Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2025-45059 |
|
Vulnerability in dos (CVE-2025-45059)
vulnerability in dos (CVE-2025-45059). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-30075 |
|
Vulnerability in dos (CVE-2026-30075)
vulnerability in dos (CVE-2026-30075). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20889 |
|
Vulnerability in libraw (CVE-2026-20889)
vulnerability in libraw (CVE-2026-20889). Successful exploitation can lead to full system takeover.
|
| CVE-2026-20911 |
|
Vulnerability in libraw (CVE-2026-20911)
vulnerability in libraw (CVE-2026-20911). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24660 |
|
Vulnerability in libraw (CVE-2026-24660)
vulnerability in libraw (CVE-2026-24660). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5734 |
|
Out-of-Bounds Write in mozilla (CVE-2026-5734)
out-of-bounds write in mozilla (CVE-2026-5734). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5566 |
|
Buffer Overflow in CVE-2026-5566 (CVE-2026-5566)
vulnerability in CVE-2026-5566 (CVE-2026-5566). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5567 |
|
Buffer Overflow in tenda (CVE-2026-5567)
vulnerability in tenda (CVE-2026-5567). Successful exploitation can lead to full system takeover.
|
| CVE-2018-25237 |
|
Vulnerability in dos (CVE-2018-25237)
vulnerability in dos (CVE-2018-25237). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34124 |
|
Vulnerability in tp-link (CVE-2026-34124)
vulnerability in tp-link (CVE-2026-34124). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34875 |
|
Vulnerability in trustedfirmware (CVE-2026-34875)
vulnerability in trustedfirmware (CVE-2026-34875). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28857 |
|
Out-of-Bounds Read in apple (CVE-2026-28857)
vulnerability in apple (CVE-2026-28857). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28859 |
|
Out-of-Bounds Read in apple (CVE-2026-28859)
vulnerability in apple (CVE-2026-28859). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20664 |
|
Out-of-Bounds Write in apple (CVE-2026-20664)
out-of-bounds write in apple (CVE-2026-20664). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4729 |
|
Vulnerability in mozilla (CVE-2026-4729)
vulnerability in mozilla (CVE-2026-4729). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27654 |
|
Vulnerability in nginx (CVE-2026-27654)
vulnerability in nginx (CVE-2026-27654). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.28.3, 1.29.7` or later.
|
| CVE-2026-4720 |
|
Vulnerability in mozilla (CVE-2026-4720)
vulnerability in mozilla (CVE-2026-4720). Successful exploitation can lead to full system takeover.
|
| CVE-2026-4721 |
|
Vulnerability in mozilla (CVE-2026-4721)
vulnerability in mozilla (CVE-2026-4721). Successful exploitation can lead to full system takeover.
|
| CVE-2026-4687 |
|
Vulnerability in mozilla (CVE-2026-4687)
vulnerability in mozilla (CVE-2026-4687). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4690 |
|
Vulnerability in mozilla (CVE-2026-4690)
vulnerability in mozilla (CVE-2026-4690). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4689 |
|
Vulnerability in mozilla (CVE-2026-4689)
vulnerability in mozilla (CVE-2026-4689). Successful exploitation can lead to full system takeover.
|
| CVE-2025-43520 KEV |
|
[KEV] Vulnerability in Apple multiple-products (CVE-2025-43520)
vulnerability in Apple multiple-products (CVE-2025-43520). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-31277 KEV |
|
[KEV] Buffer Overflow in Apple multiple-products (CVE-2025-31277)
vulnerability in Apple multiple-products (CVE-2025-31277). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2025-69720 |
|
Vulnerability in c (CVE-2025-69720)
vulnerability in c (CVE-2025-69720). Confidential information can be exposed externally.
|
| CVE-2026-27459 |
|
Vulnerability in pyopenssl (CVE-2026-27459)
vulnerability in pyopenssl (CVE-2026-27459). Successful exploitation can lead to full system takeover. Exploitable via ``set_cookie_generate_callback``. Mitigation: upgrade to `26.0.0` or later.
|
| CVE-2026-4177 |
|
Vulnerability in toddr (CVE-2026-4177)
vulnerability in toddr (CVE-2026-4177). Confidential information can be exposed externally.
|
| CVE-2026-3081 |
|
Vulnerability in gstreamer (CVE-2026-3081)
vulnerability in gstreamer (CVE-2026-3081). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3082 |
|
Vulnerability in gstreamer (CVE-2026-3082)
vulnerability in gstreamer (CVE-2026-3082). Successful exploitation can lead to full system takeover.
|
| CVE-2026-2920 |
|
Vulnerability in gstreamer (CVE-2026-2920)
vulnerability in gstreamer (CVE-2026-2920). Successful exploitation can lead to full system takeover.
|
| CVE-2025-71263 |
|
Vulnerability in opengroup (CVE-2025-71263)
vulnerability in opengroup (CVE-2025-71263). Successful exploitation can lead to full system takeover.
|
| CVE-2023-43010 |
|
Out-of-Bounds Write in apple (CVE-2023-43010)
out-of-bounds write in apple (CVE-2023-43010). Successful exploitation can lead to full system takeover.
|
| CVE-2026-20100 |
|
Vulnerability in dos (CVE-2026-20100)
vulnerability in dos (CVE-2026-20100). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-0797 |
|
Vulnerability in gimp (CVE-2026-0797)
vulnerability in gimp (CVE-2026-0797). Successful exploitation can lead to full system takeover.
|
| CVE-2026-2007 |
|
Vulnerability in postgresql (CVE-2026-2007)
vulnerability in postgresql (CVE-2026-2007). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `18.2.0` or later.
|
| CVE-2026-2005 |
|
Vulnerability in postgresql (CVE-2026-2005)
vulnerability in postgresql (CVE-2026-2005). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.21.0, 15.16.0, 16.12.0, 17.8.0, 18.2.0` or later.
|
| CVE-2020-37209 |
|
Vulnerability in dos (CVE-2020-37209)
vulnerability in dos (CVE-2020-37209). Confidential information can be exposed externally.
|
| CVE-2020-37210 |
|
SpotIE 2.9.5 contains a denial of service vulnerability in the registration key input that allows attackers to crash the application. Attackers can generate a 1000-character buffer payload and paste i...
SpotIE 2.9.5 contains a denial of service vulnerability in the registration key input that allows attackers to crash the application. Attackers can generate a 1000-character buffer payload and paste it into the 'Key' field to trigger an application crash.
|
| CVE-2020-37211 |
|
SpotIM 2.2 contains a denial of service vulnerability that allows attackers to crash the application by inputting a large buffer in the registration name field. Attackers can generate a 1000-character...
SpotIM 2.2 contains a denial of service vulnerability that allows attackers to crash the application by inputting a large buffer in the registration name field. Attackers can generate a 1000-character payload and paste it into the 'Name' field to trigger an application crash.
|
| CVE-2020-37212 |
|
SpotMSN 2.4.6 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste...
SpotMSN 2.4.6 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste it into the 'Name' field to trigger an application crash.
|
| CVE-2020-37204 |
|
Vulnerability in dos (CVE-2020-37204)
vulnerability in dos (CVE-2020-37204). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37205 |
|
Vulnerability in dos (CVE-2020-37205)
vulnerability in dos (CVE-2020-37205). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37206 |
|
Vulnerability in dos (CVE-2020-37206)
vulnerability in dos (CVE-2020-37206). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37207 |
|
Vulnerability in dos (CVE-2020-37207)
vulnerability in dos (CVE-2020-37207). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37196 |
|
Vulnerability in dos (CVE-2020-37196)
vulnerability in dos (CVE-2020-37196). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37197 |
|
Vulnerability in dos (CVE-2020-37197)
vulnerability in dos (CVE-2020-37197). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37199 |
|
Vulnerability in dos (CVE-2020-37199)
vulnerability in dos (CVE-2020-37199). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37201 |
|
Vulnerability in nsasoft (CVE-2020-37201)
vulnerability in nsasoft (CVE-2020-37201). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-25506 |
|
Out-of-Bounds Write in opensuse (CVE-2026-25506)
out-of-bounds write in opensuse (CVE-2026-25506). Confidential information can be exposed externally. Mitigation: upgrade to `0.5.18` or later.
|
| CVE-2020-37131 |
|
Vulnerability in dos (CVE-2020-37131)
vulnerability in dos (CVE-2020-37131). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-15467 |
|
Out-of-Bounds Write in cisa (CVE-2025-15467)
out-of-bounds write in cisa (CVE-2025-15467). Successful exploitation can lead to full system takeover.
|