Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: owasp Clear
ID Title
CVE-2026-52747 Vulnerability in nginx (CVE-2026-52747)
vulnerability in nginx (CVE-2026-52747). Data can be tampered with by attackers.
CVE-2026-52761 Vulnerability in nginx (CVE-2026-52761)
vulnerability in nginx (CVE-2026-52761). Risk of unauthorized operations or information disclosure.
CVE-2026-42268 Vulnerability in modsecurity (CVE-2026-42268)
vulnerability in modsecurity (CVE-2026-42268). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.0.15` or later.
CVE-2026-30923 Out-of-Bounds Read in modsecurity2 (CVE-2026-30923)
vulnerability in modsecurity2 (CVE-2026-30923). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.0.15` or later.
CVE-2026-40316 OWASP BLT is a QA testing and vulnerability disclosure platform that encompasses websites, apps, git repositories, and more. Versions prior to 2.1.1 contain an RCE vulnerability in the .github/workflo...
OWASP BLT is a QA testing and vulnerability disclosure platform that encompasses websites, apps, git repositories, and more. Versions prior to 2.1.1 contain an RCE vulnerability in the .github/workflows/regenerate-migrations.yml workflow. The workflow uses the pull_request_target trigger to run with...
CVE-2026-33691 Vulnerability in owasp (CVE-2026-33691)
vulnerability in owasp (CVE-2026-33691). Data can be tampered with by attackers.
CVE-2024-23686 Vulnerability in org.owasp:dependency-check-ant (CVE-2024-23686)
vulnerability in org.owasp:dependency-check-ant (CVE-2024-23686). Risk of unauthorized operations or information disclosure. Exploitable via ``nvdApiKey``. Mitigation: upgrade to `9.0.6` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →