Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-39932 |
|
Vulnerability in open-emr (CVE-2026-39932)
vulnerability in open-emr (CVE-2026-39932). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61372 |
|
Path Traversal in apache (CVE-2026-61372)
path traversal in apache (CVE-2026-61372). Confidential information can be exposed externally.
|
| CVE-2026-18610 |
|
Authentication Bypass in CVE-2026-18610 (CVE-2026-18610)
authentication bypass in CVE-2026-18610 (CVE-2026-18610). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41453 |
|
SQL Injection in sqli (CVE-2026-41453)
SQL injection in sqli (CVE-2026-41453). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67612 |
|
Cross-Site Scripting (XSS) in CVE-2026-67612 (CVE-2026-67612)
cross-site scripting in CVE-2026-67612 (CVE-2026-67612). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18718 |
|
Vulnerability in CVE-2026-18718 (CVE-2026-18718)
vulnerability in CVE-2026-18718 (CVE-2026-18718). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18607 |
|
Buffer Overflow in CVE-2026-18607 (CVE-2026-18607)
vulnerability in CVE-2026-18607 (CVE-2026-18607). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67610 |
|
Vulnerability in CVE-2026-67610 (CVE-2026-67610)
vulnerability in CVE-2026-67610 (CVE-2026-67610). Confidential information can be exposed externally.
|
| CVE-2026-41452 |
|
Vulnerability in CVE-2026-41452 (CVE-2026-41452)
vulnerability in CVE-2026-41452 (CVE-2026-41452). Successful exploitation can lead to full system takeover.
|
| CVE-2026-39931 |
|
Unrestricted File Upload in sqli (CVE-2026-39931)
vulnerability in sqli (CVE-2026-39931). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18605 |
|
Vulnerability in CVE-2026-18605 (CVE-2026-18605)
vulnerability in CVE-2026-18605 (CVE-2026-18605). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18477 |
|
Vulnerability in privilege-escalation (CVE-2026-18477)
vulnerability in privilege-escalation (CVE-2026-18477). Data can be tampered with by attackers.
|
| CVE-2026-18651 |
|
Authentication Bypass in redhat (CVE-2026-18651)
authentication bypass in redhat (CVE-2026-18651). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18606 |
|
Vulnerability in c (CVE-2026-18606)
vulnerability in c (CVE-2026-18606). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18602 |
|
Vulnerability in CVE-2026-18602 (CVE-2026-18602)
vulnerability in CVE-2026-18602 (CVE-2026-18602). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18243 |
|
Cross-Site Scripting (XSS) in CVE-2026-18243 (CVE-2026-18243)
cross-site scripting in CVE-2026-18243 (CVE-2026-18243). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18568 |
|
Vulnerability in xml (CVE-2026-18568)
vulnerability in xml (CVE-2026-18568). Data can be tampered with by attackers. Exploitable via ``next``.
|
| CVE-2026-15430 |
|
Privilege Escalation in privilege-escalation (CVE-2026-15430)
vulnerability in privilege-escalation (CVE-2026-15430). Confidential information can be exposed externally.
|
| CVE-2026-18508 |
|
Vulnerability in gnu (CVE-2026-18508)
vulnerability in gnu (CVE-2026-18508). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69153 |
|
Path Traversal in postcss (CVE-2026-69153)
path traversal in postcss (CVE-2026-69153). Risk of unauthorized operations or information disclosure. Exploitable via ``sourceMappingURL``. Mitigation: upgrade to `8.5.23` or later.
|
| CVE-2026-69152 |
|
Vulnerability in brace-expansion (CVE-2026-69152)
vulnerability in brace-expansion (CVE-2026-69152). Risk of unauthorized operations or information disclosure. Exploitable via ``maxLength``. Mitigation: upgrade to `5.0.9` or later.
|
| CVE-2026-69151 |
|
Cross-Site Scripting (XSS) in @angular/compiler (CVE-2026-69151)
cross-site scripting in @angular/compiler (CVE-2026-69151). Risk of unauthorized operations or information disclosure. Exploitable via ``onclick``.
|
| CVE-2026-69149 |
|
Cross-Site Scripting (XSS) in @angular/platform-server (CVE-2026-69149)
cross-site scripting in @angular/platform-server (CVE-2026-69149). Risk of unauthorized operations or information disclosure. Exploitable via ``domino``.
|
| CVE-2026-68930 |
|
Vulnerability in russh (CVE-2026-68930)
vulnerability in russh (CVE-2026-68930). Data can be tampered with by attackers. Exploitable via ``russh``. Mitigation: upgrade to `0.62.5` or later.
|
| CVE-2026-69095 |
|
Path Traversal in path-traversal (CVE-2026-69095)
path traversal in path-traversal (CVE-2026-69095). Confidential information can be exposed externally.
|
| CVE-2026-69096 |
|
OS Command Injection in CVE-2026-69096 (CVE-2026-69096)
OS command injection in CVE-2026-69096 (CVE-2026-69096). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9487 |
|
Vulnerability in xml (CVE-2026-9487)
vulnerability in xml (CVE-2026-9487). Confidential information can be exposed externally.
|
| CVE-2026-69097 |
|
Vulnerability in CVE-2026-69097 (CVE-2026-69097)
vulnerability in CVE-2026-69097 (CVE-2026-69097). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67609 |
|
Vulnerability in apache (CVE-2026-67609)
vulnerability in apache (CVE-2026-67609). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69093 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-69093 (CVE-2026-69093)
vulnerability in CVE-2026-69093 (CVE-2026-69093). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9390 |
|
Vulnerability in xml (CVE-2026-9390)
vulnerability in xml (CVE-2026-9390). Confidential information can be exposed externally.
|
| CVE-2026-69088 |
|
Code Injection in CVE-2026-69088 (CVE-2026-69088)
code injection in CVE-2026-69088 (CVE-2026-69088). Confidential information can be exposed externally. Mitigation: upgrade to `2.0.11` or later.
|
| CVE-2026-69083 |
|
SQL Injection in sqli (CVE-2026-69083)
SQL injection in sqli (CVE-2026-69083). Confidential information can be exposed externally.
|
| CVE-2026-69085 |
|
SQL Injection in sqli (CVE-2026-69085)
SQL injection in sqli (CVE-2026-69085). Confidential information can be exposed externally.
|
| CVE-2026-69084 |
|
SQL Injection in CVE-2026-69084 (CVE-2026-69084)
SQL injection in CVE-2026-69084 (CVE-2026-69084). Confidential information can be exposed externally. Mitigation: upgrade to `3.7.3` or later.
|
| CVE-2026-69092 |
|
Cross-Site Scripting (XSS) in CVE-2026-69092 (CVE-2026-69092)
cross-site scripting in CVE-2026-69092 (CVE-2026-69092). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69090 |
|
Vulnerability in CVE-2026-69090 (CVE-2026-69090)
vulnerability in CVE-2026-69090 (CVE-2026-69090). Data can be tampered with by attackers.
|
| CVE-2026-69086 |
|
Path Traversal in CVE-2026-69086 (CVE-2026-69086)
path traversal in CVE-2026-69086 (CVE-2026-69086). Confidential information can be exposed externally.
|
| CVE-2026-69089 |
|
Path Traversal in path-traversal (CVE-2026-69089)
path traversal in path-traversal (CVE-2026-69089). Confidential information can be exposed externally.
|
| CVE-2026-69087 |
|
Open Redirect in CVE-2026-69087 (CVE-2026-69087)
vulnerability in CVE-2026-69087 (CVE-2026-69087). Confidential information can be exposed externally.
|
| CVE-2026-69091 |
|
Vulnerability in CVE-2026-69091 (CVE-2026-69091)
vulnerability in CVE-2026-69091 (CVE-2026-69091). Confidential information can be exposed externally.
|
| CVE-2026-18089 |
|
Vulnerability in timlegge (CVE-2026-18089)
vulnerability in timlegge (CVE-2026-18089). Data can be tampered with by attackers.
|
| CVE-2026-18108 |
|
Vulnerability in timlegge (CVE-2026-18108)
vulnerability in timlegge (CVE-2026-18108). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18092 |
|
Vulnerability in timlegge (CVE-2026-18092)
vulnerability in timlegge (CVE-2026-18092). Data can be tampered with by attackers.
|
| CVE-2026-18600 |
|
Vulnerability in CVE-2026-18600 (CVE-2026-18600)
vulnerability in CVE-2026-18600 (CVE-2026-18600). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18601 |
|
Vulnerability in CVE-2026-18601 (CVE-2026-18601)
vulnerability in CVE-2026-18601 (CVE-2026-18601). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64827 |
|
Vulnerability in CVE-2026-64827 (CVE-2026-64827)
vulnerability in CVE-2026-64827 (CVE-2026-64827). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68584 |
|
Vulnerability in CVE-2026-68584 (CVE-2026-68584)
vulnerability in CVE-2026-68584 (CVE-2026-68584). Confidential information can be exposed externally.
|
| CVE-2026-67608 |
|
OS Command Injection in apache (CVE-2026-67608)
OS command injection in apache (CVE-2026-67608). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68585 |
|
Vulnerability in CVE-2026-68585 (CVE-2026-68585)
vulnerability in CVE-2026-68585 (CVE-2026-68585). Risk of unauthorized operations or information disclosure.
|