Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
MINI-x523-4w8c-v865 MINI-x523-4w8c-v865
MINI-w847-p29r-47m9 MINI-w847-p29r-47m9
MINI-q764-rfg9-64j8 MINI-q764-rfg9-64j8
MINI-g7w4-j6mc-8vg6 MINI-g7w4-j6mc-8vg6
MINI-8f6h-xc2j-mrf4 MINI-8f6h-xc2j-mrf4
MINI-28xx-q988-hc2q MINI-28xx-q988-hc2q
MINI-34rh-rvgq-34hx MINI-34rh-rvgq-34hx
MINI-g7cx-x558-vfcx MINI-g7cx-x558-vfcx
MINI-8rqj-grqr-83f9 MINI-8rqj-grqr-83f9
MAL-2026-6706 Vulnerability in hardhat-plugin-solidity (MAL-2026-6706)
vulnerability in hardhat-plugin-solidity (MAL-2026-6706). Risk of unauthorized operations or information disclosure.
MINI-cpf8-27rp-pfff MINI-cpf8-27rp-pfff
MINI-q2cj-mgh2-64g9 MINI-q2cj-mgh2-64g9
CVE-2026-49986 Vulnerability in neuro-cortex-memory (CVE-2026-49986)
vulnerability in neuro-cortex-memory (CVE-2026-49986). Risk of unauthorized operations or information disclosure. Exploitable via ``CLAUDE_PROJECT_DIR``. Mitigation: upgrade to `3.18.0` or later.
MINI-qv26-x69h-m9q9 MINI-qv26-x69h-m9q9
MINI-9jmh-mhc8-v4m8 MINI-9jmh-mhc8-v4m8
MINI-3rmr-f9g8-52cv MINI-3rmr-f9g8-52cv
MINI-mqpp-9p9c-6r8p MINI-mqpp-9p9c-6r8p
MINI-42hv-vwhr-5hfg MINI-42hv-vwhr-5hfg
MINI-2jm2-jcfv-gj2w MINI-2jm2-jcfv-gj2w
MINI-5j3c-p3g8-m6qm MINI-5j3c-p3g8-m6qm
MINI-c9c3-2p4m-85f4 MINI-c9c3-2p4m-85f4
MINI-47gg-mq4w-qf2g MINI-47gg-mq4w-qf2g
MINI-p669-wm9j-52v6 MINI-p669-wm9j-52v6
MINI-p779-frwh-v963 MINI-p779-frwh-v963
MINI-qp6j-fwr8-98w3 MINI-qp6j-fwr8-98w3
MAL-2026-6708 Vulnerability in zyncmap (MAL-2026-6708)
vulnerability in zyncmap (MAL-2026-6708). Risk of unauthorized operations or information disclosure. Exploitable via `Host header`.
GHSA-hwmc-r6mf-jh83 Cross-Site Scripting (XSS) in spatie/schema-org (GHSA-hwmc-r6mf-jh83)
cross-site scripting in spatie/schema-org (GHSA-hwmc-r6mf-jh83). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.0.2` or later.
MINI-rjjh-442x-4639 MINI-rjjh-442x-4639
CVE-2026-57737 Cross-Site Scripting (XSS) in CVE-2026-57737 (CVE-2026-57737)
cross-site scripting in CVE-2026-57737 (CVE-2026-57737). Risk of unauthorized operations or information disclosure.
CVE-2026-58521 SQL Injection in sqli (CVE-2026-58521)
SQL injection in sqli (CVE-2026-58521). Successful exploitation can lead to full system takeover.
CVE-2026-5051 Path Traversal in vault (CVE-2026-5051)
path traversal in vault (CVE-2026-5051). Confidential information can be exposed externally. Mitigation: upgrade to `2.0.1` or later.
CVE-2026-58520 Open Redirect in mediawiki (CVE-2026-58520)
vulnerability in mediawiki (CVE-2026-58520). Risk of unauthorized operations or information disclosure.
CVE-2026-57736 Vulnerability in CVE-2026-57736 (CVE-2026-57736)
vulnerability in CVE-2026-57736 (CVE-2026-57736). Risk of unauthorized operations or information disclosure.
CVE-2026-57723 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-57723)
vulnerability in csrf (CVE-2026-57723). Risk of unauthorized operations or information disclosure.
CVE-2026-49091 Vulnerability in elastic (CVE-2026-49091)
vulnerability in elastic (CVE-2026-49091). Successful exploitation can lead to full system takeover.
CVE-2026-58452 OS Command Injection in CVE-2026-58452 (CVE-2026-58452)
OS command injection in CVE-2026-58452 (CVE-2026-58452). Successful exploitation can lead to full system takeover.
CVE-2026-49090 Vulnerability in elasticsearch (CVE-2026-49090)
vulnerability in elasticsearch (CVE-2026-49090). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.17.24, 8.15.0` or later.
CVE-2026-54428 Vulnerability in org.apache.httpcomponents.core5:httpcore5-h2 (CVE-2026-54428)
vulnerability in org.apache.httpcomponents.core5:httpcore5-h2 (CVE-2026-54428). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.5-beta2` or later.
CVE-2026-57722 Cross-Site Scripting (XSS) in CVE-2026-57722 (CVE-2026-57722)
cross-site scripting in CVE-2026-57722 (CVE-2026-57722). Risk of unauthorized operations or information disclosure.
CVE-2026-58454 Code Injection in CVE-2026-58454 (CVE-2026-58454)
code injection in CVE-2026-58454 (CVE-2026-58454). Successful exploitation can lead to full system takeover.
CVE-2026-57721 Vulnerability in CVE-2026-57721 (CVE-2026-57721)
vulnerability in CVE-2026-57721 (CVE-2026-57721). Risk of unauthorized operations or information disclosure.
CVE-2026-58453 Vulnerability in CVE-2026-58453 (CVE-2026-58453)
vulnerability in CVE-2026-58453 (CVE-2026-58453). Successful exploitation can lead to full system takeover.
CVE-2026-51946 SQL Injection in sqli (CVE-2026-51946)
SQL injection in sqli (CVE-2026-51946). Risk of unauthorized operations or information disclosure.
CVE-2026-56151 Vulnerability in dos (CVE-2026-56151)
vulnerability in dos (CVE-2026-56151). Risk of unauthorized operations or information disclosure.
CVE-2026-57720 Vulnerability in CVE-2026-57720 (CVE-2026-57720)
vulnerability in CVE-2026-57720 (CVE-2026-57720). Risk of unauthorized operations or information disclosure.
CVE-2026-54399 Vulnerability in org.apache.httpcomponents.core5:httpcore5 (CVE-2026-54399)
vulnerability in org.apache.httpcomponents.core5:httpcore5 (CVE-2026-54399). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.5-beta2` or later.
CVE-2026-56152 Authorization Flaw in elastic (CVE-2026-56152)
vulnerability in elastic (CVE-2026-56152). Confidential information can be exposed externally.
CVE-2026-56150 Vulnerability in dos (CVE-2026-56150)
vulnerability in dos (CVE-2026-56150). Risk of unauthorized operations or information disclosure.
CVE-2026-56149 Vulnerability in elasticsearch (CVE-2026-56149)
vulnerability in elasticsearch (CVE-2026-56149). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.19.17, 9.3.6, 9.4.3` or later.
CVE-2026-56148 Vulnerability in elasticsearch (CVE-2026-56148)
vulnerability in elasticsearch (CVE-2026-56148). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.19.17, 9.3.6, 9.4.3` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →