Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| GHSA-4x72-8x46-jqmw |
|
Vulnerability in @planetlabs/admin-ng (GHSA-4x72-8x46-jqmw)
vulnerability in @planetlabs/admin-ng (GHSA-4x72-8x46-jqmw). Risk of unauthorized operations or information disclosure.
|
| GHSA-jh8r-h42q-3q8p |
|
Vulnerability in @ddh-libs/analytics (GHSA-jh8r-h42q-3q8p)
vulnerability in @ddh-libs/analytics (GHSA-jh8r-h42q-3q8p). Risk of unauthorized operations or information disclosure.
|
| GHSA-jvx5-rh7w-w4fj |
|
Vulnerability in @services-lib/application-http-client (GHSA-jvx5-rh7w-w4fj)
vulnerability in @services-lib/application-http-client (GHSA-jvx5-rh7w-w4fj). Risk of unauthorized operations or information disclosure.
|
| GHSA-2h8m-qr63-3f64 |
|
Vulnerability in @sentryx-libraries/auth-interceptor (GHSA-2h8m-qr63-3f64)
vulnerability in @sentryx-libraries/auth-interceptor (GHSA-2h8m-qr63-3f64). Risk of unauthorized operations or information disclosure.
|
| GHSA-4j9v-f5j4-xjvx |
|
Vulnerability in @rmlibrary/formatting (GHSA-4j9v-f5j4-xjvx)
vulnerability in @rmlibrary/formatting (GHSA-4j9v-f5j4-xjvx). Risk of unauthorized operations or information disclosure.
|
| GHSA-m6f5-jgw6-8m97 |
|
Vulnerability in @reference-web/pmp-i18n (GHSA-m6f5-jgw6-8m97)
vulnerability in @reference-web/pmp-i18n (GHSA-m6f5-jgw6-8m97). Risk of unauthorized operations or information disclosure.
|
| GHSA-9h22-6cpc-frhc |
|
Vulnerability in ltididp1 (GHSA-9h22-6cpc-frhc)
vulnerability in ltididp1 (GHSA-9h22-6cpc-frhc). Risk of unauthorized operations or information disclosure.
|
| GHSA-pxvr-mwhw-mp36 |
|
Vulnerability in alpine-csp (GHSA-pxvr-mwhw-mp36)
vulnerability in alpine-csp (GHSA-pxvr-mwhw-mp36). Risk of unauthorized operations or information disclosure.
|
| GHSA-mpx3-rr48-f744 |
|
Vulnerability in gel-bootstrap (GHSA-mpx3-rr48-f744)
vulnerability in gel-bootstrap (GHSA-mpx3-rr48-f744). Risk of unauthorized operations or information disclosure.
|
| CGA-gv54-xm9x-5f8v |
|
CGA-gv54-xm9x-5f8v |
| GHSA-278w-vxfg-j6q2 |
|
Vulnerability in @sumoinc/trashpanda (GHSA-278w-vxfg-j6q2)
vulnerability in @sumoinc/trashpanda (GHSA-278w-vxfg-j6q2). Risk of unauthorized operations or information disclosure.
|
| GHSA-vr47-669q-c6p5 |
|
Vulnerability in rc-icon (GHSA-vr47-669q-c6p5)
vulnerability in rc-icon (GHSA-vr47-669q-c6p5). Risk of unauthorized operations or information disclosure.
|
| GHSA-j229-wx6p-5j43 |
|
Vulnerability in player-theming (GHSA-j229-wx6p-5j43)
vulnerability in player-theming (GHSA-j229-wx6p-5j43). Risk of unauthorized operations or information disclosure.
|
| GHSA-6x4r-gq74-hx6w |
|
Vulnerability in player-core-ui (GHSA-6x4r-gq74-hx6w)
vulnerability in player-core-ui (GHSA-6x4r-gq74-hx6w). Risk of unauthorized operations or information disclosure.
|
| GHSA-7rgq-99ww-vfgr |
|
Vulnerability in magwien.sys (GHSA-7rgq-99ww-vfgr)
vulnerability in magwien.sys (GHSA-7rgq-99ww-vfgr). Risk of unauthorized operations or information disclosure.
|
| GHSA-p3xv-2mwp-fx36 |
|
Vulnerability in cdocs-data (GHSA-p3xv-2mwp-fx36)
vulnerability in cdocs-data (GHSA-p3xv-2mwp-fx36). Risk of unauthorized operations or information disclosure.
|
| GHSA-8g7g-fgv9-26pp |
|
Vulnerability in cdocs-markdoc (GHSA-8g7g-fgv9-26pp)
vulnerability in cdocs-markdoc (GHSA-8g7g-fgv9-26pp). Risk of unauthorized operations or information disclosure.
|
| GHSA-g6vr-6p3c-gj3x |
|
Vulnerability in @shopbop/api-models (GHSA-g6vr-6p3c-gj3x)
vulnerability in @shopbop/api-models (GHSA-g6vr-6p3c-gj3x). Risk of unauthorized operations or information disclosure.
|
| GHSA-q8qh-2q32-qvc7 |
|
Vulnerability in @bapiweb-ux/bapi-header (GHSA-q8qh-2q32-qvc7)
vulnerability in @bapiweb-ux/bapi-header (GHSA-q8qh-2q32-qvc7). Risk of unauthorized operations or information disclosure.
|
| GHSA-xpr4-wg5r-33c8 |
|
Vulnerability in @mcconnect/mcc-common-lib (GHSA-xpr4-wg5r-33c8)
vulnerability in @mcconnect/mcc-common-lib (GHSA-xpr4-wg5r-33c8). Risk of unauthorized operations or information disclosure.
|
| GHSA-9vfc-98mc-g3p5 |
|
Vulnerability in @gartnerx/gx-npm-messenger-util (GHSA-9vfc-98mc-g3p5)
vulnerability in @gartnerx/gx-npm-messenger-util (GHSA-9vfc-98mc-g3p5). Risk of unauthorized operations or information disclosure.
|
| GHSA-fvhw-928m-gxmw |
|
Vulnerability in hrb-cas-auth-js (GHSA-fvhw-928m-gxmw)
vulnerability in hrb-cas-auth-js (GHSA-fvhw-928m-gxmw). Risk of unauthorized operations or information disclosure.
|
| openSUSE-SU-2026:21173-1 |
|
Vulnerability in python-pydata-sphinx-theme (openSUSE-SU-2026:21173-1)
vulnerability in python-pydata-sphinx-theme (openSUSE-SU-2026:21173-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.16.1-bp160.2.1` or later.
|
| GHSA-5782-j92p-q2m3 |
|
Vulnerability in @flipbit2-bb/scope-test (GHSA-5782-j92p-q2m3)
vulnerability in @flipbit2-bb/scope-test (GHSA-5782-j92p-q2m3). Risk of unauthorized operations or information disclosure.
|
| PYSEC-2026-583 |
|
Vulnerability in nhmpy (PYSEC-2026-583)
vulnerability in nhmpy (PYSEC-2026-583). Risk of unauthorized operations or information disclosure.
|
| CGA-88c3-h9jw-hjwp |
|
CGA-88c3-h9jw-hjwp |
| CVE-2026-9105 |
|
Vulnerability in tp-link (CVE-2026-9105)
vulnerability in tp-link (CVE-2026-9105). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41052 |
|
Vulnerability in github.com/rancher/rancher (CVE-2026-41052)
vulnerability in github.com/rancher/rancher (CVE-2026-41052). Successful exploitation can lead to full system takeover. Exploitable via ``privileged``. Mitigation: upgrade to `0.0.0-20260513182521-2800aaac25b5` or later.
|
| CVE-2026-13750 |
|
Vulnerability in snowflake (CVE-2026-13750)
vulnerability in snowflake (CVE-2026-13750). Confidential information can be exposed externally.
|
| CVE-2026-13749 |
|
Code Injection in snowflake (CVE-2026-13749)
code injection in snowflake (CVE-2026-13749). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13748 |
|
Path Traversal in snowflake (CVE-2026-13748)
path traversal in snowflake (CVE-2026-13748). Confidential information can be exposed externally.
|
| CVE-2026-13746 |
|
SQL Injection in snowflake (CVE-2026-13746)
SQL injection in snowflake (CVE-2026-13746). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13744 |
|
SQL Injection in snowflake (CVE-2026-13744)
SQL injection in snowflake (CVE-2026-13744). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13742 |
|
Vulnerability in CVE-2026-13742 (CVE-2026-13742)
vulnerability in CVE-2026-13742 (CVE-2026-13742). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13587 |
|
Buffer Overflow in c (CVE-2026-13587)
vulnerability in c (CVE-2026-13587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13583 |
|
Buffer Overflow in CVE-2026-13583 (CVE-2026-13583)
vulnerability in CVE-2026-13583 (CVE-2026-13583). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13582 |
|
Buffer Overflow in CVE-2026-13582 (CVE-2026-13582)
vulnerability in CVE-2026-13582 (CVE-2026-13582). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13581 |
|
Command Injection in CVE-2026-13581 (CVE-2026-13581)
command injection in CVE-2026-13581 (CVE-2026-13581). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13580 |
|
Buffer Overflow in CVE-2026-13580 (CVE-2026-13580)
vulnerability in CVE-2026-13580 (CVE-2026-13580). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13437 |
|
Vulnerability in devolutions (CVE-2026-13437)
vulnerability in devolutions (CVE-2026-13437). Confidential information can be exposed externally.
|
| PYSEC-2026-582 |
|
Vulnerability in mflux-streamlit (PYSEC-2026-582)
vulnerability in mflux-streamlit (PYSEC-2026-582). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:22509-1 |
|
Vulnerability in kernel-livepatch-SLE16_Update_9 (SUSE-SU-2026:22509-1)
vulnerability in kernel-livepatch-SLE16_Update_9 (SUSE-SU-2026:22509-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3-160000.1.1` or later.
|
| SUSE-SU-2026:22508-1 |
|
Vulnerability in kernel-livepatch-SLE16_Update_11 (SUSE-SU-2026:22508-1)
vulnerability in kernel-livepatch-SLE16_Update_11 (SUSE-SU-2026:22508-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3-160000.1.1` or later.
|
| PYSEC-2026-585 |
|
Vulnerability in spateo-release (PYSEC-2026-585)
vulnerability in spateo-release (PYSEC-2026-585). Risk of unauthorized operations or information disclosure.
|
| PYSEC-2026-581 |
|
Vulnerability in dynamo-release (PYSEC-2026-581)
vulnerability in dynamo-release (PYSEC-2026-581). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57525 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-57334 |
|
Unauthenticated Broken Access Control in WP User Frontend <= 4.3.7 versions.
Unauthenticated Broken Access Control in WP User Frontend <= 4.3.7 versions.
|
| CVE-2026-57339 |
|
Unauthenticated Broken Access Control in Business Directory <= 6.4.23 versions.
Unauthenticated Broken Access Control in Business Directory <= 6.4.23 versions.
|
| CVE-2026-57340 |
|
Unauthenticated Broken Access Control in Japanized For WooCommerce <= 2.9.12 versions.
Unauthenticated Broken Access Control in Japanized For WooCommerce <= 2.9.12 versions.
|
| CVE-2026-57338 |
|
Unauthenticated Cross Site Scripting (XSS) in ARForms <= 7.1.2 versions.
Unauthenticated Cross Site Scripting (XSS) in ARForms <= 7.1.2 versions.
|