Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| BELL-CVE-2026-32740 |
|
BELL-CVE-2026-32740 |
| BELL-CVE-2026-32739 |
|
BELL-CVE-2026-32739 |
| BELL-CVE-2026-32814 |
|
BELL-CVE-2026-32814 |
| BELL-CVE-2026-32882 |
|
BELL-CVE-2026-32882 |
| BELL-CVE-2026-32741 |
|
BELL-CVE-2026-32741 |
| BELL-CVE-2026-32738 |
|
BELL-CVE-2026-32738 |
| BELL-CVE-2026-44432 |
|
BELL-CVE-2026-44432
CVE-2026-44432 does not affect BellSoft software
|
| BELL-CVE-2026-43502 |
|
BELL-CVE-2026-43502 |
| BELL-CVE-2026-43494 |
|
BELL-CVE-2026-43494 |
| BELL-CVE-2026-43501 |
|
BELL-CVE-2026-43501 |
| BELL-CVE-2026-43496 |
|
BELL-CVE-2026-43496 |
| MAL-2026-4385 |
|
Vulnerability in @druids/ui (MAL-2026-4385)
vulnerability in @druids/ui (MAL-2026-4385). Risk of unauthorized operations or information disclosure. Exploitable via ``ltidisafe``.
|
| GHSA-ghw7-gg88-gpmr |
|
Vulnerability in harmony-enablers-test-2026 (GHSA-ghw7-gg88-gpmr)
vulnerability in harmony-enablers-test-2026 (GHSA-ghw7-gg88-gpmr). Risk of unauthorized operations or information disclosure. Exploitable via ``preinstall``.
|
| MAL-2026-4251 |
|
Vulnerability in harmony-enablers-test-2026 (MAL-2026-4251)
vulnerability in harmony-enablers-test-2026 (MAL-2026-4251). Risk of unauthorized operations or information disclosure. Exploitable via ``preinstall``.
|
| SUSE-SU-2026:2045-1 |
|
Security update for rootlesskit
Security update for rootlesskit
|
| SUSE-SU-2026:2044-1 |
|
Security update for rootlesskit
Security update for rootlesskit
|
| SUSE-SU-2026:2043-1 |
|
Security update for rekor
Security update for rekor
|
| SUSE-SU-2026:2042-1 |
|
Security update for container-suseconnect
Security update for container-suseconnect
|
| CVE-2026-9104 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9104)
cross-site scripting in wordpress (CVE-2026-9104). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9018 |
|
Privilege Escalation in wordpress (CVE-2026-9018)
vulnerability in wordpress (CVE-2026-9018). Successful exploitation can lead to full system takeover. Exploitable via ``wp_ajax_nopriv_eel_register``.
|
| CVE-2026-7509 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-7509)
cross-site scripting in wordpress (CVE-2026-7509). Risk of unauthorized operations or information disclosure. Exploitable via ``before``.
|
| CVE-2026-7249 |
|
Vulnerability in wordpress (CVE-2026-7249)
vulnerability in wordpress (CVE-2026-7249). Risk of unauthorized operations or information disclosure. Exploitable via ``init``.
|
| CVE-2026-6864 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-6864)
cross-site scripting in wordpress (CVE-2026-6864). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4070 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-4070)
vulnerability in wordpress (CVE-2026-4070). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44409 |
|
Information Disclosure in zte (CVE-2026-44409)
vulnerability in zte (CVE-2026-44409). Confidential information can be exposed externally.
|
| CVE-2026-3481 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3481)
cross-site scripting in wordpress (CVE-2026-3481). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-4733 |
|
Vulnerability in wrld-dev (MAL-2026-4733)
vulnerability in wrld-dev (MAL-2026-4733). Risk of unauthorized operations or information disclosure. Exploitable via ``auth.user.login``.
|
| CVE-2026-2518 |
|
Vulnerability in wordpress (CVE-2026-2518)
vulnerability in wordpress (CVE-2026-2518). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-4363 |
|
Vulnerability in @asura21232/fca-unofficial-nextgen (MAL-2026-4363)
vulnerability in @asura21232/fca-unofficial-nextgen (MAL-2026-4363). Risk of unauthorized operations or information disclosure. Exploitable via ``loginViaAPI``.
|
| CVE-2026-9054 |
|
Vulnerability in CVE-2026-9054 (CVE-2026-9054)
vulnerability in CVE-2026-9054 (CVE-2026-9054). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9053 |
|
Unrestricted File Upload in CVE-2026-9053 (CVE-2026-9053)
vulnerability in CVE-2026-9053 (CVE-2026-9053). Risk of unauthorized operations or information disclosure.
|
| DEBIAN-CVE-2026-46598 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-46598)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-46598). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-46597 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-46597)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-46597). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| CVE-2026-4834 |
|
SQL Injection in wordpress (CVE-2026-4834)
SQL injection in wordpress (CVE-2026-4834). Confidential information can be exposed externally.
|
| CVE-2026-46598 |
|
Vulnerability in golang.org/x/crypto (CVE-2026-46598)
vulnerability in golang.org/x/crypto (CVE-2026-46598). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.52.0` or later.
|
| CVE-2026-46597 |
|
Vulnerability in golang.org/x/crypto (CVE-2026-46597)
vulnerability in golang.org/x/crypto (CVE-2026-46597). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.52.0` or later.
|
| DEBIAN-CVE-2026-46595 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-46595)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-46595). Confidential information can be exposed externally. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-42508 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-42508)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-42508). Confidential information can be exposed externally. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| CVE-2026-46595 |
|
Authorization Flaw in golang.org/x/crypto (CVE-2026-46595)
vulnerability in golang.org/x/crypto (CVE-2026-46595). Confidential information can be exposed externally. Mitigation: upgrade to `0.52.0` or later.
|
| CVE-2026-42508 |
|
Vulnerability in golang.org/x/crypto (CVE-2026-42508)
vulnerability in golang.org/x/crypto (CVE-2026-42508). Confidential information can be exposed externally. Mitigation: upgrade to `0.52.0` or later.
|
| DEBIAN-CVE-2026-39835 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39835)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39835). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-39834 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39834)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39834). Data can be tampered with by attackers. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| CVE-2026-39835 |
|
Vulnerability in golang.org/x/crypto (CVE-2026-39835)
vulnerability in golang.org/x/crypto (CVE-2026-39835). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.52.0` or later.
|
| CVE-2026-39834 |
|
Vulnerability in golang.org/x/crypto (CVE-2026-39834)
vulnerability in golang.org/x/crypto (CVE-2026-39834). Data can be tampered with by attackers. Mitigation: upgrade to `0.52.0` or later.
|
| DEBIAN-CVE-2026-39829 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39829)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39829). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-39833 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39833)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39833). Confidential information can be exposed externally. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-39831 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39831)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39831). Confidential information can be exposed externally. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-39828 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39828)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39828). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-39830 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39830)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39830). Confidential information can be exposed externally. Mitigation: upgrade to `1:0.52.0-1` or later.
|
| DEBIAN-CVE-2026-39832 |
|
Vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39832)
vulnerability in golang-go.crypto (DEBIAN-CVE-2026-39832). Confidential information can be exposed externally. Mitigation: upgrade to `1:0.52.0-1` or later.
|