Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-64705 |
|
Vulnerability in apple (CVE-2026-64705)
vulnerability in apple (CVE-2026-64705). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66153 |
|
Vulnerability in CVE-2026-66153 (CVE-2026-66153)
vulnerability in CVE-2026-66153 (CVE-2026-66153). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79788 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-79788)
SSRF in ssrf (CVE-2026-79788). Confidential information can be exposed externally.
|
| CVE-2026-65084 |
|
Vulnerability in CVE-2026-65084 (CVE-2026-65084)
vulnerability in CVE-2026-65084 (CVE-2026-65084). Successful exploitation can lead to full system takeover.
|
| CVE-2026-74932 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-74932)
cross-site scripting in wordpress (CVE-2026-74932). Successful exploitation can lead to full system takeover. Exploitable via `Host header`.
|
| CVE-2026-79786 |
|
Open Redirect in CVE-2026-79786 (CVE-2026-79786)
vulnerability in CVE-2026-79786 (CVE-2026-79786). Confidential information can be exposed externally.
|
| CVE-2026-43657 |
|
Privilege Escalation in CVE-2026-43657 (CVE-2026-43657)
vulnerability in CVE-2026-43657 (CVE-2026-43657). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-79787 |
|
Authentication Bypass in CVE-2026-79787 (CVE-2026-79787)
authentication bypass in CVE-2026-79787 (CVE-2026-79787). Successful exploitation can lead to full system takeover. Exploitable via `Authorization header`.
|
| CVE-2026-77357 |
|
Vulnerability in CVE-2026-77357 (CVE-2026-77357)
vulnerability in CVE-2026-77357 (CVE-2026-77357). Risk of unauthorized operations or information disclosure. Exploitable via `GET /hot-reload`.
|
| CVE-2026-72924 |
|
Vulnerability in CVE-2026-72924 (CVE-2026-72924)
vulnerability in CVE-2026-72924 (CVE-2026-72924). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55588 |
|
Vulnerability in oras.land/oras (CVE-2026-55588)
vulnerability in oras.land/oras (CVE-2026-55588). Risk of unauthorized operations or information disclosure. Exploitable via ``discover``. Mitigation: upgrade to `1.3.3` or later.
|
| CVE-2026-79282 |
|
Use-After-Free in Google chrome (CVE-2026-79282)
vulnerability in Google chrome (CVE-2026-79282). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68513 |
|
Vulnerability in CVE-2026-68513 (CVE-2026-68513)
vulnerability in CVE-2026-68513 (CVE-2026-68513). Data can be tampered with by attackers.
|
| CVE-2026-68514 |
|
Vulnerability in CVE-2026-68514 (CVE-2026-68514)
vulnerability in CVE-2026-68514 (CVE-2026-68514). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68515 |
|
Vulnerability in CVE-2026-68515 (CVE-2026-68515)
vulnerability in CVE-2026-68515 (CVE-2026-68515). Data can be tampered with by attackers.
|
| CVE-2026-59981 |
|
Out-of-Bounds Read in CVE-2026-59981 (CVE-2026-59981)
vulnerability in CVE-2026-59981 (CVE-2026-59981). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73125 |
|
Vulnerability in cisa (CVE-2026-73125)
vulnerability in cisa (CVE-2026-73125). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67560 |
|
Vulnerability in cisa (CVE-2026-67560)
vulnerability in cisa (CVE-2026-67560). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18965 |
|
Vulnerability in cisa (CVE-2026-18965)
vulnerability in cisa (CVE-2026-18965). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76060 |
|
OS Command Injection in cisa (CVE-2026-76060)
OS command injection in cisa (CVE-2026-76060). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55099 |
|
Vulnerability in icalendar (CVE-2026-55099)
vulnerability in icalendar (CVE-2026-55099). Risk of unauthorized operations or information disclosure. Exploitable via ``Component.__eq__``. Mitigation: upgrade to `7.1.3` or later.
|
| CVE-2026-45019 |
|
SSRF (Server-Side Request Forgery) in chainlit (CVE-2026-45019)
SSRF in chainlit (CVE-2026-45019). Risk of unauthorized operations or information disclosure. Exploitable via `POST /mcp`. Mitigation: upgrade to `2.12.0` or later.
|
| CVE-2026-45018 |
|
OS Command Injection in chainlit (CVE-2026-45018)
OS command injection in chainlit (CVE-2026-45018). Successful exploitation can lead to full system takeover. Exploitable via `POST /mcp`. Mitigation: upgrade to `2.12.0` or later.
|
| CVE-2026-62986 |
|
Information Disclosure in CVE-2026-62986 (CVE-2026-62986)
vulnerability in CVE-2026-62986 (CVE-2026-62986). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65979 |
|
Vulnerability in CVE-2026-65979 (CVE-2026-65979)
vulnerability in CVE-2026-65979 (CVE-2026-65979). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59985 |
|
Out-of-Bounds Read in c (CVE-2026-59985)
vulnerability in c (CVE-2026-59985). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61555 |
|
Out-of-Bounds Read in CVE-2026-61555 (CVE-2026-61555)
vulnerability in CVE-2026-61555 (CVE-2026-61555). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55609 |
|
Vulnerability in consciousness-explorer (CVE-2026-55609)
vulnerability in consciousness-explorer (CVE-2026-55609). Data can be tampered with by attackers. Exploitable via ``export_state``. Mitigation: upgrade to `1.1.2` or later.
|
| CVE-2026-79992 |
|
OS Command Injection in CVE-2026-79992 (CVE-2026-79992)
OS command injection in CVE-2026-79992 (CVE-2026-79992). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80051 |
|
Vulnerability in CVE-2026-80051 (CVE-2026-80051)
vulnerability in CVE-2026-80051 (CVE-2026-80051). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76198 |
|
Vulnerability in CVE-2026-76198 (CVE-2026-76198)
vulnerability in CVE-2026-76198 (CVE-2026-76198). Confidential information can be exposed externally.
|
| CVE-2026-76189 |
|
Vulnerability in CVE-2026-76189 (CVE-2026-76189)
vulnerability in CVE-2026-76189 (CVE-2026-76189). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75768 |
|
Vulnerability in CVE-2026-75768 (CVE-2026-75768)
vulnerability in CVE-2026-75768 (CVE-2026-75768). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75767 |
|
Vulnerability in CVE-2026-75767 (CVE-2026-75767)
vulnerability in CVE-2026-75767 (CVE-2026-75767). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75750 |
|
Vulnerability in CVE-2026-75750 (CVE-2026-75750)
vulnerability in CVE-2026-75750 (CVE-2026-75750). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75769 |
|
Vulnerability in CVE-2026-75769 (CVE-2026-75769)
vulnerability in CVE-2026-75769 (CVE-2026-75769). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75766 |
|
Vulnerability in CVE-2026-75766 (CVE-2026-75766)
vulnerability in CVE-2026-75766 (CVE-2026-75766). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76197 |
|
OS Command Injection in CVE-2026-76197 (CVE-2026-76197)
OS command injection in CVE-2026-76197 (CVE-2026-76197). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76195 |
|
OS Command Injection in CVE-2026-76195 (CVE-2026-76195)
OS command injection in CVE-2026-76195 (CVE-2026-76195). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75770 |
|
Out-of-Bounds Write in CVE-2026-75770 (CVE-2026-75770)
out-of-bounds write in CVE-2026-75770 (CVE-2026-75770). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75752 |
|
Out-of-Bounds Read in CVE-2026-75752 (CVE-2026-75752)
vulnerability in CVE-2026-75752 (CVE-2026-75752). Confidential information can be exposed externally.
|
| CVE-2026-76193 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-76193)
SSRF in ssrf (CVE-2026-76193). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71360 |
|
Vulnerability in CVE-2026-71360 (CVE-2026-71360)
vulnerability in CVE-2026-71360 (CVE-2026-71360). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71399 |
|
Vulnerability in CVE-2026-71399 (CVE-2026-71399)
vulnerability in CVE-2026-71399 (CVE-2026-71399). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71443 |
|
Vulnerability in CVE-2026-71443 (CVE-2026-71443)
vulnerability in CVE-2026-71443 (CVE-2026-71443). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71444 |
|
Vulnerability in CVE-2026-71444 (CVE-2026-71444)
vulnerability in CVE-2026-71444 (CVE-2026-71444). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71442 |
|
Vulnerability in CVE-2026-71442 (CVE-2026-71442)
vulnerability in CVE-2026-71442 (CVE-2026-71442). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71382 |
|
Out-of-Bounds Write in CVE-2026-71382 (CVE-2026-71382)
out-of-bounds write in CVE-2026-71382 (CVE-2026-71382). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71564 |
|
Out-of-Bounds Write in adobe (CVE-2026-71564)
out-of-bounds write in adobe (CVE-2026-71564). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75749 |
|
Out-of-Bounds Write in CVE-2026-75749 (CVE-2026-75749)
out-of-bounds write in CVE-2026-75749 (CVE-2026-75749). Successful exploitation can lead to full system takeover.
|