Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-26447 Use-After-Free in dos (CVE-2026-26447)
vulnerability in dos (CVE-2026-26447). Risk of unauthorized operations or information disclosure.
CVE-2026-26446 Vulnerability in dos (CVE-2026-26446)
vulnerability in dos (CVE-2026-26446). Risk of unauthorized operations or information disclosure.
CVE-2026-26445 Vulnerability in dos (CVE-2026-26445)
vulnerability in dos (CVE-2026-26445). Risk of unauthorized operations or information disclosure.
CVE-2025-70340 Vulnerability in privilege-escalation (CVE-2025-70340)
vulnerability in privilege-escalation (CVE-2025-70340). Risk of unauthorized operations or information disclosure.
CVE-2025-70293 Vulnerability in dos (CVE-2025-70293)
vulnerability in dos (CVE-2025-70293). Risk of unauthorized operations or information disclosure.
CVE-2025-70290 Vulnerability in CVE-2025-70290 (CVE-2025-70290)
vulnerability in CVE-2025-70290 (CVE-2025-70290). Successful exploitation can lead to full system takeover.
CVE-2026-79940 Vulnerability in CVE-2026-79940 (CVE-2026-79940)
vulnerability in CVE-2026-79940 (CVE-2026-79940). Data can be tampered with by attackers.
CVE-2026-75466 Vulnerability in dos (CVE-2026-75466)
vulnerability in dos (CVE-2026-75466). Risk of unauthorized operations or information disclosure.
CVE-2026-75325 Authentication Bypass in CVE-2026-75325 (CVE-2026-75325)
authentication bypass in CVE-2026-75325 (CVE-2026-75325). Successful exploitation can lead to full system takeover.
CVE-2026-71171 Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
CVE-2026-70419 OS Command Injection in CVE-2026-70419 (CVE-2026-70419)
OS command injection in CVE-2026-70419 (CVE-2026-70419). Successful exploitation can lead to full system takeover.
CVE-2026-51106 Vulnerability in cpp (CVE-2026-51106)
vulnerability in cpp (CVE-2026-51106). Confidential information can be exposed externally.
CVE-2026-36851 Path Traversal in path-traversal (CVE-2026-36851)
path traversal in path-traversal (CVE-2026-36851). Confidential information can be exposed externally.
CVE-2026-19485 Vulnerability in CVE-2026-19485 (CVE-2026-19485)
vulnerability in CVE-2026-19485 (CVE-2026-19485). Risk of unauthorized operations or information disclosure.
CVE-2025-61165 Unrestricted File Upload in CVE-2025-61165 (CVE-2025-61165)
vulnerability in CVE-2025-61165 (CVE-2025-61165). Successful exploitation can lead to full system takeover.
CVE-2025-61164 Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint.
Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint.
CVE-2025-61163 Vulnerability in CVE-2025-61163 (CVE-2025-61163)
vulnerability in CVE-2025-61163 (CVE-2025-61163). Successful exploitation can lead to full system takeover.
CVE-2025-61162 Vulnerability in CVE-2025-61162 (CVE-2025-61162)
vulnerability in CVE-2025-61162 (CVE-2025-61162). Data can be tampered with by attackers.
CVE-2026-80348 Vulnerability in CVE-2026-80348 (CVE-2026-80348)
vulnerability in CVE-2026-80348 (CVE-2026-80348). Successful exploitation can lead to full system takeover.
CVE-2026-80214 OS Command Injection in CVE-2026-80214 (CVE-2026-80214)
OS command injection in CVE-2026-80214 (CVE-2026-80214). Risk of unauthorized operations or information disclosure.
CVE-2026-80195 Vulnerability in CVE-2026-80195 (CVE-2026-80195)
vulnerability in CVE-2026-80195 (CVE-2026-80195). Risk of unauthorized operations or information disclosure. Exploitable via `PATCH /api/teams/{id}`.
CVE-2026-80189 Vulnerability in CVE-2026-80189 (CVE-2026-80189)
vulnerability in CVE-2026-80189 (CVE-2026-80189). Risk of unauthorized operations or information disclosure.
CVE-2026-80200 Open Redirect in CVE-2026-80200 (CVE-2026-80200)
vulnerability in CVE-2026-80200 (CVE-2026-80200). Risk of unauthorized operations or information disclosure.
CVE-2026-76784 Vulnerability in CVE-2026-76784 (CVE-2026-76784)
vulnerability in CVE-2026-76784 (CVE-2026-76784). Risk of unauthorized operations or information disclosure.
CVE-2026-58474 Code Injection in CVE-2026-58474 (CVE-2026-58474)
code injection in CVE-2026-58474 (CVE-2026-58474). Successful exploitation can lead to full system takeover.
CVE-2026-47841 Vulnerability in CVE-2026-47841 (CVE-2026-47841)
vulnerability in CVE-2026-47841 (CVE-2026-47841). Confidential information can be exposed externally.
