Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2025-41269 |
|
OS Command Injection in waterfall-security (CVE-2025-41269)
OS command injection in waterfall-security (CVE-2025-41269). Successful exploitation can lead to full system takeover.
|
| CVE-2025-41270 |
|
OS Command Injection in waterfall-security (CVE-2025-41270)
OS command injection in waterfall-security (CVE-2025-41270). Successful exploitation can lead to full system takeover.
|
| CVE-2025-41272 |
|
OS Command Injection in waterfall-security (CVE-2025-41272)
OS command injection in waterfall-security (CVE-2025-41272). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9559 |
|
Path Traversal in mautic/core (CVE-2026-9559)
path traversal in mautic/core (CVE-2026-9559). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `7.1.2` or later.
|
| CVE-2026-9558 |
|
Vulnerability in mautic/core (CVE-2026-9558)
vulnerability in mautic/core (CVE-2026-9558). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `7.1.2` or later.
|
| CVE-2026-49197 |
|
Authentication Bypass in acer (CVE-2026-49197)
authentication bypass in acer (CVE-2026-49197). Successful exploitation can lead to full system takeover. Exploitable via `Authorization header`.
|
| CVE-2026-49200 |
|
Vulnerability in acer (CVE-2026-49200)
vulnerability in acer (CVE-2026-49200). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49199 |
|
Command Injection in acer (CVE-2026-49199)
command injection in acer (CVE-2026-49199). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3655 |
|
Authentication Bypass in wordpress (CVE-2026-3655)
authentication bypass in wordpress (CVE-2026-3655). Successful exploitation can lead to full system takeover. Exploitable via ``lwp_ajax_register``.
|
| CVE-2026-8732 |
|
Vulnerability in wordpress (CVE-2026-8732)
vulnerability in wordpress (CVE-2026-8732). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9967 |
|
Out-of-Bounds Write in google (CVE-2026-9967)
out-of-bounds write in google (CVE-2026-9967). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9918 |
|
Privilege Escalation in google (CVE-2026-9918)
vulnerability in google (CVE-2026-9918). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9886 |
|
Use-After-Free in google (CVE-2026-9886)
vulnerability in google (CVE-2026-9886). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9891 |
|
Use-After-Free in google (CVE-2026-9891)
vulnerability in google (CVE-2026-9891). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9881 |
|
Use-After-Free in google (CVE-2026-9881)
vulnerability in google (CVE-2026-9881). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9875 |
|
Out-of-Bounds Read in google (CVE-2026-9875)
vulnerability in google (CVE-2026-9875). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8809 |
|
Privilege Escalation in wordpress (CVE-2026-8809)
vulnerability in wordpress (CVE-2026-8809). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9876 |
|
Use-After-Free in google (CVE-2026-9876)
vulnerability in google (CVE-2026-9876). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9874 |
|
Use-After-Free in google (CVE-2026-9874)
vulnerability in google (CVE-2026-9874). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9872 |
|
Out-of-Bounds Write in Google chrome (CVE-2026-9872)
out-of-bounds write in Google chrome (CVE-2026-9872). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46840 |
|
Vulnerability in c (CVE-2026-46840)
vulnerability in c (CVE-2026-46840). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46839 |
|
Vulnerability in c (CVE-2026-46839)
vulnerability in c (CVE-2026-46839). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9645 |
|
OS Command Injection in scadabr (CVE-2026-9645)
OS command injection in scadabr (CVE-2026-9645). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46833 |
|
Vulnerability in c (CVE-2026-46833)
vulnerability in c (CVE-2026-46833). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46775 |
|
Vulnerability in c (CVE-2026-46775)
vulnerability in c (CVE-2026-46775). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46822 |
|
Vulnerability in c (CVE-2026-46822)
vulnerability in c (CVE-2026-46822). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46824 |
|
Privilege Escalation in c (CVE-2026-46824)
vulnerability in c (CVE-2026-46824). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46817 KEV |
|
[KEV] Privilege Escalation in Oracle c (CVE-2026-46817)
vulnerability in Oracle c (CVE-2026-46817). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-46819 |
|
Vulnerability in c (CVE-2026-46819)
vulnerability in c (CVE-2026-46819). Confidential information can be exposed externally.
|
| CVE-2026-34311 |
|
Vulnerability in c (CVE-2026-34311)
vulnerability in c (CVE-2026-34311). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45039 |
|
Vulnerability in CVE-2026-45039 (CVE-2026-45039)
vulnerability in CVE-2026-45039 (CVE-2026-45039). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.0.0-beta.2` or later.
|
| CVE-2026-45323 |
|
Cross-Site Scripting (XSS) in jpettitt (CVE-2026-45323)
cross-site scripting in jpettitt (CVE-2026-45323). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.3.3` or later.
|
| CVE-2026-9092 |
|
Vulnerability in CVE-2026-9092 (CVE-2026-9092)
vulnerability in CVE-2026-9092 (CVE-2026-9092). Confidential information can be exposed externally.
|
| CVE-2026-9093 |
|
Vulnerability in github.com/casdoor/casdoor (CVE-2026-9093)
vulnerability in github.com/casdoor/casdoor (CVE-2026-9093). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9094 |
|
Privilege Escalation in github.com/casdoor/casdoor (CVE-2026-9094)
vulnerability in github.com/casdoor/casdoor (CVE-2026-9094). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.387.0` or later.
|
| CVE-2026-9097 |
|
Vulnerability in github.com/casdoor/casdoor (CVE-2026-9097)
vulnerability in github.com/casdoor/casdoor (CVE-2026-9097). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9098 |
|
Vulnerability in github.com/casdoor/casdoor (CVE-2026-9098)
vulnerability in github.com/casdoor/casdoor (CVE-2026-9098). Confidential information can be exposed externally.
|
| CVE-2026-9090 |
|
Authentication Bypass in github.com/casdoor/casdoor (CVE-2026-9090)
authentication bypass in github.com/casdoor/casdoor (CVE-2026-9090). Confidential information can be exposed externally.
|
| CVE-2026-38702 |
|
Command Injection in inhandnetworks (CVE-2026-38702)
command injection in inhandnetworks (CVE-2026-38702). Successful exploitation can lead to full system takeover.
|
| CVE-2026-38703 |
|
Command Injection in inhandnetworks (CVE-2026-38703)
command injection in inhandnetworks (CVE-2026-38703). Successful exploitation can lead to full system takeover.
|
| CVE-2026-38704 |
|
Command Injection in inhandnetworks (CVE-2026-38704)
command injection in inhandnetworks (CVE-2026-38704). Successful exploitation can lead to full system takeover.
|
| CVE-2026-38707 |
|
Command Injection in inhandnetworks (CVE-2026-38707)
command injection in inhandnetworks (CVE-2026-38707). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24444 |
|
Vulnerability in CVE-2026-24444 (CVE-2026-24444)
vulnerability in CVE-2026-24444 (CVE-2026-24444). Successful exploitation can lead to full system takeover.
|
| CVE-2026-22872 |
|
Vulnerability in github.com/projectcapsule/capsule (CVE-2026-22872)
vulnerability in github.com/projectcapsule/capsule (CVE-2026-22872). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.13.0` or later.
|
| CVE-2026-5386 |
|
Vulnerability in cisa (CVE-2026-5386)
vulnerability in cisa (CVE-2026-5386). Confidential information can be exposed externally.
|
| CVE-2026-7786 |
|
Vulnerability in cisa (CVE-2026-7786)
vulnerability in cisa (CVE-2026-7786). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9813 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-9813)
SSRF in ssrf (CVE-2026-9813). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46195 |
|
Vulnerability in linux (CVE-2026-46195)
vulnerability in linux (CVE-2026-46195). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46185 |
|
Out-of-Bounds Read in linux (CVE-2026-46185)
vulnerability in linux (CVE-2026-46185). Confidential information can be exposed externally.
|
| CVE-2026-46155 |
|
Out-of-Bounds Read in linux (CVE-2026-46155)
vulnerability in linux (CVE-2026-46155). Confidential information can be exposed externally.
|