Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-9381 |
|
Buffer Overflow in CVE-2026-9381 (CVE-2026-9381)
vulnerability in CVE-2026-9381 (CVE-2026-9381). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9380 |
|
Buffer Overflow in CVE-2026-9380 (CVE-2026-9380)
vulnerability in CVE-2026-9380 (CVE-2026-9380). Successful exploitation can lead to full system takeover.
|
| CVE-2026-4372 |
|
Vulnerability in transformers (CVE-2026-4372)
vulnerability in transformers (CVE-2026-4372). Successful exploitation can lead to full system takeover. Exploitable via ``_attn_implementation_internal``. Mitigation: upgrade to `5.3.0` or later.
|
| CVE-2026-9383 |
|
Vulnerability in sqli (CVE-2026-9383)
vulnerability in sqli (CVE-2026-9383). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9372 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-9372 (CVE-2026-9372)
SSRF in CVE-2026-9372 (CVE-2026-9372). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9368 |
|
Privilege Escalation in hermes-agent (CVE-2026-9368)
vulnerability in hermes-agent (CVE-2026-9368). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.11.0` or later.
|
| CVE-2026-9364 |
|
Vulnerability in sqli (CVE-2026-9364)
vulnerability in sqli (CVE-2026-9364). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9367 |
|
Command Injection in CVE-2026-9367 (CVE-2026-9367)
command injection in CVE-2026-9367 (CVE-2026-9367). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9366 |
|
Vulnerability in hermes-agent (CVE-2026-9366)
vulnerability in hermes-agent (CVE-2026-9366). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.15.0` or later.
|
| CVE-2026-9355 |
|
Vulnerability in sqli (CVE-2026-9355)
vulnerability in sqli (CVE-2026-9355). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9356 |
|
Vulnerability in sqli (CVE-2026-9356)
vulnerability in sqli (CVE-2026-9356). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9360 |
|
Buffer Overflow in CVE-2026-9360 (CVE-2026-9360)
vulnerability in CVE-2026-9360 (CVE-2026-9360). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9353 |
|
Vulnerability in hermes-agent (CVE-2026-9353)
vulnerability in hermes-agent (CVE-2026-9353). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.15.0` or later.
|
| CVE-2026-9350 |
|
Vulnerability in CVE-2026-9350 (CVE-2026-9350)
vulnerability in CVE-2026-9350 (CVE-2026-9350). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3515 |
|
Vulnerability in prefect (CVE-2026-3515)
vulnerability in prefect (CVE-2026-3515). Confidential information can be exposed externally. Exploitable via ``GitHubRepository``.
|
| CVE-2026-9344 |
|
Buffer Overflow in CVE-2026-9344 (CVE-2026-9344)
vulnerability in CVE-2026-9344 (CVE-2026-9344). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9345 |
|
Buffer Overflow in CVE-2026-9345 (CVE-2026-9345)
vulnerability in CVE-2026-9345 (CVE-2026-9345). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9346 |
|
Buffer Overflow in CVE-2026-9346 (CVE-2026-9346)
vulnerability in CVE-2026-9346 (CVE-2026-9346). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48829 |
|
Vulnerability in c (CVE-2026-48829)
vulnerability in c (CVE-2026-48829). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9348 |
|
Buffer Overflow in CVE-2026-9348 (CVE-2026-9348)
vulnerability in CVE-2026-9348 (CVE-2026-9348). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25347 |
|
SQL Injection in wordpress (CVE-2018-25347)
SQL injection in wordpress (CVE-2018-25347). Confidential information can be exposed externally.
|
| CVE-2018-25348 |
|
SQL Injection in sqli (CVE-2018-25348)
SQL injection in sqli (CVE-2018-25348). Confidential information can be exposed externally.
|
| CVE-2018-25356 |
|
Vulnerability in cpp (CVE-2018-25356)
vulnerability in cpp (CVE-2018-25356). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25351 |
|
SQL Injection in sqli (CVE-2018-25351)
SQL injection in sqli (CVE-2018-25351). Confidential information can be exposed externally.
|
| CVE-2018-25353 |
|
Authorization Flaw in CVE-2018-25353 (CVE-2018-25353)
vulnerability in CVE-2018-25353 (CVE-2018-25353). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25352 |
|
SQL Injection in wordpress (CVE-2018-25352)
SQL injection in wordpress (CVE-2018-25352). Confidential information can be exposed externally.
|
| CVE-2018-25355 |
|
Vulnerability in CVE-2018-25355 (CVE-2018-25355)
vulnerability in CVE-2018-25355 (CVE-2018-25355). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25358 |
|
Vulnerability in CVE-2018-25358 (CVE-2018-25358)
vulnerability in CVE-2018-25358 (CVE-2018-25358). Confidential information can be exposed externally.
|
| CVE-2018-25345 |
|
Vulnerability in CVE-2018-25345 (CVE-2018-25345)
vulnerability in CVE-2018-25345 (CVE-2018-25345). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25344 |
|
Vulnerability in CVE-2018-25344 (CVE-2018-25344)
vulnerability in CVE-2018-25344 (CVE-2018-25344). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25346 |
|
SQL Injection in wordpress (CVE-2018-25346)
SQL injection in wordpress (CVE-2018-25346). Confidential information can be exposed externally.
|
| CVE-2018-25340 |
|
SQL Injection in sqli (CVE-2018-25340)
SQL injection in sqli (CVE-2018-25340). Confidential information can be exposed externally.
|
| CVE-2018-25341 |
|
SQL Injection in sqli (CVE-2018-25341)
SQL injection in sqli (CVE-2018-25341). Confidential information can be exposed externally.
|
| CVE-2018-25342 |
|
SQL Injection in sqli (CVE-2018-25342)
SQL injection in sqli (CVE-2018-25342). Confidential information can be exposed externally.
|
| CVE-2026-43503 |
|
Vulnerability in c (CVE-2026-43503)
vulnerability in c (CVE-2026-43503). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45659 KEV |
|
[KEV] Unsafe Deserialization in Microsoft deserialization (CVE-2026-45659)
vulnerability in Microsoft deserialization (CVE-2026-45659). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-6898 |
|
Privilege Escalation in wordpress (CVE-2026-6898)
vulnerability in wordpress (CVE-2026-6898). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9284 |
|
Vulnerability in wordpress (CVE-2026-9284)
vulnerability in wordpress (CVE-2026-9284). Confidential information can be exposed externally.
|
| CVE-2026-6419 |
|
Privilege Escalation in wordpress (CVE-2026-6419)
vulnerability in wordpress (CVE-2026-6419). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6895 |
|
Privilege Escalation in wordpress (CVE-2026-6895)
vulnerability in wordpress (CVE-2026-6895). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6897 |
|
Privilege Escalation in wordpress (CVE-2026-6897)
vulnerability in wordpress (CVE-2026-6897). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9295 |
|
Buffer Overflow in CVE-2026-9295 (CVE-2026-9295)
vulnerability in CVE-2026-9295 (CVE-2026-9295). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9294 |
|
Buffer Overflow in CVE-2026-9294 (CVE-2026-9294)
vulnerability in CVE-2026-9294 (CVE-2026-9294). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5817 |
|
Vulnerability in docker (CVE-2026-5817)
vulnerability in docker (CVE-2026-5817). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5843 |
|
Vulnerability in docker (CVE-2026-5843)
vulnerability in docker (CVE-2026-5843). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3294 |
|
Vulnerability in tp-link (CVE-2026-3294)
vulnerability in tp-link (CVE-2026-3294). Successful exploitation can lead to full system takeover.
|
| CVE-2026-23663 |
|
Privilege Escalation in microsoft (CVE-2026-23663)
vulnerability in microsoft (CVE-2026-23663). Confidential information can be exposed externally.
|
| CVE-2026-26147 |
|
Vulnerability in microsoft (CVE-2026-26147)
vulnerability in microsoft (CVE-2026-26147). Confidential information can be exposed externally.
|
| CVE-2026-35430 |
|
Vulnerability in microsoft (CVE-2026-35430)
vulnerability in microsoft (CVE-2026-35430). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46727 |
|
Vulnerability in ruby (CVE-2026-46727)
vulnerability in ruby (CVE-2026-46727). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.0.5` or later.
|