Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-12598 |
|
Authentication Bypass in wordpress (CVE-2026-12598)
authentication bypass in wordpress (CVE-2026-12598). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12597 |
|
Authentication Bypass in wordpress (CVE-2026-12597)
authentication bypass in wordpress (CVE-2026-12597). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12595 |
|
Authentication Bypass in wordpress (CVE-2026-12595)
authentication bypass in wordpress (CVE-2026-12595). Successful exploitation can lead to full system takeover.
|
| ECHO-d5b1-8a54-bb7b |
|
ECHO-d5b1-8a54-bb7b |
| ECHO-a29a-2b91-4618 |
|
ECHO-a29a-2b91-4618 |
| ECHO-c2b7-6171-92cf |
|
ECHO-c2b7-6171-92cf |
| ECHO-2c90-87c7-3df1 |
|
ECHO-2c90-87c7-3df1 |
| openSUSE-SU-2026:11247-1 |
|
Vulnerability in libredwg (openSUSE-SU-2026:11247-1)
vulnerability in libredwg (openSUSE-SU-2026:11247-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.14.8413-1.1` or later.
|
| openSUSE-SU-2026:11250-1 |
|
Vulnerability in qemu (openSUSE-SU-2026:11250-1)
vulnerability in qemu (openSUSE-SU-2026:11250-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `11.0.2-1.1` or later.
|
| openSUSE-SU-2026:11252-1 |
|
Vulnerability in wget (openSUSE-SU-2026:11252-1)
vulnerability in wget (openSUSE-SU-2026:11252-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.25.0-3.1` or later.
|
| openSUSE-SU-2026:11251-1 |
|
Vulnerability in traefik (openSUSE-SU-2026:11251-1)
vulnerability in traefik (openSUSE-SU-2026:11251-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.7.7-1.1` or later.
|
| openSUSE-SU-2026:11249-1 |
|
Vulnerability in python-weasyprint (openSUSE-SU-2026:11249-1)
vulnerability in python-weasyprint (openSUSE-SU-2026:11249-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `69.0-1.1` or later.
|
| openSUSE-SU-2026:11245-1 |
|
Vulnerability in GraphicsMagick (openSUSE-SU-2026:11245-1)
vulnerability in GraphicsMagick (openSUSE-SU-2026:11245-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.3.47-4.1` or later.
|
| openSUSE-SU-2026:11248-1 |
|
Vulnerability in python-Django (openSUSE-SU-2026:11248-1)
vulnerability in python-Django (openSUSE-SU-2026:11248-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.2.16-1.1` or later.
|
| openSUSE-SU-2026:11246-1 |
|
Vulnerability in libnfs (openSUSE-SU-2026:11246-1)
vulnerability in libnfs (openSUSE-SU-2026:11246-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.2-1.1` or later.
|
| openSUSE-SU-2026:11253-1 |
|
Vulnerability in wpa_supplicant (openSUSE-SU-2026:11253-1)
vulnerability in wpa_supplicant (openSUSE-SU-2026:11253-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.11-7.1` or later.
|
| UBUNTU-CVE-2026-57825 |
|
[Unknown description] |
| CVE-2026-49838 |
|
Vulnerability in github.com/osrg/gobgp/v4 (CVE-2026-49838)
vulnerability in github.com/osrg/gobgp/v4 (CVE-2026-49838). Risk of unauthorized operations or information disclosure. Exploitable via ``PathAttributeAsPath.DecodeFromBytes``. Mitigation: upgrade to `4.7.0` or later.
|
| CVE-2026-49837 |
|
Out-of-Bounds Read in github.com/osrg/gobgp/v4 (CVE-2026-49837)
vulnerability in github.com/osrg/gobgp/v4 (CVE-2026-49837). Risk of unauthorized operations or information disclosure. Exploitable via ``CapLen``. Mitigation: upgrade to `4.6.0` or later.
|
| CVE-2026-49836 |
|
Path Traversal in psd-tools (CVE-2026-49836)
path traversal in psd-tools (CVE-2026-49836). Risk of unauthorized operations or information disclosure. Exploitable via ``SmartObject``. Mitigation: upgrade to `1.17.1` or later.
|
| CVE-2026-49834 |
|
Vulnerability in github.com/sigstore/sigstore-go (CVE-2026-49834)
vulnerability in github.com/sigstore/sigstore-go (CVE-2026-49834). Data can be tampered with by attackers. Mitigation: upgrade to `1.2.0` or later.
|
| CVE-2026-53956 |
|
Path Traversal in rattler_cache (CVE-2026-53956)
path traversal in rattler_cache (CVE-2026-53956). Risk of unauthorized operations or information disclosure. Exploitable via ``rattler_cache``. Mitigation: upgrade to `0.9.0` or later.
|
| CVE-2026-55252 |
|
Open Redirect in github.com/openrundev/openrun (CVE-2026-55252)
vulnerability in github.com/openrundev/openrun (CVE-2026-55252). Risk of unauthorized operations or information disclosure. Exploitable via `POST /redirecttest/abc/frag`. Mitigation: upgrade to `0.17.7` or later.
|
| CVE-2026-59858 |
|
Code Injection in c (CVE-2026-59858)
code injection in c (CVE-2026-59858). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59857 |
|
Out-of-Bounds Write in c (CVE-2026-59857)
out-of-bounds write in c (CVE-2026-59857). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59856 |
|
Code Injection in vim (CVE-2026-59856)
code injection in vim (CVE-2026-59856). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59855 |
|
Vulnerability in CVE-2026-59855 (CVE-2026-59855)
vulnerability in CVE-2026-59855 (CVE-2026-59855). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59854 |
|
Vulnerability in CVE-2026-59854 (CVE-2026-59854)
vulnerability in CVE-2026-59854 (CVE-2026-59854). Confidential information can be exposed externally. Exploitable via `POST /api/file/globalCopyFiles`.
|
| CVE-2026-59853 |
|
Vulnerability in CVE-2026-59853 (CVE-2026-59853)
vulnerability in CVE-2026-59853 (CVE-2026-59853). Confidential information can be exposed externally.
|
| CVE-2026-59834 |
|
SQL Injection in CVE-2026-59834 (CVE-2026-59834)
SQL injection in CVE-2026-59834 (CVE-2026-59834). Confidential information can be exposed externally. Exploitable via `POST /api/search/fullTextSearchBlock`.
|
| CVE-2026-59833 |
|
Cross-Site Scripting (XSS) in CVE-2026-59833 (CVE-2026-59833)
cross-site scripting in CVE-2026-59833 (CVE-2026-59833). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59832 |
|
Path Traversal in CVE-2026-59832 (CVE-2026-59832)
path traversal in CVE-2026-59832 (CVE-2026-59832). Confidential information can be exposed externally.
|
| CVE-2026-59831 |
|
Vulnerability in CVE-2026-59831 (CVE-2026-59831)
vulnerability in CVE-2026-59831 (CVE-2026-59831). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57501 |
|
Vulnerability in CVE-2026-57501 (CVE-2026-57501)
vulnerability in CVE-2026-57501 (CVE-2026-57501). Risk of unauthorized operations or information disclosure.
|
| MINI-w3w5-vm56-36qj |
|
MINI-w3w5-vm56-36qj |
| MINI-pr8r-c8p5-5cp9 |
|
MINI-pr8r-c8p5-5cp9 |
| MINI-hrgq-r82h-94r9 |
|
MINI-hrgq-r82h-94r9 |
| MINI-gwwm-xxc7-66gg |
|
MINI-gwwm-xxc7-66gg |
| MINI-8hq3-hh9m-cvhc |
|
MINI-8hq3-hh9m-cvhc |
| MINI-94f4-hcm7-mv68 |
|
MINI-94f4-hcm7-mv68 |
| MINI-hxfw-w8pq-v5jx |
|
MINI-hxfw-w8pq-v5jx |
| MINI-fxp2-8phh-3cv7 |
|
MINI-fxp2-8phh-3cv7 |
| MINI-3cmq-g3vv-2vpg |
|
MINI-3cmq-g3vv-2vpg |
| MINI-v8w8-ccmh-7cx9 |
|
MINI-v8w8-ccmh-7cx9 |
| MINI-xq48-22jw-3xrm |
|
MINI-xq48-22jw-3xrm |
| MINI-qm35-9rv7-6chh |
|
MINI-qm35-9rv7-6chh |
| MINI-w2wh-vpg2-xgr9 |
|
MINI-w2wh-vpg2-xgr9 |
| MINI-ffph-h4rf-qrh6 |
|
MINI-ffph-h4rf-qrh6 |
| MINI-f3h7-42r4-39hg |
|
MINI-f3h7-42r4-39hg |
| MINI-8399-j6vc-cgp6 |
|
MINI-8399-j6vc-cgp6 |