-agents (RLSA-2026:19138)
vulnerability in fence-agents (RLSA-2026:19138). Risk of unauthorized operations or information disclosure. Exploitable via ``crit``. Mitigation: upgrade to `0:4.16.0-21.el10_2.1` or later.
|
| RLSA-2026:19139 |
|
Vulnerability in go-fdo-client (RLSA-2026:19139)
vulnerability in go-fdo-client (RLSA-2026:19139). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:1.0.0-3.el10_2` or later.
|
| RLSA-2026:19130 |
|
Vulnerability in libcap (RLSA-2026:19130)
vulnerability in libcap (RLSA-2026:19130). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:2.69-7.el10_1.1` or later.
|
| RLSA-2026:19019 |
|
Vulnerability in python3.14 (RLSA-2026:19019)
vulnerability in python3.14 (RLSA-2026:19019). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:3.14.4-2.el10_2` or later.
|
| RLSA-2026:19013 |
|
Vulnerability in delve (RLSA-2026:19013)
vulnerability in delve (RLSA-2026:19013). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0:1.26.1-1.el10_2` or later.
|
| RLSA-2026:18421 |
|
Vulnerability in luksmeta (RLSA-2026:18421)
vulnerability in luksmeta (RLSA-2026:18421). Data can be tampered with by attackers. Mitigation: upgrade to `0:10-1.el10` or later.
|