Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-37751 |
|
OS Command Injection in CVE-2026-37751 (CVE-2026-37751)
OS command injection in CVE-2026-37751 (CVE-2026-37751). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82082 |
|
OS Command Injection in CVE-2026-82082 (CVE-2026-82082)
OS command injection in CVE-2026-82082 (CVE-2026-82082). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57499 |
|
Vulnerability in CVE-2026-57499 (CVE-2026-57499)
vulnerability in CVE-2026-57499 (CVE-2026-57499). Successful exploitation can lead to full system takeover. Exploitable via ``ip_address``. Mitigation: upgrade to `2.2.2` or later.
|
| CVE-2026-74233 |
|
OS Command Injection in c (CVE-2026-74233)
OS command injection in c (CVE-2026-74233). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70419 |
|
OS Command Injection in CVE-2026-70419 (CVE-2026-70419)
OS command injection in CVE-2026-70419 (CVE-2026-70419). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80138 |
|
OS Command Injection in CVE-2026-80138 (CVE-2026-80138)
OS command injection in CVE-2026-80138 (CVE-2026-80138). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45018 |
|
OS Command Injection in chainlit (CVE-2026-45018)
OS command injection in chainlit (CVE-2026-45018). Successful exploitation can lead to full system takeover. Exploitable via `POST /mcp`. Mitigation: upgrade to `2.12.0` or later.
|
| CVE-2026-76197 |
|
OS Command Injection in CVE-2026-76197 (CVE-2026-76197)
OS command injection in CVE-2026-76197 (CVE-2026-76197). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76195 |
|
OS Command Injection in CVE-2026-76195 (CVE-2026-76195)
OS command injection in CVE-2026-76195 (CVE-2026-76195). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63586 |
|
OS Command Injection in CVE-2026-63586 (CVE-2026-63586)
OS command injection in CVE-2026-63586 (CVE-2026-63586). Successful exploitation can lead to full system takeover. Exploitable via `Authorization header`.
|
| CVE-2026-71921 |
|
OS Command Injection in CVE-2026-71921 (CVE-2026-71921)
OS command injection in CVE-2026-71921 (CVE-2026-71921). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71914 |
|
OS Command Injection in CVE-2026-71914 (CVE-2026-71914)
OS command injection in CVE-2026-71914 (CVE-2026-71914). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78211 |
|
OS Command Injection in CVE-2026-78211 (CVE-2026-78211)
OS command injection in CVE-2026-78211 (CVE-2026-78211). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18835 |
|
OS Command Injection in ibm (CVE-2026-18835)
OS command injection in ibm (CVE-2026-18835). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18482 |
|
OS Command Injection in CVE-2026-18482 (CVE-2026-18482)
OS command injection in CVE-2026-18482 (CVE-2026-18482). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16882 |
|
OS Command Injection in ibm (CVE-2026-16882)
OS command injection in ibm (CVE-2026-16882). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53545 |
|
OS Command Injection in CVE-2026-53545 (CVE-2026-53545)
OS command injection in CVE-2026-53545 (CVE-2026-53545). Successful exploitation can lead to full system takeover. Exploitable via `DELETE /ssh/tunnel/disconnect/`.
|
| CVE-2026-16816 |
|
OS Command Injection in ibm (CVE-2026-16816)
OS command injection in ibm (CVE-2026-16816). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15068 |
|
OS Command Injection in ibm (CVE-2026-15068)
OS command injection in ibm (CVE-2026-15068). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75094 |
|
Command Injection in CVE-2026-75094 (CVE-2026-75094)
command injection in CVE-2026-75094 (CVE-2026-75094). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67965 |
|
OS Command Injection in CVE-2026-67965 (CVE-2026-67965)
OS command injection in CVE-2026-67965 (CVE-2026-67965). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71472 |
|
OS Command Injection in CVE-2026-71472 (CVE-2026-71472)
OS command injection in CVE-2026-71472 (CVE-2026-71472). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17186 |
|
OS Command Injection in ibm (CVE-2026-17186)
OS command injection in ibm (CVE-2026-17186). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19682 |
|
OS Command Injection in tenable (CVE-2026-19682)
OS command injection in tenable (CVE-2026-19682). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19681 |
|
OS Command Injection in tenable (CVE-2026-19681)
OS command injection in tenable (CVE-2026-19681). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19188 |
|
OS Command Injection in cisa (CVE-2026-19188)
OS command injection in cisa (CVE-2026-19188). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49819 |
|
OS Command Injection in c (CVE-2026-49819)
OS command injection in c (CVE-2026-49819). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/upsnap/init-superuser`.
|
| CVE-2026-49481 |
|
OS Command Injection in c (CVE-2026-49481)
OS command injection in c (CVE-2026-49481). Confidential information can be exposed externally.
|
| CVE-2026-63298 |
|
OS Command Injection in CVE-2026-63298 (CVE-2026-63298)
OS command injection in CVE-2026-63298 (CVE-2026-63298). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16956 |
|
OS Command Injection in ibm (CVE-2026-16956)
OS command injection in ibm (CVE-2026-16956). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73294 |
|
OS Command Injection in CVE-2026-73294 (CVE-2026-73294)
OS command injection in CVE-2026-73294 (CVE-2026-73294). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/project/{id}/repositories`.
|
| CVE-2026-73263 |
|
OS Command Injection in CVE-2026-73263 (CVE-2026-73263)
OS command injection in CVE-2026-73263 (CVE-2026-73263). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/v1/providers/{id}/connection`.
|
| CVE-2026-48362 |
|
OS Command Injection in adobe (CVE-2026-48362)
OS command injection in adobe (CVE-2026-48362). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72603 |
|
OS Command Injection in CVE-2026-72603 (CVE-2026-72603)
OS command injection in CVE-2026-72603 (CVE-2026-72603). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72902 |
|
OS Command Injection in CVE-2026-72902 (CVE-2026-72902)
OS command injection in CVE-2026-72902 (CVE-2026-72902). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72901 |
|
OS Command Injection in CVE-2026-72901 (CVE-2026-72901)
OS command injection in CVE-2026-72901 (CVE-2026-72901). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72882 |
|
OS Command Injection in CVE-2026-72882 (CVE-2026-72882)
OS command injection in CVE-2026-72882 (CVE-2026-72882). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72880 |
|
OS Command Injection in CVE-2026-72880 (CVE-2026-72880)
OS command injection in CVE-2026-72880 (CVE-2026-72880). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.29.13` or later.
|
| CVE-2026-72878 |
|
OS Command Injection in c (CVE-2026-72878)
OS command injection in c (CVE-2026-72878). Confidential information can be exposed externally. Mitigation: upgrade to `0.29.13` or later.
|
| CVE-2026-72877 |
|
OS Command Injection in CVE-2026-72877 (CVE-2026-72877)
OS command injection in CVE-2026-72877 (CVE-2026-72877). Confidential information can be exposed externally.
|
| CVE-2026-72876 |
|
OS Command Injection in CVE-2026-72876 (CVE-2026-72876)
OS command injection in CVE-2026-72876 (CVE-2026-72876). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72872 |
|
OS Command Injection in CVE-2026-72872 (CVE-2026-72872)
OS command injection in CVE-2026-72872 (CVE-2026-72872). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72868 |
|
OS Command Injection in CVE-2026-72868 (CVE-2026-72868)
OS command injection in CVE-2026-72868 (CVE-2026-72868). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72865 |
|
OS Command Injection in c (CVE-2026-72865)
OS command injection in c (CVE-2026-72865). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72867 |
|
Vulnerability in CVE-2026-72867 (CVE-2026-72867)
vulnerability in CVE-2026-72867 (CVE-2026-72867). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72869 |
|
Command Injection in CVE-2026-72869 (CVE-2026-72869)
command injection in CVE-2026-72869 (CVE-2026-72869). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72862 |
|
OS Command Injection in CVE-2026-72862 (CVE-2026-72862)
OS command injection in CVE-2026-72862 (CVE-2026-72862). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.29.13` or later.
|
| CVE-2026-72738 |
|
OS Command Injection in CVE-2026-72738 (CVE-2026-72738)
OS command injection in CVE-2026-72738 (CVE-2026-72738). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72740 |
|
OS Command Injection in CVE-2026-72740 (CVE-2026-72740)
OS command injection in CVE-2026-72740 (CVE-2026-72740). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72733 |
|
OS Command Injection in CVE-2026-72733 (CVE-2026-72733)
OS command injection in CVE-2026-72733 (CVE-2026-72733). Successful exploitation can lead to full system takeover.
|