Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| ROOT-APP-NPM-CVE-2026-39365 |
|
Vulnerability in @rootio/vite (ROOT-APP-NPM-CVE-2026-39365)
vulnerability in @rootio/vite (ROOT-APP-NPM-CVE-2026-39365). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.4.21-root.io.1, 5.4.21-root.io.2, 5.4.21-root.io.3` or later.
|
| GHSA-g2hx-wqmp-2fhg |
|
Vulnerability in chai-as-vec (GHSA-g2hx-wqmp-2fhg)
vulnerability in chai-as-vec (GHSA-g2hx-wqmp-2fhg). Risk of unauthorized operations or information disclosure.
|
| CLSA-2026-1779190223 |
|
Vulnerability in opensc (CLSA-2026-1779190223)
vulnerability in opensc (CLSA-2026-1779190223). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.22.0-2.el9_2.tuxcare.els5` or later.
|
| ECHO-c25d-53f4-8782 |
|
ECHO-c25d-53f4-8782 |
| ECHO-fc76-5c23-c989 |
|
ECHO-fc76-5c23-c989 |
| ECHO-297b-3c7f-90d1 |
|
ECHO-297b-3c7f-90d1 |
| ECHO-e22e-7dc5-9540 |
|
ECHO-e22e-7dc5-9540 |
| ECHO-9db6-4921-aec5 |
|
ECHO-9db6-4921-aec5 |
| ECHO-ce8c-f3b6-b79f |
|
ECHO-ce8c-f3b6-b79f |
| BELL-CVE-2026-40930 |
|
BELL-CVE-2026-40930 |
| SUSE-SU-2026:2007-1 |
|
Vulnerability in SUSE-SU-2026:2007-1 (SUSE-SU-2026:2007-1)
vulnerability in SUSE-SU-2026:2007-1 (SUSE-SU-2026:2007-1). Risk of unauthorized operations or information disclosure.
|
| ECHO-6701-0c72-de60 |
|
ECHO-6701-0c72-de60 |
| ROOT-APP-PYPI-CVE-2026-40087 |
|
Vulnerability in rootio-langchain-core (ROOT-APP-PYPI-CVE-2026-40087)
vulnerability in rootio-langchain-core (ROOT-APP-PYPI-CVE-2026-40087). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.2.4+root.io.4, 1.2.4+root.io.5` or later.
|
| MAL-2026-4165 |
|
Vulnerability in paysafe-gbp-virtual-terminal-lib-fe (MAL-2026-4165)
vulnerability in paysafe-gbp-virtual-terminal-lib-fe (MAL-2026-4165). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8827 |
|
SQL Injection in friendsoftypo3/tt-address (CVE-2026-8827)
SQL injection in friendsoftypo3/tt-address (CVE-2026-8827). Risk of unauthorized operations or information disclosure. Exploitable via ``tt_address``. Mitigation: upgrade to `8.1.2` or later.
|
| CVE-2026-8727 |
|
Unsafe Deserialization in tomasnorre/crawler (CVE-2026-8727)
vulnerability in tomasnorre/crawler (CVE-2026-8727). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `11.0.13` or later.
|
| CVE-2026-8726 |
|
SQL Injection in georgringer/news (CVE-2026-8726)
SQL injection in georgringer/news (CVE-2026-8726). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `11.4.4` or later.
|
| CVE-2026-46725 |
|
Unsafe Deserialization in mmc/ceselector (CVE-2026-46725)
vulnerability in mmc/ceselector (CVE-2026-46725). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.0.3` or later.
|
| CVE-2026-46724 |
|
Path Traversal in tpwd/ke_search (CVE-2026-46724)
path traversal in tpwd/ke_search (CVE-2026-46724). Risk of unauthorized operations or information disclosure. Exploitable via ``ke_search``. Mitigation: upgrade to `4.6.7` or later.
|
| CVE-2026-46723 |
|
Vulnerability in tpwd/ke_search (CVE-2026-46723)
vulnerability in tpwd/ke_search (CVE-2026-46723). Risk of unauthorized operations or information disclosure. Exploitable via ``ke_search``. Mitigation: upgrade to `4.6.7` or later.
|
| CVE-2026-46722 |
|
XXE (XML External Entity) in tpwd/ke_search (CVE-2026-46722)
vulnerability in tpwd/ke_search (CVE-2026-46722). Risk of unauthorized operations or information disclosure. Exploitable via ``ke_search``. Mitigation: upgrade to `4.6.7` or later.
|
| CVE-2026-46721 |
|
Vulnerability in evoweb/sf-register (CVE-2026-46721)
vulnerability in evoweb/sf-register (CVE-2026-46721). Risk of unauthorized operations or information disclosure. Exploitable via ``create``. Mitigation: upgrade to `13.2.4` or later.
|
| CVE-2026-46586 |
|
Code Injection in apache (CVE-2026-46586)
code injection in apache (CVE-2026-46586). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45434 |
|
Authentication Bypass in apache (CVE-2026-45434)
authentication bypass in apache (CVE-2026-45434). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45187 |
|
Vulnerability in apache (CVE-2026-45187)
vulnerability in apache (CVE-2026-45187). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41919 |
|
Vulnerability in apache (CVE-2026-41919)
vulnerability in apache (CVE-2026-41919). Confidential information can be exposed externally.
|
| CVE-2026-35086 |
|
Code Injection in apache (CVE-2026-35086)
code injection in apache (CVE-2026-35086). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31986 |
|
Vulnerability in apache (CVE-2026-31986)
vulnerability in apache (CVE-2026-31986). Confidential information can be exposed externally.
|
| CVE-2026-31910 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-31910)
SSRF in apache (CVE-2026-31910). Confidential information can be exposed externally.
|
| CVE-2026-31909 |
|
Information Disclosure in apache (CVE-2026-31909)
vulnerability in apache (CVE-2026-31909). Confidential information can be exposed externally.
|
| CVE-2026-31906 |
|
Cross-Site Scripting (XSS) in apache (CVE-2026-31906)
cross-site scripting in apache (CVE-2026-31906). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31388 |
|
Vulnerability in apache (CVE-2026-31388)
vulnerability in apache (CVE-2026-31388). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31387 |
|
Authentication Bypass in apache (CVE-2026-31387)
authentication bypass in apache (CVE-2026-31387). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31380 |
|
Vulnerability in apache (CVE-2026-31380)
vulnerability in apache (CVE-2026-31380). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31379 |
|
Path Traversal in apache (CVE-2026-31379)
path traversal in apache (CVE-2026-31379). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31378 |
|
Vulnerability in apache (CVE-2026-31378)
vulnerability in apache (CVE-2026-31378). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2611 |
|
Vulnerability in mlflow (CVE-2026-2611)
vulnerability in mlflow (CVE-2026-2611). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.10.0` or later.
|
| CVE-2026-29226 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-29226)
SSRF in apache (CVE-2026-29226). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-29220 |
|
Path Traversal in apache (CVE-2026-29220)
path traversal in apache (CVE-2026-29220). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-29207 |
|
Vulnerability in apache (CVE-2026-29207)
vulnerability in apache (CVE-2026-29207). Risk of unauthorized operations or information disclosure.
|
| RHSA-2026:18556 |
|
Red Hat Security Advisory: unbound security update
Red Hat Security Advisory: unbound security update
|
| RHSA-2026:18536 |
|
Red Hat Security Advisory: tomcat9 security update
Red Hat Security Advisory: tomcat9 security update
|
| RHSA-2026:18480 |
|
Red Hat Security Advisory: linux-sgx security update
Red Hat Security Advisory: linux-sgx security update
|
| RHSA-2026:18421 |
|
Red Hat Security Advisory: luksmeta security update
Red Hat Security Advisory: luksmeta security update
|
| RHSA-2026:18344 |
|
Red Hat Security Advisory: mingw-glib2 security update
Red Hat Security Advisory: mingw-glib2 security update
|
| RHSA-2026:18289 |
|
Red Hat Security Advisory: podman security update
Red Hat Security Advisory: podman security update
|
| RHSA-2026:18162 |
|
Red Hat Security Advisory: iputils security update
Red Hat Security Advisory: iputils security update
|
| RHSA-2026:18143 |
|
Red Hat Security Advisory: p11-kit security update
Red Hat Security Advisory: p11-kit security update
|
| RHSA-2026:18160 |
|
Red Hat Security Advisory: libssh security update
Red Hat Security Advisory: libssh security update
|
| RHSA-2026:18142 |
|
Red Hat Security Advisory: NetworkManager security update
Red Hat Security Advisory: NetworkManager security update
|