Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-9587 |
|
Vulnerability in CVE-2026-9587 (CVE-2026-9587)
vulnerability in CVE-2026-9587 (CVE-2026-9587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9762 |
|
Code Injection in ibm (CVE-2026-9762)
code injection in ibm (CVE-2026-9762). Successful exploitation can lead to full system takeover.
|
| CVE-2025-59866 |
|
Vulnerability in privilege-escalation (CVE-2025-59866)
vulnerability in privilege-escalation (CVE-2025-59866). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9586 |
|
SQL Injection in sqli (CVE-2026-9586)
SQL injection in sqli (CVE-2026-9586). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9588 |
|
Cross-Site Scripting (XSS) in CVE-2026-9588 (CVE-2026-9588)
cross-site scripting in CVE-2026-9588 (CVE-2026-9588). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9585 |
|
Cross-Site Scripting (XSS) in CVE-2026-9585 (CVE-2026-9585)
cross-site scripting in CVE-2026-9585 (CVE-2026-9585). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9202 |
|
Vulnerability in langflow (CVE-2026-9202)
vulnerability in langflow (CVE-2026-9202). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9198 KEV |
|
[KEV] Code Injection in Ibm langflow (CVE-2026-9198)
code injection in Ibm langflow (CVE-2026-9198). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-8297 |
|
SQL Injection in sqli (CVE-2026-8297)
SQL injection in sqli (CVE-2026-8297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63309 |
|
Authorization Flaw in CVE-2026-63309 (CVE-2026-63309)
vulnerability in CVE-2026-63309 (CVE-2026-63309). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63308 |
|
Vulnerability in dos (CVE-2026-63308)
vulnerability in dos (CVE-2026-63308). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63307 |
|
Vulnerability in CVE-2026-63307 (CVE-2026-63307)
vulnerability in CVE-2026-63307 (CVE-2026-63307). Confidential information can be exposed externally. Exploitable via `GET /api/connection/datasource/{id}`.
|
| CVE-2026-21760 |
|
Vulnerability in hcltech (CVE-2026-21760)
vulnerability in hcltech (CVE-2026-21760). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57860 |
|
Vulnerability in c (CVE-2026-57860)
vulnerability in c (CVE-2026-57860). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16106 |
|
Vulnerability in redhat (CVE-2026-16106)
vulnerability in redhat (CVE-2026-16106). Data can be tampered with by attackers.
|
| CVE-2026-63101 |
|
Vulnerability in CVE-2026-63101 (CVE-2026-63101)
vulnerability in CVE-2026-63101 (CVE-2026-63101). Confidential information can be exposed externally.
|
| CVE-2026-21764 |
|
Vulnerability in hcltech (CVE-2026-21764)
vulnerability in hcltech (CVE-2026-21764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21762 |
|
Vulnerability in hcltech (CVE-2026-21762)
vulnerability in hcltech (CVE-2026-21762). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21761 |
|
Vulnerability in hcltech (CVE-2026-21761)
vulnerability in hcltech (CVE-2026-21761). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16093 |
|
Vulnerability in redhat (CVE-2026-16093)
vulnerability in redhat (CVE-2026-16093). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16108 |
|
Information Disclosure in redhat (CVE-2026-16108)
vulnerability in redhat (CVE-2026-16108). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12694 |
|
Vulnerability in CVE-2026-12694 (CVE-2026-12694)
vulnerability in CVE-2026-12694 (CVE-2026-12694). Data can be tampered with by attackers.
|
| CVE-2026-16104 |
|
Vulnerability in redhat (CVE-2026-16104)
vulnerability in redhat (CVE-2026-16104). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16103 |
|
Vulnerability in redhat (CVE-2026-16103)
vulnerability in redhat (CVE-2026-16103). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63100 |
|
Vulnerability in CVE-2026-63100 (CVE-2026-63100)
vulnerability in CVE-2026-63100 (CVE-2026-63100). Confidential information can be exposed externally.
|
| CVE-2026-12692 |
|
Vulnerability in CVE-2026-12692 (CVE-2026-12692)
vulnerability in CVE-2026-12692 (CVE-2026-12692). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12691 |
|
Vulnerability in CVE-2026-12691 (CVE-2026-12691)
vulnerability in CVE-2026-12691 (CVE-2026-12691). Confidential information can be exposed externally.
|
| CVE-2026-12693 |
|
Vulnerability in CVE-2026-12693 (CVE-2026-12693)
vulnerability in CVE-2026-12693 (CVE-2026-12693). Confidential information can be exposed externally.
|
| CVE-2026-63099 |
|
Vulnerability in CVE-2026-63099 (CVE-2026-63099)
vulnerability in CVE-2026-63099 (CVE-2026-63099). Confidential information can be exposed externally.
|
| CVE-2026-11763 |
|
Vulnerability in CVE-2026-11763 (CVE-2026-11763)
vulnerability in CVE-2026-11763 (CVE-2026-11763). Confidential information can be exposed externally.
|
| CVE-2026-9537 |
|
Vulnerability in CVE-2026-9537 (CVE-2026-9537)
vulnerability in CVE-2026-9537 (CVE-2026-9537). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14871 |
|
Authorization Flaw in CVE-2026-14871 (CVE-2026-14871)
vulnerability in CVE-2026-14871 (CVE-2026-14871). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63096 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-63096 (CVE-2026-63096)
SSRF in CVE-2026-63096 (CVE-2026-63096). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60024 |
|
Vulnerability in CVE-2026-60024 (CVE-2026-60024)
vulnerability in CVE-2026-60024 (CVE-2026-60024). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63095 |
|
Vulnerability in CVE-2026-63095 (CVE-2026-63095)
vulnerability in CVE-2026-63095 (CVE-2026-63095). Data can be tampered with by attackers.
|
| CVE-2026-60025 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-60025)
vulnerability in csrf (CVE-2026-60025). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15007 |
|
Vulnerability in c (CVE-2026-15007)
vulnerability in c (CVE-2026-15007). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63097 |
|
Authorization Flaw in CVE-2026-63097 (CVE-2026-63097)
vulnerability in CVE-2026-63097 (CVE-2026-63097). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15343 |
|
Path Traversal in path-traversal (CVE-2026-15343)
path traversal in path-traversal (CVE-2026-15343). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15783 |
|
Vulnerability in CVE-2026-15783 (CVE-2026-15783)
vulnerability in CVE-2026-15783 (CVE-2026-15783). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58149 |
|
Information Disclosure in CVE-2026-58149 (CVE-2026-58149)
vulnerability in CVE-2026-58149 (CVE-2026-58149). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12715 |
|
Vulnerability in CVE-2026-12715 (CVE-2026-12715)
vulnerability in CVE-2026-12715 (CVE-2026-12715). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58148 |
|
The Joomla extension ChronoForms is vulnerable to an unauthenticated stored XSS vulnerability.
The Joomla extension ChronoForms is vulnerable to an unauthenticated stored XSS vulnerability.
|
| CVE-2026-14741 |
|
Vulnerability in dos (CVE-2026-14741)
vulnerability in dos (CVE-2026-14741). Risk of unauthorized operations or information disclosure. Exploitable via ``Date``.
|
| CVE-2026-63098 |
|
Vulnerability in strangebee (CVE-2026-63098)
vulnerability in strangebee (CVE-2026-63098). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54247 |
|
Vulnerability in github.com/zalando/skipper (CVE-2026-54247)
vulnerability in github.com/zalando/skipper (CVE-2026-54247). Risk of unauthorized operations or information disclosure. Exploitable via `POST /admission`. Mitigation: upgrade to `0.26.22` or later.
|
| CVE-2026-63094 |
|
Vulnerability in CVE-2026-63094 (CVE-2026-63094)
vulnerability in CVE-2026-63094 (CVE-2026-63094). Confidential information can be exposed externally.
|
| CVE-2026-51083 |
|
Vulnerability in CVE-2026-51083 (CVE-2026-51083)
vulnerability in CVE-2026-51083 (CVE-2026-51083). Confidential information can be exposed externally.
|
| CVE-2026-63093 |
|
Vulnerability in anysphere (CVE-2026-63093)
vulnerability in anysphere (CVE-2026-63093). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51081 |
|
Cross-Site Scripting (XSS) in CVE-2026-51081 (CVE-2026-51081)
cross-site scripting in CVE-2026-51081 (CVE-2026-51081). Risk of unauthorized operations or information disclosure.
|