Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-82020 |
|
Vulnerability in CVE-2026-82020 (CVE-2026-82020)
vulnerability in CVE-2026-82020 (CVE-2026-82020). Confidential information can be exposed externally.
|
| CVE-2026-75889 |
|
Vulnerability in CVE-2026-75889 (CVE-2026-75889)
vulnerability in CVE-2026-75889 (CVE-2026-75889). Confidential information can be exposed externally.
|
| CVE-2026-53580 |
|
Vulnerability in CVE-2026-53580 (CVE-2026-53580)
vulnerability in CVE-2026-53580 (CVE-2026-53580). Confidential information can be exposed externally.
|
| CVE-2026-75464 |
|
OneNav 1.2.4 contains an authenticated arbitrary file deletion vulnerability via import_link().
OneNav 1.2.4 contains an authenticated arbitrary file deletion vulnerability via import_link().
|
| CVE-2026-78051 |
|
Vulnerability in CVE-2026-78051 (CVE-2026-78051)
vulnerability in CVE-2026-78051 (CVE-2026-78051). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19093 |
|
Vulnerability in wordpress (CVE-2026-19093)
vulnerability in wordpress (CVE-2026-19093). Confidential information can be exposed externally.
|
| CVE-2026-63042 |
|
Vulnerability in apache (CVE-2026-63042)
vulnerability in apache (CVE-2026-63042). Data can be tampered with by attackers.
|
| CVE-2026-63040 |
|
Vulnerability in apache (CVE-2026-63040)
vulnerability in apache (CVE-2026-63040). Data can be tampered with by attackers.
|
| CVE-2026-63490 |
|
Path Traversal in CVE-2026-63490 (CVE-2026-63490)
path traversal in CVE-2026-63490 (CVE-2026-63490). Confidential information can be exposed externally.
|
| CVE-2026-76799 |
|
Vulnerability in CVE-2026-76799 (CVE-2026-76799)
vulnerability in CVE-2026-76799 (CVE-2026-76799). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19987 |
|
Vulnerability in CVE-2026-19987 (CVE-2026-19987)
vulnerability in CVE-2026-19987 (CVE-2026-19987). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19903 |
|
Vulnerability in CVE-2026-19903 (CVE-2026-19903)
vulnerability in CVE-2026-19903 (CVE-2026-19903). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8715 |
|
Vulnerability in privilege-escalation (CVE-2026-8715)
vulnerability in privilege-escalation (CVE-2026-8715). Confidential information can be exposed externally.
|
| CVE-2026-14849 |
|
Vulnerability in wordpress (CVE-2026-14849)
vulnerability in wordpress (CVE-2026-14849). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11841 |
|
Vulnerability in CVE-2026-11841 (CVE-2026-11841)
vulnerability in CVE-2026-11841 (CVE-2026-11841). Confidential information can be exposed externally.
|
| CVE-2026-57990 |
|
Vulnerability in microsoft (CVE-2026-57990)
vulnerability in microsoft (CVE-2026-57990). Confidential information can be exposed externally.
|
| CVE-2026-73653 |
|
Path Traversal in @vitest/browser (CVE-2026-73653)
path traversal in @vitest/browser (CVE-2026-73653). Confidential information can be exposed externally. Exploitable via ``allowWrite``. Mitigation: upgrade to `5.0.0-beta.6` or later.
|
| CVE-2026-15342 |
|
Vulnerability in CVE-2026-15342 (CVE-2026-15342)
vulnerability in CVE-2026-15342 (CVE-2026-15342). Data can be tampered with by attackers.
|
| CVE-2026-54457 |
|
Vulnerability in tensorzero (CVE-2026-54457)
vulnerability in tensorzero (CVE-2026-54457). Confidential information can be exposed externally. Exploitable via ``storage_path``. Mitigation: upgrade to `2026.6.0` or later.
|
| CVE-2026-59703 |
|
Vulnerability in c (CVE-2026-59703)
vulnerability in c (CVE-2026-59703). Confidential information can be exposed externally.
|
| CVE-2026-13533 |
|
Vulnerability in CVE-2026-13533 (CVE-2026-13533)
vulnerability in CVE-2026-13533 (CVE-2026-13533). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-66389 |
|
Vulnerability in microsoft (CVE-2025-66389)
vulnerability in microsoft (CVE-2025-66389). Confidential information can be exposed externally.
|
| CVE-2026-40624 |
|
Vulnerability in cisa (CVE-2026-40624)
vulnerability in cisa (CVE-2026-40624). Successful exploitation can lead to full system takeover.
|
| CVE-2025-14771 |
|
Vulnerability in abb (CVE-2025-14771)
vulnerability in abb (CVE-2025-14771). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45543 |
|
Vulnerability in nextcloud (CVE-2026-45543)
vulnerability in nextcloud (CVE-2026-45543). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40425 |
|
Vulnerability in macgregor (CVE-2026-40425)
vulnerability in macgregor (CVE-2026-40425). Confidential information can be exposed externally.
|
| CVE-2024-56462 |
|
Vulnerability in ibm (CVE-2024-56462)
vulnerability in ibm (CVE-2024-56462). Successful exploitation can lead to full system takeover.
|
| CVE-2024-11399 |
|
Vulnerability in synology (CVE-2024-11399)
vulnerability in synology (CVE-2024-11399). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40564 |
|
Vulnerability in apache (CVE-2026-40564)
vulnerability in apache (CVE-2026-40564). Confidential information can be exposed externally.
|
| CVE-2026-45721 |
|
Vulnerability in github.com/xyproto/algernon (CVE-2026-45721)
vulnerability in github.com/xyproto/algernon (CVE-2026-45721). Successful exploitation can lead to full system takeover. Exploitable via ``DirPage``. Mitigation: upgrade to `1.17.7` or later.
|
| CVE-2026-8704 |
|
Crypt::DSA versions through 1.19 for Perl use 2-args open, allowing existing files to be modified.
Crypt::DSA versions through 1.19 for Perl use 2-args open, allowing existing files to be modified.
|
| CVE-2026-33380 |
|
Vulnerability in grafana (CVE-2026-33380)
vulnerability in grafana (CVE-2026-33380). Confidential information can be exposed externally. Mitigation: upgrade to `11.6.14, 12.2.8, 12.3.6, 12.4.3, 13.0.1` or later.
|
| CVE-2026-42063 |
|
Vulnerability in f5 (CVE-2026-42063)
vulnerability in f5 (CVE-2026-42063). Confidential information can be exposed externally.
|
| CVE-2026-40631 |
|
Vulnerability in privilege-escalation (CVE-2026-40631)
vulnerability in privilege-escalation (CVE-2026-40631). Confidential information can be exposed externally.
|
| CVE-2026-35440 |
|
Vulnerability in microsoft (CVE-2026-35440)
vulnerability in microsoft (CVE-2026-35440). Confidential information can be exposed externally.
|
| CVE-2026-32185 |
|
Vulnerability in microsoft (CVE-2026-32185)
vulnerability in microsoft (CVE-2026-32185). Confidential information can be exposed externally.
|
| CVE-2026-31216 |
|
Vulnerability in dos (CVE-2026-31216)
vulnerability in dos (CVE-2026-31216). Data can be tampered with by attackers. Exploitable via `DELETE /storage/{object_name`.
|
| CVE-2026-31215 |
|
Vulnerability in dos (CVE-2026-31215)
vulnerability in dos (CVE-2026-31215). Data can be tampered with by attackers. Exploitable via `DELETE /{index_name}/documents`.
|
| CVE-2026-45088 |
|
Vulnerability in github.com/hahwul/dalfox/v2 (CVE-2026-45088)
vulnerability in github.com/hahwul/dalfox/v2 (CVE-2026-45088). Confidential information can be exposed externally. Exploitable via ``model.Options``. Mitigation: upgrade to `2.13.0` or later.
|
| CVE-2026-39871 |
|
Vulnerability in apple (CVE-2026-39871)
vulnerability in apple (CVE-2026-39871). Confidential information can be exposed externally.
|
| CVE-2026-7817 |
|
Vulnerability in pgadmin4 (CVE-2026-7817)
vulnerability in pgadmin4 (CVE-2026-7817). Confidential information can be exposed externally. Mitigation: upgrade to `9.15` or later.
|
| CVE-2025-0509 |
|
Vulnerability in java (CVE-2025-0509)
vulnerability in java (CVE-2025-0509). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.8.0, 8.0.441` or later.
|
| CVE-2026-6418 |
|
Vulnerability in papercut (CVE-2026-6418)
vulnerability in papercut (CVE-2026-6418). Confidential information can be exposed externally.
|
| CVE-2021-47960 |
|
Vulnerability in synology (CVE-2021-47960)
vulnerability in synology (CVE-2021-47960). Confidential information can be exposed externally.
|
| CVE-2026-35446 |
|
Vulnerability in mcgill (CVE-2026-35446)
vulnerability in mcgill (CVE-2026-35446). Confidential information can be exposed externally. Mitigation: upgrade to `27.0.3` or later.
|
| CVE-2026-35169 |
|
Cross-Site Scripting (XSS) in mcgill (CVE-2026-35169)
cross-site scripting in mcgill (CVE-2026-35169). Confidential information can be exposed externally. Mitigation: upgrade to `27.0.3` or later.
|
| CVE-2026-34392 |
|
Vulnerability in mcgill (CVE-2026-34392)
vulnerability in mcgill (CVE-2026-34392). Confidential information can be exposed externally. Mitigation: upgrade to `27.0.3` or later.
|
| CVE-2026-34785 |
|
Vulnerability in rack (CVE-2026-34785)
vulnerability in rack (CVE-2026-34785). Confidential information can be exposed externally. Mitigation: upgrade to `3.2.6` or later.
|
| CVE-2026-34361 |
|
Vulnerability in hapifhir (CVE-2026-34361)
vulnerability in hapifhir (CVE-2026-34361). Confidential information can be exposed externally.
|
| CVE-2016-20025 |
|
Vulnerability in privilege-escalation (CVE-2016-20025)
vulnerability in privilege-escalation (CVE-2016-20025). Successful exploitation can lead to full system takeover.
|