CVE-2026-47837 Vulnerability in CVE-2026-47837 (CVE-2026-47837)
vulnerability in CVE-2026-47837 (CVE-2026-47837). Risk of unauthorized operations or information disclosure.
CVE-2026-47836 Vulnerability in CVE-2026-47836 (CVE-2026-47836)
vulnerability in CVE-2026-47836 (CVE-2026-47836). Confidential information can be exposed externally.
CVE-2025-56798 Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-56798)
vulnerability in csrf (CVE-2025-56798). Successful exploitation can lead to full system takeover.
CVE-2025-29419 CTFd v3.7.6 was discovered to be vulnerable to a man-in-the-middle attack.
CTFd v3.7.6 was discovered to be vulnerable to a man-in-the-middle attack.
CVE-2023-42179 Vulnerability in CVE-2023-42179 (CVE-2023-42179)
vulnerability in CVE-2023-42179 (CVE-2023-42179). Risk of unauthorized operations or information disclosure.
CVE-2026-44701 Cross-Site Scripting (XSS) in devcode-it/openstamanager (CVE-2026-44701)
cross-site scripting in devcode-it/openstamanager (CVE-2026-44701). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.11-beta` or later.
GHSA-7w8c-qgxg-m7jx Cross-Site Scripting (XSS) in librenms/librenms (GHSA-7w8c-qgxg-m7jx)
cross-site scripting in librenms/librenms (GHSA-7w8c-qgxg-m7jx). Risk of unauthorized operations or information disclosure. Exploitable via ``program``. Mitigation: upgrade to `26.5.0` or later.
CVE-2026-80153 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2020-15878 Vulnerability in sqli (CVE-2020-15878)
vulnerability in sqli (CVE-2020-15878). Risk of unauthorized operations or information disclosure.
CVE-2020-15876 Vulnerability in sqli (CVE-2020-15876)
vulnerability in sqli (CVE-2020-15876). Risk of unauthorized operations or information disclosure.
CVE-2020-15874 Vulnerability in CVE-2020-15874 (CVE-2020-15874)
vulnerability in CVE-2020-15874 (CVE-2020-15874). Risk of unauthorized operations or information disclosure.
CVE-2026-81036 Open Redirect in CVE-2026-81036 (CVE-2026-81036)
vulnerability in CVE-2026-81036 (CVE-2026-81036). Confidential information can be exposed externally.
CVE-2026-81035 Vulnerability in CVE-2026-81035 (CVE-2026-81035)
vulnerability in CVE-2026-81035 (CVE-2026-81035). Data can be tampered with by attackers.
CVE-2026-81034 Vulnerability in CVE-2026-81034 (CVE-2026-81034)
vulnerability in CVE-2026-81034 (CVE-2026-81034). Confidential information can be exposed externally.
CVE-2026-81033 Vulnerability in CVE-2026-81033 (CVE-2026-81033)
vulnerability in CVE-2026-81033 (CVE-2026-81033). Risk of unauthorized operations or information disclosure.
CVE-2026-81032 Vulnerability in cpp (CVE-2026-81032)
vulnerability in cpp (CVE-2026-81032). Successful exploitation can lead to full system takeover.
CVE-2026-81031 Vulnerability in CVE-2026-81031 (CVE-2026-81031)
vulnerability in CVE-2026-81031 (CVE-2026-81031). Successful exploitation can lead to full system takeover.
CVE-2026-81030 Path Traversal in CVE-2026-81030 (CVE-2026-81030)
path traversal in CVE-2026-81030 (CVE-2026-81030). Confidential information can be exposed externally.
CVE-2026-81029 Open Redirect in CVE-2026-81029 (CVE-2026-81029)
vulnerability in CVE-2026-81029 (CVE-2026-81029). Confidential information can be exposed externally.
CVE-2026-81028 Path Traversal in cpp (CVE-2026-81028)
path traversal in cpp (CVE-2026-81028). Confidential information can be exposed externally.
CVE-2026-81027 Vulnerability in c (CVE-2026-81027)
vulnerability in c (CVE-2026-81027). Confidential information can be exposed externally. Exploitable via `Authorization header`.
CVE-2026-80428 Unsafe Deserialization in CVE-2026-80428 (CVE-2026-80428)
vulnerability in CVE-2026-80428 (CVE-2026-80428). Successful exploitation can lead to full system takeover.
CVE-2026-80427 Vulnerability in CVE-2026-80427 (CVE-2026-80427)
vulnerability in CVE-2026-80427 (CVE-2026-80427). Successful exploitation can lead to full system takeover.
CVE-2026-80426 Cross-Site Scripting (XSS) in react (CVE-2026-80426)
cross-site scripting in react (CVE-2026-80426). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →