Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-59837 |
|
Vulnerability in fortinet (CVE-2026-59837)
vulnerability in fortinet (CVE-2026-59837). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59204 |
|
Vulnerability in pillow (CVE-2026-59204)
vulnerability in pillow (CVE-2026-59204). Risk of unauthorized operations or information disclosure. Exploitable via ``total_component_width``. Mitigation: upgrade to `12.3.0` or later.
|
| CVE-2026-55954 |
|
Vulnerability in CVE-2026-55954 (CVE-2026-55954)
vulnerability in CVE-2026-55954 (CVE-2026-55954). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59198 |
|
Out-of-Bounds Read in Pillow (CVE-2026-59198)
vulnerability in Pillow (CVE-2026-59198). Confidential information can be exposed externally. Exploitable via ``tga_rle``. Mitigation: upgrade to `12.3.0` or later.
|
| CVE-2026-59199 |
|
Vulnerability in Pillow (CVE-2026-59199)
vulnerability in Pillow (CVE-2026-59199). Risk of unauthorized operations or information disclosure. Exploitable via ``RGBA``. Mitigation: upgrade to `12.3.0` or later.
|
| CVE-2026-52839 |
|
Vulnerability in alextselegidis/easyappointments (CVE-2026-52839)
vulnerability in alextselegidis/easyappointments (CVE-2026-52839). Risk of unauthorized operations or information disclosure. Exploitable via `POST /index.php/appointments/store`. Mitigation: upgrade to `1.6.0` or later.
|
| CVE-2026-52840 |
|
SSRF (Server-Side Request Forgery) in alextselegidis/easyappointments (CVE-2026-52840)
SSRF in alextselegidis/easyappointments (CVE-2026-52840). Risk of unauthorized operations or information disclosure. Exploitable via ``caldav_url``.
|
| CVE-2026-52838 |
|
Cross-Site Scripting (XSS) in alextselegidis/easyappointments (CVE-2026-52838)
cross-site scripting in alextselegidis/easyappointments (CVE-2026-52838). Risk of unauthorized operations or information disclosure. Exploitable via `POST /index.php/booking_settings/save`.
|
| CVE-2026-55651 |
|
Information Disclosure in alextselegidis/easyappointments (CVE-2026-55651)
vulnerability in alextselegidis/easyappointments (CVE-2026-55651). Data can be tampered with by attackers.
|
| CVE-2026-23573 |
|
Cross-Site Scripting (XSS) in fortinet (CVE-2026-23573)
cross-site scripting in fortinet (CVE-2026-23573). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15697 |
|
Code Injection in CVE-2026-15697 (CVE-2026-15697)
code injection in CVE-2026-15697 (CVE-2026-15697). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15698 |
|
Code Injection in CVE-2026-15698 (CVE-2026-15698)
code injection in CVE-2026-15698 (CVE-2026-15698). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15699 |
|
Code Injection in CVE-2026-15699 (CVE-2026-15699)
code injection in CVE-2026-15699 (CVE-2026-15699). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12659 |
|
Vulnerability in cisa (CVE-2026-12659)
vulnerability in cisa (CVE-2026-12659). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12707 |
|
Vulnerability in CVE-2026-12707 (CVE-2026-12707)
vulnerability in CVE-2026-12707 (CVE-2026-12707). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12523 |
|
Vulnerability in cloudflare (CVE-2026-12523)
vulnerability in cloudflare (CVE-2026-12523). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14504 |
|
Vulnerability in CVE-2026-14504 (CVE-2026-14504)
vulnerability in CVE-2026-14504 (CVE-2026-14504). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15392 |
|
Path Traversal in CVE-2026-15392 (CVE-2026-15392)
path traversal in CVE-2026-15392 (CVE-2026-15392). Confidential information can be exposed externally.
|
| CVE-2026-11917 |
|
Path Traversal in path-traversal (CVE-2026-11917)
path traversal in path-traversal (CVE-2026-11917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11944 |
|
Path Traversal in path-traversal (CVE-2026-11944)
path traversal in path-traversal (CVE-2026-11944). Confidential information can be exposed externally.
|
| CVE-2025-53379 |
|
Out-of-Bounds Read in fortinet (CVE-2025-53379)
vulnerability in fortinet (CVE-2025-53379). Confidential information can be exposed externally.
|
| CVE-2025-11698 |
|
Vulnerability in CVE-2025-11698 (CVE-2025-11698)
vulnerability in CVE-2025-11698 (CVE-2025-11698). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9140 |
|
Vulnerability in cisa (CVE-2026-9140)
vulnerability in cisa (CVE-2026-9140). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60114 |
|
Path Traversal in path-traversal (CVE-2026-60114)
path traversal in path-traversal (CVE-2026-60114). Data can be tampered with by attackers.
|
| CVE-2026-58478 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-58478)
SSRF in ssrf (CVE-2026-58478). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58476 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-58476)
vulnerability in csrf (CVE-2026-58476). Data can be tampered with by attackers.
|
| CVE-2026-58475 |
|
Cross-Site Scripting (XSS) in dan-in-ca (CVE-2026-58475)
cross-site scripting in dan-in-ca (CVE-2026-58475). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58479 |
|
OS Command Injection in dan-in-ca (CVE-2026-58479)
OS command injection in dan-in-ca (CVE-2026-58479). Successful exploitation can lead to full system takeover.
|
| CVE-2026-52837 |
|
Information Disclosure in alextselegidis/easyappointments (CVE-2026-52837)
vulnerability in alextselegidis/easyappointments (CVE-2026-52837). Risk of unauthorized operations or information disclosure. Exploitable via ``appointment_hash``.
|
| CVE-2026-51105 |
|
Vulnerability in dos (CVE-2026-51105)
vulnerability in dos (CVE-2026-51105). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15736 |
|
Vulnerability in sqli (CVE-2026-15736)
vulnerability in sqli (CVE-2026-15736). Confidential information can be exposed externally.
|
| CVE-2026-15694 |
|
Buffer Overflow in CVE-2026-15694 (CVE-2026-15694)
vulnerability in CVE-2026-15694 (CVE-2026-15694). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15695 |
|
Buffer Overflow in CVE-2026-15695 (CVE-2026-15695)
vulnerability in CVE-2026-15695 (CVE-2026-15695). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15696 |
|
Buffer Overflow in CVE-2026-15696 (CVE-2026-15696)
vulnerability in CVE-2026-15696 (CVE-2026-15696). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14903 |
|
Path Traversal in path-traversal (CVE-2026-14903)
path traversal in path-traversal (CVE-2026-14903). Confidential information can be exposed externally.
|
| CVE-2026-15265 |
|
Path Traversal in c (CVE-2026-15265)
path traversal in c (CVE-2026-15265). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14902 |
|
Open Redirect in ivanti (CVE-2026-14902)
vulnerability in ivanti (CVE-2026-14902). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10573 |
|
Vulnerability in cisa (CVE-2026-10573)
vulnerability in cisa (CVE-2026-10573). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10671 |
|
Vulnerability in c (CVE-2026-10671)
vulnerability in c (CVE-2026-10671). Data can be tampered with by attackers.
|
| CVE-2026-10714 |
|
Vulnerability in cisa (CVE-2026-10714)
vulnerability in cisa (CVE-2026-10714). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10672 |
|
Out-of-Bounds Read in c (CVE-2026-10672)
vulnerability in c (CVE-2026-10672). Confidential information can be exposed externally.
|
| CVE-2026-10669 |
|
Out-of-Bounds Write in c (CVE-2026-10669)
out-of-bounds write in c (CVE-2026-10669). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10670 |
|
Vulnerability in c (CVE-2026-10670)
vulnerability in c (CVE-2026-10670). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-12012 |
|
Vulnerability in CVE-2025-12012 (CVE-2025-12012)
vulnerability in CVE-2025-12012 (CVE-2025-12012). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-12011 |
|
Vulnerability in CVE-2025-12011 (CVE-2025-12011)
vulnerability in CVE-2025-12011 (CVE-2025-12011). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53566 |
|
Out-of-Bounds Read in CVE-2026-53566 (CVE-2026-53566)
vulnerability in CVE-2026-53566 (CVE-2026-53566). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15693 |
|
Buffer Overflow in CVE-2026-15693 (CVE-2026-15693)
vulnerability in CVE-2026-15693 (CVE-2026-15693). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8314 |
|
Out-of-Bounds Write in rockwellautomation (CVE-2026-8314)
out-of-bounds write in rockwellautomation (CVE-2026-8314). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8085 |
|
Out-of-Bounds Write in rockwellautomation (CVE-2026-8085)
out-of-bounds write in rockwellautomation (CVE-2026-8085). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8312 |
|
Out-of-Bounds Write in rockwellautomation (CVE-2026-8312)
out-of-bounds write in rockwellautomation (CVE-2026-8312). Successful exploitation can lead to full system takeover.
|