Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-9052 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-76069 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-73323 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-53525 |
|
Vulnerability in CVE-2026-53525 (CVE-2026-53525)
vulnerability in CVE-2026-53525 (CVE-2026-53525). Data can be tampered with by attackers.
|
| CVE-2026-53524 |
|
Vulnerability in CVE-2026-53524 (CVE-2026-53524)
vulnerability in CVE-2026-53524 (CVE-2026-53524). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53499 |
|
Vulnerability in CVE-2026-53499 (CVE-2026-53499)
vulnerability in CVE-2026-53499 (CVE-2026-53499). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48106 |
|
Vulnerability in CVE-2026-48106 (CVE-2026-48106)
vulnerability in CVE-2026-48106 (CVE-2026-48106). Risk of unauthorized operations or information disclosure. Exploitable via ``MsgReplicateSync``. Mitigation: upgrade to `2026.06.1` or later.
|
| CVE-2026-48105 |
|
Path Traversal in CVE-2026-48105 (CVE-2026-48105)
path traversal in CVE-2026-48105 (CVE-2026-48105). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.06.1` or later.
|
| CVE-2026-34949 |
|
Vulnerability in CVE-2026-34949 (CVE-2026-34949)
vulnerability in CVE-2026-34949 (CVE-2026-34949). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34948 |
|
Information Disclosure in CVE-2026-34948 (CVE-2026-34948)
vulnerability in CVE-2026-34948 (CVE-2026-34948). Confidential information can be exposed externally.
|
| CVE-2026-11805 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-11615 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-11609 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-11418 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-53529 |
|
Cross-Site Scripting (XSS) in CVE-2026-53529 (CVE-2026-53529)
cross-site scripting in CVE-2026-53529 (CVE-2026-53529). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53528 |
|
Vulnerability in path-traversal (CVE-2026-53528)
vulnerability in path-traversal (CVE-2026-53528). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53527 |
|
Privilege Escalation in privilege-escalation (CVE-2026-53527)
vulnerability in privilege-escalation (CVE-2026-53527). Successful exploitation can lead to full system takeover. Exploitable via ``viewer``.
|
| CVE-2026-53497 |
|
Information Disclosure in CVE-2026-53497 (CVE-2026-53497)
vulnerability in CVE-2026-53497 (CVE-2026-53497). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/app-auth/status`.
|
| CVE-2026-53468 |
|
Cross-Site Scripting (XSS) in CVE-2026-53468 (CVE-2026-53468)
cross-site scripting in CVE-2026-53468 (CVE-2026-53468). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49849 |
|
Unrestricted File Upload in laravel (CVE-2026-49849)
vulnerability in laravel (CVE-2026-49849). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34836 |
|
Vulnerability in CVE-2026-34836 (CVE-2026-34836)
vulnerability in CVE-2026-34836 (CVE-2026-34836). Confidential information can be exposed externally.
|
| CVE-2026-34741 |
|
Vulnerability in CVE-2026-34741 (CVE-2026-34741)
vulnerability in CVE-2026-34741 (CVE-2026-34741). Data can be tampered with by attackers.
|
| CVE-2026-33333 |
|
Vulnerability in CVE-2026-33333 (CVE-2026-33333)
vulnerability in CVE-2026-33333 (CVE-2026-33333). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-33240 |
|
Cross-Site Scripting (XSS) in CVE-2026-33240 (CVE-2026-33240)
cross-site scripting in CVE-2026-33240 (CVE-2026-33240). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33047 |
|
Vulnerability in CVE-2026-33047 (CVE-2026-33047)
vulnerability in CVE-2026-33047 (CVE-2026-33047). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31936 |
|
Vulnerability in CVE-2026-31936 (CVE-2026-31936)
vulnerability in CVE-2026-31936 (CVE-2026-31936). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69228 |
|
Vulnerability in CVE-2026-69228 (CVE-2026-69228)
vulnerability in CVE-2026-69228 (CVE-2026-69228). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69235 |
|
Cross-Site Scripting (XSS) in CVE-2026-69235 (CVE-2026-69235)
cross-site scripting in CVE-2026-69235 (CVE-2026-69235). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69236 |
|
Cross-Site Scripting (XSS) in CVE-2026-69236 (CVE-2026-69236)
cross-site scripting in CVE-2026-69236 (CVE-2026-69236). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69237 |
|
Cross-Site Scripting (XSS) in CVE-2026-69237 (CVE-2026-69237)
cross-site scripting in CVE-2026-69237 (CVE-2026-69237). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69232 |
|
Cross-Site Scripting (XSS) in CVE-2026-69232 (CVE-2026-69232)
cross-site scripting in CVE-2026-69232 (CVE-2026-69232). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77220 |
|
Vulnerability in CVE-2026-77220 (CVE-2026-77220)
vulnerability in CVE-2026-77220 (CVE-2026-77220). Data can be tampered with by attackers.
|
| CVE-2026-69224 |
|
Information Disclosure in CVE-2026-69224 (CVE-2026-69224)
vulnerability in CVE-2026-69224 (CVE-2026-69224). Confidential information can be exposed externally.
|
| CVE-2026-69234 |
|
Cross-Site Scripting (XSS) in CVE-2026-69234 (CVE-2026-69234)
cross-site scripting in CVE-2026-69234 (CVE-2026-69234). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69229 |
|
Cross-Site Scripting (XSS) in CVE-2026-69229 (CVE-2026-69229)
cross-site scripting in CVE-2026-69229 (CVE-2026-69229). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77219 |
|
Out-of-Bounds Read in CVE-2026-77219 (CVE-2026-77219)
vulnerability in CVE-2026-77219 (CVE-2026-77219). Confidential information can be exposed externally.
|
| CVE-2026-69225 |
|
Information Disclosure in CVE-2026-69225 (CVE-2026-69225)
vulnerability in CVE-2026-69225 (CVE-2026-69225). Confidential information can be exposed externally.
|
| CVE-2026-69238 |
|
Cross-Site Scripting (XSS) in CVE-2026-69238 (CVE-2026-69238)
cross-site scripting in CVE-2026-69238 (CVE-2026-69238). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69231 |
|
Cross-Site Scripting (XSS) in CVE-2026-69231 (CVE-2026-69231)
cross-site scripting in CVE-2026-69231 (CVE-2026-69231). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69233 |
|
Cross-Site Scripting (XSS) in CVE-2026-69233 (CVE-2026-69233)
cross-site scripting in CVE-2026-69233 (CVE-2026-69233). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69230 |
|
Cross-Site Scripting (XSS) in CVE-2026-69230 (CVE-2026-69230)
cross-site scripting in CVE-2026-69230 (CVE-2026-69230). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67619 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-62316 |
|
Information Disclosure in CVE-2026-62316 (CVE-2026-62316)
vulnerability in CVE-2026-62316 (CVE-2026-62316). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62283 |
|
Vulnerability in CVE-2026-62283 (CVE-2026-62283)
vulnerability in CVE-2026-62283 (CVE-2026-62283). Successful exploitation can lead to full system takeover. Exploitable via `GET /ws/terminal/`.
|
| CVE-2026-55168 |
|
Vulnerability in CVE-2026-55168 (CVE-2026-55168)
vulnerability in CVE-2026-55168 (CVE-2026-55168). Data can be tampered with by attackers. Exploitable via `PUT /api/user-config/demoapp3`.
|
| CVE-2026-50538 |
|
Vulnerability in dos (CVE-2026-50538)
vulnerability in dos (CVE-2026-50538). Successful exploitation can lead to full system takeover. Exploitable via ``libvncclient``.
|
| CVE-2026-45271 |
|
Vulnerability in CVE-2026-45271 (CVE-2026-45271)
vulnerability in CVE-2026-45271 (CVE-2026-45271). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31880 |
|
Cross-Site Scripting (XSS) in CVE-2026-31880 (CVE-2026-31880)
cross-site scripting in CVE-2026-31880 (CVE-2026-31880). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31803 |
|
Cross-Site Scripting (XSS) in CVE-2026-31803 (CVE-2026-31803)
cross-site scripting in CVE-2026-31803 (CVE-2026-31803). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30890 |
|
Cross-Site Scripting (XSS) in CVE-2026-30890 (CVE-2026-30890)
cross-site scripting in CVE-2026-30890 (CVE-2026-30890). Successful exploitation can lead to full system takeover.
|