Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: cwe Clear
ID Title
CVE-2026-13206 OS Command Injection in CVE-2026-13206 (CVE-2026-13206)
OS command injection in CVE-2026-13206 (CVE-2026-13206). Successful exploitation can lead to full system takeover.
CVE-2026-72761 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-72761)
SSRF in ssrf (CVE-2026-72761). Risk of unauthorized operations or information disclosure. Exploitable via ``ip.is_global``.
CVE-2026-15060 Vulnerability in c (CVE-2026-15060)
vulnerability in c (CVE-2026-15060). Risk of unauthorized operations or information disclosure. Exploitable via ``polkit``.
CVE-2026-16742 Privilege Escalation in privilege-escalation (CVE-2026-16742)
vulnerability in privilege-escalation (CVE-2026-16742). Successful exploitation can lead to full system takeover.
CVE-2026-15059 Path Traversal in path-traversal (CVE-2026-15059)
path traversal in path-traversal (CVE-2026-15059). Risk of unauthorized operations or information disclosure.
CVE-2026-64941 Open Redirect in CVE-2026-64941 (CVE-2026-64941)
vulnerability in CVE-2026-64941 (CVE-2026-64941). Risk of unauthorized operations or information disclosure.
CVE-2026-59088 Vulnerability in dos (CVE-2026-59088)
vulnerability in dos (CVE-2026-59088). Risk of unauthorized operations or information disclosure.
CVE-2026-72589 OS Command Injection in CVE-2026-72589 (CVE-2026-72589)
OS command injection in CVE-2026-72589 (CVE-2026-72589). Successful exploitation can lead to full system takeover. Exploitable via `POST /import`.
CVE-2026-72593 Vulnerability in CVE-2026-72593 (CVE-2026-72593)
vulnerability in CVE-2026-72593 (CVE-2026-72593). Successful exploitation can lead to full system takeover.
CVE-2026-72592 Unrestricted File Upload in CVE-2026-72592 (CVE-2026-72592)
vulnerability in CVE-2026-72592 (CVE-2026-72592). Successful exploitation can lead to full system takeover.
CVE-2026-72594 Cross-Site Scripting (XSS) in CVE-2026-72594 (CVE-2026-72594)
cross-site scripting in CVE-2026-72594 (CVE-2026-72594). Confidential information can be exposed externally.
CVE-2026-72591 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-72591)
SSRF in ssrf (CVE-2026-72591). Confidential information can be exposed externally. Exploitable via `PATCH /apis/web/v1/album/{id}/image`.
CVE-2026-72590 Vulnerability in CVE-2026-72590 (CVE-2026-72590)
vulnerability in CVE-2026-72590 (CVE-2026-72590). Successful exploitation can lead to full system takeover.
CVE-2026-72587 Vulnerability in CVE-2026-72587 (CVE-2026-72587)
vulnerability in CVE-2026-72587 (CVE-2026-72587). Risk of unauthorized operations or information disclosure. Exploitable via `GET /_instatic/hole/`.
CVE-2026-72583 Cross-Site Scripting (XSS) in CVE-2026-72583 (CVE-2026-72583)
cross-site scripting in CVE-2026-72583 (CVE-2026-72583). Risk of unauthorized operations or information disclosure.
CVE-2026-72582 Vulnerability in CVE-2026-72582 (CVE-2026-72582)
vulnerability in CVE-2026-72582 (CVE-2026-72582). Risk of unauthorized operations or information disclosure.
CVE-2026-72586 Vulnerability in CVE-2026-72586 (CVE-2026-72586)
vulnerability in CVE-2026-72586 (CVE-2026-72586). Confidential information can be exposed externally.
CVE-2026-72584 Vulnerability in CVE-2026-72584 (CVE-2026-72584)
vulnerability in CVE-2026-72584 (CVE-2026-72584). Confidential information can be exposed externally.
CVE-2026-72581 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-72581)
SSRF in ssrf (CVE-2026-72581). Confidential information can be exposed externally.
CVE-2026-72585 Vulnerability in CVE-2026-72585 (CVE-2026-72585)
vulnerability in CVE-2026-72585 (CVE-2026-72585). Data can be tampered with by attackers.
CVE-2026-72575 Vulnerability in CVE-2026-72575 (CVE-2026-72575)
vulnerability in CVE-2026-72575 (CVE-2026-72575). Confidential information can be exposed externally.
CVE-2026-72573 OS Command Injection in CVE-2026-72573 (CVE-2026-72573)
OS command injection in CVE-2026-72573 (CVE-2026-72573). Successful exploitation can lead to full system takeover.
CVE-2026-72579 OS Command Injection in CVE-2026-72579 (CVE-2026-72579)
OS command injection in CVE-2026-72579 (CVE-2026-72579). Successful exploitation can lead to full system takeover.
CVE-2026-72580 OS Command Injection in CVE-2026-72580 (CVE-2026-72580)
OS command injection in CVE-2026-72580 (CVE-2026-72580). Successful exploitation can lead to full system takeover.
CVE-2026-72578 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-72578)
vulnerability in csrf (CVE-2026-72578). Successful exploitation can lead to full system takeover.
CVE-2026-72576 Cross-Site Scripting (XSS) in CVE-2026-72576 (CVE-2026-72576)
cross-site scripting in CVE-2026-72576 (CVE-2026-72576). Risk of unauthorized operations or information disclosure.
CVE-2026-72577 Vulnerability in flask (CVE-2026-72577)
vulnerability in flask (CVE-2026-72577). Successful exploitation can lead to full system takeover.
CVE-2026-72566 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-72566)
SSRF in ssrf (CVE-2026-72566). Confidential information can be exposed externally.
CVE-2026-72567 Path Traversal in path-traversal (CVE-2026-72567)
path traversal in path-traversal (CVE-2026-72567). Successful exploitation can lead to full system takeover.
CVE-2026-72569 Path Traversal in path-traversal (CVE-2026-72569)
path traversal in path-traversal (CVE-2026-72569). Data can be tampered with by attackers.
CVE-2026-72571 Path Traversal in path-traversal (CVE-2026-72571)
path traversal in path-traversal (CVE-2026-72571). Confidential information can be exposed externally.
CVE-2026-72572 Path Traversal in path-traversal (CVE-2026-72572)
path traversal in path-traversal (CVE-2026-72572). Confidential information can be exposed externally.
CVE-2026-72568 Out-of-Bounds Read in dos (CVE-2026-72568)
vulnerability in dos (CVE-2026-72568). Risk of unauthorized operations or information disclosure.
CVE-2026-72570 Cross-Site Scripting (XSS) in CVE-2026-72570 (CVE-2026-72570)
cross-site scripting in CVE-2026-72570 (CVE-2026-72570). Risk of unauthorized operations or information disclosure.
CVE-2026-72565 SQL Injection in sqli (CVE-2026-72565)
SQL injection in sqli (CVE-2026-72565). Successful exploitation can lead to full system takeover.
CVE-2026-66642 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-66642)
vulnerability in csrf (CVE-2026-66642). Risk of unauthorized operations or information disclosure.
CVE-2026-71391 Vulnerability in c (CVE-2026-71391)
vulnerability in c (CVE-2026-71391). Risk of unauthorized operations or information disclosure.
CVE-2026-71392 Vulnerability in c (CVE-2026-71392)
vulnerability in c (CVE-2026-71392). Risk of unauthorized operations or information disclosure.
CVE-2026-71393 Vulnerability in c (CVE-2026-71393)
vulnerability in c (CVE-2026-71393). Risk of unauthorized operations or information disclosure.
CVE-2026-66484 Path Traversal in path-traversal (CVE-2026-66484)
path traversal in path-traversal (CVE-2026-66484). Risk of unauthorized operations or information disclosure.
CVE-2026-61899 Information Disclosure in apache (CVE-2026-61899)
vulnerability in apache (CVE-2026-61899). Confidential information can be exposed externally.
CVE-2026-65945 Vulnerability in apache (CVE-2026-65945)
vulnerability in apache (CVE-2026-65945). Risk of unauthorized operations or information disclosure.
CVE-2026-66486 Vulnerability in CVE-2026-66486 (CVE-2026-66486)
vulnerability in CVE-2026-66486 (CVE-2026-66486). Risk of unauthorized operations or information disclosure.
CVE-2026-32227 SQL Injection in apache (CVE-2026-32227)
SQL injection in apache (CVE-2026-32227). Successful exploitation can lead to full system takeover.
CVE-2026-40920 Vulnerability in apache (CVE-2026-40920)
vulnerability in apache (CVE-2026-40920). Successful exploitation can lead to full system takeover.
CVE-2026-42537 Vulnerability in apache (CVE-2026-42537)
vulnerability in apache (CVE-2026-42537). Successful exploitation can lead to full system takeover.
CVE-2026-59087 Out-of-Bounds Write in dos (CVE-2026-59087)
out-of-bounds write in dos (CVE-2026-59087). Successful exploitation can lead to full system takeover.
CVE-2026-44416 Code Injection in apache (CVE-2026-44416)
code injection in apache (CVE-2026-44416). Successful exploitation can lead to full system takeover.
CVE-2026-55799 Code Injection in apache (CVE-2026-55799)
code injection in apache (CVE-2026-55799). Successful exploitation can lead to full system takeover.
CVE-2026-55814 Vulnerability in apache (CVE-2026-55814)
vulnerability in apache (CVE-2026-55814). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →