Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-45260 Vulnerability in pimcore/pimcore (CVE-2026-45260)
vulnerability in pimcore/pimcore (CVE-2026-45260). Data can be tampered with by attackers. Exploitable via ``MOVE``. Mitigation: upgrade to `11.5.17` or later.
CVE-2026-49054 Vulnerability in CVE-2026-49054 (CVE-2026-49054)
vulnerability in CVE-2026-49054 (CVE-2026-49054). Risk of unauthorized operations or information disclosure.
CVE-2026-45335 Open Redirect in CVE-2026-45335 (CVE-2026-45335)
vulnerability in CVE-2026-45335 (CVE-2026-45335). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.7.3` or later.
CVE-2026-45027 Vulnerability in CVE-2026-45027 (CVE-2026-45027)
vulnerability in CVE-2026-45027 (CVE-2026-45027). Confidential information can be exposed externally. Mitigation: upgrade to `3.7.3` or later.
DEBIAN-CVE-2026-42790 Vulnerability in erlang (DEBIAN-CVE-2026-42790)
vulnerability in erlang (DEBIAN-CVE-2026-42790). Confidential information can be exposed externally. Mitigation: upgrade to `1:27.3.4.12+dfsg-1` or later.
CVE-2026-42790 Vulnerability in erlang (CVE-2026-42790)
vulnerability in erlang (CVE-2026-42790). Confidential information can be exposed externally.
CVE-2026-42459 Vulnerability in github.com/free5gc/udm (CVE-2026-42459)
vulnerability in github.com/free5gc/udm (CVE-2026-42459). Confidential information can be exposed externally. Exploitable via ``supi``.
CVE-2026-42083 Free5GC PCF: Missing authentication middleware in Npcf_SMPolicyControl allows access to SM policy handlers and disclosure of subscriber SUPI
Free5GC PCF: Missing authentication middleware in Npcf_SMPolicyControl allows access to SM policy handlers and disclosure of subscriber SUPI
CVE-2026-42082 Vulnerability in github.com/free5gc/amf (CVE-2026-42082)
vulnerability in github.com/free5gc/amf (CVE-2026-42082). Risk of unauthorized operations or information disclosure. Exploitable via ``OnGoing``.
CVE-2026-42081 Vulnerability in github.com/free5gc/amf (CVE-2026-42081)
vulnerability in github.com/free5gc/amf (CVE-2026-42081). Risk of unauthorized operations or information disclosure. Exploitable via ``handlePathSwitchRequestMain``.
CVE-2026-38945 Command Injection in CVE-2026-38945 (CVE-2026-38945)
command injection in CVE-2026-38945 (CVE-2026-38945). Successful exploitation can lead to full system takeover.
CVE-2026-38931 Cross-Site Scripting (XSS) in CVE-2026-38931 (CVE-2026-38931)
cross-site scripting in CVE-2026-38931 (CVE-2026-38931). Risk of unauthorized operations or information disclosure.
CVE-2026-38930 SQL Injection in CVE-2026-38930 (CVE-2026-38930)
SQL injection in CVE-2026-38930 (CVE-2026-38930). Risk of unauthorized operations or information disclosure.
DEBIAN-CVE-2025-70116 Vulnerability in gpac (DEBIAN-CVE-2025-70116)
vulnerability in gpac (DEBIAN-CVE-2025-70116). Risk of unauthorized operations or information disclosure.
CVE-2025-70116 Vulnerability in CVE-2025-70116 (CVE-2025-70116)
vulnerability in CVE-2025-70116 (CVE-2025-70116). Risk of unauthorized operations or information disclosure.
CVE-2025-68712 Vulnerability in c (CVE-2025-68712)
vulnerability in c (CVE-2025-68712). Confidential information can be exposed externally.
CVE-2022-41656 Vulnerability in CVE-2022-41656 (CVE-2022-41656)
vulnerability in CVE-2022-41656 (CVE-2022-41656). Risk of unauthorized operations or information disclosure.
CVE-2026-45162 Unsafe Deserialization in pimcore/pimcore (CVE-2026-45162)
vulnerability in pimcore/pimcore (CVE-2026-45162). Successful exploitation can lead to full system takeover. Exploitable via ``allowed_classes``. Mitigation: upgrade to `2026.1.3` or later.
CVE-2026-45065 Vulnerability in symfony/routing (CVE-2026-45065)
vulnerability in symfony/routing (CVE-2026-45065). Risk of unauthorized operations or information disclosure. Exploitable via ``UrlGenerator``. Mitigation: upgrade to `8.0.12` or later.
CVE-2026-45063 Vulnerability in symfony/security-http (CVE-2026-45063)
vulnerability in symfony/security-http (CVE-2026-45063). Confidential information can be exposed externally. Exploitable via ``X509Authenticator``. Mitigation: upgrade to `8.0.12` or later.
SUSE-SU-2026:21854-1 Vulnerability in SUSE-SU-2026:21854-1 (SUSE-SU-2026:21854-1)
vulnerability in SUSE-SU-2026:21854-1 (SUSE-SU-2026:21854-1). Risk of unauthorized operations or information disclosure.
openSUSE-SU-2026:20821-1 Vulnerability in openSUSE-SU-2026:20821-1 (openSUSE-SU-2026:20821-1)
vulnerability in openSUSE-SU-2026:20821-1 (openSUSE-SU-2026:20821-1). Risk of unauthorized operations or information disclosure.
CGA-pffx-8c7q-p732 CGA-pffx-8c7q-p732
MINI-vfvr-2fr8-gpxw MINI-vfvr-2fr8-gpxw
MINI-jwpv-wqm9-xqwp MINI-jwpv-wqm9-xqwp
MINI-h5x8-95jh-fq3g MINI-h5x8-95jh-fq3g
MINI-q9xq-pj4v-cc6x MINI-q9xq-pj4v-cc6x
MINI-c2rg-36vr-53xj MINI-c2rg-36vr-53xj
MINI-gm7w-j52h-7424 MINI-gm7w-j52h-7424
MINI-7j8j-2gvf-jwrx MINI-7j8j-2gvf-jwrx
MINI-g9cg-pprh-p6wr MINI-g9cg-pprh-p6wr
MINI-fphx-68qw-9qfm MINI-fphx-68qw-9qfm
MINI-p8mj-wp34-6px4 MINI-p8mj-wp34-6px4
MINI-p3mj-3qp6-jj27 MINI-p3mj-3qp6-jj27
MINI-gg7w-7x93-j72j MINI-gg7w-7x93-j72j
MINI-2w83-5fqj-34jw MINI-2w83-5fqj-34jw
MINI-vv84-q7hx-772g MINI-vv84-q7hx-772g
MINI-p2gv-352x-93f6 MINI-p2gv-352x-93f6
MINI-pf3v-5q6r-j3h3 MINI-pf3v-5q6r-j3h3
MINI-3627-mqwj-f8wm MINI-3627-mqwj-f8wm
MINI-r3p3-63gh-g9wm MINI-r3p3-63gh-g9wm
MINI-fhw9-vpfh-jq6m MINI-fhw9-vpfh-jq6m
MINI-r8jm-p4m2-8m96 MINI-r8jm-p4m2-8m96
MINI-h66q-g69m-5r5p MINI-h66q-g69m-5r5p
MINI-7g5f-p6mj-j2c8 MINI-7g5f-p6mj-j2c8
MINI-xmg8-p5qc-xjjr MINI-xmg8-p5qc-xjjr
MINI-wjw9-c22x-hqq2 MINI-wjw9-c22x-hqq2
MINI-q46p-474q-3vvh MINI-q46p-474q-3vvh
MINI-xcfw-jf5w-w5vw MINI-xcfw-jf5w-w5vw
MINI-qwg3-fhx6-85fx MINI-qwg3-fhx6-85fx

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →