Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-48692 |
|
Vulnerability in cpp (CVE-2026-48692)
vulnerability in cpp (CVE-2026-48692). Confidential information can be exposed externally.
|
| CVE-2026-48688 |
|
Out-of-Bounds Read in cpp (CVE-2026-48688)
vulnerability in cpp (CVE-2026-48688). Confidential information can be exposed externally.
|
| CVE-2026-43935 |
|
Vulnerability in CVE-2026-43935 (CVE-2026-43935)
vulnerability in CVE-2026-43935 (CVE-2026-43935). Confidential information can be exposed externally. Exploitable via `Host header`. Mitigation: upgrade to `2.3.4` or later.
|
| CVE-2026-25112 |
|
Vulnerability in privilege-escalation (CVE-2026-25112)
vulnerability in privilege-escalation (CVE-2026-25112). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9552 |
|
Vulnerability in sqli (CVE-2026-9552)
vulnerability in sqli (CVE-2026-9552). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9551 |
|
Vulnerability in sqli (CVE-2026-9551)
vulnerability in sqli (CVE-2026-9551). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9550 |
|
Path Traversal in path-traversal (CVE-2026-9550)
path traversal in path-traversal (CVE-2026-9550). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46368 |
|
Command Injection in c (CVE-2026-46368)
command injection in c (CVE-2026-46368). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42785 |
|
Code Injection in CVE-2026-42785 (CVE-2026-42785)
code injection in CVE-2026-42785 (CVE-2026-42785). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45082 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-45082)
SSRF in ssrf (CVE-2026-45082). Confidential information can be exposed externally.
|
| CVE-2026-42425 |
|
SQL Injection in CVE-2026-42425 (CVE-2026-42425)
SQL injection in CVE-2026-42425 (CVE-2026-42425). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40034 |
|
Command Injection in gix (CVE-2026-40034)
command injection in gix (CVE-2026-40034). Successful exploitation can lead to full system takeover. Exploitable via ``update``. Mitigation: upgrade to `0.83.0` or later.
|
| CVE-2026-40033 |
|
Vulnerability in freerdp (CVE-2026-40033)
vulnerability in freerdp (CVE-2026-40033). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9544 |
|
Vulnerability in sqli (CVE-2026-9544)
vulnerability in sqli (CVE-2026-9544). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48131 |
|
Vulnerability in dos (CVE-2026-48131)
vulnerability in dos (CVE-2026-48131). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48132 |
|
Out-of-Bounds Read in dos (CVE-2026-48132)
vulnerability in dos (CVE-2026-48132). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48133 |
|
Vulnerability in CVE-2026-48133 (CVE-2026-48133)
vulnerability in CVE-2026-48133 (CVE-2026-48133). Confidential information can be exposed externally.
|
| CVE-2025-11482 |
|
Vulnerability in CVE-2025-11482 (CVE-2025-11482)
vulnerability in CVE-2025-11482 (CVE-2025-11482). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8047 |
|
Vulnerability in dos (CVE-2026-8047)
vulnerability in dos (CVE-2026-8047). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-25713 |
|
MediaArea MediaInfoLib ID3v2 parsing heap buffer overflow vulnerability
MediaArea MediaInfoLib ID3v2 parsing heap buffer overflow vulnerability
|
| CVE-2026-25104 |
|
MediaArea MediaInfoLib LXF parsing heap-based buffer overflow vulnerability
MediaArea MediaInfoLib LXF parsing heap-based buffer overflow vulnerability
|
| CVE-2026-39661 |
|
Vulnerability in CVE-2026-39661 (CVE-2026-39661)
vulnerability in CVE-2026-39661 (CVE-2026-39661). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44468 |
|
Vulnerability in privilege-escalation (CVE-2026-44468)
vulnerability in privilege-escalation (CVE-2026-44468). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8046 |
|
Authorization Flaw in CVE-2026-8046 (CVE-2026-8046)
vulnerability in CVE-2026-8046 (CVE-2026-8046). Data can be tampered with by attackers.
|
| CVE-2026-44469 |
|
Vulnerability in privilege-escalation (CVE-2026-44469)
vulnerability in privilege-escalation (CVE-2026-44469). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9495 |
|
Vulnerability in @koa/router (CVE-2026-9495)
vulnerability in @koa/router (CVE-2026-9495). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `15.0.0` or later.
|
| CVE-2026-9496 |
|
Vulnerability in pacote (CVE-2026-9496)
vulnerability in pacote (CVE-2026-9496). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `21.5.1` or later.
|
| CVE-2026-9517 |
|
Vulnerability in CVE-2026-9517 (CVE-2026-9517)
vulnerability in CVE-2026-9517 (CVE-2026-9517). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42497 |
|
Vulnerability in archive (CVE-2026-42497)
vulnerability in archive (CVE-2026-42497). Data can be tampered with by attackers.
|
| CVE-2026-9521 |
|
Vulnerability in CVE-2026-9521 (CVE-2026-9521)
vulnerability in CVE-2026-9521 (CVE-2026-9521). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9538 |
|
Vulnerability in archive (CVE-2026-9538)
vulnerability in archive (CVE-2026-9538). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9525 |
|
Vulnerability in sqli (CVE-2026-9525)
vulnerability in sqli (CVE-2026-9525). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9523 |
|
Vulnerability in sqli (CVE-2026-9523)
vulnerability in sqli (CVE-2026-9523). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9526 |
|
Vulnerability in sqli (CVE-2026-9526)
vulnerability in sqli (CVE-2026-9526). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9528 |
|
Vulnerability in sqli (CVE-2026-9528)
vulnerability in sqli (CVE-2026-9528). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39436 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-39436)
vulnerability in csrf (CVE-2026-39436). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-24937 |
|
Code Injection in CVE-2026-24937 (CVE-2026-24937)
code injection in CVE-2026-24937 (CVE-2026-24937). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45216 |
|
Vulnerability in privilege-escalation (CVE-2026-45216)
vulnerability in privilege-escalation (CVE-2026-45216). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48837 |
|
SQL Injection in sqli (CVE-2026-48837)
SQL injection in sqli (CVE-2026-48837). Confidential information can be exposed externally.
|
| CVE-2026-45209 |
|
Vulnerability in CVE-2026-45209 (CVE-2026-45209)
vulnerability in CVE-2026-45209 (CVE-2026-45209). Confidential information can be exposed externally.
|
| CVE-2026-45438 |
|
Vulnerability in CVE-2026-45438 (CVE-2026-45438)
vulnerability in CVE-2026-45438 (CVE-2026-45438). Data can be tampered with by attackers.
|
| CVE-2026-9482 |
|
Buffer Overflow in CVE-2026-9482 (CVE-2026-9482)
vulnerability in CVE-2026-9482 (CVE-2026-9482). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9481 |
|
Buffer Overflow in CVE-2026-9481 (CVE-2026-9481)
vulnerability in CVE-2026-9481 (CVE-2026-9481). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48842 |
|
SQL Injection in sqli (CVE-2026-48842)
SQL injection in sqli (CVE-2026-48842). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48844 |
|
Vulnerability in CVE-2026-48844 (CVE-2026-48844)
vulnerability in CVE-2026-48844 (CVE-2026-48844). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48843 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-48843)
SSRF in ssrf (CVE-2026-48843). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48848 |
|
Cross-Site Scripting (XSS) in CVE-2026-48848 (CVE-2026-48848)
cross-site scripting in CVE-2026-48848 (CVE-2026-48848). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9474 |
|
Vulnerability in sqli (CVE-2026-9474)
vulnerability in sqli (CVE-2026-9474). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9479 |
|
Buffer Overflow in CVE-2026-9479 (CVE-2026-9479)
vulnerability in CVE-2026-9479 (CVE-2026-9479). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9480 |
|
Buffer Overflow in CVE-2026-9480 (CVE-2026-9480)
vulnerability in CVE-2026-9480 (CVE-2026-9480). Successful exploitation can lead to full system takeover.
|