Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-28860 |
|
Vulnerability in apple (CVE-2026-28860)
vulnerability in apple (CVE-2026-28860). Confidential information can be exposed externally.
|
| CVE-2026-28908 |
|
Vulnerability in dos (CVE-2026-28908)
vulnerability in dos (CVE-2026-28908). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20696 |
|
Vulnerability in apple (CVE-2026-20696)
vulnerability in apple (CVE-2026-20696). Confidential information can be exposed externally.
|
| CVE-2026-28906 |
|
Vulnerability in apple (CVE-2026-28906)
vulnerability in apple (CVE-2026-28906). Confidential information can be exposed externally.
|
| CVE-2026-28901 |
|
Buffer Overflow in apple (CVE-2026-28901)
vulnerability in apple (CVE-2026-28901). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28910 |
|
Vulnerability in apple (CVE-2026-28910)
vulnerability in apple (CVE-2026-28910). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28903 |
|
Buffer Overflow in apple (CVE-2026-28903)
vulnerability in apple (CVE-2026-28903). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28904 |
|
Buffer Overflow in apple (CVE-2026-28904)
vulnerability in apple (CVE-2026-28904). Confidential information can be exposed externally.
|
| CVE-2026-28846 |
|
Vulnerability in apple (CVE-2026-28846)
vulnerability in apple (CVE-2026-28846). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6297 |
|
Use-After-Free in Google chrome (CVE-2026-6297)
vulnerability in Google chrome (CVE-2026-6297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7363 |
|
Use-After-Free in Google chrome (CVE-2026-7363)
vulnerability in Google chrome (CVE-2026-7363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32178 |
|
Vulnerability in dotnet (CVE-2026-32178)
vulnerability in dotnet (CVE-2026-32178). Confidential information can be exposed externally. Mitigation: upgrade to `8.0.26, 9.0.15, 10.0.6` or later.
|
| CVE-2026-26171 |
|
Vulnerability in dotnet (CVE-2026-26171)
vulnerability in dotnet (CVE-2026-26171). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.26, 9.0.15, 10.0.6` or later.
|
| CVE-2026-41500 |
|
Command Injection in electerm-project (CVE-2026-41500)
command injection in electerm-project (CVE-2026-41500). Successful exploitation can lead to full system takeover. Exploitable via ``releaseInfo.name``. Mitigation: upgrade to `> 3.2.0` or later.
|
| CVE-2026-8018 |
|
Vulnerability in google (CVE-2026-8018)
vulnerability in google (CVE-2026-8018). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7989 |
|
Vulnerability in google (CVE-2026-7989)
vulnerability in google (CVE-2026-7989). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7979 |
|
Vulnerability in google (CVE-2026-7979)
vulnerability in google (CVE-2026-7979). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7959 |
|
Vulnerability in google (CVE-2026-7959)
vulnerability in google (CVE-2026-7959). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7946 |
|
Vulnerability in google (CVE-2026-7946)
vulnerability in google (CVE-2026-7946). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7932 |
|
Vulnerability in chromium (CVE-2026-7932)
vulnerability in chromium (CVE-2026-7932). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `148.0.7778.96-1~deb12u1` or later.
|
| CVE-2026-7916 |
|
Vulnerability in google (CVE-2026-7916)
vulnerability in google (CVE-2026-7916). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7910 |
|
Use-After-Free in google (CVE-2026-7910)
vulnerability in google (CVE-2026-7910). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7902 |
|
Out-of-Bounds Read in google (CVE-2026-7902)
vulnerability in google (CVE-2026-7902). Successful exploitation can lead to full system takeover.
|
| CVE-2026-20652 |
|
Vulnerability in java (CVE-2026-20652)
vulnerability in java (CVE-2026-20652). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.0, 8.0.491` or later.
|
| CVE-2026-20644 |
|
Buffer Overflow in java (CVE-2026-20644)
vulnerability in java (CVE-2026-20644). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.0, 8.0.491` or later.
|
| CVE-2026-20636 |
|
Buffer Overflow in java (CVE-2026-20636)
vulnerability in java (CVE-2026-20636). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.0, 8.0.491` or later.
|
| CVE-2026-20635 |
|
Buffer Overflow in java (CVE-2026-20635)
vulnerability in java (CVE-2026-20635). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.0, 8.0.491` or later.
|
| CVE-2026-20608 |
|
Vulnerability in java (CVE-2026-20608)
vulnerability in java (CVE-2026-20608). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.0, 8.0.491` or later.
|
| CVE-2026-7355 |
|
Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
|
| CVE-2026-7356 |
|
Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7357 |
|
Use-After-Free in google (CVE-2026-7357)
vulnerability in google (CVE-2026-7357). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7358 |
|
Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7359 |
|
Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Ch...
Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7360 |
|
Vulnerability in google (CVE-2026-7360)
vulnerability in google (CVE-2026-7360). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7361 |
|
Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
|
| CVE-2026-7345 |
|
Vulnerability in google (CVE-2026-7345)
vulnerability in google (CVE-2026-7345). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7346 |
|
Buffer Overflow in google (CVE-2026-7346)
vulnerability in google (CVE-2026-7346). Confidential information can be exposed externally.
|
| CVE-2026-7347 |
|
Use-After-Free in google (CVE-2026-7347)
vulnerability in google (CVE-2026-7347). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7348 |
|
Use after free in Codecs in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in Codecs in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7349 |
|
Use-After-Free in google (CVE-2026-7349)
vulnerability in google (CVE-2026-7349). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7350 |
|
Use-After-Free in google (CVE-2026-7350)
vulnerability in google (CVE-2026-7350). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7351 |
|
Vulnerability in google (CVE-2026-7351)
vulnerability in google (CVE-2026-7351). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7352 |
|
Use-After-Free in google (CVE-2026-7352)
vulnerability in google (CVE-2026-7352). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7353 |
|
Vulnerability in google (CVE-2026-7353)
vulnerability in google (CVE-2026-7353). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7354 |
|
Out of bounds read and write in Angle in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: H...
Out of bounds read and write in Angle in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7335 |
|
Use after free in media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7336 |
|
Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7337 |
|
Vulnerability in google (CVE-2026-7337)
vulnerability in google (CVE-2026-7337). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7338 |
|
Use-After-Free in google (CVE-2026-7338)
vulnerability in google (CVE-2026-7338). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7339 |
|
Vulnerability in google (CVE-2026-7339)
vulnerability in google (CVE-2026-7339). Successful exploitation can lead to full system takeover.
|