Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-5706 |
|
Vulnerability in CVE-2026-5706 (CVE-2026-5706)
vulnerability in CVE-2026-5706 (CVE-2026-5706). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71402 |
|
Out-of-Bounds Read in c (CVE-2026-71402)
vulnerability in c (CVE-2026-71402). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81575 |
|
Vulnerability in CVE-2026-81575 (CVE-2026-81575)
vulnerability in CVE-2026-81575 (CVE-2026-81575). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58097 |
|
Vulnerability in CVE-2026-58097 (CVE-2026-58097)
vulnerability in CVE-2026-58097 (CVE-2026-58097). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58096 |
|
Vulnerability in CVE-2026-58096 (CVE-2026-58096)
vulnerability in CVE-2026-58096 (CVE-2026-58096). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14587 |
|
Vulnerability in neo4j (CVE-2026-14587)
vulnerability in neo4j (CVE-2026-14587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67292 |
|
Vulnerability in c (CVE-2026-67292)
vulnerability in c (CVE-2026-67292). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62423 |
|
Vulnerability in CVE-2026-62423 (CVE-2026-62423)
vulnerability in CVE-2026-62423 (CVE-2026-62423). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62424 |
|
Vulnerability in CVE-2026-62424 (CVE-2026-62424)
vulnerability in CVE-2026-62424 (CVE-2026-62424). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26081 |
|
Vulnerability in haproxy (CVE-2026-26081)
vulnerability in haproxy (CVE-2026-26081). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60060 |
|
Vulnerability in CVE-2026-60060 (CVE-2026-60060)
vulnerability in CVE-2026-60060 (CVE-2026-60060). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54466 |
|
Vulnerability in websocket-driver (CVE-2026-54466)
vulnerability in websocket-driver (CVE-2026-54466). Data can be tampered with by attackers. Mitigation: upgrade to `0.7.5` or later.
|
| CVE-2026-47692 |
|
Vulnerability in envoyproxy (CVE-2026-47692)
vulnerability in envoyproxy (CVE-2026-47692). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.35.13` or later.
|
| CVE-2026-6432 |
|
Vulnerability in CVE-2026-6432 (CVE-2026-6432)
vulnerability in CVE-2026-6432 (CVE-2026-6432). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48487 |
|
Vulnerability in zeroconf (CVE-2026-48487)
vulnerability in zeroconf (CVE-2026-48487). Risk of unauthorized operations or information disclosure. Exploitable via ``_read_character_string``. Mitigation: upgrade to `0.149.16` or later.
|
| CVE-2026-45615 |
|
Vulnerability in c (CVE-2026-45615)
vulnerability in c (CVE-2026-45615). Risk of unauthorized operations or information disclosure. Exploitable via ``INTEGER_decode_oer``.
|
| CVE-2026-48685 |
|
Vulnerability in pavel-odintsov (CVE-2026-48685)
vulnerability in pavel-odintsov (CVE-2026-48685). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9054 |
|
Vulnerability in CVE-2026-9054 (CVE-2026-9054)
vulnerability in CVE-2026-9054 (CVE-2026-9054). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45681 |
|
Out-of-Bounds Read in go.opentelemetry.io/obi (CVE-2026-45681)
vulnerability in go.opentelemetry.io/obi (CVE-2026-45681). Confidential information can be exposed externally. Exploitable via ``k_kprobes_http2_buf_size``. Mitigation: upgrade to `0.9.0` or later.
|
| CVE-2026-42216 |
|
Out-of-Bounds Read in openexr (CVE-2026-42216)
vulnerability in openexr (CVE-2026-42216). Confidential information can be exposed externally. Exploitable via ``c13e0e1320a6652e02c5c90c6dbd984d532efe44``.
|
| CVE-2026-43125 |
|
Out-of-Bounds Write in linux (CVE-2026-43125)
out-of-bounds write in linux (CVE-2026-43125). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33846 |
|
A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of...
A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of...
|
| CVE-2026-41898 |
|
Vulnerability in rust-openssl-project (CVE-2026-41898)
vulnerability in rust-openssl-project (CVE-2026-41898). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.10.78` or later.
|
| CVE-2026-31635 |
|
Vulnerability in c (CVE-2026-31635)
vulnerability in c (CVE-2026-31635). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5367 |
|
Vulnerability in CVE-2026-5367 (CVE-2026-5367)
vulnerability in CVE-2026-5367 (CVE-2026-5367). Confidential information can be exposed externally.
|
| CVE-2026-5265 |
|
Vulnerability in CVE-2026-5265 (CVE-2026-5265)
vulnerability in CVE-2026-5265 (CVE-2026-5265). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41035 |
|
In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort...
In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort...
|
| CVE-2026-33555 |
|
Vulnerability in haproxy (CVE-2026-33555)
vulnerability in haproxy (CVE-2026-33555). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.3.6` or later.
|
| CVE-2026-34831 |
|
Vulnerability in rack (CVE-2026-34831)
vulnerability in rack (CVE-2026-34831). Risk of unauthorized operations or information disclosure. Exploitable via ``body.size``. Mitigation: upgrade to `3.2.6` or later.
|
| CVE-2026-4371 |
|
Vulnerability in mozilla (CVE-2026-4371)
vulnerability in mozilla (CVE-2026-4371). Confidential information can be exposed externally.
|
| CVE-2026-23230 |
|
In the Linux kernel, the following vulnerability has been resolved:
smb: client: split...
In the Linux kernel, the following vulnerability has been resolved:
smb: client: split...
|
| CVE-2025-14847 KEV |
|
[KEV] Vulnerability in Mongodb cisa (CVE-2025-14847)
vulnerability in Mongodb cisa (CVE-2025-14847). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-36373 |
|
Vulnerability in apache (CVE-2021-36373)
vulnerability in apache (CVE-2021-36373). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-36374 |
|
Vulnerability in apache (CVE-2021-36374)
vulnerability in apache (CVE-2021-36374). Risk of unauthorized operations or information disclosure.
|