Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| ROOT-APP-NPM-CVE-2022-24772 |
|
Vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2022-24772)
vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2022-24772). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.7.1-root.io.2, 0.10.0-root.io.2, 0.10.0-root.io.1, 0.7.1-root.io.1, 0.7.1-root.io.3, 0.7.1-root.io.4` or later.
|
| ROOT-APP-NPM-CVE-2025-66031 |
|
Vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2025-66031)
vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2025-66031). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.3.1-root.io.1, 1.3.1-root.io.2, 1.3.1-root.io.3, 1.3.1-root.io.4, 1.3.1-root.io.5, 0.7.1-root.io.2, 0.10.0-root.io.2, 0.10.0-root.io.1, 0.7.1-root.io.1, 0.7.1-root.io.3, 0.7.1-root.io.4` or later.
|
| ROOT-APP-NPM-CVE-2026-33895 |
|
Vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2026-33895)
vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2026-33895). Data can be tampered with by attackers. Mitigation: upgrade to `1.3.3-root.io.1, 1.3.3-root.io.2, 1.3.1-root.io.4, 1.3.1-root.io.5, 0.10.0-root.io.2, 0.10.0-root.io.1, 1.3.3-root.io.3, 0.7.1-root.io.4, 1.3.3-root.io.4` or later.
|
| ROOT-APP-NPM-CVE-2025-12816 |
|
Vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2025-12816)
vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2025-12816). Data can be tampered with by attackers. Mitigation: upgrade to `1.3.1-root.io.1, 1.3.1-root.io.2, 1.3.1-root.io.3, 1.3.1-root.io.4, 1.3.1-root.io.5, 0.7.1-root.io.2, 0.10.0-root.io.2, 0.10.0-root.io.1, 0.7.1-root.io.1, 0.7.1-root.io.3, 0.7.1-root.io.4` or later.
|
| ROOT-APP-NPM-CVE-2026-33896 |
|
Vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2026-33896)
vulnerability in @rootio/node-forge (ROOT-APP-NPM-CVE-2026-33896). Confidential information can be exposed externally. Mitigation: upgrade to `1.3.3-root.io.2, 1.3.1-root.io.4, 1.3.1-root.io.5, 0.7.1-root.io.2, 0.10.0-root.io.2, 0.10.0-root.io.1, 0.7.1-root.io.1, 1.3.3-root.io.3, 0.7.1-root.io.3, 0.7.1-root.io.4, 1.3.3-root.io.4` or later.
|
| RHSA-2026:21254 |
|
Red Hat Security Advisory: libcap security update
Red Hat Security Advisory: libcap security update
|
| RHSA-2026:21209 |
|
Red Hat Security Advisory: kernel security update
Red Hat Security Advisory: kernel security update
|
| RHSA-2026:20929 |
|
Red Hat Security Advisory: libexif security update
Red Hat Security Advisory: libexif security update
|
| RHSA-2026:20916 |
|
Red Hat Security Advisory: corosync security update
Red Hat Security Advisory: corosync security update
|
| RHSA-2026:20810 |
|
Red Hat Security Advisory: python-tornado security update
Red Hat Security Advisory: python-tornado security update
|
| RHSA-2026:20696 |
|
Red Hat Security Advisory: rsync security update
Red Hat Security Advisory: rsync security update
|
| RHSA-2026:20693 |
|
Red Hat Security Advisory: mysql8.4 security update
Red Hat Security Advisory: mysql8.4 security update
|
| RHSA-2026:20611 |
|
Red Hat Security Advisory: gnutls security update
Red Hat Security Advisory: gnutls security update
|
| RHSA-2026:20597 |
|
Red Hat Security Advisory: glibc security update
Red Hat Security Advisory: glibc security update
|
| RHSA-2026:20594 |
|
Red Hat Security Advisory: glibc security update
Red Hat Security Advisory: glibc security update
|
| RHSA-2026:20405 |
|
Red Hat Security Advisory: Red Hat JBoss Web Server 6.2.3 release and security update
Red Hat Security Advisory: Red Hat JBoss Web Server 6.2.3 release and security update
|
| RHSA-2026:20322 |
|
Red Hat Security Advisory: Red Hat build of MicroShift 4.19.32 security update
Red Hat Security Advisory: Red Hat build of MicroShift 4.19.32 security update
|
| ROOT-APP-MAVEN-CVE-2026-34481 |
|
Vulnerability in io.root.org.apache.logging.log4j:log4j-layout-template-json (ROOT-APP-MAVEN-CVE-2026-34481)
vulnerability in io.root.org.apache.logging.log4j:log4j-layout-template-json (ROOT-APP-MAVEN-CVE-2026-34481). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.23.1-root.io.1, 2.21.1-root.io.1, 2.23.1-root.io.1781448408, 2.23.1-root.io.1781450700` or later.
|
| ROOT-APP-MAVEN-CVE-2022-31692 |
|
Vulnerability in io.root.org.springframework.security:spring-security-core (ROOT-APP-MAVEN-CVE-2022-31692)
vulnerability in io.root.org.springframework.security:spring-security-core (ROOT-APP-MAVEN-CVE-2022-31692). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.7.1-root.io.1, 5.7.1-root.io.2` or later.
|
| ROOT-APP-MAVEN-CVE-2023-20862 |
|
Vulnerability in io.root.org.springframework.security:spring-security-core (ROOT-APP-MAVEN-CVE-2023-20862)
vulnerability in io.root.org.springframework.security:spring-security-core (ROOT-APP-MAVEN-CVE-2023-20862). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.7.1-root.io.1, 5.7.3-root.io.1, 5.7.1-root.io.2` or later.
|
| MINI-8gj9-8g26-8www |
|
MINI-8gj9-8g26-8www |
| USN-8316-1 |
|
Vulnerability in cableswig (USN-8316-1)
vulnerability in cableswig (USN-8316-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.1.0+git20150808-2ubuntu0.1~esm1` or later.
|
| CVE-2026-8054 |
|
SQL Injection in sqli (CVE-2026-8054)
SQL injection in sqli (CVE-2026-8054). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40849 |
|
SQL Injection in sqli (CVE-2026-40849)
SQL injection in sqli (CVE-2026-40849). Confidential information can be exposed externally.
|
| CVE-2026-40851 |
|
Vulnerability in CVE-2026-40851 (CVE-2026-40851)
vulnerability in CVE-2026-40851 (CVE-2026-40851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48968 |
|
Cross-Site Scripting (XSS) in CVE-2026-48968 (CVE-2026-48968)
cross-site scripting in CVE-2026-48968 (CVE-2026-48968). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40844 |
|
SQL Injection in sqli (CVE-2026-40844)
SQL injection in sqli (CVE-2026-40844). Confidential information can be exposed externally.
|
| CVE-2026-48877 |
|
Vulnerability in CVE-2026-48877 (CVE-2026-48877)
vulnerability in CVE-2026-48877 (CVE-2026-48877). Confidential information can be exposed externally.
|
| CVE-2026-40850 |
|
SQL Injection in sqli (CVE-2026-40850)
SQL injection in sqli (CVE-2026-40850). Confidential information can be exposed externally.
|
| CVE-2026-40848 |
|
SQL Injection in sqli (CVE-2026-40848)
SQL injection in sqli (CVE-2026-40848). Confidential information can be exposed externally.
|
| CVE-2026-40845 |
|
SQL Injection in sqli (CVE-2026-40845)
SQL injection in sqli (CVE-2026-40845). Confidential information can be exposed externally.
|
| CVE-2026-49002 |
|
Vulnerability in CVE-2026-49002 (CVE-2026-49002)
vulnerability in CVE-2026-49002 (CVE-2026-49002). Confidential information can be exposed externally.
|
| CVE-2026-40847 |
|
SQL Injection in sqli (CVE-2026-40847)
SQL injection in sqli (CVE-2026-40847). Confidential information can be exposed externally.
|
| CVE-2026-40846 |
|
SQL Injection in sqli (CVE-2026-40846)
SQL injection in sqli (CVE-2026-40846). Confidential information can be exposed externally.
|
| CVE-2026-40852 |
|
OS Command Injection in CVE-2026-40852 (CVE-2026-40852)
OS command injection in CVE-2026-40852 (CVE-2026-40852). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40837 |
|
SQL Injection in sqli (CVE-2026-40837)
SQL injection in sqli (CVE-2026-40837). Confidential information can be exposed externally.
|
| CVE-2026-40832 |
|
SQL Injection in sqli (CVE-2026-40832)
SQL injection in sqli (CVE-2026-40832). Confidential information can be exposed externally.
|
| CVE-2026-40836 |
|
SQL Injection in sqli (CVE-2026-40836)
SQL injection in sqli (CVE-2026-40836). Confidential information can be exposed externally.
|
| CVE-2026-40843 |
|
SQL Injection in sqli (CVE-2026-40843)
SQL injection in sqli (CVE-2026-40843). Confidential information can be exposed externally.
|
| CVE-2026-40840 |
|
SQL Injection in sqli (CVE-2026-40840)
SQL injection in sqli (CVE-2026-40840). Confidential information can be exposed externally.
|
| CVE-2026-40833 |
|
SQL Injection in sqli (CVE-2026-40833)
SQL injection in sqli (CVE-2026-40833). Confidential information can be exposed externally.
|
| CVE-2026-40841 |
|
SQL Injection in sqli (CVE-2026-40841)
SQL injection in sqli (CVE-2026-40841). Confidential information can be exposed externally.
|
| CVE-2026-40835 |
|
SQL Injection in sqli (CVE-2026-40835)
SQL injection in sqli (CVE-2026-40835). Confidential information can be exposed externally.
|
| CVE-2026-40842 |
|
SQL Injection in sqli (CVE-2026-40842)
SQL injection in sqli (CVE-2026-40842). Confidential information can be exposed externally.
|
| CVE-2026-40838 |
|
SQL Injection in sqli (CVE-2026-40838)
SQL injection in sqli (CVE-2026-40838). Confidential information can be exposed externally.
|
| CVE-2026-40834 |
|
SQL Injection in sqli (CVE-2026-40834)
SQL injection in sqli (CVE-2026-40834). Confidential information can be exposed externally.
|
| CVE-2026-40839 |
|
SQL Injection in sqli (CVE-2026-40839)
SQL injection in sqli (CVE-2026-40839). Confidential information can be exposed externally.
|
| CVE-2026-40830 |
|
SQL Injection in sqli (CVE-2026-40830)
SQL injection in sqli (CVE-2026-40830). Confidential information can be exposed externally.
|
| CVE-2025-13593 |
|
Vulnerability in synology (CVE-2025-13593)
vulnerability in synology (CVE-2025-13593). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40829 |
|
SQL Injection in sqli (CVE-2026-40829)
SQL injection in sqli (CVE-2026-40829). Confidential information can be exposed externally.
|