Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CGA-8fj2-cq95-6c9j |
|
CGA-8fj2-cq95-6c9j |
| CGA-3q88-mpfq-4m7p |
|
CGA-3q88-mpfq-4m7p |
| CGA-mqwj-gqjw-5j9x |
|
CGA-mqwj-gqjw-5j9x |
| CGA-mch3-25f9-w252 |
|
CGA-mch3-25f9-w252 |
| CGA-jx69-6fxg-xf74 |
|
CGA-jx69-6fxg-xf74 |
| CGA-35q5-qh7v-cvrj |
|
CGA-35q5-qh7v-cvrj |
| CGA-6rrq-8f96-94h2 |
|
CGA-6rrq-8f96-94h2 |
| CGA-mpjx-jfpr-p2x8 |
|
CGA-mpjx-jfpr-p2x8 |
| CGA-cr94-h3wr-288g |
|
CGA-cr94-h3wr-288g |
| CGA-22pr-q682-wpmr |
|
CGA-22pr-q682-wpmr |
| CGA-v8vp-2hfp-7r6c |
|
CGA-v8vp-2hfp-7r6c |
| CGA-592r-q97c-mjqf |
|
CGA-592r-q97c-mjqf |
| CGA-6m8r-7hph-hg24 |
|
CGA-6m8r-7hph-hg24 |
| CGA-772p-x4vg-pm67 |
|
CGA-772p-x4vg-pm67 |
| CGA-rjx6-p8c3-xjmv |
|
CGA-rjx6-p8c3-xjmv |
| CGA-888h-2gx8-r2c9 |
|
CGA-888h-2gx8-r2c9 |
| CGA-p2gm-3fc5-ccq7 |
|
CGA-p2gm-3fc5-ccq7 |
| CGA-922h-5rrh-pvr3 |
|
CGA-922h-5rrh-pvr3 |
| CGA-frff-mm8h-3jxj |
|
CGA-frff-mm8h-3jxj |
| CGA-hx5p-pcww-j3f3 |
|
CGA-hx5p-pcww-j3f3 |
| DEBIAN-CVE-2026-58266 |
|
Vulnerability in anki (DEBIAN-CVE-2026-58266)
vulnerability in anki (DEBIAN-CVE-2026-58266). Confidential information can be exposed externally.
|
| DEBIAN-CVE-2026-59153 |
|
Vulnerability in anki (DEBIAN-CVE-2026-59153)
vulnerability in anki (DEBIAN-CVE-2026-59153). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59706 |
|
Vulnerability in ssrf (CVE-2026-59706)
vulnerability in ssrf (CVE-2026-59706). Confidential information can be exposed externally. Exploitable via `GET /api/v1/config/`.
|
| CVE-2026-59153 |
|
Path Traversal in aqt (CVE-2026-59153)
path traversal in aqt (CVE-2026-59153). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `25.9.3` or later.
|
| CVE-2026-58266 |
|
Path Traversal in aqt (CVE-2026-58266)
path traversal in aqt (CVE-2026-58266). Confidential information can be exposed externally. Exploitable via ``getImageForOcclusion``. Mitigation: upgrade to `25.9.4` or later.
|
| CVE-2026-55490 |
|
Vulnerability in openwrt (CVE-2026-55490)
vulnerability in openwrt (CVE-2026-55490). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55418 |
|
Vulnerability in CVE-2026-55418 (CVE-2026-55418)
vulnerability in CVE-2026-55418 (CVE-2026-55418). Confidential information can be exposed externally.
|
| CVE-2026-55408 |
|
Code Injection in CVE-2026-55408 (CVE-2026-55408)
code injection in CVE-2026-55408 (CVE-2026-55408). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54698 |
|
Authorization Flaw in hasura (CVE-2026-54698)
vulnerability in hasura (CVE-2026-54698). Confidential information can be exposed externally.
|
| CVE-2026-54607 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-54607 (CVE-2026-54607)
SSRF in CVE-2026-54607 (CVE-2026-54607). Confidential information can be exposed externally.
|
| CVE-2026-54602 |
|
Vulnerability in CVE-2026-54602 (CVE-2026-54602)
vulnerability in CVE-2026-54602 (CVE-2026-54602). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/core/ai/record/getRecord`.
|
| CVE-2026-54601 |
|
Vulnerability in CVE-2026-54601 (CVE-2026-54601)
vulnerability in CVE-2026-54601 (CVE-2026-54601). Risk of unauthorized operations or information disclosure. Exploitable via `POST /api/core/dataset/collection/create/reTrainingCollection`.
|
| CVE-2026-49033 |
|
Vulnerability in CVE-2026-49033 (CVE-2026-49033)
vulnerability in CVE-2026-49033 (CVE-2026-49033). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42958 |
|
Use-After-Free in CVE-2026-42958 (CVE-2026-42958)
vulnerability in CVE-2026-42958 (CVE-2026-42958). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28378 |
|
Vulnerability in grafana (CVE-2026-28378)
vulnerability in grafana (CVE-2026-28378). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `11.6.14, 12.1.10, 12.2.8, 12.3.6, 12.4.1` or later.
|
| UBUNTU-CVE-2026-59153 |
|
Vulnerability in anki (UBUNTU-CVE-2026-59153)
vulnerability in anki (UBUNTU-CVE-2026-59153). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-58266 |
|
Vulnerability in anki (UBUNTU-CVE-2026-58266)
vulnerability in anki (UBUNTU-CVE-2026-58266). Confidential information can be exposed externally.
|
| GO-2026-5932 |
|
Vulnerability in golang.org/x/crypto (GO-2026-5932)
vulnerability in golang.org/x/crypto (GO-2026-5932). Risk of unauthorized operations or information disclosure.
|
| CGA-c3rf-6pxx-5jpq |
|
CGA-c3rf-6pxx-5jpq |
| CGA-mhf4-8qpm-hg9g |
|
CGA-mhf4-8qpm-hg9g |
| CGA-cf23-gqqp-j976 |
|
CGA-cf23-gqqp-j976 |
| CGA-j6hr-wcmw-p6hw |
|
CGA-j6hr-wcmw-p6hw |
| CGA-5687-rj26-qww2 |
|
CGA-5687-rj26-qww2 |
| CGA-jpq3-5ffc-6h52 |
|
CGA-jpq3-5ffc-6h52 |
| CGA-hprp-hvp5-ww78 |
|
CGA-hprp-hvp5-ww78 |
| CGA-4vp3-5cfh-2386 |
|
CGA-4vp3-5cfh-2386 |
| CGA-p3fr-cvxj-927j |
|
CGA-p3fr-cvxj-927j |
| CVE-2026-59707 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-59707 (CVE-2026-59707)
SSRF in CVE-2026-59707 (CVE-2026-59707). Confidential information can be exposed externally. Exploitable via `POST /models/apply`.
|
| CVE-2026-58583 |
|
Privilege Escalation in privilege-escalation (CVE-2026-58583)
vulnerability in privilege-escalation (CVE-2026-58583). Confidential information can be exposed externally.
|
| CVE-2026-58473 |
|
Vulnerability in CVE-2026-58473 (CVE-2026-58473)
vulnerability in CVE-2026-58473 (CVE-2026-58473). Confidential information can be exposed externally.
|