Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-61934 |
|
Use-After-Free in microsoft (CVE-2026-61934)
vulnerability in microsoft (CVE-2026-61934). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61932 |
|
Vulnerability in microsoft (CVE-2026-61932)
vulnerability in microsoft (CVE-2026-61932). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61930 |
|
Vulnerability in microsoft (CVE-2026-61930)
vulnerability in microsoft (CVE-2026-61930). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61929 |
|
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-61927 |
|
Vulnerability in microsoft (CVE-2026-61927)
vulnerability in microsoft (CVE-2026-61927). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61926 |
|
Vulnerability in microsoft (CVE-2026-61926)
vulnerability in microsoft (CVE-2026-61926). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61925 |
|
Authorization Flaw in microsoft (CVE-2026-61925)
vulnerability in microsoft (CVE-2026-61925). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61923 |
|
Vulnerability in microsoft (CVE-2026-61923)
vulnerability in microsoft (CVE-2026-61923). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61366 |
|
Vulnerability in microsoft (CVE-2026-61366)
vulnerability in microsoft (CVE-2026-61366). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61365 |
|
Vulnerability in microsoft (CVE-2026-61365)
vulnerability in microsoft (CVE-2026-61365). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61364 |
|
Vulnerability in microsoft (CVE-2026-61364)
vulnerability in microsoft (CVE-2026-61364). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61363 |
|
Vulnerability in microsoft (CVE-2026-61363)
vulnerability in microsoft (CVE-2026-61363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61361 |
|
Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.
Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.
|
| CVE-2026-61358 |
|
Vulnerability in microsoft (CVE-2026-61358)
vulnerability in microsoft (CVE-2026-61358). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61356 |
|
Vulnerability in microsoft (CVE-2026-61356)
vulnerability in microsoft (CVE-2026-61356). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61355 |
|
Vulnerability in microsoft (CVE-2026-61355)
vulnerability in microsoft (CVE-2026-61355). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61353 |
|
Vulnerability in microsoft (CVE-2026-61353)
vulnerability in microsoft (CVE-2026-61353). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61352 |
|
Vulnerability in microsoft (CVE-2026-61352)
vulnerability in microsoft (CVE-2026-61352). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73079 |
|
Path Traversal in path-traversal (CVE-2026-73079)
path traversal in path-traversal (CVE-2026-73079). Confidential information can be exposed externally. Exploitable via `POST /responses/`. Mitigation: upgrade to `0.1.169` or later.
|
| CVE-2026-6726 |
|
Vulnerability in jvn (CVE-2026-6726)
vulnerability in jvn (CVE-2026-6726). Confidential information can be exposed externally.
|
| CVE-2026-67180 |
|
OS Command Injection in CVE-2026-67180 (CVE-2026-67180)
OS command injection in CVE-2026-67180 (CVE-2026-67180). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67179 |
|
Vulnerability in CVE-2026-67179 (CVE-2026-67179)
vulnerability in CVE-2026-67179 (CVE-2026-67179). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/runAction`.
|
| CVE-2026-56721 |
|
Vulnerability in privilege-escalation (CVE-2026-56721)
vulnerability in privilege-escalation (CVE-2026-56721). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53416 |
|
Vulnerability in path-traversal (CVE-2026-53416)
vulnerability in path-traversal (CVE-2026-53416). Confidential information can be exposed externally.
|
| CVE-2026-53415 |
|
Use-After-Free in CVE-2026-53415 (CVE-2026-53415)
vulnerability in CVE-2026-53415 (CVE-2026-53415). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53413 |
|
Out-of-Bounds Write in CVE-2026-53413 (CVE-2026-53413)
out-of-bounds write in CVE-2026-53413 (CVE-2026-53413). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48766 |
|
Information Disclosure in CVE-2026-48766 (CVE-2026-48766)
vulnerability in CVE-2026-48766 (CVE-2026-48766). Confidential information can be exposed externally. Exploitable via ``baseUrl``.
|
| CVE-2026-48495 |
|
Vulnerability in CVE-2026-48495 (CVE-2026-48495)
vulnerability in CVE-2026-48495 (CVE-2026-48495). Data can be tampered with by attackers. Exploitable via ``state``.
|
| CVE-2026-42142 |
|
Vulnerability in CVE-2026-42142 (CVE-2026-42142)
vulnerability in CVE-2026-42142 (CVE-2026-42142). Confidential information can be exposed externally. Exploitable via `POST /api/sheets/getSheets`.
|
| CVE-2026-19546 |
|
Code Injection in CVE-2026-19546 (CVE-2026-19546)
code injection in CVE-2026-19546 (CVE-2026-19546). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18640 |
|
Path Traversal in CVE-2026-18640 (CVE-2026-18640)
path traversal in CVE-2026-18640 (CVE-2026-18640). Data can be tampered with by attackers.
|
| CVE-2026-18639 |
|
Vulnerability in CVE-2026-18639 (CVE-2026-18639)
vulnerability in CVE-2026-18639 (CVE-2026-18639). Confidential information can be exposed externally.
|
| CVE-2026-18129 |
|
Vulnerability in CVE-2026-18129 (CVE-2026-18129)
vulnerability in CVE-2026-18129 (CVE-2026-18129). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18860 |
|
Vulnerability in CVE-2026-18860 (CVE-2026-18860)
vulnerability in CVE-2026-18860 (CVE-2026-18860). Data can be tampered with by attackers.
|
| CVE-2026-18127 |
|
Vulnerability in CVE-2026-18127 (CVE-2026-18127)
vulnerability in CVE-2026-18127 (CVE-2026-18127). Data can be tampered with by attackers.
|
| CVE-2026-18635 |
|
Authorization Flaw in CVE-2026-18635 (CVE-2026-18635)
vulnerability in CVE-2026-18635 (CVE-2026-18635). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18125 |
|
Out-of-Bounds Read in CVE-2026-18125 (CVE-2026-18125)
vulnerability in CVE-2026-18125 (CVE-2026-18125). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72922 |
|
Authentication Bypass in CVE-2026-72922 (CVE-2026-72922)
authentication bypass in CVE-2026-72922 (CVE-2026-72922). Data can be tampered with by attackers.
|
| CVE-2026-72921 |
|
Authorization Flaw in CVE-2026-72921 (CVE-2026-72921)
vulnerability in CVE-2026-72921 (CVE-2026-72921). Confidential information can be exposed externally.
|
| CVE-2026-51583 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-51583)
SSRF in ssrf (CVE-2026-51583). Confidential information can be exposed externally.
|
| CVE-2026-72781 |
|
Vulnerability in CVE-2026-72781 (CVE-2026-72781)
vulnerability in CVE-2026-72781 (CVE-2026-72781). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72778 |
|
Vulnerability in csrf (CVE-2026-72778)
vulnerability in csrf (CVE-2026-72778). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72766 |
|
Vulnerability in ssrf (CVE-2026-72766)
vulnerability in ssrf (CVE-2026-72766). Confidential information can be exposed externally.
|
| CVE-2026-72750 |
|
SQL Injection in sqli (CVE-2026-72750)
SQL injection in sqli (CVE-2026-72750). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72747 |
|
Cross-Site Scripting (XSS) in CVE-2026-72747 (CVE-2026-72747)
cross-site scripting in CVE-2026-72747 (CVE-2026-72747). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72746 |
|
Authentication Bypass in CVE-2026-72746 (CVE-2026-72746)
authentication bypass in CVE-2026-72746 (CVE-2026-72746). Confidential information can be exposed externally.
|
| CVE-2026-72745 |
|
Vulnerability in c (CVE-2026-72745)
vulnerability in c (CVE-2026-72745). Confidential information can be exposed externally.
|
| CVE-2026-69109 |
|
Vulnerability in path-traversal (CVE-2026-69109)
vulnerability in path-traversal (CVE-2026-69109). Confidential information can be exposed externally.
|
| CVE-2026-64629 |
|
Out-of-Bounds Read in CVE-2026-64629 (CVE-2026-64629)
vulnerability in CVE-2026-64629 (CVE-2026-64629). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59701 |
|
Out-of-Bounds Read in CVE-2026-59701 (CVE-2026-59701)
vulnerability in CVE-2026-59701 (CVE-2026-59701). Successful exploitation can lead to full system takeover.
|