Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-15573 |
|
Vulnerability in redhat (CVE-2026-15573)
vulnerability in redhat (CVE-2026-15573). Confidential information can be exposed externally.
|
| CVE-2026-16102 |
|
Vulnerability in redhat (CVE-2026-16102)
vulnerability in redhat (CVE-2026-16102). Confidential information can be exposed externally.
|
| CVE-2026-16093 |
|
Vulnerability in redhat (CVE-2026-16093)
vulnerability in redhat (CVE-2026-16093). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15945 |
|
Vulnerability in redhat (CVE-2026-15945)
vulnerability in redhat (CVE-2026-15945). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44495 |
|
Code Injection in axios (CVE-2026-44495)
code injection in axios (CVE-2026-44495). Confidential information can be exposed externally. Exploitable via ``Object.prototype.transformResponse``. Mitigation: upgrade to `1.15.0` or later.
|
| CVE-2026-28369 |
|
Vulnerability in io.undertow:undertow-parent (CVE-2026-28369)
vulnerability in io.undertow:undertow-parent (CVE-2026-28369). Confidential information can be exposed externally.
|
| CVE-2026-28367 |
|
Vulnerability in io.undertow:undertow-parent (CVE-2026-28367)
vulnerability in io.undertow:undertow-parent (CVE-2026-28367). Confidential information can be exposed externally.
|
| CVE-2026-28368 |
|
Vulnerability in io.undertow:undertow-parent (CVE-2026-28368)
vulnerability in io.undertow:undertow-parent (CVE-2026-28368). Confidential information can be exposed externally.
|
| CVE-2025-12543 |
|
Vulnerability in redhat (CVE-2025-12543)
vulnerability in redhat (CVE-2025-12543). Confidential information can be exposed externally. Exploitable via `Host header`.
|
| CVE-2025-23368 |
|
Vulnerability in redhat (CVE-2025-23368)
vulnerability in redhat (CVE-2025-23368). Successful exploitation can lead to full system takeover.
|
| CVE-2024-7885 |
|
Vulnerability in redhat (CVE-2024-7885)
vulnerability in redhat (CVE-2024-7885). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-7501 |
|
Unsafe Deserialization in apache (CVE-2015-7501)
vulnerability in apache (CVE-2015-7501). Successful exploitation can lead to full system takeover.
|