Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| DEBIAN-CVE-2026-43515 |
|
Vulnerability in tomcat10 (DEBIAN-CVE-2026-43515)
vulnerability in tomcat10 (DEBIAN-CVE-2026-43515). Confidential information can be exposed externally. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
|
| CVE-2026-43515 |
|
Vulnerability in tomcat (CVE-2026-43515)
vulnerability in tomcat (CVE-2026-43515). Confidential information can be exposed externally. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
|
| CVE-2026-43514 |
|
Vulnerability in tomcat (CVE-2026-43514)
vulnerability in tomcat (CVE-2026-43514). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
|
| CVE-2026-43513 |
|
Vulnerability in tomcat (CVE-2026-43513)
vulnerability in tomcat (CVE-2026-43513). Confidential information can be exposed externally. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
|
| DEBIAN-CVE-2026-42498 |
|
Vulnerability in tomcat10 (DEBIAN-CVE-2026-42498)
vulnerability in tomcat10 (DEBIAN-CVE-2026-42498). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
|
| DEBIAN-CVE-2026-41293 |
|
Vulnerability in tomcat10 (DEBIAN-CVE-2026-41293)
vulnerability in tomcat10 (DEBIAN-CVE-2026-41293). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
|
| DEBIAN-CVE-2026-43512 |
|
Vulnerability in tomcat10 (DEBIAN-CVE-2026-43512)
vulnerability in tomcat10 (DEBIAN-CVE-2026-43512). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
|
| CVE-2026-43512 |
|
Authentication Bypass in tomcat (CVE-2026-43512)
authentication bypass in tomcat (CVE-2026-43512). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
|
| CVE-2026-42498 |
|
Information Disclosure in tomcat (CVE-2026-42498)
vulnerability in tomcat (CVE-2026-42498). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
|
| CVE-2026-41293 |
|
Vulnerability in tomcat (CVE-2026-41293)
vulnerability in tomcat (CVE-2026-41293). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
|
| DEBIAN-CVE-2026-41284 |
|
Vulnerability in tomcat10 (DEBIAN-CVE-2026-41284)
vulnerability in tomcat10 (DEBIAN-CVE-2026-41284). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
|
| CVE-2026-41284 |
|
Vulnerability in tomcat (CVE-2026-41284)
vulnerability in tomcat (CVE-2026-41284). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
|
| CVE-2026-34187 |
|
SQL Injection in sqli (CVE-2026-34187)
SQL injection in sqli (CVE-2026-34187). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31228 |
|
Code Injection in CVE-2026-31228 (CVE-2026-31228)
code injection in CVE-2026-31228 (CVE-2026-31228). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31226 |
|
OS Command Injection in CVE-2026-31226 (CVE-2026-31226)
OS command injection in CVE-2026-31226 (CVE-2026-31226). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31225 |
|
Code Injection in superduper-framework (CVE-2026-31225)
code injection in superduper-framework (CVE-2026-31225). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31224 |
|
Unsafe Deserialization in snorkel (CVE-2026-31224)
vulnerability in snorkel (CVE-2026-31224). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31223 |
|
Unsafe Deserialization in snorkel (CVE-2026-31223)
vulnerability in snorkel (CVE-2026-31223). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31222 |
|
Unsafe Deserialization in snorkel (CVE-2026-31222)
vulnerability in snorkel (CVE-2026-31222). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31221 |
|
Unsafe Deserialization in pytorch-lightning (CVE-2026-31221)
vulnerability in pytorch-lightning (CVE-2026-31221). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31220 |
|
Code Injection in syft (CVE-2026-31220)
code injection in syft (CVE-2026-31220). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31219 |
|
Unsafe Deserialization in deserialization (CVE-2026-31219)
vulnerability in deserialization (CVE-2026-31219). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31218 |
|
Unsafe Deserialization in deserialization (CVE-2026-31218)
vulnerability in deserialization (CVE-2026-31218). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31217 |
|
Code Injection in nebuly (CVE-2026-31217)
code injection in nebuly (CVE-2026-31217). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31216 |
|
Vulnerability in dos (CVE-2026-31216)
vulnerability in dos (CVE-2026-31216). Data can be tampered with by attackers. Exploitable via `DELETE /storage/{object_name`.
|
| CVE-2026-31215 |
|
Vulnerability in dos (CVE-2026-31215)
vulnerability in dos (CVE-2026-31215). Data can be tampered with by attackers. Exploitable via `DELETE /{index_name}/documents`.
|
| CVE-2026-31214 |
|
Unsafe Deserialization in deserialization (CVE-2026-31214)
vulnerability in deserialization (CVE-2026-31214). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30810 |
|
SSRF (Server-Side Request Forgery) in privilege-escalation (CVE-2026-30810)
SSRF in privilege-escalation (CVE-2026-30810). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30808 |
|
Vulnerability in artica (CVE-2026-30808)
vulnerability in artica (CVE-2026-30808). Confidential information can be exposed externally.
|
| CVE-2026-30807 |
|
Cross-Site Request Forgery (CSRF) in artica (CVE-2026-30807)
vulnerability in artica (CVE-2026-30807). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30805 |
|
Vulnerability in artica (CVE-2026-30805)
vulnerability in artica (CVE-2026-30805). Confidential information can be exposed externally.
|
| CVE-2023-30059 |
|
Vulnerability in CVE-2023-30059 (CVE-2023-30059)
vulnerability in CVE-2023-30059 (CVE-2023-30059). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-27753 |
|
Unrestricted File Upload in CVE-2023-27753 (CVE-2023-27753)
vulnerability in CVE-2023-27753 (CVE-2023-27753). Successful exploitation can lead to full system takeover.
|
| MINI-rj5g-pv5x-4c64 |
|
MINI-rj5g-pv5x-4c64 |
| MINI-9gcp-5pf5-j3xq |
|
MINI-9gcp-5pf5-j3xq |
| MINI-3rf8-prxq-hcfv |
|
MINI-3rf8-prxq-hcfv |
| MINI-252x-m2fr-7w55 |
|
MINI-252x-m2fr-7w55 |
| MINI-432f-vrwf-gpcp |
|
MINI-432f-vrwf-gpcp |
| MINI-93pq-qcvf-4gf4 |
|
MINI-93pq-qcvf-4gf4 |
| MINI-j47v-gh73-764j |
|
MINI-j47v-gh73-764j |
| MINI-vxcr-gxxf-3rgc |
|
MINI-vxcr-gxxf-3rgc |
| MINI-j78m-5m37-rwpw |
|
MINI-j78m-5m37-rwpw |
| MINI-qpwf-cf8r-jrff |
|
MINI-qpwf-cf8r-jrff |
| MINI-2hpr-xgm4-chf4 |
|
MINI-2hpr-xgm4-chf4 |
| MINI-23h8-c4r5-h6r6 |
|
MINI-23h8-c4r5-h6r6 |
| MINI-95fq-pg9m-68px |
|
MINI-95fq-pg9m-68px |
| MINI-2j8r-xv56-5cv2 |
|
MINI-2j8r-xv56-5cv2 |
| MINI-9c7x-4xx5-g5p6 |
|
MINI-9c7x-4xx5-g5p6 |
| MINI-3g7w-6vr9-65pc |
|
MINI-3g7w-6vr9-65pc |
| MINI-22xg-2x55-6h59 |
|
MINI-22xg-2x55-6h59 |