Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-44628 |
|
Vulnerability in CVE-2026-44628 (CVE-2026-44628)
vulnerability in CVE-2026-44628 (CVE-2026-44628). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-36336 |
|
Vulnerability in ibm (CVE-2025-36336)
vulnerability in ibm (CVE-2025-36336). Confidential information can be exposed externally.
|
| CVE-2026-13207 |
|
Vulnerability in CVE-2026-13207 (CVE-2026-13207)
vulnerability in CVE-2026-13207 (CVE-2026-13207). Confidential information can be exposed externally.
|
| CVE-2025-36359 |
|
Vulnerability in ibm (CVE-2025-36359)
vulnerability in ibm (CVE-2025-36359). Confidential information can be exposed externally.
|
| CVE-2026-9106 |
|
Vulnerability in github (CVE-2026-9106)
vulnerability in github (CVE-2026-9106). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-36323 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2025-36323)
cross-site scripting in ibm (CVE-2025-36323). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10562 |
|
Open Redirect in path-traversal (CVE-2026-10562)
vulnerability in path-traversal (CVE-2026-10562). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-36333 |
|
Vulnerability in ibm (CVE-2025-36333)
vulnerability in ibm (CVE-2025-36333). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11594 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2026-11594)
cross-site scripting in ibm (CVE-2026-11594). Confidential information can be exposed externally.
|
| CVE-2026-9132 |
|
Vulnerability in github (CVE-2026-9132)
vulnerability in github (CVE-2026-9132). Confidential information can be exposed externally.
|
| CVE-2025-36324 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2025-36324)
SSRF in ssrf (CVE-2025-36324). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-36327 |
|
Vulnerability in ibm (CVE-2025-36327)
vulnerability in ibm (CVE-2025-36327). Data can be tampered with by attackers.
|
| CVE-2025-36321 |
|
Vulnerability in ibm (CVE-2025-36321)
vulnerability in ibm (CVE-2025-36321). Confidential information can be exposed externally.
|
| CVE-2026-7874 |
|
Vulnerability in langflow (CVE-2026-7874)
vulnerability in langflow (CVE-2026-7874). Confidential information can be exposed externally.
|
| CVE-2025-36319 |
|
Vulnerability in ibm (CVE-2025-36319)
vulnerability in ibm (CVE-2025-36319). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7663 |
|
Vulnerability in langflow (CVE-2026-7663)
vulnerability in langflow (CVE-2026-7663). Confidential information can be exposed externally.
|
| CVE-2026-9002 |
|
Vulnerability in dos (CVE-2026-9002)
vulnerability in dos (CVE-2026-9002). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7871 |
|
Unsafe Deserialization in langflow (CVE-2026-7871)
vulnerability in langflow (CVE-2026-7871). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13772 |
|
Vulnerability in ibm (CVE-2026-13772)
vulnerability in ibm (CVE-2026-13772). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9836 |
|
Information Disclosure in ibm (CVE-2026-9836)
vulnerability in ibm (CVE-2026-9836). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7803 |
|
Vulnerability in langflow (CVE-2026-7803)
vulnerability in langflow (CVE-2026-7803). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13449 |
|
XXE (XML External Entity) in ibm (CVE-2026-13449)
vulnerability in ibm (CVE-2026-13449). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13773 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-13773)
SSRF in ssrf (CVE-2026-13773). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7873 |
|
Code Injection in langflow (CVE-2026-7873)
code injection in langflow (CVE-2026-7873). Successful exploitation can lead to full system takeover.
|
| CVE-2025-12530 |
|
Vulnerability in ibm (CVE-2025-12530)
vulnerability in ibm (CVE-2025-12530). Confidential information can be exposed externally.
|
| CVE-2026-12084 |
|
Vulnerability in ibm (CVE-2026-12084)
vulnerability in ibm (CVE-2026-12084). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11712 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2026-11712)
cross-site scripting in ibm (CVE-2026-11712). Confidential information can be exposed externally.
|
| CVE-2025-36320 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2025-36320)
cross-site scripting in ibm (CVE-2025-36320). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10546 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-10546)
SSRF in ssrf (CVE-2026-10546). Confidential information can be exposed externally.
|
| CVE-2026-12085 |
|
Vulnerability in ibm (CVE-2026-12085)
vulnerability in ibm (CVE-2026-12085). Confidential information can be exposed externally.
|
| CVE-2026-10564 |
|
SSRF (Server-Side Request Forgery) in c (CVE-2026-10564)
SSRF in c (CVE-2026-10564). Confidential information can be exposed externally.
|
| CVE-2026-11906 |
|
Vulnerability in dos (CVE-2026-11906)
vulnerability in dos (CVE-2026-11906). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3602 |
|
Vulnerability in sqli (CVE-2026-3602)
vulnerability in sqli (CVE-2026-3602). Data can be tampered with by attackers.
|
| CVE-2026-11708 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2026-11708)
cross-site scripting in ibm (CVE-2026-11708). Confidential information can be exposed externally.
|
| CVE-2026-12086 |
|
Vulnerability in ibm (CVE-2026-12086)
vulnerability in ibm (CVE-2026-12086). Confidential information can be exposed externally.
|
| CVE-2026-13759 |
|
Unsafe Deserialization in ibm (CVE-2026-13759)
vulnerability in ibm (CVE-2026-13759). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11806 |
|
Vulnerability in ibm (CVE-2026-11806)
vulnerability in ibm (CVE-2026-11806). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11714 |
|
SSRF (Server-Side Request Forgery) in ibm (CVE-2026-11714)
SSRF in ibm (CVE-2026-11714). Confidential information can be exposed externally.
|
| CVE-2026-11595 |
|
Path Traversal in ibm (CVE-2026-11595)
path traversal in ibm (CVE-2026-11595). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10140 |
|
Vulnerability in langflow (CVE-2026-10140)
vulnerability in langflow (CVE-2026-10140). Confidential information can be exposed externally.
|
| CVE-2026-11546 |
|
SSRF (Server-Side Request Forgery) in ibm (CVE-2026-11546)
SSRF in ibm (CVE-2026-11546). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10560 |
|
Authentication Bypass in dos (CVE-2026-10560)
authentication bypass in dos (CVE-2026-10560). Confidential information can be exposed externally.
|
| CVE-2026-58138 |
|
Code Injection in CVE-2026-58138 (CVE-2026-58138)
code injection in CVE-2026-58138 (CVE-2026-58138). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10129 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-10129)
SSRF in ssrf (CVE-2026-10129). Confidential information can be exposed externally.
|
| CVE-2025-36372 |
|
Vulnerability in ibm (CVE-2025-36372)
vulnerability in ibm (CVE-2025-36372). Confidential information can be exposed externally.
|
| CVE-2026-10134 |
|
Code Injection in langflow (CVE-2026-10134)
code injection in langflow (CVE-2026-10134). Successful exploitation can lead to full system takeover. Exploitable via ``tool_code``.
|
| CVE-2026-10109 |
|
Code Injection in ibm (CVE-2026-10109)
code injection in ibm (CVE-2026-10109). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10513 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-10513)
cross-site scripting in wordpress (CVE-2026-10513). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-10995 |
|
Out-of-Bounds Write in openbabel (CVE-2025-10995)
out-of-bounds write in openbabel (CVE-2025-10995). Successful exploitation can lead to full system takeover. Exploitable via ``memcpy``. Mitigation: upgrade to `3.2.0` or later.
|
| PYSEC-2026-594 |
|
Vulnerability in mrbios (PYSEC-2026-594)
vulnerability in mrbios (PYSEC-2026-594). Risk of unauthorized operations or information disclosure.
|