Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-16388 |
|
Sandbox escape in the DOM: Networking component. This vulnerability was fixed in Firefox 153.
Sandbox escape in the DOM: Networking component. This vulnerability was fixed in Firefox 153.
|
| CVE-2026-16383 |
|
Vulnerability in mozilla (CVE-2026-16383)
vulnerability in mozilla (CVE-2026-16383). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16380 |
|
Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153.
Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153.
|
| CVE-2026-16377 |
|
Vulnerability in mozilla (CVE-2026-16377)
vulnerability in mozilla (CVE-2026-16377). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16370 |
|
Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153.
Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153.
|
| CVE-2026-16356 |
|
Use-After-Free in mozilla (CVE-2026-16356)
vulnerability in mozilla (CVE-2026-16356). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56087 |
|
Vulnerability in CVE-2026-56087 (CVE-2026-56087)
vulnerability in CVE-2026-56087 (CVE-2026-56087). Confidential information can be exposed externally.
|
| CVE-2026-50646 |
|
Unsafe Deserialization in csharp (CVE-2026-50646)
vulnerability in csharp (CVE-2026-50646). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47305 |
|
Vulnerability in microsoft (CVE-2026-47305)
vulnerability in microsoft (CVE-2026-47305). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50661 |
|
Vulnerability in microsoft (CVE-2026-50661)
vulnerability in microsoft (CVE-2026-50661). Confidential information can be exposed externally.
|
| CVE-2026-34348 |
|
Vulnerability in microsoft (CVE-2026-34348)
vulnerability in microsoft (CVE-2026-34348). Confidential information can be exposed externally.
|
| CVE-2026-15618 |
|
Vulnerability in CVE-2026-15618 (CVE-2026-15618)
vulnerability in CVE-2026-15618 (CVE-2026-15618). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15528 |
|
Vulnerability in CVE-2026-15528 (CVE-2026-15528)
vulnerability in CVE-2026-15528 (CVE-2026-15528). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61437 |
|
Vulnerability in CVE-2026-61437 (CVE-2026-61437)
vulnerability in CVE-2026-61437 (CVE-2026-61437). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60086 |
|
Vulnerability in CVE-2026-60086 (CVE-2026-60086)
vulnerability in CVE-2026-60086 (CVE-2026-60086). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59854 |
|
Vulnerability in CVE-2026-59854 (CVE-2026-59854)
vulnerability in CVE-2026-59854 (CVE-2026-59854). Confidential information can be exposed externally. Exploitable via `POST /api/file/globalCopyFiles`.
|
| CVE-2026-0278 |
|
Vulnerability in paloaltonetworks (CVE-2026-0278)
vulnerability in paloaltonetworks (CVE-2026-0278). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59223 |
|
Vulnerability in open-webui (CVE-2026-59223)
vulnerability in open-webui (CVE-2026-59223). Risk of unauthorized operations or information disclosure. Exploitable via ``WEB_FETCH_FILTER_LIST``. Mitigation: upgrade to `0.10.0` or later.
|
| CVE-2026-59207 |
|
Vulnerability in n8n (CVE-2026-59207)
vulnerability in n8n (CVE-2026-59207). Confidential information can be exposed externally. Exploitable via ``agents``. Mitigation: upgrade to `2.27.4` or later.
|
| CVE-2026-14535 |
|
Vulnerability in deserialization (CVE-2026-14535)
vulnerability in deserialization (CVE-2026-14535). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14625 |
|
Vulnerability in CVE-2026-14625 (CVE-2026-14625)
vulnerability in CVE-2026-14625 (CVE-2026-14625). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-71373 |
|
Unsafe Deserialization in picklescan (CVE-2025-71373)
vulnerability in picklescan (CVE-2025-71373). Confidential information can be exposed externally. Exploitable via ``operator.methodcaller``. Mitigation: upgrade to `0.0.33` or later.
|
| CVE-2026-14440 |
|
Vulnerability in CVE-2026-14440 (CVE-2026-14440)
vulnerability in CVE-2026-14440 (CVE-2026-14440). Confidential information can be exposed externally.
|
| CVE-2026-14409 |
|
Vulnerability in google (CVE-2026-14409)
vulnerability in google (CVE-2026-14409). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49981 |
|
Vulnerability in twig/twig (CVE-2026-49981)
vulnerability in twig/twig (CVE-2026-49981). Confidential information can be exposed externally. Exploitable via ``Template``. Mitigation: upgrade to `3.27.0` or later.
|
| CVE-2026-14151 |
|
Vulnerability in google (CVE-2026-14151)
vulnerability in google (CVE-2026-14151). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14101 |
|
Privilege Escalation in google (CVE-2026-14101)
vulnerability in google (CVE-2026-14101). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14120 |
|
Vulnerability in google (CVE-2026-14120)
vulnerability in google (CVE-2026-14120). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14097 |
|
Vulnerability in google (CVE-2026-14097)
vulnerability in google (CVE-2026-14097). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14092 |
|
Vulnerability in google (CVE-2026-14092)
vulnerability in google (CVE-2026-14092). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14076 |
|
Vulnerability in google (CVE-2026-14076)
vulnerability in google (CVE-2026-14076). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14050 |
|
Vulnerability in google (CVE-2026-14050)
vulnerability in google (CVE-2026-14050). Confidential information can be exposed externally.
|
| CVE-2026-14058 |
|
Vulnerability in google (CVE-2026-14058)
vulnerability in google (CVE-2026-14058). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14037 |
|
Vulnerability in google (CVE-2026-14037)
vulnerability in google (CVE-2026-14037). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14059 |
|
Vulnerability in google (CVE-2026-14059)
vulnerability in google (CVE-2026-14059). Confidential information can be exposed externally.
|
| CVE-2026-14017 |
|
Vulnerability in google (CVE-2026-14017)
vulnerability in google (CVE-2026-14017). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13951 |
|
Vulnerability in google (CVE-2026-13951)
vulnerability in google (CVE-2026-13951). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13910 |
|
Vulnerability in google (CVE-2026-13910)
vulnerability in google (CVE-2026-13910). Confidential information can be exposed externally.
|
| CVE-2026-13909 |
|
Vulnerability in google (CVE-2026-13909)
vulnerability in google (CVE-2026-13909). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13904 |
|
Vulnerability in google (CVE-2026-13904)
vulnerability in google (CVE-2026-13904). Data can be tampered with by attackers.
|
| CVE-2026-13886 |
|
Vulnerability in google (CVE-2026-13886)
vulnerability in google (CVE-2026-13886). Data can be tampered with by attackers.
|
| CVE-2026-13876 |
|
Vulnerability in c (CVE-2026-13876)
vulnerability in c (CVE-2026-13876). Data can be tampered with by attackers.
|
| CVE-2026-13859 |
|
Vulnerability in google (CVE-2026-13859)
vulnerability in google (CVE-2026-13859). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13862 |
|
Vulnerability in google (CVE-2026-13862)
vulnerability in google (CVE-2026-13862). Confidential information can be exposed externally.
|
| CVE-2025-71352 |
|
Vulnerability in picklescan (CVE-2025-71352)
vulnerability in picklescan (CVE-2025-71352). Confidential information can be exposed externally. Mitigation: upgrade to `0.0.29` or later.
|
| CVE-2026-48808 |
|
Vulnerability in twig/twig (CVE-2026-48808)
vulnerability in twig/twig (CVE-2026-48808). Confidential information can be exposed externally. Exploitable via ``SourcePolicyInterface``. Mitigation: upgrade to `3.27.0` or later.
|
| CVE-2026-48807 |
|
Vulnerability in twig/twig (CVE-2026-48807)
vulnerability in twig/twig (CVE-2026-48807). Confidential information can be exposed externally. Exploitable via ``Traversable``. Mitigation: upgrade to `3.27.0` or later.
|
| CVE-2026-48806 |
|
Vulnerability in twig/twig (CVE-2026-48806)
vulnerability in twig/twig (CVE-2026-48806). Confidential information can be exposed externally. Exploitable via ``CheckToStringNode``. Mitigation: upgrade to `3.27.0` or later.
|
| CVE-2026-48805 |
|
Vulnerability in twig/twig (CVE-2026-48805)
vulnerability in twig/twig (CVE-2026-48805). Confidential information can be exposed externally. Exploitable via ``Environment``. Mitigation: upgrade to `3.27.0` or later.
|
| CVE-2026-13601 |
|
Vulnerability in redhat (CVE-2026-13601)
vulnerability in redhat (CVE-2026-13601). Confidential information can be exposed externally.
|