Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-49942 |
|
Vulnerability in rrwo (CVE-2026-49942)
vulnerability in rrwo (CVE-2026-49942). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49941 |
|
Vulnerability in dos (CVE-2026-49941)
vulnerability in dos (CVE-2026-49941). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49940 |
|
Vulnerability in rrwo (CVE-2026-49940)
vulnerability in rrwo (CVE-2026-49940). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46739 |
|
Vulnerability in cosimo (CVE-2026-46739)
vulnerability in cosimo (CVE-2026-46739). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8722 |
|
Vulnerability in team (CVE-2026-8722)
vulnerability in team (CVE-2026-8722). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-27136 |
|
Vulnerability in golang.org/x/net (CVE-2026-27136)
vulnerability in golang.org/x/net (CVE-2026-27136). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.55.0` or later.
|
| CVE-2026-42506 |
|
Cross-Site Scripting (XSS) in golang.org/x/net (CVE-2026-42506)
cross-site scripting in golang.org/x/net (CVE-2026-42506). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.55.0` or later.
|
| CVE-2026-39821 |
|
Vulnerability in golang.org/x/net (CVE-2026-39821)
vulnerability in golang.org/x/net (CVE-2026-39821). Confidential information can be exposed externally. Mitigation: upgrade to `0.55.0` or later.
|
| CVE-2026-25680 |
|
Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html
Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html
|
| CVE-2026-25681 |
|
Vulnerability in golang.org/x/net (CVE-2026-25681)
vulnerability in golang.org/x/net (CVE-2026-25681). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.55.0` or later.
|
| CVE-2026-42502 |
|
Vulnerability in golang.org/x/net (CVE-2026-42502)
vulnerability in golang.org/x/net (CVE-2026-42502). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.55.0` or later.
|
| CVE-2026-42899 |
|
Vulnerability in dotnet (CVE-2026-42899)
vulnerability in dotnet (CVE-2026-42899). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.27, 9.0.16, 10.0.8` or later.
|
| CVE-2026-42258 |
|
Command Injection in net-imap (CVE-2026-42258)
command injection in net-imap (CVE-2026-42258). Successful exploitation can lead to full system takeover. Exploitable via ``flag``. Mitigation: upgrade to `0.4.24` or later.
|
| CVE-2026-42257 |
|
Command Injection in net-imap (CVE-2026-42257)
command injection in net-imap (CVE-2026-42257). Successful exploitation can lead to full system takeover. Exploitable via ``CRLF``. Mitigation: upgrade to `0.4.24` or later.
|
| CVE-2026-42256 |
|
Vulnerability in net-imap (CVE-2026-42256)
vulnerability in net-imap (CVE-2026-42256). Risk of unauthorized operations or information disclosure. Exploitable via ``Timeout``. Mitigation: upgrade to `0.4.24` or later.
|
| CVE-2026-42246 |
|
Vulnerability in net-imap (CVE-2026-42246)
vulnerability in net-imap (CVE-2026-42246). Confidential information can be exposed externally. Exploitable via ``STARTTLS``. Mitigation: upgrade to `0.3.10` or later.
|
| CVE-2026-42245 |
|
Vulnerability in net-imap (CVE-2026-42245)
vulnerability in net-imap (CVE-2026-42245). Risk of unauthorized operations or information disclosure. Exploitable via ``ResponseReader``. Mitigation: upgrade to `0.4.24` or later.
|
| CVE-2026-43208 |
|
Vulnerability in linux (CVE-2026-43208)
vulnerability in linux (CVE-2026-43208). Successful exploitation can lead to full system takeover.
|
| CVE-2023-44487 KEV |
|
[KEV] Vulnerability in Ietf golang.org/x/net (CVE-2023-44487)
vulnerability in Ietf golang.org/x/net (CVE-2023-44487). Risk of unauthorized operations or information disclosure. Exploitable via ``Channel``. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `0.17.0` or later.
|
| CVE-2022-38013 |
|
Vulnerability in Microsoft.AspNetCore.App.Runtime.linux-arm (CVE-2022-38013)
vulnerability in Microsoft.AspNetCore.App.Runtime.linux-arm (CVE-2022-38013). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.9` or later.
|
| CVE-2022-29145 |
|
Vulnerability in Microsoft.AspNetCore.App.Runtime.win-x64 (CVE-2022-29145)
vulnerability in Microsoft.AspNetCore.App.Runtime.win-x64 (CVE-2022-29145). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.5` or later.
|
| CVE-2022-29117 |
|
.NET and Visual Studio Denial of Service Vulnerability
.NET and Visual Studio Denial of Service Vulnerability
|
| CVE-2022-24512 |
|
Code Injection in Microsoft.NETCore.App.Runtime.linux-arm (CVE-2022-24512)
code injection in Microsoft.NETCore.App.Runtime.linux-arm (CVE-2022-24512). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.3` or later.
|
| CVE-2022-24464 |
|
Vulnerability in Microsoft.AspNetCore.App.Runtime.linux-arm (CVE-2022-24464)
vulnerability in Microsoft.AspNetCore.App.Runtime.linux-arm (CVE-2022-24464). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.3` or later.
|