Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
GHSA-pmr7-7grm-gj36 Vulnerability in @openclaw-cn/feishu (GHSA-pmr7-7grm-gj36)
vulnerability in @openclaw-cn/feishu (GHSA-pmr7-7grm-gj36). Risk of unauthorized operations or information disclosure.
GHSA-rfwx-q579-pqpc Vulnerability in @openclaw-cn/cli (GHSA-rfwx-q579-pqpc)
vulnerability in @openclaw-cn/cli (GHSA-rfwx-q579-pqpc). Risk of unauthorized operations or information disclosure.
MAL-2026-4161 Vulnerability in @cap-js/openapi (MAL-2026-4161)
vulnerability in @cap-js/openapi (MAL-2026-4161). Risk of unauthorized operations or information disclosure.
ROOT-OS-DEBIAN-13-CVE-2026-43331 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-43331)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-13-CVE-2026-43331). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.12.90-2.root.io.130, 6.12.90-2.root.io.131, 6.12.90-2.root.io.132, 6.12.90-2.root.io.133, 6.12.90-2.root.io.134, 6.12.90-2.root.io.135, 6.12.90-2.root.io.136, 6.12.90-2.root.io.137, 6.12.90-2.root.io.138` or later.
MAL-2026-4179 Vulnerability in vfat-tools (MAL-2026-4179)
vulnerability in vfat-tools (MAL-2026-4179). Risk of unauthorized operations or information disclosure.
CVE-2026-47307 Vulnerability in dos (CVE-2026-47307)
vulnerability in dos (CVE-2026-47307). Risk of unauthorized operations or information disclosure.
CVE-2026-33565 in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
CVE-2026-28751 in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
CVE-2026-28733 in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution.
in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution.
CVE-2026-27781 in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
CVE-2026-27766 in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak.
in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak.
CVE-2026-27648 in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre...
in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre...
CVE-2026-25850 in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak
in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak
CVE-2026-25781 in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered.
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered.
CVE-2026-25110 in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
CVE-2026-24792 in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre...
in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre...
CVE-2026-22069 A local privilege escalation vulnerability exists in O+ Connect because it fails to validate the...
A local privilege escalation vulnerability exists in O+ Connect because it fails to validate the...
ROOT-OS-DEBIAN-11-CVE-2026-43342 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-43342)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-43342). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.92, 5.10.257-1.root.io.93, 5.10.257-1.root.io.94, 5.10.257-1.root.io.95, 5.10.257-1.root.io.96, 5.10.257-1.root.io.97, 5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
ROOT-OS-DEBIAN-11-CVE-2026-43343 Vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-43343)
vulnerability in rootio-linux (ROOT-OS-DEBIAN-11-CVE-2026-43343). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.10.257-1.root.io.92, 5.10.257-1.root.io.93, 5.10.257-1.root.io.94, 5.10.257-1.root.io.95, 5.10.257-1.root.io.96, 5.10.257-1.root.io.97, 5.10.257-1.root.io.98, 5.10.257-1.root.io.99` or later.
MAL-2026-4178 Vulnerability in sickle-wrapper (MAL-2026-4178)
vulnerability in sickle-wrapper (MAL-2026-4178). Risk of unauthorized operations or information disclosure.
MGASA-2026-0150 Vulnerability in perl-libwww-perl (MGASA-2026-0150)
vulnerability in perl-libwww-perl (MGASA-2026-0150). Risk of unauthorized operations or information disclosure. Exploitable via `Authorization header`. Mitigation: upgrade to `6.830.0-1.mga9` or later.
MGASA-2026-0151 Vulnerability in postgresql15 (MGASA-2026-0151)
vulnerability in postgresql15 (MGASA-2026-0151). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `15.18-1.mga9` or later.
CGA-q8m7-827v-qw9g CGA-q8m7-827v-qw9g
CGA-cjw6-g67q-rwx9 CGA-cjw6-g67q-rwx9
CGA-37fr-7h3x-r97v CGA-37fr-7h3x-r97v
CGA-w36v-v4jh-chqp CGA-w36v-v4jh-chqp
CVE-2026-33514 Vulnerability in discourse (CVE-2026-33514)
vulnerability in discourse (CVE-2026-33514). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.1.4, 2026.3.1, 2026.4.1` or later.
CVE-2026-33234 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-33234)
SSRF in ssrf (CVE-2026-33234). Risk of unauthorized operations or information disclosure.
CVE-2026-33233 Code Injection in deserialization (CVE-2026-33233)
code injection in deserialization (CVE-2026-33233). Successful exploitation can lead to full system takeover.
CVE-2026-33232 Vulnerability in dos (CVE-2026-33232)
vulnerability in dos (CVE-2026-33232). Risk of unauthorized operations or information disclosure.
CVE-2026-32323 Privilege Escalation in privilege-escalation (CVE-2026-32323)
vulnerability in privilege-escalation (CVE-2026-32323). Successful exploitation can lead to full system takeover.
JLSEC-2026-511 Vulnerability in Librsvg_jll (JLSEC-2026-511)
vulnerability in Librsvg_jll (JLSEC-2026-511). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.52.4+0` or later.
JLSEC-2026-512 Vulnerability in Librsvg_jll (JLSEC-2026-512)
vulnerability in Librsvg_jll (JLSEC-2026-512). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.54.7+0` or later.
CLSA-2026-1779154430 Vulnerability in rsync (CLSA-2026-1779154430)
vulnerability in rsync (CLSA-2026-1779154430). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.1.3-12.el8.tuxcare.els9` or later.
CLSA-2026-1779153233 Vulnerability in go-toolset (CLSA-2026-1779153233)
vulnerability in go-toolset (CLSA-2026-1779153233). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.22.9-1.el9_2.tuxcare.els9` or later.
CLSA-2026-1779153000 Vulnerability in go-toolset (CLSA-2026-1779153000)
vulnerability in go-toolset (CLSA-2026-1779153000). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.25.7-1.el9_6.tuxcare.els5` or later.
CLSA-2026-1779152708 Vulnerability in grafana (CLSA-2026-1779152708)
vulnerability in grafana (CLSA-2026-1779152708). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.2.6-15.el9_6.tuxcare.els8` or later.
CLSA-2026-1779109358 grafana-pcp: Fix of CVE-2026-32283
grafana-pcp: Fix of CVE-2026-32283
CLSA-2026-1779107085 gnutls: Fix of CVE-2026-3833
gnutls: Fix of CVE-2026-3833
CLSA-2026-1779120390 Vulnerability in gnutls (CLSA-2026-1779120390)
vulnerability in gnutls (CLSA-2026-1779120390). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.6.16-8.el8.1.tuxcare.els6` or later.
CLSA-2026-1779120347 gnutls: Fix of CVE-2026-3833
gnutls: Fix of CVE-2026-3833
CLSA-2026-1779120418 Vulnerability in git-lfs (CLSA-2026-1779120418)
vulnerability in git-lfs (CLSA-2026-1779120418). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.6.1-2.el9_6.tuxcare.els5` or later.
CLSA-2026-1779120195 tbb: Fix of CVE-2020-11023
tbb: Fix of CVE-2020-11023
CLSA-2026-1779119949 Vulnerability in cyrus-imapd (CLSA-2026-1779119949)
vulnerability in cyrus-imapd (CLSA-2026-1779119949). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.4.1-7.el9.tuxcare.els1` or later.
CLSA-2026-1779101894 Vulnerability in opensc (CLSA-2026-1779101894)
vulnerability in opensc (CLSA-2026-1779101894). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.22.0-2.el9_2.tuxcare.els6` or later.
CLSA-2026-1779099998 Vulnerability in ruby (CLSA-2026-1779099998)
vulnerability in ruby (CLSA-2026-1779099998). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.0.4-160.el9_0.tuxcare.els13` or later.
CLSA-2026-1779118869 Vulnerability in apache2 (CLSA-2026-1779118869)
vulnerability in apache2 (CLSA-2026-1779118869). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.4.59-1~deb10u1+tuxcare.els5` or later.
CVE-2026-32312 Vulnerability in glpi-project (CVE-2026-32312)
vulnerability in glpi-project (CVE-2026-32312). Risk of unauthorized operations or information disclosure.
CVE-2026-32244 Information Disclosure in discourse (CVE-2026-32244)
vulnerability in discourse (CVE-2026-32244). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.1.4, 2026.3.1, 2026.4.1` or later.
UBUNTU-CVE-2026-32312 Vulnerability in glpi (UBUNTU-CVE-2026-32312)
vulnerability in glpi (UBUNTU-CVE-2026-32312). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →