Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| GHSA-mhv7-p7g8-cwpj |
|
Vulnerability in eslint-vite (GHSA-mhv7-p7g8-cwpj)
vulnerability in eslint-vite (GHSA-mhv7-p7g8-cwpj). Risk of unauthorized operations or information disclosure.
|
| GHSA-pxpm-6pvw-32fv |
|
Vulnerability in es-lint-entry (GHSA-pxpm-6pvw-32fv)
vulnerability in es-lint-entry (GHSA-pxpm-6pvw-32fv). Risk of unauthorized operations or information disclosure.
|
| GHSA-7g6j-h5h4-7wjx |
|
Vulnerability in jsonupper (GHSA-7g6j-h5h4-7wjx)
vulnerability in jsonupper (GHSA-7g6j-h5h4-7wjx). Risk of unauthorized operations or information disclosure.
|
| GHSA-q5hg-f596-vmc7 |
|
Vulnerability in hjs-lint-builders (GHSA-q5hg-f596-vmc7)
vulnerability in hjs-lint-builders (GHSA-q5hg-f596-vmc7). Risk of unauthorized operations or information disclosure.
|
| GHSA-9w84-x6cf-c2vq |
|
Vulnerability in fastnodemailer (GHSA-9w84-x6cf-c2vq)
vulnerability in fastnodemailer (GHSA-9w84-x6cf-c2vq). Risk of unauthorized operations or information disclosure.
|
| GHSA-62qq-cf7w-23hx |
|
Vulnerability in express-guardrail (GHSA-62qq-cf7w-23hx)
vulnerability in express-guardrail (GHSA-62qq-cf7w-23hx). Risk of unauthorized operations or information disclosure.
|
| GHSA-83fv-8xwv-vc39 |
|
Vulnerability in grid-settings-align (GHSA-83fv-8xwv-vc39)
vulnerability in grid-settings-align (GHSA-83fv-8xwv-vc39). Risk of unauthorized operations or information disclosure.
|
| GHSA-whwc-xphc-9237 |
|
Vulnerability in graphpilot (GHSA-whwc-xphc-9237)
vulnerability in graphpilot (GHSA-whwc-xphc-9237). Risk of unauthorized operations or information disclosure.
|
| GHSA-jm6w-g7wc-hq29 |
|
Vulnerability in env-axios (GHSA-jm6w-g7wc-hq29)
vulnerability in env-axios (GHSA-jm6w-g7wc-hq29). Risk of unauthorized operations or information disclosure.
|
| GHSA-79rp-3jfj-qmwv |
|
Vulnerability in elevate-log (GHSA-79rp-3jfj-qmwv)
vulnerability in elevate-log (GHSA-79rp-3jfj-qmwv). Risk of unauthorized operations or information disclosure.
|
| GHSA-f463-5xm8-8r3r |
|
Vulnerability in express-dotenv (GHSA-f463-5xm8-8r3r)
vulnerability in express-dotenv (GHSA-f463-5xm8-8r3r). Risk of unauthorized operations or information disclosure.
|
| GHSA-qw6m-j4m4-cqcg |
|
Vulnerability in es-lint-builders (GHSA-qw6m-j4m4-cqcg)
vulnerability in es-lint-builders (GHSA-qw6m-j4m4-cqcg). Risk of unauthorized operations or information disclosure.
|
| GHSA-55vw-c9x7-q7fh |
|
Vulnerability in custom-log-viewer (GHSA-55vw-c9x7-q7fh)
vulnerability in custom-log-viewer (GHSA-55vw-c9x7-q7fh). Risk of unauthorized operations or information disclosure.
|
| GHSA-jgjc-8w9g-8wmq |
|
Vulnerability in bootstrap-utils (GHSA-jgjc-8w9g-8wmq)
vulnerability in bootstrap-utils (GHSA-jgjc-8w9g-8wmq). Risk of unauthorized operations or information disclosure.
|
| GHSA-8hhq-mc35-6xjv |
|
Vulnerability in emojiprint-prettier (GHSA-8hhq-mc35-6xjv)
vulnerability in emojiprint-prettier (GHSA-8hhq-mc35-6xjv). Risk of unauthorized operations or information disclosure.
|
| GHSA-8hx2-v9q6-66vf |
|
Vulnerability in emojiprint-logger (GHSA-8hx2-v9q6-66vf)
vulnerability in emojiprint-logger (GHSA-8hx2-v9q6-66vf). Risk of unauthorized operations or information disclosure.
|
| GHSA-r39w-2c8m-qcw8 |
|
Vulnerability in devkit-scripts (GHSA-r39w-2c8m-qcw8)
vulnerability in devkit-scripts (GHSA-r39w-2c8m-qcw8). Risk of unauthorized operations or information disclosure.
|
| GHSA-qvfh-cwr9-576c |
|
Vulnerability in chain-await-test (GHSA-qvfh-cwr9-576c)
vulnerability in chain-await-test (GHSA-qvfh-cwr9-576c). Risk of unauthorized operations or information disclosure.
|
| GHSA-prqq-9q57-x2pq |
|
Vulnerability in cookie-ease (GHSA-prqq-9q57-x2pq)
vulnerability in cookie-ease (GHSA-prqq-9q57-x2pq). Risk of unauthorized operations or information disclosure.
|
| GHSA-vc46-r5xf-fw6g |
|
Vulnerability in chalks-logger (GHSA-vc46-r5xf-fw6g)
vulnerability in chalks-logger (GHSA-vc46-r5xf-fw6g). Risk of unauthorized operations or information disclosure.
|
| GHSA-5qw7-4jj7-j7vf |
|
Vulnerability in chalk-logger-prettier (GHSA-5qw7-4jj7-j7vf)
vulnerability in chalk-logger-prettier (GHSA-5qw7-4jj7-j7vf). Risk of unauthorized operations or information disclosure.
|
| GHSA-29vc-mxj2-mvrg |
|
Vulnerability in chalk-prettier (GHSA-29vc-mxj2-mvrg)
vulnerability in chalk-prettier (GHSA-29vc-mxj2-mvrg). Risk of unauthorized operations or information disclosure.
|
| GHSA-r34w-457x-jvh6 |
|
Vulnerability in bn-eslint.js (GHSA-r34w-457x-jvh6)
vulnerability in bn-eslint.js (GHSA-r34w-457x-jvh6). Risk of unauthorized operations or information disclosure.
|
| GHSA-p7gp-vr2w-gxcq |
|
Vulnerability in bigint.os (GHSA-p7gp-vr2w-gxcq)
vulnerability in bigint.os (GHSA-p7gp-vr2w-gxcq). Risk of unauthorized operations or information disclosure.
|
| GHSA-mwmc-95gf-x6p2 |
|
Vulnerability in bn-math (GHSA-mwmc-95gf-x6p2)
vulnerability in bn-math (GHSA-mwmc-95gf-x6p2). Risk of unauthorized operations or information disclosure.
|
| GHSA-3w5h-8px3-5vhp |
|
Vulnerability in big256-ts (GHSA-3w5h-8px3-5vhp)
vulnerability in big256-ts (GHSA-3w5h-8px3-5vhp). Risk of unauthorized operations or information disclosure.
|
| GHSA-72c2-45g2-2948 |
|
Vulnerability in big-numerator (GHSA-72c2-45g2-2948)
vulnerability in big-numerator (GHSA-72c2-45g2-2948). Risk of unauthorized operations or information disclosure.
|
| GHSA-j5jp-xc7m-26vm |
|
Vulnerability in big-numer (GHSA-j5jp-xc7m-26vm)
vulnerability in big-numer (GHSA-j5jp-xc7m-26vm). Risk of unauthorized operations or information disclosure.
|
| GHSA-wv8c-r64j-wqqm |
|
Vulnerability in big-numerate (GHSA-wv8c-r64j-wqqm)
vulnerability in big-numerate (GHSA-wv8c-r64j-wqqm). Risk of unauthorized operations or information disclosure.
|
| GHSA-5x7q-hcgw-g7x2 |
|
Vulnerability in argonflux (GHSA-5x7q-hcgw-g7x2)
vulnerability in argonflux (GHSA-5x7q-hcgw-g7x2). Risk of unauthorized operations or information disclosure.
|
| GHSA-4j38-wfq5-cfxw |
|
Vulnerability in awesome-cli-logger (GHSA-4j38-wfq5-cfxw)
vulnerability in awesome-cli-logger (GHSA-4j38-wfq5-cfxw). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48614 |
|
Code Injection in privilege-escalation (CVE-2026-48614)
code injection in privilege-escalation (CVE-2026-48614). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12154 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12154)
cross-site scripting in wordpress (CVE-2026-12154). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48316 |
|
Vulnerability in adobe (CVE-2026-48316)
vulnerability in adobe (CVE-2026-48316). Confidential information can be exposed externally.
|
| CVE-2026-43825 |
|
Unsafe Deserialization in apache (CVE-2026-43825)
vulnerability in apache (CVE-2026-43825). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40141 |
|
Vulnerability in beyondtrust (CVE-2026-40141)
vulnerability in beyondtrust (CVE-2026-40141). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40140 |
|
Vulnerability in beyondtrust (CVE-2026-40140)
vulnerability in beyondtrust (CVE-2026-40140). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40138 |
|
Authentication Bypass in beyondtrust (CVE-2026-40138)
authentication bypass in beyondtrust (CVE-2026-40138). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40139 |
|
Authentication Bypass in beyondtrust (CVE-2026-40139)
authentication bypass in beyondtrust (CVE-2026-40139). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41434 |
|
Vulnerability in trustedfirmware (CVE-2026-41434)
vulnerability in trustedfirmware (CVE-2026-41434). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-41434 |
|
Vulnerability in optee-os (UBUNTU-CVE-2026-41434)
vulnerability in optee-os (UBUNTU-CVE-2026-41434). Risk of unauthorized operations or information disclosure.
|
| GHSA-99rj-fjph-w44m |
|
Vulnerability in react-next-dom (GHSA-99rj-fjph-w44m)
vulnerability in react-next-dom (GHSA-99rj-fjph-w44m). Risk of unauthorized operations or information disclosure. Exploitable via ``DEV_API_KEY``.
|
| SUSE-SU-2026:2782-1 |
|
Vulnerability in perl-Cpanel-JSON-XS (SUSE-SU-2026:2782-1)
vulnerability in perl-Cpanel-JSON-XS (SUSE-SU-2026:2782-1). Risk of unauthorized operations or information disclosure. Exploitable via ``dupkeys_as_arrayref``. Mitigation: upgrade to `4.380.0-150700.3.6.1` or later.
|
| CGA-4r4g-r9vj-3rp9 |
|
CGA-4r4g-r9vj-3rp9 |
| GHSA-98h3-p825-wwhh |
|
Vulnerability in mongoose-lean-hooks (GHSA-98h3-p825-wwhh)
vulnerability in mongoose-lean-hooks (GHSA-98h3-p825-wwhh). Risk of unauthorized operations or information disclosure. Exploitable via ``token``.
|
| RLSA-2026:35833 |
|
Vulnerability in aardvark-dns (RLSA-2026:35833)
vulnerability in aardvark-dns (RLSA-2026:35833). Confidential information can be exposed externally. Mitigation: upgrade to `2:1.10.1-2.module+el8.10.0+40047+0c0a73f4` or later.
|
| CVE-2026-35338 |
|
Path Traversal in uu_chmod (CVE-2026-35338)
path traversal in uu_chmod (CVE-2026-35338). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.6.0` or later.
|
| CVE-2026-55786 |
|
Vulnerability in flyto-core (CVE-2026-55786)
vulnerability in flyto-core (CVE-2026-55786). Successful exploitation can lead to full system takeover. Exploitable via `POST /mcp`. Mitigation: upgrade to `2.26.4` or later.
|
| CVE-2026-55787 |
|
SSRF (Server-Side Request Forgery) in flyto-core (CVE-2026-55787)
SSRF in flyto-core (CVE-2026-55787). Confidential information can be exposed externally. Exploitable via `POST /v1/execute`. Mitigation: upgrade to `2.26.3` or later.
|
| GHSA-7jvp-hj45-2f2m |
|
Vulnerability in Scriban (GHSA-7jvp-hj45-2f2m)
vulnerability in Scriban (GHSA-7jvp-hj45-2f2m). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.2.2` or later.
|