Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-6302 |
|
Use-After-Free in google (CVE-2026-6302)
vulnerability in google (CVE-2026-6302). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6304 |
|
Use-After-Free in google (CVE-2026-6304)
vulnerability in google (CVE-2026-6304). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6306 |
|
Vulnerability in google (CVE-2026-6306)
vulnerability in google (CVE-2026-6306). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6303 |
|
Use-After-Free in google (CVE-2026-6303)
vulnerability in google (CVE-2026-6303). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6305 |
|
Vulnerability in google (CVE-2026-6305)
vulnerability in google (CVE-2026-6305). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6299 |
|
Use-After-Free in google (CVE-2026-6299)
vulnerability in google (CVE-2026-6299). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6300 |
|
Use-After-Free in google (CVE-2026-6300)
vulnerability in google (CVE-2026-6300). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34632 |
|
Vulnerability in adobe (CVE-2026-34632)
vulnerability in adobe (CVE-2026-34632). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30461 |
|
Command Injection in thedaylightstudio (CVE-2026-30461)
command injection in thedaylightstudio (CVE-2026-30461). Confidential information can be exposed externally.
|
| CVE-2026-4134 |
|
Vulnerability in lenovo (CVE-2026-4134)
vulnerability in lenovo (CVE-2026-4134). Successful exploitation can lead to full system takeover.
|
| CVE-2026-4145 |
|
Vulnerability in lenovo (CVE-2026-4145)
vulnerability in lenovo (CVE-2026-4145). Successful exploitation can lead to full system takeover.
|
| CVE-2026-0827 |
|
Vulnerability in lenovo (CVE-2026-0827)
vulnerability in lenovo (CVE-2026-0827). Data can be tampered with by attackers.
|
| CVE-2026-33805 |
|
Vulnerability in @fastify/reply-from (CVE-2026-33805)
vulnerability in @fastify/reply-from (CVE-2026-33805). Data can be tampered with by attackers. Exploitable via ``Connection``. Mitigation: upgrade to `12.6.2` or later.
|
| CVE-2026-5588 |
|
Vulnerability in CVE-2026-5588 (CVE-2026-5588)
vulnerability in CVE-2026-5588 (CVE-2026-5588). Data can be tampered with by attackers.
|
| CVE-2026-3505 |
|
Vulnerability in CVE-2026-3505 (CVE-2026-3505)
vulnerability in CVE-2026-3505 (CVE-2026-3505). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5598 |
|
Vulnerability in org.bouncycastle:bcprov-jdk15to18 (CVE-2026-5598)
vulnerability in org.bouncycastle:bcprov-jdk15to18 (CVE-2026-5598). Confidential information can be exposed externally. Mitigation: upgrade to `1.80.2` or later.
|
| CVE-2025-14813 |
|
Vulnerability in org.bouncycastle:bcprov-jdk14 (CVE-2025-14813)
vulnerability in org.bouncycastle:bcprov-jdk14 (CVE-2025-14813). Confidential information can be exposed externally. Exploitable via ``G3413CTRBlockCipher``. Mitigation: upgrade to `1.84` or later.
|
| CVE-2025-40899 |
|
Cross-Site Scripting (XSS) in c (CVE-2025-40899)
cross-site scripting in c (CVE-2025-40899). Data can be tampered with by attackers.
|
| CVE-2025-40897 |
|
Authorization Flaw in CVE-2025-40897 (CVE-2025-40897)
vulnerability in CVE-2025-40897 (CVE-2025-40897). Data can be tampered with by attackers.
|
| CVE-2026-33806 |
|
Vulnerability in fastify (CVE-2026-33806)
vulnerability in fastify (CVE-2026-33806). Data can be tampered with by attackers.
|
| CVE-2026-2332 |
|
Vulnerability in org.eclipse.jetty:jetty-http (CVE-2026-2332)
vulnerability in org.eclipse.jetty:jetty-http (CVE-2026-2332). Confidential information can be exposed externally. Exploitable via `GET /smuggled`. Mitigation: upgrade to `11.0.29` or later.
|
| CVE-2026-35589 |
|
Vulnerability in nanobot (CVE-2026-35589)
vulnerability in nanobot (CVE-2026-35589). Confidential information can be exposed externally.
|
| CVE-2026-39387 |
|
Vulnerability in path-traversal (CVE-2026-39387)
vulnerability in path-traversal (CVE-2026-39387). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40688 |
|
Out-of-Bounds Write in fortinet (CVE-2026-40688)
out-of-bounds write in fortinet (CVE-2026-40688). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35032 |
|
Vulnerability in ssrf (CVE-2026-35032)
vulnerability in ssrf (CVE-2026-35032). Confidential information can be exposed externally. Exploitable via `POST /LiveTv/TunerHosts`.
|
| CVE-2026-33414 |
|
OS Command Injection in github.com/containers/podman (CVE-2026-33414)
OS command injection in github.com/containers/podman (CVE-2026-33414). Successful exploitation can lead to full system takeover. Exploitable via ``fmt.Sprintf``. Mitigation: upgrade to `5.8.2` or later.
|
| CVE-2026-33021 |
|
Use-After-Free in saitoha (CVE-2026-33021)
vulnerability in saitoha (CVE-2026-33021). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-33023 |
|
Use-After-Free in c (CVE-2026-33023)
vulnerability in c (CVE-2026-33023). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27293 |
|
Vulnerability in adobe (CVE-2026-27293)
vulnerability in adobe (CVE-2026-27293). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27294 |
|
Out-of-Bounds Read in adobe (CVE-2026-27294)
vulnerability in adobe (CVE-2026-27294). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27295 |
|
Out-of-Bounds Write in adobe (CVE-2026-27295)
out-of-bounds write in adobe (CVE-2026-27295). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27296 |
|
Vulnerability in adobe (CVE-2026-27296)
vulnerability in adobe (CVE-2026-27296). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27297 |
|
Vulnerability in adobe (CVE-2026-27297)
vulnerability in adobe (CVE-2026-27297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27298 |
|
Vulnerability in adobe (CVE-2026-27298)
vulnerability in adobe (CVE-2026-27298). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27290 |
|
Vulnerability in adobe (CVE-2026-27290)
vulnerability in adobe (CVE-2026-27290). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27292 |
|
Use-After-Free in adobe (CVE-2026-27292)
vulnerability in adobe (CVE-2026-27292). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40291 |
|
Privilege Escalation in chamilo (CVE-2026-40291)
vulnerability in chamilo (CVE-2026-40291). Successful exploitation can lead to full system takeover. Exploitable via `PUT /api/users/{id}`.
|
| CVE-2026-34602 |
|
Vulnerability in chamilo (CVE-2026-34602)
vulnerability in chamilo (CVE-2026-34602). Data can be tampered with by attackers.
|
| CVE-2026-34619 |
|
Path Traversal in path-traversal (CVE-2026-34619)
path traversal in path-traversal (CVE-2026-34619). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34631 |
|
Out-of-Bounds Write in adobe (CVE-2026-34631)
out-of-bounds write in adobe (CVE-2026-34631). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35196 |
|
OS Command Injection in chamilo (CVE-2026-35196)
OS command injection in chamilo (CVE-2026-35196). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33018 |
|
Use-After-Free in c (CVE-2026-33018)
vulnerability in c (CVE-2026-33018). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33019 |
|
Out-of-Bounds Read in saitoha (CVE-2026-33019)
vulnerability in saitoha (CVE-2026-33019). Confidential information can be exposed externally.
|
| CVE-2026-33020 |
|
Vulnerability in c (CVE-2026-33020)
vulnerability in c (CVE-2026-33020). Data can be tampered with by attackers.
|
| CVE-2026-27282 |
|
Vulnerability in adobe (CVE-2026-27282)
vulnerability in adobe (CVE-2026-27282). Data can be tampered with by attackers.
|
| CVE-2026-27305 |
|
Path Traversal in path-traversal (CVE-2026-27305)
path traversal in path-traversal (CVE-2026-27305). Confidential information can be exposed externally.
|
| CVE-2026-27306 |
|
Vulnerability in adobe (CVE-2026-27306)
vulnerability in adobe (CVE-2026-27306). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40683 |
|
Vulnerability in keystone (CVE-2026-40683)
vulnerability in keystone (CVE-2026-40683). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `28.0.1` or later.
|
| CVE-2026-33715 |
|
Vulnerability in symfony (CVE-2026-33715)
vulnerability in symfony (CVE-2026-33715). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34160 |
|
Vulnerability in ssrf (CVE-2026-34160)
vulnerability in ssrf (CVE-2026-34160). Confidential information can be exposed externally.
|