Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| ROOT-APP-GOBINARY-CVE-2026-42294 |
|
Vulnerability in rootio-github.com/argoproj/argo-workflows/v3 (ROOT-APP-GOBINARY-CVE-2026-42294)
vulnerability in rootio-github.com/argoproj/argo-workflows/v3 (ROOT-APP-GOBINARY-CVE-2026-42294). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `v3.6.0-root.io.2` or later.
|
| ROOT-APP-GOBINARY-CVE-2025-62156 |
|
Vulnerability in rootio-github.com/argoproj/argo-workflows/v3 (ROOT-APP-GOBINARY-CVE-2025-62156)
vulnerability in rootio-github.com/argoproj/argo-workflows/v3 (ROOT-APP-GOBINARY-CVE-2025-62156). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `v3.6.0-root.io.2` or later.
|
| ROOT-APP-GOBINARY-CVE-2026-31892 |
|
Vulnerability in rootio-github.com/argoproj/argo-workflows/v3 (ROOT-APP-GOBINARY-CVE-2026-31892)
vulnerability in rootio-github.com/argoproj/argo-workflows/v3 (ROOT-APP-GOBINARY-CVE-2026-31892). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `v3.6.0-root.io.2` or later.
|
| SUSE-SU-2026:21615-1 |
|
Vulnerability in SUSE-SU-2026:21615-1 (SUSE-SU-2026:21615-1)
vulnerability in SUSE-SU-2026:21615-1 (SUSE-SU-2026:21615-1). Risk of unauthorized operations or information disclosure.
|
| openSUSE-SU-2026:20747-1 |
|
Vulnerability in openSUSE-SU-2026:20747-1 (openSUSE-SU-2026:20747-1)
vulnerability in openSUSE-SU-2026:20747-1 (openSUSE-SU-2026:20747-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:1839-1 |
|
Vulnerability in SUSE-SU-2026:1839-1 (SUSE-SU-2026:1839-1)
vulnerability in SUSE-SU-2026:1839-1 (SUSE-SU-2026:1839-1). Risk of unauthorized operations or information disclosure.
|
| CLSA-2026-1778147559 |
|
python3.11: Fix of CVE-2026-6100
python3.11: Fix of CVE-2026-6100
|
| CLSA-2026-1778662869 |
|
Vulnerability in libsoup (CLSA-2026-1778662869)
vulnerability in libsoup (CLSA-2026-1778662869). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.62.2-2.0.5.el7.tuxcare.els6` or later.
|
| MINI-4mwp-32g3-4x3m |
|
MINI-4mwp-32g3-4x3m |
| CLSA-2026-1778250399 |
|
dovecot: Fix of CVE-2026-27857
dovecot: Fix of CVE-2026-27857
|
| CLSA-2026-1778233384 |
|
Vulnerability in openssh (CLSA-2026-1778233384)
vulnerability in openssh (CLSA-2026-1778233384). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.3p1-125.el6.tuxcare.els9` or later.
|
| CLSA-2026-1778662651 |
|
libcap: Fix of CVE-2026-4878
libcap: Fix of CVE-2026-4878
|
| CLSA-2026-1778489013 |
|
Vulnerability in spice-server (CLSA-2026-1778489013)
vulnerability in spice-server (CLSA-2026-1778489013). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.14.0-9.el7_9.1.tuxcare.els1` or later.
|
| CLSA-2026-1778662564 |
|
cups: Fix of CVE-2026-27447
cups: Fix of CVE-2026-27447
|
| CLSA-2026-1778247114 |
|
libssh2: Fix of CVE-2026-7598
libssh2: Fix of CVE-2026-7598
|
| CLSA-2026-1778604436 |
|
Vulnerability in libtasn1 (CLSA-2026-1778604436)
vulnerability in libtasn1 (CLSA-2026-1778604436). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.10-1.el7.tuxcare.els2` or later.
|
| CLSA-2026-1778254557 |
|
Vulnerability in httpd (CLSA-2026-1778254557)
vulnerability in httpd (CLSA-2026-1778254557). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.4.6-99.0.5.el7.centos.1.tuxcare.els10` or later.
|
| CLSA-2026-1778492595 |
|
Vulnerability in libxml2 (CLSA-2026-1778492595)
vulnerability in libxml2 (CLSA-2026-1778492595). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.9.1-6.0.11.el7_9.6.tuxcare.els3` or later.
|
| CLSA-2026-1778604245 |
|
Vulnerability in ctdb (CLSA-2026-1778604245)
vulnerability in ctdb (CLSA-2026-1778604245). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.10.16-25.el7_9.tuxcare.els3` or later.
|
| CLSA-2026-1778661840 |
|
Vulnerability in skopeo (CLSA-2026-1778661840)
vulnerability in skopeo (CLSA-2026-1778661840). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2:1.11.2-0.1.el9.tuxcare.els5` or later.
|
| CLSA-2026-1778661102 |
|
Vulnerability in ruby (CLSA-2026-1778661102)
vulnerability in ruby (CLSA-2026-1778661102). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.0.4-160.el9_0.tuxcare.els12` or later.
|
| CVE-2026-44612 |
|
Vulnerability in jvn (CVE-2026-44612)
vulnerability in jvn (CVE-2026-44612). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41281 |
|
Vulnerability in jvn (CVE-2026-41281)
vulnerability in jvn (CVE-2026-41281). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-32661 |
|
Vulnerability in jvn (CVE-2026-32661)
vulnerability in jvn (CVE-2026-32661). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41050 |
|
Authorization Flaw in github.com/rancher/fleet (CVE-2026-41050)
vulnerability in github.com/rancher/fleet (CVE-2026-41050). Successful exploitation can lead to full system takeover. Exploitable via ``GitRepo``. Mitigation: upgrade to `0.11.13` or later.
|
| CVE-2026-3004 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3004)
cross-site scripting in wordpress (CVE-2026-3004). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-25705 |
|
Vulnerability in github.com/rancher/rancher (CVE-2026-25705)
vulnerability in github.com/rancher/rancher (CVE-2026-25705). Successful exploitation can lead to full system takeover.
|
| CVE-2025-14767 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2025-14767)
cross-site scripting in wordpress (CVE-2025-14767). Risk of unauthorized operations or information disclosure. Exploitable via ``wpcbm_best_seller``.
|
| CLSA-2026-1778660100 |
|
binutils: Fix of CVE-2022-48063
binutils: Fix of CVE-2022-48063
|
| CVE-2026-4148 |
|
Vulnerability in mongodb (CVE-2026-4148)
vulnerability in mongodb (CVE-2026-4148). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.0.31, 8.0.20, 8.2.6, 8.3.1` or later.
|
| CVE-2026-4147 |
|
Vulnerability in mongodb (CVE-2026-4147)
vulnerability in mongodb (CVE-2026-4147). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.0.31, 8.0.20, 8.2.6, 8.3.1` or later.
|
| CVE-2025-14345 |
|
Vulnerability in mongodb (CVE-2025-14345)
vulnerability in mongodb (CVE-2025-14345). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.0.26, 8.0.16, 8.2.2, 8.3.1` or later.
|
| openSUSE-SU-2026:20745-1 |
|
Vulnerability in openSUSE-SU-2026:20745-1 (openSUSE-SU-2026:20745-1)
vulnerability in openSUSE-SU-2026:20745-1 (openSUSE-SU-2026:20745-1). Risk of unauthorized operations or information disclosure. Exploitable via ``char``.
|
| SUSE-SU-2026:21612-1 |
|
Vulnerability in SUSE-SU-2026:21612-1 (SUSE-SU-2026:21612-1)
vulnerability in SUSE-SU-2026:21612-1 (SUSE-SU-2026:21612-1). Risk of unauthorized operations or information disclosure. Exploitable via ``char``.
|
| ROOT-APP-GOBINARY-CVE-2026-41145 |
|
Vulnerability in rootio-github.com/minio/minio (ROOT-APP-GOBINARY-CVE-2026-41145)
vulnerability in rootio-github.com/minio/minio (ROOT-APP-GOBINARY-CVE-2026-41145). Data can be tampered with by attackers. Mitigation: upgrade to `v0.0.0-20251015172955-9e49d5e7a648-root.io.1, v0.0.0-20251015172955-9e49d5e7a648-root.io.2` or later.
|
| ROOT-APP-GOBINARY-CVE-2026-40344 |
|
Vulnerability in rootio-github.com/minio/minio (ROOT-APP-GOBINARY-CVE-2026-40344)
vulnerability in rootio-github.com/minio/minio (ROOT-APP-GOBINARY-CVE-2026-40344). Data can be tampered with by attackers. Mitigation: upgrade to `v0.0.0-20251015172955-9e49d5e7a648-root.io.1, v0.0.0-20251015172955-9e49d5e7a648-root.io.2` or later.
|
| ROOT-APP-PYPI-CVE-2021-28363 |
|
Vulnerability in rootio-urllib3 (ROOT-APP-PYPI-CVE-2021-28363)
vulnerability in rootio-urllib3 (ROOT-APP-PYPI-CVE-2021-28363). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.26.1+root.io.1, 1.26.1+root.io.2, 1.26.1+root.io.3, 1.26.3+root.io.3, 1.26.0+root.io.4, 1.26.1+root.io.4, 1.26.2+root.io.5, 1.26.3+root.io.4, 1.26.0+root.io.5, 1.26.1+root.io.5, 1.26.2+root.io.6, 1.26.0+root.io.6, 1.26.1+root.io.6, 1.26.0+root.io.7, 1.26.3+root.io.5, 1.26.2+root.io.7` or later.
|
| ROOT-APP-MAVEN-CVE-2026-34478 |
|
Vulnerability in io.root.org.apache.logging.log4j:log4j-core (ROOT-APP-MAVEN-CVE-2026-34478)
vulnerability in io.root.org.apache.logging.log4j:log4j-core (ROOT-APP-MAVEN-CVE-2026-34478). Data can be tampered with by attackers. Mitigation: upgrade to `2.25.0-root.io.2, 2.25.0-root.io.10, 2.23.1-root.io.1, 2.21.1-root.io.1, 2.24.0-root.io.1, 2.23.1-root.io.1781448408, 2.23.1-root.io.1781450700` or later.
|
| MGASA-2026-0127 |
|
Vulnerability in php (MGASA-2026-0127)
vulnerability in php (MGASA-2026-0127). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.2.31-1.mga9` or later.
|
| MGASA-2026-0128 |
|
Updated sed packages fix security vulnerability
Updated sed packages fix security vulnerability
|
| MGASA-2026-0129 |
|
Vulnerability in apache (MGASA-2026-0129)
vulnerability in apache (MGASA-2026-0129). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.4.67-1.mga9` or later.
|
| MGASA-2026-0130 |
|
Vulnerability in perl-Gazelle (MGASA-2026-0130)
vulnerability in perl-Gazelle (MGASA-2026-0130). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.490.0-5.1.mga9` or later.
|
| ROOT-APP-GOBINARY-CVE-2026-39883 |
|
Vulnerability in rootio-go.opentelemetry.io/otel/sdk (ROOT-APP-GOBINARY-CVE-2026-39883)
vulnerability in rootio-go.opentelemetry.io/otel/sdk (ROOT-APP-GOBINARY-CVE-2026-39883). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `v1.28.0-root.io.1, v1.35.0-root.io.1, v1.39.0-root.io.2, v1.38.0-root.io.2, v1.39.0-root.io.3, v1.35.0-root.io.2, v1.28.0-root.io.3` or later.
|
| CVE-2026-6965 |
|
Vulnerability in wordpress (CVE-2026-6965)
vulnerability in wordpress (CVE-2026-6965). Risk of unauthorized operations or information disclosure. Exploitable via ``course``.
|
| CVE-2026-6929 |
|
SQL Injection in wordpress (CVE-2026-6929)
SQL injection in wordpress (CVE-2026-6929). Confidential information can be exposed externally.
|
| CVE-2026-2725 |
|
Authorization Flaw in google (CVE-2026-2725)
vulnerability in google (CVE-2026-2725). Data can be tampered with by attackers.
|
| CVE-2026-21024 |
|
Vulnerability in CVE-2026-21024 (CVE-2026-21024)
vulnerability in CVE-2026-21024 (CVE-2026-21024). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21022 |
|
Vulnerability in samsung (CVE-2026-21022)
vulnerability in samsung (CVE-2026-21022). Confidential information can be exposed externally.
|
| CVE-2026-21021 |
|
Vulnerability in samsung (CVE-2026-21021)
vulnerability in samsung (CVE-2026-21021). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21020 |
|
Vulnerability in samsung (CVE-2026-21020)
vulnerability in samsung (CVE-2026-21020). Successful exploitation can lead to full system takeover.
|