Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-82018 |
|
Vulnerability in CVE-2026-82018 (CVE-2026-82018)
vulnerability in CVE-2026-82018 (CVE-2026-82018). Confidential information can be exposed externally.
|
| CVE-2026-46482 |
|
Vulnerability in c (CVE-2026-46482)
vulnerability in c (CVE-2026-46482). Risk of unauthorized operations or information disclosure. Exploitable via ``question_id``.
|
| CVE-2026-70452 |
|
Vulnerability in CVE-2026-70452 (CVE-2026-70452)
vulnerability in CVE-2026-70452 (CVE-2026-70452). Confidential information can be exposed externally.
|
| CVE-2026-69306 |
|
Vulnerability in microsoft (CVE-2026-69306)
vulnerability in microsoft (CVE-2026-69306). Confidential information can be exposed externally.
|
| CVE-2026-68746 |
|
Vulnerability in livebook (CVE-2026-68746)
vulnerability in livebook (CVE-2026-68746). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44094 |
|
An unauthenticated remote attacker can enforce the system to fall back to a firmware partition...
An unauthenticated remote attacker can enforce the system to fall back to a firmware partition...
|
| CVE-2026-73421 |
|
Vulnerability in next-auth (CVE-2026-73421)
vulnerability in next-auth (CVE-2026-73421). Risk of unauthorized operations or information disclosure. Exploitable via ``auth``. Mitigation: upgrade to `5.0.0-beta.32` or later.
|
| CVE-2026-62235 |
|
Vulnerability in CVE-2026-62235 (CVE-2026-62235)
vulnerability in CVE-2026-62235 (CVE-2026-62235). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50528 |
|
Vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528)
vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528). Data can be tampered with by attackers. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-54291 |
|
Vulnerability in org.postgresql:postgresql (CVE-2026-54291)
vulnerability in org.postgresql:postgresql (CVE-2026-54291). Data can be tampered with by attackers. Exploitable via ``Ed25519``. Mitigation: upgrade to `42.7.12` or later.
|
| CVE-2026-53913 |
|
Authentication Bypass in org.apache.camel:camel-keycloak (CVE-2026-53913)
authentication bypass in org.apache.camel:camel-keycloak (CVE-2026-53913). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-53712 |
|
Vulnerability in com.ongres.scram:scram-client (CVE-2026-53712)
vulnerability in com.ongres.scram:scram-client (CVE-2026-53712). Risk of unauthorized operations or information disclosure. Exploitable via ``TlsServerEndpoint``. Mitigation: upgrade to `3.3` or later.
|
| CVE-2026-54762 |
|
Vulnerability in github.com/traefik/traefik/v3 (CVE-2026-54762)
vulnerability in github.com/traefik/traefik/v3 (CVE-2026-54762). Confidential information can be exposed externally. Mitigation: upgrade to `3.7.5` or later.
|
| CVE-2026-55568 |
|
Vulnerability in guzzlehttp/guzzle (CVE-2026-55568)
vulnerability in guzzlehttp/guzzle (CVE-2026-55568). Confidential information can be exposed externally. Exploitable via ``proxy``. Mitigation: upgrade to `7.12.1` or later.
|
| CVE-2026-53852 |
|
Vulnerability in openclaw (CVE-2026-53852)
vulnerability in openclaw (CVE-2026-53852). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.4.25` or later.
|
| CVE-2026-53837 |
|
Vulnerability in openclaw (CVE-2026-53837)
vulnerability in openclaw (CVE-2026-53837). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.5.6` or later.
|
| CVE-2026-49318 |
|
Vulnerability in CVE-2026-49318 (CVE-2026-49318)
vulnerability in CVE-2026-49318 (CVE-2026-49318). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49317 |
|
Vulnerability in CVE-2026-49317 (CVE-2026-49317)
vulnerability in CVE-2026-49317 (CVE-2026-49317). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45781 |
|
Vulnerability in github.com/modelcontextprotocol/registry (CVE-2026-45781)
vulnerability in github.com/modelcontextprotocol/registry (CVE-2026-45781). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.7.9` or later.
|
| CVE-2026-42246 |
|
Vulnerability in net-imap (CVE-2026-42246)
vulnerability in net-imap (CVE-2026-42246). Confidential information can be exposed externally. Exploitable via ``STARTTLS``. Mitigation: upgrade to `0.3.10` or later.
|
| CVE-2026-40525 |
|
Vulnerability in openviking (CVE-2026-40525)
vulnerability in openviking (CVE-2026-40525). Confidential information can be exposed externally. Exploitable via `X-API-Key header`. Mitigation: upgrade to `0.3.9` or later.
|
| CVE-2026-35205 |
|
Vulnerability in helm (CVE-2026-35205)
vulnerability in helm (CVE-2026-35205). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.1.4` or later.
|
| CVE-2026-32970 |
|
Vulnerability in openclaw (CVE-2026-32970)
vulnerability in openclaw (CVE-2026-32970). Risk of unauthorized operations or information disclosure.
|