Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-49446 |
|
Vulnerability in github.com/azukaar/cosmos-server (CVE-2026-49446)
vulnerability in github.com/azukaar/cosmos-server (CVE-2026-49446). Risk of unauthorized operations or information disclosure. Exploitable via ``tokenMiddleware``. Mitigation: upgrade to `0.22.19` or later.
|
| CVE-2026-49447 |
|
Authentication Bypass in github.com/azukaar/cosmos-server (CVE-2026-49447)
authentication bypass in github.com/azukaar/cosmos-server (CVE-2026-49447). Risk of unauthorized operations or information disclosure. Exploitable via `GET /cosmos/api/constellation/public-devices`. Mitigation: upgrade to `0.22.19` or later.
|
| CVE-2026-57511 |
|
Vulnerability in CVE-2026-57511 (CVE-2026-57511)
vulnerability in CVE-2026-57511 (CVE-2026-57511). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57510 |
|
Vulnerability in CVE-2026-57510 (CVE-2026-57510)
vulnerability in CVE-2026-57510 (CVE-2026-57510). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3158 |
|
Vulnerability in ibm (CVE-2026-3158)
vulnerability in ibm (CVE-2026-3158). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3157 |
|
Vulnerability in ibm (CVE-2026-3157)
vulnerability in ibm (CVE-2026-3157). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-1918 |
|
Vulnerability in ibm (CVE-2026-1918)
vulnerability in ibm (CVE-2026-1918). Confidential information can be exposed externally.
|
| CVE-2026-16192 |
|
Vulnerability in dos (CVE-2026-16192)
vulnerability in dos (CVE-2026-16192). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16184 |
|
Vulnerability in ibm (CVE-2026-16184)
vulnerability in ibm (CVE-2026-16184). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16107 |
|
Vulnerability in CVE-2026-16107 (CVE-2026-16107)
vulnerability in CVE-2026-16107 (CVE-2026-16107). Confidential information can be exposed externally.
|
| CVE-2026-11391 |
|
Tanium addressed a SQL injection vulnerability in Patch.
Tanium addressed a SQL injection vulnerability in Patch.
|
| CVE-2026-7769 |
|
SQL Injection in sqli (CVE-2026-7769)
SQL injection in sqli (CVE-2026-7769). Confidential information can be exposed externally.
|
| CVE-2026-7362 |
|
Vulnerability in ibm (CVE-2026-7362)
vulnerability in ibm (CVE-2026-7362). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66745 |
|
Code Injection in CVE-2026-66745 (CVE-2026-66745)
code injection in CVE-2026-66745 (CVE-2026-66745). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5114 |
|
Path Traversal in wordpress (CVE-2026-5114)
path traversal in wordpress (CVE-2026-5114). Confidential information can be exposed externally.
|
| CVE-2026-50738 |
|
Use-After-Free in enterprisedb (CVE-2026-50738)
vulnerability in enterprisedb (CVE-2026-50738). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50737 |
|
Vulnerability in enterprisedb (CVE-2026-50737)
vulnerability in enterprisedb (CVE-2026-50737). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50736 |
|
SQL Injection in enterprisedb (CVE-2026-50736)
SQL injection in enterprisedb (CVE-2026-50736). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50735 |
|
Out-of-Bounds Read in enterprisedb (CVE-2026-50735)
vulnerability in enterprisedb (CVE-2026-50735). Confidential information can be exposed externally.
|
| CVE-2026-4932 |
|
Vulnerability in CVE-2026-4932 (CVE-2026-4932)
vulnerability in CVE-2026-4932 (CVE-2026-4932). Confidential information can be exposed externally.
|
| CVE-2026-4912 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-4912)
SSRF in wordpress (CVE-2026-4912). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48396 |
|
Authorization Flaw in adobe (CVE-2026-48396)
vulnerability in adobe (CVE-2026-48396). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48395 |
|
Vulnerability in adobe (CVE-2026-48395)
vulnerability in adobe (CVE-2026-48395). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48394 |
|
Out-of-Bounds Write in adobe (CVE-2026-48394)
out-of-bounds write in adobe (CVE-2026-48394). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48393 |
|
Out-of-Bounds Write in adobe (CVE-2026-48393)
out-of-bounds write in adobe (CVE-2026-48393). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48392 |
|
Out-of-Bounds Write in adobe (CVE-2026-48392)
out-of-bounds write in adobe (CVE-2026-48392). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48391 |
|
Vulnerability in adobe (CVE-2026-48391)
vulnerability in adobe (CVE-2026-48391). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48390 |
|
Authorization Flaw in privilege-escalation (CVE-2026-48390)
vulnerability in privilege-escalation (CVE-2026-48390). Confidential information can be exposed externally.
|
| CVE-2026-48374 |
|
Path Traversal in path-traversal (CVE-2026-48374)
path traversal in path-traversal (CVE-2026-48374). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18107 |
|
Privilege Escalation in privilege-escalation (CVE-2026-18107)
vulnerability in privilege-escalation (CVE-2026-18107). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16771 |
|
Vulnerability in CVE-2026-16771 (CVE-2026-16771)
vulnerability in CVE-2026-16771 (CVE-2026-16771). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16498 |
|
Vulnerability in CVE-2026-16498 (CVE-2026-16498)
vulnerability in CVE-2026-16498 (CVE-2026-16498). Confidential information can be exposed externally.
|
| CVE-2026-16496 |
|
Vulnerability in CVE-2026-16496 (CVE-2026-16496)
vulnerability in CVE-2026-16496 (CVE-2026-16496). Confidential information can be exposed externally.
|
| CVE-2026-15992 |
|
Privilege Escalation in wordpress (CVE-2026-15992)
vulnerability in wordpress (CVE-2026-15992). Successful exploitation can lead to full system takeover. Exploitable via ``Module_Password_Hint``.
|
| CVE-2026-15304 |
|
SQL Injection in wordpress (CVE-2026-15304)
SQL injection in wordpress (CVE-2026-15304). Confidential information can be exposed externally.
|
| CVE-2026-14869 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-14869 (CVE-2026-14869)
SSRF in CVE-2026-14869 (CVE-2026-14869). Confidential information can be exposed externally.
|
| CVE-2026-48388 |
|
Vulnerability in adobe (CVE-2026-48388)
vulnerability in adobe (CVE-2026-48388). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48372 |
|
Vulnerability in adobe (CVE-2026-48372)
vulnerability in adobe (CVE-2026-48372). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67185 |
|
Path Traversal in path-traversal (CVE-2026-67185)
path traversal in path-traversal (CVE-2026-67185). Confidential information can be exposed externally.
|
| CVE-2026-67184 |
|
Vulnerability in CVE-2026-67184 (CVE-2026-67184)
vulnerability in CVE-2026-67184 (CVE-2026-67184). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67183 |
|
Vulnerability in CVE-2026-67183 (CVE-2026-67183)
vulnerability in CVE-2026-67183 (CVE-2026-67183). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67182 |
|
Vulnerability in CVE-2026-67182 (CVE-2026-67182)
vulnerability in CVE-2026-67182 (CVE-2026-67182). Data can be tampered with by attackers.
|
| CVE-2026-51275 |
|
Vulnerability in dos (CVE-2026-51275)
vulnerability in dos (CVE-2026-51275). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51274 |
|
Vulnerability in dos (CVE-2026-51274)
vulnerability in dos (CVE-2026-51274). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51273 |
|
Vulnerability in CVE-2026-51273 (CVE-2026-51273)
vulnerability in CVE-2026-51273 (CVE-2026-51273). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18085 |
|
Vulnerability in dos (CVE-2026-18085)
vulnerability in dos (CVE-2026-18085). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18084 |
|
Cross-Site Scripting (XSS) in blackberry (CVE-2026-18084)
cross-site scripting in blackberry (CVE-2026-18084). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16313 |
|
Vulnerability in CVE-2026-16313 (CVE-2026-16313)
vulnerability in CVE-2026-16313 (CVE-2026-16313). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54635 |
|
Authentication Bypass in pytonapi (CVE-2026-54635)
authentication bypass in pytonapi (CVE-2026-54635). Data can be tampered with by attackers. Exploitable via `POST /hook/custom`. Mitigation: upgrade to `2.2.1` or later.
|
| CVE-2026-54632 |
|
Vulnerability in SIPSorcery (CVE-2026-54632)
vulnerability in SIPSorcery (CVE-2026-54632). Risk of unauthorized operations or information disclosure. Exploitable via ``Close``. Mitigation: upgrade to `10.0.9` or later.
|