Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
DEBIAN-CVE-2026-43515 Vulnerability in tomcat10 (DEBIAN-CVE-2026-43515)
vulnerability in tomcat10 (DEBIAN-CVE-2026-43515). Confidential information can be exposed externally. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
CVE-2026-43515 Vulnerability in tomcat (CVE-2026-43515)
vulnerability in tomcat (CVE-2026-43515). Confidential information can be exposed externally. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
CVE-2026-43514 Vulnerability in tomcat (CVE-2026-43514)
vulnerability in tomcat (CVE-2026-43514). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
CVE-2026-43513 Vulnerability in tomcat (CVE-2026-43513)
vulnerability in tomcat (CVE-2026-43513). Confidential information can be exposed externally. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
DEBIAN-CVE-2026-42498 Vulnerability in tomcat10 (DEBIAN-CVE-2026-42498)
vulnerability in tomcat10 (DEBIAN-CVE-2026-42498). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
DEBIAN-CVE-2026-41293 Vulnerability in tomcat10 (DEBIAN-CVE-2026-41293)
vulnerability in tomcat10 (DEBIAN-CVE-2026-41293). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
DEBIAN-CVE-2026-43512 Vulnerability in tomcat10 (DEBIAN-CVE-2026-43512)
vulnerability in tomcat10 (DEBIAN-CVE-2026-43512). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
CVE-2026-43512 Authentication Bypass in tomcat (CVE-2026-43512)
authentication bypass in tomcat (CVE-2026-43512). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
CVE-2026-42498 Information Disclosure in tomcat (CVE-2026-42498)
vulnerability in tomcat (CVE-2026-42498). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
CVE-2026-41293 Vulnerability in tomcat (CVE-2026-41293)
vulnerability in tomcat (CVE-2026-41293). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
DEBIAN-CVE-2026-41284 Vulnerability in tomcat10 (DEBIAN-CVE-2026-41284)
vulnerability in tomcat10 (DEBIAN-CVE-2026-41284). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55-1~deb12u1` or later.
CVE-2026-41284 Vulnerability in tomcat (CVE-2026-41284)
vulnerability in tomcat (CVE-2026-41284). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.1.55, 11.0.22, 9.0.118` or later.
CVE-2026-34187 SQL Injection in sqli (CVE-2026-34187)
SQL injection in sqli (CVE-2026-34187). Successful exploitation can lead to full system takeover.
CVE-2026-31228 Code Injection in CVE-2026-31228 (CVE-2026-31228)
code injection in CVE-2026-31228 (CVE-2026-31228). Successful exploitation can lead to full system takeover.
CVE-2026-31226 OS Command Injection in CVE-2026-31226 (CVE-2026-31226)
OS command injection in CVE-2026-31226 (CVE-2026-31226). Successful exploitation can lead to full system takeover.
CVE-2026-31225 Code Injection in superduper-framework (CVE-2026-31225)
code injection in superduper-framework (CVE-2026-31225). Successful exploitation can lead to full system takeover.
CVE-2026-31224 Unsafe Deserialization in snorkel (CVE-2026-31224)
vulnerability in snorkel (CVE-2026-31224). Successful exploitation can lead to full system takeover.
CVE-2026-31223 Unsafe Deserialization in snorkel (CVE-2026-31223)
vulnerability in snorkel (CVE-2026-31223). Successful exploitation can lead to full system takeover.
CVE-2026-31222 Unsafe Deserialization in snorkel (CVE-2026-31222)
vulnerability in snorkel (CVE-2026-31222). Successful exploitation can lead to full system takeover.
CVE-2026-31221 Unsafe Deserialization in pytorch-lightning (CVE-2026-31221)
vulnerability in pytorch-lightning (CVE-2026-31221). Successful exploitation can lead to full system takeover.
CVE-2026-31220 Code Injection in syft (CVE-2026-31220)
code injection in syft (CVE-2026-31220). Successful exploitation can lead to full system takeover.
CVE-2026-31219 Unsafe Deserialization in deserialization (CVE-2026-31219)
vulnerability in deserialization (CVE-2026-31219). Successful exploitation can lead to full system takeover.
CVE-2026-31218 Unsafe Deserialization in deserialization (CVE-2026-31218)
vulnerability in deserialization (CVE-2026-31218). Successful exploitation can lead to full system takeover.
CVE-2026-31217 Code Injection in nebuly (CVE-2026-31217)
code injection in nebuly (CVE-2026-31217). Successful exploitation can lead to full system takeover.
CVE-2026-31216 Vulnerability in dos (CVE-2026-31216)
vulnerability in dos (CVE-2026-31216). Data can be tampered with by attackers. Exploitable via `DELETE /storage/{object_name`.
CVE-2026-31215 Vulnerability in dos (CVE-2026-31215)
vulnerability in dos (CVE-2026-31215). Data can be tampered with by attackers. Exploitable via `DELETE /{index_name}/documents`.
CVE-2026-31214 Unsafe Deserialization in deserialization (CVE-2026-31214)
vulnerability in deserialization (CVE-2026-31214). Successful exploitation can lead to full system takeover.
CVE-2026-30810 SSRF (Server-Side Request Forgery) in privilege-escalation (CVE-2026-30810)
SSRF in privilege-escalation (CVE-2026-30810). Successful exploitation can lead to full system takeover.
CVE-2026-30808 Vulnerability in artica (CVE-2026-30808)
vulnerability in artica (CVE-2026-30808). Confidential information can be exposed externally.
CVE-2026-30807 Cross-Site Request Forgery (CSRF) in artica (CVE-2026-30807)
vulnerability in artica (CVE-2026-30807). Successful exploitation can lead to full system takeover.
CVE-2026-30805 Vulnerability in artica (CVE-2026-30805)
vulnerability in artica (CVE-2026-30805). Confidential information can be exposed externally.
CVE-2023-30059 Vulnerability in CVE-2023-30059 (CVE-2023-30059)
vulnerability in CVE-2023-30059 (CVE-2023-30059). Risk of unauthorized operations or information disclosure.
CVE-2023-27753 Unrestricted File Upload in CVE-2023-27753 (CVE-2023-27753)
vulnerability in CVE-2023-27753 (CVE-2023-27753). Successful exploitation can lead to full system takeover.
MINI-rj5g-pv5x-4c64 MINI-rj5g-pv5x-4c64
MINI-9gcp-5pf5-j3xq MINI-9gcp-5pf5-j3xq
MINI-3rf8-prxq-hcfv MINI-3rf8-prxq-hcfv
MINI-252x-m2fr-7w55 MINI-252x-m2fr-7w55
MINI-432f-vrwf-gpcp MINI-432f-vrwf-gpcp
MINI-93pq-qcvf-4gf4 MINI-93pq-qcvf-4gf4
MINI-j47v-gh73-764j MINI-j47v-gh73-764j
MINI-vxcr-gxxf-3rgc MINI-vxcr-gxxf-3rgc
MINI-j78m-5m37-rwpw MINI-j78m-5m37-rwpw
MINI-qpwf-cf8r-jrff MINI-qpwf-cf8r-jrff
MINI-2hpr-xgm4-chf4 MINI-2hpr-xgm4-chf4
MINI-23h8-c4r5-h6r6 MINI-23h8-c4r5-h6r6
MINI-95fq-pg9m-68px MINI-95fq-pg9m-68px
MINI-2j8r-xv56-5cv2 MINI-2j8r-xv56-5cv2
MINI-9c7x-4xx5-g5p6 MINI-9c7x-4xx5-g5p6
MINI-3g7w-6vr9-65pc MINI-3g7w-6vr9-65pc
MINI-22xg-2x55-6h59 MINI-22xg-2x55-6h59

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →