Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-64879 OS Command Injection in tenable (CVE-2026-64879)
OS command injection in tenable (CVE-2026-64879). Successful exploitation can lead to full system takeover.
CVE-2026-30631 OS Command Injection in CVE-2026-30631 (CVE-2026-30631)
OS command injection in CVE-2026-30631 (CVE-2026-30631). Successful exploitation can lead to full system takeover. Exploitable via ``computer_write_file``.
CVE-2026-64878 OS Command Injection in tenable (CVE-2026-64878)
OS command injection in tenable (CVE-2026-64878). Successful exploitation can lead to full system takeover.
CVE-2026-59144 Vulnerability in CVE-2026-59144 (CVE-2026-59144)
vulnerability in CVE-2026-59144 (CVE-2026-59144). Successful exploitation can lead to full system takeover.
CVE-2026-59145 Out-of-Bounds Read in CVE-2026-59145 (CVE-2026-59145)
vulnerability in CVE-2026-59145 (CVE-2026-59145). Confidential information can be exposed externally.
CVE-2026-59147 Out-of-Bounds Read in CVE-2026-59147 (CVE-2026-59147)
vulnerability in CVE-2026-59147 (CVE-2026-59147). Successful exploitation can lead to full system takeover.
CVE-2026-59142 Out-of-Bounds Read in CVE-2026-59142 (CVE-2026-59142)
vulnerability in CVE-2026-59142 (CVE-2026-59142). Confidential information can be exposed externally.
CVE-2026-59141 Out-of-Bounds Read in CVE-2026-59141 (CVE-2026-59141)
vulnerability in CVE-2026-59141 (CVE-2026-59141). Confidential information can be exposed externally.
CVE-2016-20096 SQL Injection in sqli (CVE-2016-20096)
SQL injection in sqli (CVE-2016-20096). Successful exploitation can lead to full system takeover.
CVE-2026-59140 Out-of-Bounds Read in CVE-2026-59140 (CVE-2026-59140)
vulnerability in CVE-2026-59140 (CVE-2026-59140). Confidential information can be exposed externally.
CVE-2026-16441 Vulnerability in eclipse (CVE-2026-16441)
vulnerability in eclipse (CVE-2026-16441). Successful exploitation can lead to full system takeover.
CVE-2026-50755 Vulnerability in CVE-2026-50755 (CVE-2026-50755)
vulnerability in CVE-2026-50755 (CVE-2026-50755). Successful exploitation can lead to full system takeover.
CVE-2026-59139 Out-of-Bounds Read in CVE-2026-59139 (CVE-2026-59139)
vulnerability in CVE-2026-59139 (CVE-2026-59139). Confidential information can be exposed externally.
CVE-2026-55982 Information Disclosure in code.gitea.io/gitea (CVE-2026-55982)
vulnerability in code.gitea.io/gitea (CVE-2026-55982). Confidential information can be exposed externally. Exploitable via `GET /login/oauth/userinfo`. Mitigation: upgrade to `1.27.0` or later.
CVE-2026-58443 Authorization Flaw in code.gitea.io/gitea (CVE-2026-58443)
vulnerability in code.gitea.io/gitea (CVE-2026-58443). Data can be tampered with by attackers. Exploitable via `POST /api/v1/repos/{public-owner}/{public-repo}/pulls/{index}/update`. Mitigation: upgrade to `1.27.0` or later.
CVE-2026-56654 Vulnerability in code.gitea.io/gitea (CVE-2026-56654)
vulnerability in code.gitea.io/gitea (CVE-2026-56654). Successful exploitation can lead to full system takeover. Exploitable via `POST /users/{username}/tokens`. Mitigation: upgrade to `1.27.0` or later.
CVE-2026-56750 Vulnerability in code.gitea.io/gitea (CVE-2026-56750)
vulnerability in code.gitea.io/gitea (CVE-2026-56750). Confidential information can be exposed externally. Exploitable via ``autoSignIn``. Mitigation: upgrade to `1.27.0` or later.
CVE-2026-56443 Authorization Flaw in code.gitea.io/gitea (CVE-2026-56443)
vulnerability in code.gitea.io/gitea (CVE-2026-56443). Data can be tampered with by attackers. Exploitable via `PATCH /api/v1/admin/users/limuser`. Mitigation: upgrade to `1.27.0` or later.
CVE-2026-73653 Path Traversal in @vitest/browser (CVE-2026-73653)
path traversal in @vitest/browser (CVE-2026-73653). Confidential information can be exposed externally. Exploitable via ``allowWrite``. Mitigation: upgrade to `5.0.0-beta.6` or later.
CVE-2026-16439 Vulnerability in eclipse (CVE-2026-16439)
vulnerability in eclipse (CVE-2026-16439). Data can be tampered with by attackers.
CVE-2026-64825 Path Traversal in homeassistant (CVE-2026-64825)
path traversal in homeassistant (CVE-2026-64825). Data can be tampered with by attackers. Mitigation: upgrade to `2026.6.0` or later.
CVE-2026-28316 Vulnerability in privilege-escalation (CVE-2026-28316)
vulnerability in privilege-escalation (CVE-2026-28316). Successful exploitation can lead to full system takeover.
CVE-2026-28314 Vulnerability in solarwinds (CVE-2026-28314)
vulnerability in solarwinds (CVE-2026-28314). Successful exploitation can lead to full system takeover.
CVE-2026-28321 Vulnerability in solarwinds (CVE-2026-28321)
vulnerability in solarwinds (CVE-2026-28321). Successful exploitation can lead to full system takeover.
CVE-2026-28312 Vulnerability in privilege-escalation (CVE-2026-28312)
vulnerability in privilege-escalation (CVE-2026-28312). Successful exploitation can lead to full system takeover.
CVE-2026-28313 Vulnerability in solarwinds (CVE-2026-28313)
vulnerability in solarwinds (CVE-2026-28313). Successful exploitation can lead to full system takeover.
CVE-2026-28317 Vulnerability in privilege-escalation (CVE-2026-28317)
vulnerability in privilege-escalation (CVE-2026-28317). Successful exploitation can lead to full system takeover.
CVE-2026-28307 Vulnerability in privilege-escalation (CVE-2026-28307)
vulnerability in privilege-escalation (CVE-2026-28307). Successful exploitation can lead to full system takeover.
CVE-2026-28305 Vulnerability in solarwinds (CVE-2026-28305)
vulnerability in solarwinds (CVE-2026-28305). Successful exploitation can lead to full system takeover.
CVE-2026-28302 Vulnerability in privilege-escalation (CVE-2026-28302)
vulnerability in privilege-escalation (CVE-2026-28302). Successful exploitation can lead to full system takeover.
CVE-2026-28308 Vulnerability in solarwinds (CVE-2026-28308)
vulnerability in solarwinds (CVE-2026-28308). Successful exploitation can lead to full system takeover.
CVE-2026-28304 Vulnerability in solarwinds (CVE-2026-28304)
vulnerability in solarwinds (CVE-2026-28304). Successful exploitation can lead to full system takeover.
CVE-2026-28309 Vulnerability in solarwinds (CVE-2026-28309)
vulnerability in solarwinds (CVE-2026-28309). Successful exploitation can lead to full system takeover.
CVE-2026-28310 Vulnerability in privilege-escalation (CVE-2026-28310)
vulnerability in privilege-escalation (CVE-2026-28310). Successful exploitation can lead to full system takeover.
CVE-2026-28306 Vulnerability in privilege-escalation (CVE-2026-28306)
vulnerability in privilege-escalation (CVE-2026-28306). Successful exploitation can lead to full system takeover.
CVE-2026-61884 Vulnerability in cisa (CVE-2026-61884)
vulnerability in cisa (CVE-2026-61884). Successful exploitation can lead to full system takeover.
CVE-2026-65048 Cross-Site Scripting (XSS) in wordpress (CVE-2026-65048)
cross-site scripting in wordpress (CVE-2026-65048). Confidential information can be exposed externally.
CVE-2026-65049 Authorization Flaw in wordpress (CVE-2026-65049)
vulnerability in wordpress (CVE-2026-65049). Data can be tampered with by attackers.
CVE-2026-16412 Buffer Overflow in mozilla (CVE-2026-16412)
vulnerability in mozilla (CVE-2026-16412). Successful exploitation can lead to full system takeover.
CVE-2025-66390 Vulnerability in CVE-2025-66390 (CVE-2025-66390)
vulnerability in CVE-2025-66390 (CVE-2025-66390). Successful exploitation can lead to full system takeover. Exploitable via `Host header`.
CVE-2026-16410 Vulnerability in mozilla (CVE-2026-16410)
vulnerability in mozilla (CVE-2026-16410). Successful exploitation can lead to full system takeover.
CVE-2026-16406 Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153.
Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153.
CVE-2026-16402 Integer overflow in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153.
Integer overflow in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153.
CVE-2026-16408 Vulnerability in mozilla (CVE-2026-16408)
vulnerability in mozilla (CVE-2026-16408). Successful exploitation can lead to full system takeover.
CVE-2026-16407 Vulnerability in mozilla (CVE-2026-16407)
vulnerability in mozilla (CVE-2026-16407). Successful exploitation can lead to full system takeover.
CVE-2026-16411 Buffer Overflow in c (CVE-2026-16411)
vulnerability in c (CVE-2026-16411). Successful exploitation can lead to full system takeover.
CVE-2026-16395 Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 153.
Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 153.
CVE-2026-16394 Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 153.
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 153.
CVE-2026-16392 Vulnerability in mozilla (CVE-2026-16392)
vulnerability in mozilla (CVE-2026-16392). Data can be tampered with by attackers.
CVE-2026-16393 Buffer Overflow in mozilla (CVE-2026-16393)
vulnerability in mozilla (CVE-2026-16393). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →