Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-j5m5-hpmr-mq6j |
|
MINI-j5m5-hpmr-mq6j |
| MINI-66m8-q4m6-p4pg |
|
MINI-66m8-q4m6-p4pg |
| MINI-fcmh-7q25-78vh |
|
MINI-fcmh-7q25-78vh |
| MINI-6g7c-j3p2-9j9r |
|
MINI-6g7c-j3p2-9j9r |
| MINI-4pxq-mg4h-9pgh |
|
MINI-4pxq-mg4h-9pgh |
| MINI-2vc5-xjp8-7j4q |
|
MINI-2vc5-xjp8-7j4q |
| MINI-3323-rr75-74x5 |
|
MINI-3323-rr75-74x5 |
| MINI-pgpv-936g-vw4w |
|
MINI-pgpv-936g-vw4w |
| MINI-838v-qgvp-f4q5 |
|
MINI-838v-qgvp-f4q5 |
| MINI-6h7h-x7vh-hm6h |
|
MINI-6h7h-x7vh-hm6h |
| MINI-6636-wv5p-cjr7 |
|
MINI-6636-wv5p-cjr7 |
| MINI-7jjx-6rp8-r84q |
|
MINI-7jjx-6rp8-r84q |
| MINI-chhf-373v-m845 |
|
MINI-chhf-373v-m845 |
| MINI-rgm7-hg3w-g72h |
|
MINI-rgm7-hg3w-g72h |
| MINI-786r-rxvg-q7jx |
|
MINI-786r-rxvg-q7jx |
| MINI-76ww-r3w5-fcjr |
|
MINI-76ww-r3w5-fcjr |
| CVE-2026-52795 |
|
Authorization Flaw in CVE-2026-52795 (CVE-2026-52795)
vulnerability in CVE-2026-52795 (CVE-2026-52795). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50129 |
|
Vulnerability in mastodon (CVE-2026-50129)
vulnerability in mastodon (CVE-2026-50129). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.5.11` or later.
|
| CVE-2026-50128 |
|
Vulnerability in mastodon (CVE-2026-50128)
vulnerability in mastodon (CVE-2026-50128). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.5.11` or later.
|
| CVE-2026-49278 |
|
Vulnerability in CVE-2026-49278 (CVE-2026-49278)
vulnerability in CVE-2026-49278 (CVE-2026-49278). Confidential information can be exposed externally. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-49277 |
|
Vulnerability in CVE-2026-49277 (CVE-2026-49277)
vulnerability in CVE-2026-49277 (CVE-2026-49277). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-47733 |
|
Cross-Site Scripting (XSS) in CVE-2026-47733 (CVE-2026-47733)
cross-site scripting in CVE-2026-47733 (CVE-2026-47733). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-46423 |
|
Vulnerability in CVE-2026-46423 (CVE-2026-46423)
vulnerability in CVE-2026-46423 (CVE-2026-46423). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-45757 |
|
Vulnerability in CVE-2026-45757 (CVE-2026-45757)
vulnerability in CVE-2026-45757 (CVE-2026-45757). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-45689 |
|
Vulnerability in CVE-2026-45689 (CVE-2026-45689)
vulnerability in CVE-2026-45689 (CVE-2026-45689). Confidential information can be exposed externally. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-45688 |
|
Vulnerability in CVE-2026-45688 (CVE-2026-45688)
vulnerability in CVE-2026-45688 (CVE-2026-45688). Confidential information can be exposed externally. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-45687 |
|
Vulnerability in CVE-2026-45687 (CVE-2026-45687)
vulnerability in CVE-2026-45687 (CVE-2026-45687). Confidential information can be exposed externally. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-45677 |
|
Vulnerability in CVE-2026-45677 (CVE-2026-45677)
vulnerability in CVE-2026-45677 (CVE-2026-45677). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.5.0` or later.
|
| CVE-2026-33543 |
|
Vulnerability in CVE-2026-33543 (CVE-2026-33543)
vulnerability in CVE-2026-33543 (CVE-2026-33543). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-33235 |
|
Vulnerability in dos (CVE-2026-33235)
vulnerability in dos (CVE-2026-33235). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-11998 |
|
Vulnerability in angular.js (UBUNTU-CVE-2026-11998)
vulnerability in angular.js (UBUNTU-CVE-2026-11998). Confidential information can be exposed externally.
|
| CVE-2026-55583 |
|
Vulnerability in CVE-2026-55583 (CVE-2026-55583)
vulnerability in CVE-2026-55583 (CVE-2026-55583). Confidential information can be exposed externally.
|
| CVE-2026-48028 |
|
Vulnerability in mastodon (CVE-2026-48028)
vulnerability in mastodon (CVE-2026-48028). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.5.10` or later.
|
| CVE-2026-47389 |
|
Vulnerability in mastodon (CVE-2026-47389)
vulnerability in mastodon (CVE-2026-47389). Confidential information can be exposed externally. Mitigation: upgrade to `4.5.10` or later.
|
| CVE-2026-46349 |
|
Vulnerability in mastodon (CVE-2026-46349)
vulnerability in mastodon (CVE-2026-46349). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.5.10` or later.
|
| CVE-2026-46348 |
|
SSRF (Server-Side Request Forgery) in mastodon (CVE-2026-46348)
SSRF in mastodon (CVE-2026-46348). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.5.10` or later.
|
| CVE-2026-27708 |
|
Vulnerability in CVE-2026-27708 (CVE-2026-27708)
vulnerability in CVE-2026-27708 (CVE-2026-27708). Risk of unauthorized operations or information disclosure.
|
| UBUNTU-CVE-2026-23879 |
|
Vulnerability in py7zr (UBUNTU-CVE-2026-23879)
vulnerability in py7zr (UBUNTU-CVE-2026-23879). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13028 |
|
Use-After-Free in Google chrome (CVE-2026-13028)
vulnerability in Google chrome (CVE-2026-13028). Successful exploitation can lead to full system takeover.
|
| SUSE-SU-2026:22353-1 |
|
Vulnerability in perl-libwww-perl (SUSE-SU-2026:22353-1)
vulnerability in perl-libwww-perl (SUSE-SU-2026:22353-1). Risk of unauthorized operations or information disclosure. Exploitable via `Authorization header`. Mitigation: upgrade to `6.770.0-160000.3.1` or later.
|
| openSUSE-SU-2026:21045-1 |
|
Vulnerability in perl-libwww-perl (openSUSE-SU-2026:21045-1)
vulnerability in perl-libwww-perl (openSUSE-SU-2026:21045-1). Risk of unauthorized operations or information disclosure. Exploitable via `Authorization header`. Mitigation: upgrade to `6.770.0-160000.3.1` or later.
|
| CVE-2026-53950 |
|
Cross-Site Scripting (XSS) in @tryghost/activitypub (CVE-2026-53950)
cross-site scripting in @tryghost/activitypub (CVE-2026-53950). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.1.0` or later.
|
| CVE-2026-53949 |
|
Information Disclosure in ghost (CVE-2026-53949)
vulnerability in ghost (CVE-2026-53949). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.21.2` or later.
|
| CVE-2026-53948 |
|
Unrestricted File Upload in ghost (CVE-2026-53948)
vulnerability in ghost (CVE-2026-53948). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.21.1` or later.
|
| CVE-2026-53947 |
|
Vulnerability in ghost (CVE-2026-53947)
vulnerability in ghost (CVE-2026-53947). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.21.1` or later.
|
| CVE-2026-53946 |
|
SSRF (Server-Side Request Forgery) in ghost (CVE-2026-53946)
SSRF in ghost (CVE-2026-53946). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.21.1` or later.
|
| CVE-2026-53945 |
|
Vulnerability in ghost (CVE-2026-53945)
vulnerability in ghost (CVE-2026-53945). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.21.1` or later.
|
| CVE-2026-53944 |
|
Vulnerability in ghost (CVE-2026-53944)
vulnerability in ghost (CVE-2026-53944). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.21.1` or later.
|
| CVE-2026-53943 |
|
Vulnerability in ghost (CVE-2026-53943)
vulnerability in ghost (CVE-2026-53943). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `6.37.0` or later.
|
| CVE-2026-49247 |
|
Path Traversal in CVE-2026-49247 (CVE-2026-49247)
path traversal in CVE-2026-49247 (CVE-2026-49247). Successful exploitation can lead to full system takeover. Exploitable via `POST /ClientLog/Document`. Mitigation: upgrade to `10.11.10` or later.
|