Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-p2xf-xw8j-mq6w |
|
MINI-p2xf-xw8j-mq6w |
| MINI-p7gw-mjp6-3rwx |
|
MINI-p7gw-mjp6-3rwx |
| MINI-mv79-xr6g-9hp2 |
|
MINI-mv79-xr6g-9hp2 |
| MINI-mhv9-3gfr-xp72 |
|
MINI-mhv9-3gfr-xp72 |
| MINI-jxhc-2hww-jgv7 |
|
MINI-jxhc-2hww-jgv7 |
| MINI-x4jp-w52p-8wwg |
|
MINI-x4jp-w52p-8wwg |
| MINI-rcv3-p2q8-x5c8 |
|
MINI-rcv3-p2q8-x5c8 |
| MINI-xq49-v5v7-f68w |
|
MINI-xq49-v5v7-f68w |
| MINI-wf25-5x3x-q7jh |
|
MINI-wf25-5x3x-q7jh |
| MINI-w2g5-5rhf-6x6j |
|
MINI-w2g5-5rhf-6x6j |
| MINI-m2r9-vjj3-6952 |
|
MINI-m2r9-vjj3-6952 |
| MINI-967r-55vp-9cjx |
|
MINI-967r-55vp-9cjx |
| MINI-966m-7hhv-chfp |
|
MINI-966m-7hhv-chfp |
| MINI-986c-jvv6-xxx2 |
|
MINI-986c-jvv6-xxx2 |
| MINI-jvcf-8xxv-wvm6 |
|
MINI-jvcf-8xxv-wvm6 |
| MINI-86wq-3h23-58jh |
|
MINI-86wq-3h23-58jh |
| MINI-8hcc-r926-jjqv |
|
MINI-8hcc-r926-jjqv |
| MINI-87mv-g39g-jxfr |
|
MINI-87mv-g39g-jxfr |
| MINI-7jfx-vcj9-9p67 |
|
MINI-7jfx-vcj9-9p67 |
| MINI-59mq-pjxh-9grj |
|
MINI-59mq-pjxh-9grj |
| CVE-2026-45147 |
|
Vulnerability in github.com/siyuan-note/siyuan/kernel (CVE-2026-45147)
vulnerability in github.com/siyuan-note/siyuan/kernel (CVE-2026-45147). Risk of unauthorized operations or information disclosure. Exploitable via `POST /api/tag/getTag`. Mitigation: upgrade to `0.0.0-20260512140701-d7b77d945e0d` or later.
|
| MINI-59cm-7q4x-pvhh |
|
MINI-59cm-7q4x-pvhh |
| MINI-722f-c4p8-fj76 |
|
MINI-722f-c4p8-fj76 |
| MINI-6jcx-hrj7-7r43 |
|
MINI-6jcx-hrj7-7r43 |
| MINI-6c7v-g664-2g8f |
|
MINI-6c7v-g664-2g8f |
| MINI-56vc-mw3g-j3p4 |
|
MINI-56vc-mw3g-j3p4 |
| MINI-39gc-9fh9-px8h |
|
MINI-39gc-9fh9-px8h |
| MINI-28mh-hxc7-j457 |
|
MINI-28mh-hxc7-j457 |
| MINI-5gwv-m53w-w2qx |
|
MINI-5gwv-m53w-w2qx |
| MINI-5c33-hvwv-49fr |
|
MINI-5c33-hvwv-49fr |
| MINI-v554-c8wj-gmc9 |
|
MINI-v554-c8wj-gmc9 |
| MINI-x76f-7cgr-xmwx |
|
MINI-x76f-7cgr-xmwx |
| GHSA-vw82-7fv8-r6gp |
|
Vulnerability in github.com/obot-platform/obot (GHSA-vw82-7fv8-r6gp)
vulnerability in github.com/obot-platform/obot (GHSA-vw82-7fv8-r6gp). Confidential information can be exposed externally. Exploitable via ``updateEmployee``. Mitigation: upgrade to `0.21.1` or later.
|
| CVE-2026-45137 |
|
Vulnerability in anchor-lang (CVE-2026-45137)
vulnerability in anchor-lang (CVE-2026-45137). Data can be tampered with by attackers. Mitigation: upgrade to `1.0.2` or later.
|
| CVE-2026-45136 |
|
OS Command Injection in claude-code-cache-fix (CVE-2026-45136)
OS command injection in claude-code-cache-fix (CVE-2026-45136). Successful exploitation can lead to full system takeover. Exploitable via ``statusLine``. Mitigation: upgrade to `3.5.2` or later.
|
| CVE-2026-44798 |
|
Vulnerability in nautobot (CVE-2026-44798)
vulnerability in nautobot (CVE-2026-44798). Risk of unauthorized operations or information disclosure. Exploitable via ``current_head``. Mitigation: upgrade to `2.4.33` or later.
|
| CVE-2026-44797 |
|
SSRF (Server-Side Request Forgery) in nautobot (CVE-2026-44797)
SSRF in nautobot (CVE-2026-44797). Confidential information can be exposed externally. Exploitable via ``Webhook``. Mitigation: upgrade to `2.4.33` or later.
|
| CVE-2026-44796 |
|
Vulnerability in nautobot (CVE-2026-44796)
vulnerability in nautobot (CVE-2026-44796). Risk of unauthorized operations or information disclosure. Exploitable via ``find``. Mitigation: upgrade to `2.4.33` or later.
|
| CVE-2026-44794 |
|
Vulnerability in nautobot (CVE-2026-44794)
vulnerability in nautobot (CVE-2026-44794). Risk of unauthorized operations or information disclosure. Exploitable via ``GenericForeignKey``. Mitigation: upgrade to `2.4.33` or later.
|
| MINI-5rh9-cq48-rwv4 |
|
MINI-5rh9-cq48-rwv4 |
| MINI-pqqg-q56r-9w98 |
|
MINI-pqqg-q56r-9w98 |
| MINI-6cp3-r6xr-ph2q |
|
MINI-6cp3-r6xr-ph2q |
| CVE-2026-44774 |
|
Vulnerability in github.com/traefik/traefik/v3 (CVE-2026-44774)
vulnerability in github.com/traefik/traefik/v3 (CVE-2026-44774). Successful exploitation can lead to full system takeover. Exploitable via `PUT /api/providers/rest`. Mitigation: upgrade to `3.6.17` or later.
|
| CVE-2026-44740 |
|
Vulnerability in github.com/go-git/go-billy/v5 (CVE-2026-44740)
vulnerability in github.com/go-git/go-billy/v5 (CVE-2026-44740). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.9.0` or later.
|
| CVE-2026-45134 |
|
Unsafe Deserialization in langsmith (CVE-2026-45134)
vulnerability in langsmith (CVE-2026-45134). Confidential information can be exposed externally. Exploitable via ``pull_prompt``. Mitigation: upgrade to `0.8.0` or later.
|
| CVE-2026-44724 |
|
OS Command Injection in systeminformation (CVE-2026-44724)
OS command injection in systeminformation (CVE-2026-44724). Successful exploitation can lead to full system takeover. Exploitable via ``systeminformation``. Mitigation: upgrade to `5.31.6` or later.
|
| SUSE-SU-2026:1845-1 |
|
Vulnerability in SUSE-SU-2026:1845-1 (SUSE-SU-2026:1845-1)
vulnerability in SUSE-SU-2026:1845-1 (SUSE-SU-2026:1845-1). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-3660 |
|
Vulnerability in numpy-lib (MAL-2026-3660)
vulnerability in numpy-lib (MAL-2026-3660). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-3661 |
|
Vulnerability in pandas-data (MAL-2026-3661)
vulnerability in pandas-data (MAL-2026-3661). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:1844-1 |
|
Vulnerability in SUSE-SU-2026:1844-1 (SUSE-SU-2026:1844-1)
vulnerability in SUSE-SU-2026:1844-1 (SUSE-SU-2026:1844-1). Risk of unauthorized operations or information disclosure.
|