Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-26241 Vulnerability in qnap (CVE-2026-26241)
vulnerability in qnap (CVE-2026-26241). Data can be tampered with by attackers.
CVE-2026-26240 Vulnerability in qnap (CVE-2026-26240)
vulnerability in qnap (CVE-2026-26240). Data can be tampered with by attackers.
CVE-2025-66276 Vulnerability in qnap (CVE-2025-66276)
vulnerability in qnap (CVE-2025-66276). Successful exploitation can lead to full system takeover.
CVE-2026-45328 Vulnerability in c (CVE-2026-45328)
vulnerability in c (CVE-2026-45328). Successful exploitation can lead to full system takeover.
CVE-2026-48030 OS Command Injection in pheditor/pheditor (CVE-2026-48030)
OS command injection in pheditor/pheditor (CVE-2026-48030). Successful exploitation can lead to full system takeover. Exploitable via ``command``. Mitigation: upgrade to `2.0.4` or later.
CVE-2026-47767 Vulnerability in symfony/runtime (CVE-2026-47767)
vulnerability in symfony/runtime (CVE-2026-47767). Successful exploitation can lead to full system takeover. Exploitable via ``APP_ENV``. Mitigation: upgrade to `8.0.12` or later.
CVE-2026-47938 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-47938)
SSRF in ssrf (CVE-2026-47938). Successful exploitation can lead to full system takeover.
CVE-2026-48303 Authorization Flaw in adobe (CVE-2026-48303)
vulnerability in adobe (CVE-2026-48303). Successful exploitation can lead to full system takeover.
CVE-2026-47928 Vulnerability in adobe (CVE-2026-47928)
vulnerability in adobe (CVE-2026-47928). Successful exploitation can lead to full system takeover.
CVE-2026-36727 Authentication Bypass in CVE-2026-36727 (CVE-2026-36727)
authentication bypass in CVE-2026-36727 (CVE-2026-36727). Confidential information can be exposed externally.
CVE-2026-36721 Vulnerability in CVE-2026-36721 (CVE-2026-36721)
vulnerability in CVE-2026-36721 (CVE-2026-36721). Successful exploitation can lead to full system takeover.
CVE-2026-30141 Vulnerability in dos (CVE-2026-30141)
vulnerability in dos (CVE-2026-30141). Successful exploitation can lead to full system takeover.
CVE-2026-10045 Vulnerability in CVE-2026-10045 (CVE-2026-10045)
vulnerability in CVE-2026-10045 (CVE-2026-10045). Successful exploitation can lead to full system takeover.
CVE-2026-47281 Vulnerability in microsoft (CVE-2026-47281)
vulnerability in microsoft (CVE-2026-47281). Successful exploitation can lead to full system takeover.
CVE-2026-44815 Vulnerability in microsoft (CVE-2026-44815)
vulnerability in microsoft (CVE-2026-44815). Successful exploitation can lead to full system takeover.
CVE-2026-42904 Vulnerability in microsoft (CVE-2026-42904)
vulnerability in microsoft (CVE-2026-42904). Successful exploitation can lead to full system takeover.
CVE-2026-34182 Vulnerability in openssl (CVE-2026-34182)
vulnerability in openssl (CVE-2026-34182). Confidential information can be exposed externally.
CVE-2026-38615 DedeCMS V5.7.118 is vulnerable to Command Execution in file_manage_control.php.
DedeCMS V5.7.118 is vulnerable to Command Execution in file_manage_control.php.
CVE-2026-26142 Unsafe Deserialization in deserialization (CVE-2026-26142)
vulnerability in deserialization (CVE-2026-26142). Successful exploitation can lead to full system takeover.
CVE-2026-34691 Cross-Site Scripting (XSS) in adobe (CVE-2026-34691)
cross-site scripting in adobe (CVE-2026-34691). Confidential information can be exposed externally.
CVE-2026-49841 Vulnerability in freeswitch (CVE-2026-49841)
vulnerability in freeswitch (CVE-2026-49841). Successful exploitation can lead to full system takeover.
CVE-2026-49840 Vulnerability in freeswitch (CVE-2026-49840)
vulnerability in freeswitch (CVE-2026-49840). Data can be tampered with by attackers.
CVE-2026-47643 Vulnerability in microsoft (CVE-2026-47643)
vulnerability in microsoft (CVE-2026-47643). Successful exploitation can lead to full system takeover.
CVE-2026-47291 Vulnerability in microsoft (CVE-2026-47291)
vulnerability in microsoft (CVE-2026-47291). Successful exploitation can lead to full system takeover.
CVE-2026-45657 Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network.
Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network.
CVE-2026-45602 Vulnerability in microsoft (CVE-2026-45602)
vulnerability in microsoft (CVE-2026-45602). Confidential information can be exposed externally.
CVE-2026-8025 SQL Injection in sqli (CVE-2026-8025)
SQL injection in sqli (CVE-2026-8025). Successful exploitation can lead to full system takeover.
CVE-2026-25089 KEV [KEV] OS Command Injection in Fortinet fortisandbox (CVE-2026-25089)
OS command injection in Fortinet fortisandbox (CVE-2026-25089). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2026-10523 Vulnerability in ivanti (CVE-2026-10523)
vulnerability in ivanti (CVE-2026-10523). Successful exploitation can lead to full system takeover.
CVE-2026-10520 KEV [KEV] OS Command Injection in Ivanti standalone-sentry (CVE-2026-10520)
OS command injection in Ivanti standalone-sentry (CVE-2026-10520). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2026-7486 SQL Injection in sqli (CVE-2026-7486)
SQL injection in sqli (CVE-2026-7486). Successful exploitation can lead to full system takeover.
CVE-2026-46325 Vulnerability in linux (CVE-2026-46325)
vulnerability in linux (CVE-2026-46325). Successful exploitation can lead to full system takeover.
CVE-2026-46316 Vulnerability in linux (CVE-2026-46316)
vulnerability in linux (CVE-2026-46316). Successful exploitation can lead to full system takeover.
CVE-2017-20251 Code Injection in wordpress (CVE-2017-20251)
code injection in wordpress (CVE-2017-20251). Successful exploitation can lead to full system takeover.
CVE-2025-10263 Vulnerability in jvn (CVE-2025-10263)
vulnerability in jvn (CVE-2025-10263). Confidential information can be exposed externally.
CVE-2009-10007 Vulnerability in CVE-2009-10007 (CVE-2009-10007)
vulnerability in CVE-2009-10007 (CVE-2009-10007). Confidential information can be exposed externally.
CVE-2026-9698 Vulnerability in perl (CVE-2026-9698)
vulnerability in perl (CVE-2026-9698). Successful exploitation can lead to full system takeover.
CVE-2026-44083 Vulnerability in qnap (CVE-2026-44083)
vulnerability in qnap (CVE-2026-44083). Successful exploitation can lead to full system takeover.
CVE-2026-5067 Vulnerability in dos (CVE-2026-5067)
vulnerability in dos (CVE-2026-5067). Successful exploitation can lead to full system takeover.
CVE-2026-40128 Vulnerability in path-traversal (CVE-2026-40128)
vulnerability in path-traversal (CVE-2026-40128). Successful exploitation can lead to full system takeover.
CVE-2026-44748 Vulnerability in CVE-2026-44748 (CVE-2026-44748)
vulnerability in CVE-2026-44748 (CVE-2026-44748). Successful exploitation can lead to full system takeover.
CVE-2026-27671 Vulnerability in CVE-2026-27671 (CVE-2026-27671)
vulnerability in CVE-2026-27671 (CVE-2026-27671). Successful exploitation can lead to full system takeover.
CVE-2026-11697 Vulnerability in google (CVE-2026-11697)
vulnerability in google (CVE-2026-11697). Successful exploitation can lead to full system takeover.
CVE-2026-11671 Use-After-Free in google (CVE-2026-11671)
vulnerability in google (CVE-2026-11671). Successful exploitation can lead to full system takeover.
CVE-2026-11651 Use-After-Free in google (CVE-2026-11651)
vulnerability in google (CVE-2026-11651). Successful exploitation can lead to full system takeover.
CVE-2026-11654 Use-After-Free in google (CVE-2026-11654)
vulnerability in google (CVE-2026-11654). Successful exploitation can lead to full system takeover.
CVE-2026-11659 Vulnerability in google (CVE-2026-11659)
vulnerability in google (CVE-2026-11659). Successful exploitation can lead to full system takeover.
CVE-2026-11638 Use-After-Free in google (CVE-2026-11638)
vulnerability in google (CVE-2026-11638). Successful exploitation can lead to full system takeover.
CVE-2026-11634 Use-After-Free in google (CVE-2026-11634)
vulnerability in google (CVE-2026-11634). Successful exploitation can lead to full system takeover.
CVE-2026-47724 Vulnerability in github.com/juev/nebula-mesh (CVE-2026-47724)
vulnerability in github.com/juev/nebula-mesh (CVE-2026-47724). Successful exploitation can lead to full system takeover. Exploitable via ``loadAccessibleCA``. Mitigation: upgrade to `0.3.4` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →