Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-81491 |
|
Path Traversal in path-traversal (CVE-2026-81491)
path traversal in path-traversal (CVE-2026-81491). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81421 |
|
A security flaw has been discovered in ddfourtwo sentry-selfhosted-mcp 0.4.0. The affected...
A security flaw has been discovered in ddfourtwo sentry-selfhosted-mcp 0.4.0. The affected...
|
| CVE-2026-47852 |
|
A local attacker on a multi-user host can pre-create the deterministic cache path and plant a...
A local attacker on a multi-user host can pre-create the deterministic cache path and plant a...
|
| CVE-2026-47851 |
|
Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError...
Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError...
|
| CVE-2026-81203 |
|
Vulnerability in sqli (CVE-2026-81203)
vulnerability in sqli (CVE-2026-81203). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47666 |
|
Cross-Site Scripting (XSS) in CVE-2026-47666 (CVE-2026-47666)
cross-site scripting in CVE-2026-47666 (CVE-2026-47666). Confidential information can be exposed externally.
|
| CVE-2026-47665 |
|
Cross-Site Scripting (XSS) in CVE-2026-47665 (CVE-2026-47665)
cross-site scripting in CVE-2026-47665 (CVE-2026-47665). Confidential information can be exposed externally.
|
| CVE-2026-81202 |
|
Authentication Bypass in CVE-2026-81202 (CVE-2026-81202)
authentication bypass in CVE-2026-81202 (CVE-2026-81202). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77611 |
|
Authorization Flaw in CVE-2026-77611 (CVE-2026-77611)
vulnerability in CVE-2026-77611 (CVE-2026-77611). Data can be tampered with by attackers.
|
| CVE-2026-77368 |
|
Vulnerability in CVE-2026-77368 (CVE-2026-77368)
vulnerability in CVE-2026-77368 (CVE-2026-77368). Data can be tampered with by attackers.
|
| CVE-2026-77317 |
|
Authorization Flaw in CVE-2026-77317 (CVE-2026-77317)
vulnerability in CVE-2026-77317 (CVE-2026-77317). Confidential information can be exposed externally.
|
| CVE-2026-75333 |
|
Path Traversal in path-traversal (CVE-2026-75333)
path traversal in path-traversal (CVE-2026-75333). Confidential information can be exposed externally.
|
| CVE-2026-75328 |
|
Path Traversal in CVE-2026-75328 (CVE-2026-75328)
path traversal in CVE-2026-75328 (CVE-2026-75328). Confidential information can be exposed externally.
|
| CVE-2026-61617 |
|
Vulnerability in CVE-2026-61617 (CVE-2026-61617)
vulnerability in CVE-2026-61617 (CVE-2026-61617). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43621 |
|
Authorization Flaw in CVE-2026-43621 (CVE-2026-43621)
vulnerability in CVE-2026-43621 (CVE-2026-43621). Confidential information can be exposed externally.
|
| CVE-2025-61478 |
|
Vulnerability in dos (CVE-2025-61478)
vulnerability in dos (CVE-2025-61478). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-51675 |
|
Vulnerability in dos (CVE-2025-51675)
vulnerability in dos (CVE-2025-51675). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61479 |
|
Vulnerability in dos (CVE-2025-61479)
vulnerability in dos (CVE-2025-61479). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61480 |
|
Vulnerability in dos (CVE-2025-61480)
vulnerability in dos (CVE-2025-61480). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61792 |
|
Path Traversal in path-traversal (CVE-2026-61792)
path traversal in path-traversal (CVE-2026-61792). Confidential information can be exposed externally.
|
| CVE-2026-55228 |
|
Vulnerability in Weblate (CVE-2026-55228)
vulnerability in Weblate (CVE-2026-55228). Confidential information can be exposed externally. Mitigation: upgrade to `2026.7` or later.
|
| CVE-2026-79938 |
|
Dell PowerProtect Cyber Recovery, versions prior to 20.3, contain an Improper Authentication...
Dell PowerProtect Cyber Recovery, versions prior to 20.3, contain an Improper Authentication...
|
| CVE-2026-77652 |
|
A heap-based buffer overflow vulnerability exists in the Dia diagram editor WPG file format...
A heap-based buffer overflow vulnerability exists in the Dia diagram editor WPG file format...
|
| CVE-2026-74770 |
|
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
|
| CVE-2026-68863 |
|
Dell PowerProtect One, versions 20.1.0.0 and below, contain a Stack-based Buffer Overflow...
Dell PowerProtect One, versions 20.1.0.0 and below, contain a Stack-based Buffer Overflow...
|
| CVE-2026-68861 |
|
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special...
|
| CVE-2026-26449 |
|
Vulnerability in CVE-2026-26449 (CVE-2026-26449)
vulnerability in CVE-2026-26449 (CVE-2026-26449). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26447 |
|
Use-After-Free in dos (CVE-2026-26447)
vulnerability in dos (CVE-2026-26447). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26446 |
|
Vulnerability in dos (CVE-2026-26446)
vulnerability in dos (CVE-2026-26446). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71171 |
|
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
|
| CVE-2026-36851 |
|
Path Traversal in path-traversal (CVE-2026-36851)
path traversal in path-traversal (CVE-2026-36851). Confidential information can be exposed externally.
|
| CVE-2025-61164 |
|
Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint.
Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint.
|
| CVE-2025-61162 |
|
Vulnerability in CVE-2025-61162 (CVE-2025-61162)
vulnerability in CVE-2025-61162 (CVE-2025-61162). Data can be tampered with by attackers.
|
| CVE-2026-80348 |
|
Vulnerability in CVE-2026-80348 (CVE-2026-80348)
vulnerability in CVE-2026-80348 (CVE-2026-80348). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58474 |
|
Code Injection in CVE-2026-58474 (CVE-2026-58474)
code injection in CVE-2026-58474 (CVE-2026-58474). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47841 |
|
Vulnerability in CVE-2026-47841 (CVE-2026-47841)
vulnerability in CVE-2026-47841 (CVE-2026-47841). Confidential information can be exposed externally.
|
| CVE-2026-47836 |
|
Vulnerability in CVE-2026-47836 (CVE-2026-47836)
vulnerability in CVE-2026-47836 (CVE-2026-47836). Confidential information can be exposed externally.
|
| CVE-2025-56798 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-56798)
vulnerability in csrf (CVE-2025-56798). Successful exploitation can lead to full system takeover.
|
| CVE-2026-81036 |
|
Open Redirect in CVE-2026-81036 (CVE-2026-81036)
vulnerability in CVE-2026-81036 (CVE-2026-81036). Confidential information can be exposed externally.
|
| CVE-2026-81035 |
|
Vulnerability in CVE-2026-81035 (CVE-2026-81035)
vulnerability in CVE-2026-81035 (CVE-2026-81035). Data can be tampered with by attackers.
|
| CVE-2026-81031 |
|
Vulnerability in CVE-2026-81031 (CVE-2026-81031)
vulnerability in CVE-2026-81031 (CVE-2026-81031). Successful exploitation can lead to full system takeover.
|
| CVE-2026-81029 |
|
Open Redirect in CVE-2026-81029 (CVE-2026-81029)
vulnerability in CVE-2026-81029 (CVE-2026-81029). Confidential information can be exposed externally.
|
| CVE-2026-81027 |
|
Vulnerability in c (CVE-2026-81027)
vulnerability in c (CVE-2026-81027). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-80427 |
|
Vulnerability in CVE-2026-80427 (CVE-2026-80427)
vulnerability in CVE-2026-80427 (CVE-2026-80427). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80426 |
|
Cross-Site Scripting (XSS) in react (CVE-2026-80426)
cross-site scripting in react (CVE-2026-80426). Confidential information can be exposed externally.
|
| CVE-2026-80588 |
|
Vulnerability in CVE-2026-80588 (CVE-2026-80588)
vulnerability in CVE-2026-80588 (CVE-2026-80588). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-80584 |
|
Vulnerability in CVE-2026-80584 (CVE-2026-80584)
vulnerability in CVE-2026-80584 (CVE-2026-80584). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80583 |
|
Vulnerability in CVE-2026-80583 (CVE-2026-80583)
vulnerability in CVE-2026-80583 (CVE-2026-80583). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80582 |
|
Vulnerability in CVE-2026-80582 (CVE-2026-80582)
vulnerability in CVE-2026-80582 (CVE-2026-80582). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80580 |
|
Vulnerability in CVE-2026-80580 (CVE-2026-80580)
vulnerability in CVE-2026-80580 (CVE-2026-80580). Successful exploitation can lead to full system takeover.
|