Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| ECHO-afeb-e40e-c22f |
|
ECHO-afeb-e40e-c22f |
| ECHO-21a6-33d6-5465 |
|
ECHO-21a6-33d6-5465 |
| ECHO-0aba-8609-8043 |
|
ECHO-0aba-8609-8043 |
| ECHO-2ebd-53a1-7608 |
|
ECHO-2ebd-53a1-7608 |
| ECHO-78a2-dc43-2a07 |
|
ECHO-78a2-dc43-2a07 |
| ECHO-c0bc-2b46-4c9b |
|
ECHO-c0bc-2b46-4c9b |
| ECHO-6b81-2d6c-ee97 |
|
ECHO-6b81-2d6c-ee97 |
| ECHO-338e-e578-cefd |
|
ECHO-338e-e578-cefd |
| ECHO-0a46-045e-587b |
|
ECHO-0a46-045e-587b |
| ECHO-c437-171f-6a8a |
|
ECHO-c437-171f-6a8a |
| ECHO-a912-8212-3fb4 |
|
ECHO-a912-8212-3fb4 |
| ECHO-b6b7-34c7-3f12 |
|
ECHO-b6b7-34c7-3f12 |
| ECHO-9fa2-4bcd-f5ba |
|
ECHO-9fa2-4bcd-f5ba |
| CVE-2026-45411 |
|
Vulnerability in vm2 (CVE-2026-45411)
vulnerability in vm2 (CVE-2026-45411). Successful exploitation can lead to full system takeover. Exploitable via ``return``. Mitigation: upgrade to `3.11.3` or later.
|
| CVE-2026-44007 |
|
Vulnerability in vm2 (CVE-2026-44007)
vulnerability in vm2 (CVE-2026-44007). Successful exploitation can lead to full system takeover. Exploitable via ``NodeVM``. Mitigation: upgrade to `3.11.1` or later.
|
| CVE-2026-44006 |
|
Code Injection in vm2 (CVE-2026-44006)
code injection in vm2 (CVE-2026-44006). Successful exploitation can lead to full system takeover. Exploitable via ``BaseHandler.getPrototypeOf``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-44005 |
|
Code Injection in vm2 (CVE-2026-44005)
code injection in vm2 (CVE-2026-44005). Data can be tampered with by attackers. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-44004 |
|
Vulnerability in vm2 (CVE-2026-44004)
vulnerability in vm2 (CVE-2026-44004). Risk of unauthorized operations or information disclosure. Exploitable via ``Buffer.alloc``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-44003 |
|
Vulnerability in vm2 (CVE-2026-44003)
vulnerability in vm2 (CVE-2026-44003). Risk of unauthorized operations or information disclosure. Exploitable via ``catch``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-44002 |
|
Vulnerability in vm2 (CVE-2026-44002)
vulnerability in vm2 (CVE-2026-44002). Risk of unauthorized operations or information disclosure. Exploitable via ``CallSite``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-44001 |
|
Vulnerability in vm2 (CVE-2026-44001)
vulnerability in vm2 (CVE-2026-44001). Risk of unauthorized operations or information disclosure. Exploitable via ``onRejected``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-44000 |
|
Vulnerability in vm2 (CVE-2026-44000)
vulnerability in vm2 (CVE-2026-44000). Risk of unauthorized operations or information disclosure. Exploitable via ``WeakMap``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-43999 |
|
Authorization Flaw in vm2 (CVE-2026-43999)
vulnerability in vm2 (CVE-2026-43999). Successful exploitation can lead to full system takeover. Exploitable via ``builtin``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-43998 |
|
Vulnerability in vm2 (CVE-2026-43998)
vulnerability in vm2 (CVE-2026-43998). Successful exploitation can lead to full system takeover. Exploitable via ``require.root``. Mitigation: upgrade to `3.11.0` or later.
|
| CVE-2026-43997 |
|
Code Injection in vm2 (CVE-2026-43997)
code injection in vm2 (CVE-2026-43997). Successful exploitation can lead to full system takeover. Exploitable via ``Object``. Mitigation: upgrade to `3.11.0` or later.
|
| BELL-CVE-2026-39826 |
|
BELL-CVE-2026-39826 |
| BELL-CVE-2026-39823 |
|
BELL-CVE-2026-39823 |
| BELL-CVE-2026-39820 |
|
BELL-CVE-2026-39820 |
| BELL-CVE-2026-39819 |
|
BELL-CVE-2026-39819 |
| BELL-CVE-2026-39817 |
|
BELL-CVE-2026-39817 |
| BELL-CVE-2026-33814 |
|
BELL-CVE-2026-33814 |
| BELL-CVE-2026-42499 |
|
BELL-CVE-2026-42499 |
| BELL-CVE-2026-39825 |
|
BELL-CVE-2026-39825 |
| BELL-CVE-2026-39836 |
|
BELL-CVE-2026-39836 |
| BELL-CVE-2026-42501 |
|
BELL-CVE-2026-42501 |
| DEBIAN-CVE-2026-46300 |
|
Vulnerability in linux (DEBIAN-CVE-2026-46300)
vulnerability in linux (DEBIAN-CVE-2026-46300). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `5.10.257-1` or later.
|
| openSUSE-SU-2026:20726-1 |
|
Vulnerability in openSUSE-SU-2026:20726-1 (openSUSE-SU-2026:20726-1)
vulnerability in openSUSE-SU-2026:20726-1 (openSUSE-SU-2026:20726-1). Risk of unauthorized operations or information disclosure.
|
| openSUSE-SU-2026:20723-1 |
|
Vulnerability in openSUSE-SU-2026:20723-1 (openSUSE-SU-2026:20723-1)
vulnerability in openSUSE-SU-2026:20723-1 (openSUSE-SU-2026:20723-1). Risk of unauthorized operations or information disclosure.
|
| ECHO-6b5c-756e-cda5 |
|
ECHO-6b5c-756e-cda5 |
| CVE-2026-8495 |
|
Vulnerability in drupal/date_ical (CVE-2026-8495)
vulnerability in drupal/date_ical (CVE-2026-8495). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.0.15` or later.
|
| CVE-2026-8493 |
|
Cross-Site Scripting (XSS) in drupal/colorbox_inline (CVE-2026-8493)
cross-site scripting in drupal/colorbox_inline (CVE-2026-8493). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.1.1` or later.
|
| CVE-2026-8492 |
|
Vulnerability in drupal/gtranslate (CVE-2026-8492)
vulnerability in drupal/gtranslate (CVE-2026-8492). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.0.5` or later.
|
| CVE-2026-8491 |
|
Vulnerability in drupal/node_view_permissions (CVE-2026-8491)
vulnerability in drupal/node_view_permissions (CVE-2026-8491). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.7.0, 2.0.1` or later.
|
| MAL-2026-3665 |
|
Vulnerability in hackling (MAL-2026-3665)
vulnerability in hackling (MAL-2026-3665). Risk of unauthorized operations or information disclosure.
|
| CLSA-2026-1778690918 |
|
Vulnerability in exim (CLSA-2026-1778690918)
vulnerability in exim (CLSA-2026-1778690918). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.99.1-1.el9.tuxcare.els3` or later.
|
| MAL-2026-3663 |
|
Vulnerability in chia-network (MAL-2026-3663)
vulnerability in chia-network (MAL-2026-3663). Risk of unauthorized operations or information disclosure.
|
| MGASA-2026-0132 |
|
Vulnerability in kernel (MGASA-2026-0132)
vulnerability in kernel (MGASA-2026-0132). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.6.138-1.mga9` or later.
|
| MGASA-2026-0131 |
|
Vulnerability in kernel-linus (MGASA-2026-0131)
vulnerability in kernel-linus (MGASA-2026-0131). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.6.138-1.mga9` or later.
|
| CLSA-2026-1778690104 |
|
exim: Fix of CVE-2026-40685
exim: Fix of CVE-2026-40685
|
| SUSE-SU-2026:21788-1 |
|
Vulnerability in SUSE-SU-2026:21788-1 (SUSE-SU-2026:21788-1)
vulnerability in SUSE-SU-2026:21788-1 (SUSE-SU-2026:21788-1). Risk of unauthorized operations or information disclosure.
|