Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-48122 |
|
OS Command Injection in CVE-2026-48122 (CVE-2026-48122)
OS command injection in CVE-2026-48122 (CVE-2026-48122). Risk of unauthorized operations or information disclosure. Exploitable via ``Gemfile``.
|
| CVE-2026-19243 |
|
Command Injection in CVE-2026-19243 (CVE-2026-19243)
command injection in CVE-2026-19243 (CVE-2026-19243). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48098 |
|
OS Command Injection in CVE-2026-48098 (CVE-2026-48098)
OS command injection in CVE-2026-48098 (CVE-2026-48098). Confidential information can be exposed externally. Exploitable via ``sudo``.
|
| CVE-2026-48097 |
|
OS Command Injection in CVE-2026-48097 (CVE-2026-48097)
OS command injection in CVE-2026-48097 (CVE-2026-48097). Successful exploitation can lead to full system takeover. Exploitable via ``PATH``.
|
| CVE-2026-15816 |
|
OS Command Injection in CVE-2026-15816 (CVE-2026-15816)
OS command injection in CVE-2026-15816 (CVE-2026-15816). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63725 |
|
OS Command Injection in apache (CVE-2026-63725)
OS command injection in apache (CVE-2026-63725). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15733 |
|
OS Command Injection in CVE-2026-15733 (CVE-2026-15733)
OS command injection in CVE-2026-15733 (CVE-2026-15733). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67434 |
|
OS Command Injection in squizlabs/php_codesniffer (CVE-2026-67434)
OS command injection in squizlabs/php_codesniffer (CVE-2026-67434). Risk of unauthorized operations or information disclosure. Exploitable via ``Gitblame``. Mitigation: upgrade to `4.0.2` or later.
|
| CVE-2026-67261 |
|
OS Command Injection in dell (CVE-2026-67261)
OS command injection in dell (CVE-2026-67261). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53975 |
|
OS Command Injection in CVE-2026-53975 (CVE-2026-53975)
OS command injection in CVE-2026-53975 (CVE-2026-53975). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19036 |
|
Command Injection in CVE-2026-19036 (CVE-2026-19036)
command injection in CVE-2026-19036 (CVE-2026-19036). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19035 |
|
Command Injection in CVE-2026-19035 (CVE-2026-19035)
command injection in CVE-2026-19035 (CVE-2026-19035). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19034 |
|
Command Injection in CVE-2026-19034 (CVE-2026-19034)
command injection in CVE-2026-19034 (CVE-2026-19034). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71312 |
|
OS Command Injection in github.com/rclone/rclone (CVE-2026-71312)
OS command injection in github.com/rclone/rclone (CVE-2026-71312). Successful exploitation can lead to full system takeover. Exploitable via ``a0c09f1381ae93e2a9a33c529d170186c61ad058``. Mitigation: upgrade to `1.75.0` or later.
|
| CVE-2026-66297 |
|
OS Command Injection in livebook (CVE-2026-66297)
OS command injection in livebook (CVE-2026-66297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17625 |
|
OS Command Injection in langflow (CVE-2026-17625)
OS command injection in langflow (CVE-2026-17625). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17623 |
|
OS Command Injection in langflow (CVE-2026-17623)
OS command injection in langflow (CVE-2026-17623). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70611 |
|
OS Command Injection in electron (CVE-2026-70611)
OS command injection in electron (CVE-2026-70611). Confidential information can be exposed externally. Mitigation: upgrade to `42.0.0-beta.3` or later.
|
| CVE-2026-13477 |
|
OS Command Injection in ibm (CVE-2026-13477)
OS command injection in ibm (CVE-2026-13477). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71284 |
|
OS Command Injection in CVE-2026-71284 (CVE-2026-71284)
OS command injection in CVE-2026-71284 (CVE-2026-71284). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16022 |
|
OS Command Injection in CVE-2026-16022 (CVE-2026-16022)
OS command injection in CVE-2026-16022 (CVE-2026-16022). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71243 |
|
OS Command Injection in CVE-2026-71243 (CVE-2026-71243)
OS command injection in CVE-2026-71243 (CVE-2026-71243). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70375 |
|
OS Command Injection in CVE-2026-70375 (CVE-2026-70375)
OS command injection in CVE-2026-70375 (CVE-2026-70375). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70374 |
|
OS Command Injection in CVE-2026-70374 (CVE-2026-70374)
OS command injection in CVE-2026-70374 (CVE-2026-70374). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/{project}/{environment}/media/new.`.
|
| CVE-2026-18900 |
|
Command Injection in CVE-2026-18900 (CVE-2026-18900)
command injection in CVE-2026-18900 (CVE-2026-18900). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66902 |
|
OS Command Injection in c (CVE-2026-66902)
OS command injection in c (CVE-2026-66902). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16793 |
|
Vulnerability in CVE-2026-16793 (CVE-2026-16793)
vulnerability in CVE-2026-16793 (CVE-2026-16793). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6837 |
|
OS Command Injection in CVE-2026-6837 (CVE-2026-6837)
OS command injection in CVE-2026-6837 (CVE-2026-6837). Successful exploitation can lead to full system takeover.
|
| CVE-2026-52102 |
|
OS Command Injection in CVE-2026-52102 (CVE-2026-52102)
OS command injection in CVE-2026-52102 (CVE-2026-52102). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51190 |
|
OS Command Injection in CVE-2026-51190 (CVE-2026-51190)
OS command injection in CVE-2026-51190 (CVE-2026-51190). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67599 |
|
OS Command Injection in CVE-2026-67599 (CVE-2026-67599)
OS command injection in CVE-2026-67599 (CVE-2026-67599). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18641 |
|
Command Injection in CVE-2026-18641 (CVE-2026-18641)
command injection in CVE-2026-18641 (CVE-2026-18641). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69096 |
|
OS Command Injection in CVE-2026-69096 (CVE-2026-69096)
OS command injection in CVE-2026-69096 (CVE-2026-69096). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67608 |
|
OS Command Injection in apache (CVE-2026-67608)
OS command injection in apache (CVE-2026-67608). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18590 |
|
Command Injection in CVE-2026-18590 (CVE-2026-18590)
command injection in CVE-2026-18590 (CVE-2026-18590). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18587 |
|
Command Injection in CVE-2026-18587 (CVE-2026-18587)
command injection in CVE-2026-18587 (CVE-2026-18587). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67324 |
|
OS Command Injection in CVE-2026-67324 (CVE-2026-67324)
OS command injection in CVE-2026-67324 (CVE-2026-67324). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.1.51` or later.
|
| CVE-2026-67325 |
|
OS Command Injection in CVE-2026-67325 (CVE-2026-67325)
OS command injection in CVE-2026-67325 (CVE-2026-67325). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67308 |
|
OS Command Injection in CVE-2026-67308 (CVE-2026-67308)
OS command injection in CVE-2026-67308 (CVE-2026-67308). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9044 |
|
OS Command Injection in tp-link (CVE-2026-9044)
OS command injection in tp-link (CVE-2026-9044). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17566 |
|
OS Command Injection in pgadmin (CVE-2026-17566)
OS command injection in pgadmin (CVE-2026-17566). Successful exploitation can lead to full system takeover. Exploitable via `POST /import_export/job/`.
|
| CVE-2026-17347 |
|
The MASTER_PASSWORD_HOOK setting, introduced in pgAdmin 4 7.2, lets an administrator configure an...
The MASTER_PASSWORD_HOOK setting, introduced in pgAdmin 4 7.2, lets an administrator configure an...
|
| CVE-2026-16843 |
|
OS Command Injection in CVE-2026-16843 (CVE-2026-16843)
OS command injection in CVE-2026-16843 (CVE-2026-16843). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12943 |
|
OS Command Injection in ibm (CVE-2026-12943)
OS command injection in ibm (CVE-2026-12943). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12940 |
|
OS Command Injection in langflow (CVE-2026-12940)
OS command injection in langflow (CVE-2026-12940). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14522 |
|
OS Command Injection in ibm (CVE-2026-14522)
OS command injection in ibm (CVE-2026-14522). Successful exploitation can lead to full system takeover.
|
| CVE-2026-22621 |
|
OS Command Injection in CVE-2026-22621 (CVE-2026-22621)
OS command injection in CVE-2026-22621 (CVE-2026-22621). Confidential information can be exposed externally.
|
| CVE-2026-22622 |
|
OS Command Injection in CVE-2026-22622 (CVE-2026-22622)
OS command injection in CVE-2026-22622 (CVE-2026-22622). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44106 |
|
A privilege escalation vulnerability in the init-script for user-applications allows a low...
A privilege escalation vulnerability in the init-script for user-applications allows a low...
|
| CVE-2026-44099 |
|
A privilege escalation vulnerability in the system configuration allows a low-privileged local...
A privilege escalation vulnerability in the system configuration allows a low-privileged local...
|