Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-67585 Vulnerability in CVE-2026-67585 (CVE-2026-67585)
vulnerability in CVE-2026-67585 (CVE-2026-67585). Risk of unauthorized operations or information disclosure.
CVE-2026-20348 Vulnerability in dos (CVE-2026-20348)
vulnerability in dos (CVE-2026-20348). Risk of unauthorized operations or information disclosure.
CVE-2026-20347 Out-of-Bounds Read in dos (CVE-2026-20347)
vulnerability in dos (CVE-2026-20347). Risk of unauthorized operations or information disclosure.
CVE-2026-20346 Out-of-Bounds Read in dos (CVE-2026-20346)
vulnerability in dos (CVE-2026-20346). Risk of unauthorized operations or information disclosure.
CVE-2026-20345 Vulnerability in dos (CVE-2026-20345)
vulnerability in dos (CVE-2026-20345). Risk of unauthorized operations or information disclosure.
CVE-2026-20339 Vulnerability in dos (CVE-2026-20339)
vulnerability in dos (CVE-2026-20339). Risk of unauthorized operations or information disclosure.
CVE-2026-20338 Vulnerability in dos (CVE-2026-20338)
vulnerability in dos (CVE-2026-20338). Risk of unauthorized operations or information disclosure.
CVE-2026-19212 Vulnerability in CVE-2026-19212 (CVE-2026-19212)
vulnerability in CVE-2026-19212 (CVE-2026-19212). Risk of unauthorized operations or information disclosure.
CVE-2026-19211 Vulnerability in sqli (CVE-2026-19211)
vulnerability in sqli (CVE-2026-19211). Risk of unauthorized operations or information disclosure.
CVE-2026-17603 Code Injection in CVE-2026-17603 (CVE-2026-17603)
code injection in CVE-2026-17603 (CVE-2026-17603). Risk of unauthorized operations or information disclosure.
CVE-2026-17601 Vulnerability in CVE-2026-17601 (CVE-2026-17601)
vulnerability in CVE-2026-17601 (CVE-2026-17601). Risk of unauthorized operations or information disclosure.
CVE-2026-17600 Vulnerability in CVE-2026-17600 (CVE-2026-17600)
vulnerability in CVE-2026-17600 (CVE-2026-17600). Risk of unauthorized operations or information disclosure.
CVE-2026-17599 Vulnerability in CVE-2026-17599 (CVE-2026-17599)
vulnerability in CVE-2026-17599 (CVE-2026-17599). Risk of unauthorized operations or information disclosure.
CVE-2026-17598 Vulnerability in CVE-2026-17598 (CVE-2026-17598)
vulnerability in CVE-2026-17598 (CVE-2026-17598). Risk of unauthorized operations or information disclosure.
CVE-2026-17597 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-17597)
SSRF in ssrf (CVE-2026-17597). Risk of unauthorized operations or information disclosure.
CVE-2026-17596 Cross-Site Scripting (XSS) in CVE-2026-17596 (CVE-2026-17596)
cross-site scripting in CVE-2026-17596 (CVE-2026-17596). Risk of unauthorized operations or information disclosure.
CVE-2026-17595 Vulnerability in CVE-2026-17595 (CVE-2026-17595)
vulnerability in CVE-2026-17595 (CVE-2026-17595). Risk of unauthorized operations or information disclosure.
CVE-2026-17594 Authorization Flaw in CVE-2026-17594 (CVE-2026-17594)
vulnerability in CVE-2026-17594 (CVE-2026-17594). Risk of unauthorized operations or information disclosure.
CVE-2026-17593 Vulnerability in CVE-2026-17593 (CVE-2026-17593)
vulnerability in CVE-2026-17593 (CVE-2026-17593). Risk of unauthorized operations or information disclosure.
CVE-2026-14644 Vulnerability in privilege-escalation (CVE-2026-14644)
vulnerability in privilege-escalation (CVE-2026-14644). Risk of unauthorized operations or information disclosure.
CVE-2026-56818 Vulnerability in io.netty:netty-codec-redis (CVE-2026-56818)
vulnerability in io.netty:netty-codec-redis (CVE-2026-56818). Risk of unauthorized operations or information disclosure. Exploitable via ``RedisArrayAggregator``. Mitigation: upgrade to `4.2.16.Final` or later.
CVE-2026-66062 Vulnerability in @sveltejs/kit (CVE-2026-66062)
vulnerability in @sveltejs/kit (CVE-2026-66062). Risk of unauthorized operations or information disclosure. Exploitable via ``Accept``. Mitigation: upgrade to `2.70.2` or later.
GHSA-7c4v-fwgw-9rf7 Information Disclosure in nuxt (GHSA-7c4v-fwgw-9rf7)
vulnerability in nuxt (GHSA-7c4v-fwgw-9rf7). Risk of unauthorized operations or information disclosure. Exploitable via `GET /.well-known/appspecific/com.chrome.devtools.json`. Mitigation: upgrade to `3.21.10` or later.
CVE-2026-71557 Path Traversal in github.com/go-git/go-git/v5 (CVE-2026-71557)
path traversal in github.com/go-git/go-git/v5 (CVE-2026-71557). Data can be tampered with by attackers. Exploitable via ``dotgit``. Mitigation: upgrade to `5.19.2` or later.
CVE-2026-71556 Vulnerability in github.com/go-git/go-git/v5 (CVE-2026-71556)
vulnerability in github.com/go-git/go-git/v5 (CVE-2026-71556). Data can be tampered with by attackers. Exploitable via ``worktreeFilesystem``. Mitigation: upgrade to `5.19.2` or later.
CVE-2026-20337 Vulnerability in Cisco dos (CVE-2026-20337)
vulnerability in Cisco dos (CVE-2026-20337). Risk of unauthorized operations or information disclosure.
CVE-2026-66059 Authorization Flaw in CVE-2026-66059 (CVE-2026-66059)
vulnerability in CVE-2026-66059 (CVE-2026-66059). Risk of unauthorized operations or information disclosure.
CVE-2026-48093 Cross-Site Scripting (XSS) in wordpress (CVE-2026-48093)
cross-site scripting in wordpress (CVE-2026-48093). Risk of unauthorized operations or information disclosure. Exploitable via ``unfiltered_html``.
CVE-2026-19210 Vulnerability in CVE-2026-19210 (CVE-2026-19210)
vulnerability in CVE-2026-19210 (CVE-2026-19210). Risk of unauthorized operations or information disclosure.
CVE-2026-19209 Cross-Site Scripting (XSS) in c (CVE-2026-19209)
cross-site scripting in c (CVE-2026-19209). Risk of unauthorized operations or information disclosure.
CVE-2026-19208 Vulnerability in cpp (CVE-2026-19208)
vulnerability in cpp (CVE-2026-19208). Risk of unauthorized operations or information disclosure.
GHSA-wvpp-8hx9-p66j Vulnerability in GitPython (GHSA-wvpp-8hx9-p66j)
vulnerability in GitPython (GHSA-wvpp-8hx9-p66j). Risk of unauthorized operations or information disclosure. Exploitable via ``check_unsafe_options``. Mitigation: upgrade to `3.1.58` or later.
GHSA-jm78-9fvv-mhgr Vulnerability in GitPython (GHSA-jm78-9fvv-mhgr)
vulnerability in GitPython (GHSA-jm78-9fvv-mhgr). Risk of unauthorized operations or information disclosure. Exploitable via ``write_section``. Mitigation: upgrade to `3.1.58` or later.
GHSA-hmq2-w58f-27jc Path Traversal in GitPython (GHSA-hmq2-w58f-27jc)
path traversal in GitPython (GHSA-hmq2-w58f-27jc). Risk of unauthorized operations or information disclosure. Exploitable via ``sm._name``. Mitigation: upgrade to `3.1.58` or later.
GHSA-hh9p-6wh2-4mfc Vulnerability in GitPython (GHSA-hh9p-6wh2-4mfc)
vulnerability in GitPython (GHSA-hh9p-6wh2-4mfc). Risk of unauthorized operations or information disclosure. Exploitable via ``GitCommandError.stderr``. Mitigation: upgrade to `3.1.58` or later.
GHSA-9rj7-rf2p-w77r Vulnerability in GitPython (GHSA-9rj7-rf2p-w77r)
vulnerability in GitPython (GHSA-9rj7-rf2p-w77r). Risk of unauthorized operations or information disclosure. Exploitable via ``allow_unsafe_options``. Mitigation: upgrade to `3.1.58` or later.
GHSA-4gmw-gg2m-w46p Vulnerability in GitPython (GHSA-4gmw-gg2m-w46p)
vulnerability in GitPython (GHSA-4gmw-gg2m-w46p). Risk of unauthorized operations or information disclosure. Exploitable via ``IndexFile.from_tree``. Mitigation: upgrade to `3.1.58` or later.
CVE-2022-4995 Unrestricted File Upload in CVE-2022-4995 (CVE-2022-4995)
vulnerability in CVE-2022-4995 (CVE-2022-4995). Successful exploitation can lead to full system takeover.
CVE-2026-19264 Path Traversal in CVE-2026-19264 (CVE-2026-19264)
path traversal in CVE-2026-19264 (CVE-2026-19264). Successful exploitation can lead to full system takeover.
CVE-2026-37171 Authorization Flaw in CVE-2026-37171 (CVE-2026-37171)
vulnerability in CVE-2026-37171 (CVE-2026-37171). Confidential information can be exposed externally.
CVE-2026-66914 Path Traversal in path-traversal (CVE-2026-66914)
path traversal in path-traversal (CVE-2026-66914). Risk of unauthorized operations or information disclosure.
CVE-2026-61477 Vulnerability in CVE-2026-61477 (CVE-2026-61477)
vulnerability in CVE-2026-61477 (CVE-2026-61477). Risk of unauthorized operations or information disclosure.
CVE-2026-18497 Vulnerability in CVE-2026-18497 (CVE-2026-18497)
vulnerability in CVE-2026-18497 (CVE-2026-18497). Confidential information can be exposed externally.
CVE-2026-19206 Buffer Overflow in c (CVE-2026-19206)
vulnerability in c (CVE-2026-19206). Risk of unauthorized operations or information disclosure.
CVE-2026-19207 Cross-Site Scripting (XSS) in CVE-2026-19207 (CVE-2026-19207)
cross-site scripting in CVE-2026-19207 (CVE-2026-19207). Risk of unauthorized operations or information disclosure.
CVE-2026-16637 Vulnerability in ssrf (CVE-2026-16637)
vulnerability in ssrf (CVE-2026-16637). Confidential information can be exposed externally.
CVE-2026-15570 SSRF (Server-Side Request Forgery) in CVE-2026-15570 (CVE-2026-15570)
SSRF in CVE-2026-15570 (CVE-2026-15570). Risk of unauthorized operations or information disclosure.
GHSA-55q2-fjhq-7xh7 Cross-Site Scripting (XSS) in dompurify (GHSA-55q2-fjhq-7xh7)
cross-site scripting in dompurify (GHSA-55q2-fjhq-7xh7). Risk of unauthorized operations or information disclosure. Exploitable via ``IN_PLACE``. Mitigation: upgrade to `3.4.13` or later.
CVE-2026-62996 Path Traversal in smarty/smarty (CVE-2026-62996)
path traversal in smarty/smarty (CVE-2026-62996). Risk of unauthorized operations or information disclosure. Exploitable via ``stream``. Mitigation: upgrade to `5.8.4` or later.
CVE-2026-62992 Path Traversal in smarty/smarty (CVE-2026-62992)
path traversal in smarty/smarty (CVE-2026-62992). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.8.2` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →