Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-12618 Vulnerability in ibm (CVE-2026-12618)
vulnerability in ibm (CVE-2026-12618). Successful exploitation can lead to full system takeover.
CVE-2026-12359 Authentication Bypass in ibm (CVE-2026-12359)
authentication bypass in ibm (CVE-2026-12359). Successful exploitation can lead to full system takeover.
CVE-2026-12005 OS Command Injection in ibm (CVE-2026-12005)
OS command injection in ibm (CVE-2026-12005). Successful exploitation can lead to full system takeover.
CVE-2026-12004 Vulnerability in dos (CVE-2026-12004)
vulnerability in dos (CVE-2026-12004). Confidential information can be exposed externally.
CVE-2026-11923 Authentication Bypass in ibm (CVE-2026-11923)
authentication bypass in ibm (CVE-2026-11923). Confidential information can be exposed externally.
CVE-2026-19311 Vulnerability in Amazon aws (CVE-2026-19311)
vulnerability in Amazon aws (CVE-2026-19311). Confidential information can be exposed externally.
CVE-2026-18952 SSRF (Server-Side Request Forgery) in Amazon aws (CVE-2026-18952)
SSRF in Amazon aws (CVE-2026-18952). Confidential information can be exposed externally.
CVE-2026-73327 Path Traversal in path-traversal (CVE-2026-73327)
path traversal in path-traversal (CVE-2026-73327). Successful exploitation can lead to full system takeover.
CVE-2026-42018 Authentication Bypass in CVE-2026-42018 (CVE-2026-42018)
authentication bypass in CVE-2026-42018 (CVE-2026-42018). Confidential information can be exposed externally.
CVE-2026-18713 Privilege Escalation in privilege-escalation (CVE-2026-18713)
vulnerability in privilege-escalation (CVE-2026-18713). Successful exploitation can lead to full system takeover.
CVE-2026-18669 Vulnerability in privilege-escalation (CVE-2026-18669)
vulnerability in privilege-escalation (CVE-2026-18669). Successful exploitation can lead to full system takeover.
CVE-2026-18235 OS Command Injection in ibm (CVE-2026-18235)
OS command injection in ibm (CVE-2026-18235). Confidential information can be exposed externally.
CVE-2026-69106 Vulnerability in CVE-2026-69106 (CVE-2026-69106)
vulnerability in CVE-2026-69106 (CVE-2026-69106). Successful exploitation can lead to full system takeover.
CVE-2026-17418 SQL Injection in dos (CVE-2026-17418)
SQL injection in dos (CVE-2026-17418). Successful exploitation can lead to full system takeover.
CVE-2026-17248 OS Command Injection in dos (CVE-2026-17248)
OS command injection in dos (CVE-2026-17248). Risk of unauthorized operations or information disclosure.
CVE-2026-16627 Cross-Site Scripting (XSS) in gitlab (CVE-2026-16627)
cross-site scripting in gitlab (CVE-2026-16627). Confidential information can be exposed externally.
CVE-2026-17110 Vulnerability in ibm (CVE-2026-17110)
vulnerability in ibm (CVE-2026-17110). Successful exploitation can lead to full system takeover.
CVE-2026-17271 Vulnerability in dos (CVE-2026-17271)
vulnerability in dos (CVE-2026-17271). Risk of unauthorized operations or information disclosure.
CVE-2026-16906 OS Command Injection in ibm (CVE-2026-16906)
OS command injection in ibm (CVE-2026-16906). Successful exploitation can lead to full system takeover.
CVE-2026-16907 Out-of-Bounds Write in ibm (CVE-2026-16907)
out-of-bounds write in ibm (CVE-2026-16907). Data can be tampered with by attackers.
CVE-2026-16863 Out-of-Bounds Read in ibm (CVE-2026-16863)
vulnerability in ibm (CVE-2026-16863). Confidential information can be exposed externally.
CVE-2026-16931 Vulnerability in dos (CVE-2026-16931)
vulnerability in dos (CVE-2026-16931). Risk of unauthorized operations or information disclosure.
CVE-2026-16856 OS Command Injection in ibm (CVE-2026-16856)
OS command injection in ibm (CVE-2026-16856). Successful exploitation can lead to full system takeover.
CVE-2026-15423 Authorization Flaw in gitlab (CVE-2026-15423)
vulnerability in gitlab (CVE-2026-15423). Data can be tampered with by attackers.
CVE-2026-16904 Privilege Escalation in ibm (CVE-2026-16904)
vulnerability in ibm (CVE-2026-16904). Confidential information can be exposed externally.
CVE-2026-48554 OS Command Injection in CVE-2026-48554 (CVE-2026-48554)
OS command injection in CVE-2026-48554 (CVE-2026-48554). Successful exploitation can lead to full system takeover.
CVE-2026-48553 OS Command Injection in CVE-2026-48553 (CVE-2026-48553)
OS command injection in CVE-2026-48553 (CVE-2026-48553). Successful exploitation can lead to full system takeover.
CVE-2026-48551 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-48551)
vulnerability in csrf (CVE-2026-48551). Data can be tampered with by attackers.
CVE-2026-18683 OS Command Injection in privilege-escalation (CVE-2026-18683)
OS command injection in privilege-escalation (CVE-2026-18683). Successful exploitation can lead to full system takeover.
CVE-2026-18098 Vulnerability in ibm (CVE-2026-18098)
vulnerability in ibm (CVE-2026-18098). Confidential information can be exposed externally.
CVE-2026-18847 Vulnerability in ibm (CVE-2026-18847)
vulnerability in ibm (CVE-2026-18847). Successful exploitation can lead to full system takeover.
CVE-2026-17095 Vulnerability in ibm (CVE-2026-17095)
vulnerability in ibm (CVE-2026-17095). Confidential information can be exposed externally.
CVE-2026-18499 Vulnerability in privilege-escalation (CVE-2026-18499)
vulnerability in privilege-escalation (CVE-2026-18499). Confidential information can be exposed externally.
CVE-2026-49467 Vulnerability in CVE-2026-49467 (CVE-2026-49467)
vulnerability in CVE-2026-49467 (CVE-2026-49467). Successful exploitation can lead to full system takeover. Exploitable via ``await``.
CVE-2026-73325 Unsafe Deserialization in deserialization (CVE-2026-73325)
vulnerability in deserialization (CVE-2026-73325). Successful exploitation can lead to full system takeover.
CVE-2026-73293 Privilege Escalation in CVE-2026-73293 (CVE-2026-73293)
vulnerability in CVE-2026-73293 (CVE-2026-73293). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/project/{id}/roles`.
CVE-2026-73292 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73292)
vulnerability in csrf (CVE-2026-73292). Confidential information can be exposed externally.
CVE-2026-69105 Vulnerability in CVE-2026-69105 (CVE-2026-69105)
vulnerability in CVE-2026-69105 (CVE-2026-69105). Data can be tampered with by attackers.
CVE-2026-68968 Vulnerability in apache (CVE-2026-68968)
vulnerability in apache (CVE-2026-68968). Confidential information can be exposed externally. Exploitable via ``backfill_id``.
CVE-2026-68759 A holder of a valid integration credential may impersonate other users under specific conditions.
A holder of a valid integration credential may impersonate other users under specific conditions.
CVE-2026-67587 Unsafe Deserialization in apache (CVE-2026-67587)
vulnerability in apache (CVE-2026-67587). Successful exploitation can lead to full system takeover. Exploitable via ``Callback``.
CVE-2026-67260 Unsafe Deserialization in apache (CVE-2026-67260)
vulnerability in apache (CVE-2026-67260). Risk of unauthorized operations or information disclosure. Exploitable via ``awaiting_input``.
CVE-2026-65941 Vulnerability in CVE-2026-65941 (CVE-2026-65941)
vulnerability in CVE-2026-65941 (CVE-2026-65941). Successful exploitation can lead to full system takeover.
CVE-2026-65937 Cross-Site Scripting (XSS) in CVE-2026-65937 (CVE-2026-65937)
cross-site scripting in CVE-2026-65937 (CVE-2026-65937). Successful exploitation can lead to full system takeover.
CVE-2026-58076 Unsafe Deserialization in apache (CVE-2026-58076)
vulnerability in apache (CVE-2026-58076). Successful exploitation can lead to full system takeover. Exploitable via `GET /api/v2/dags/{dag_id}/details`.
CVE-2026-68757 A user with access to a valid SAML response may impersonate another user under specific conditions.
A user with access to a valid SAML response may impersonate another user under specific conditions.
CVE-2026-68752 A Project Resource Manager may gain broader administrative privileges under specific conditions.
A Project Resource Manager may gain broader administrative privileges under specific conditions.
CVE-2026-66375 Vulnerability in CVE-2026-66375 (CVE-2026-66375)
vulnerability in CVE-2026-66375 (CVE-2026-66375). Data can be tampered with by attackers.
CVE-2026-14478 Vulnerability in CVE-2026-14478 (CVE-2026-14478)
vulnerability in CVE-2026-14478 (CVE-2026-14478). Successful exploitation can lead to full system takeover.
CVE-2025-59319 Vulnerability in CVE-2025-59319 (CVE-2025-59319)
vulnerability in CVE-2025-59319 (CVE-2025-59319). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →