Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-12957 |
|
Vulnerability in Amazon aws (CVE-2026-12957)
vulnerability in Amazon aws (CVE-2026-12957). Successful exploitation can lead to full system takeover.
|
| CVE-2026-52810 |
|
Vulnerability in gogs.io/gogs (CVE-2026-52810)
vulnerability in gogs.io/gogs (CVE-2026-52810). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52809 |
|
Vulnerability in gogs.io/gogs (CVE-2026-52809)
vulnerability in gogs.io/gogs (CVE-2026-52809). Confidential information can be exposed externally.
|
| CVE-2026-52808 |
|
Privilege Escalation in gogs.io/gogs (CVE-2026-52808)
vulnerability in gogs.io/gogs (CVE-2026-52808). Data can be tampered with by attackers.
|
| CVE-2026-52807 |
|
Cross-Site Scripting (XSS) in gogs.io/gogs (CVE-2026-52807)
cross-site scripting in gogs.io/gogs (CVE-2026-52807). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52806 |
|
Command Injection in gogs.io/gogs (CVE-2026-52806)
command injection in gogs.io/gogs (CVE-2026-52806). Successful exploitation can lead to full system takeover.
|
| CVE-2026-52805 |
|
SSRF (Server-Side Request Forgery) in gogs.io/gogs (CVE-2026-52805)
SSRF in gogs.io/gogs (CVE-2026-52805). Confidential information can be exposed externally.
|
| CVE-2026-1840 |
|
Vulnerability in cisa (CVE-2026-1840)
vulnerability in cisa (CVE-2026-1840). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52804 |
|
Vulnerability in gogs.io/gogs (CVE-2026-52804)
vulnerability in gogs.io/gogs (CVE-2026-52804). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52802 |
|
Open Redirect in gogs.io/gogs (CVE-2026-52802)
vulnerability in gogs.io/gogs (CVE-2026-52802). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56695 |
|
Vulnerability in CVE-2026-56695 (CVE-2026-56695)
vulnerability in CVE-2026-56695 (CVE-2026-56695). Confidential information can be exposed externally.
|
| CVE-2026-56696 |
|
Vulnerability in CVE-2026-56696 (CVE-2026-56696)
vulnerability in CVE-2026-56696 (CVE-2026-56696). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56694 |
|
Authorization Flaw in privilege-escalation (CVE-2026-56694)
vulnerability in privilege-escalation (CVE-2026-56694). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56402 |
|
Vulnerability in privilege-escalation (CVE-2026-56402)
vulnerability in privilege-escalation (CVE-2026-56402). Data can be tampered with by attackers.
|
| CVE-2026-56692 |
|
Vulnerability in CVE-2026-56692 (CVE-2026-56692)
vulnerability in CVE-2026-56692 (CVE-2026-56692). Confidential information can be exposed externally.
|
| CVE-2026-52673 |
|
SQL Injection in sqli (CVE-2026-52673)
SQL injection in sqli (CVE-2026-52673). Confidential information can be exposed externally.
|
| CVE-2025-55639 |
|
Vulnerability in c (CVE-2025-55639)
vulnerability in c (CVE-2025-55639). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-15619 |
|
Vulnerability in CVE-2025-15619 (CVE-2025-15619)
vulnerability in CVE-2025-15619 (CVE-2025-15619). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-35019 |
|
Vulnerability in CVE-2026-35019 (CVE-2026-35019)
vulnerability in CVE-2026-35019 (CVE-2026-35019). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28496 |
|
Vulnerability in CVE-2026-28496 (CVE-2026-28496)
vulnerability in CVE-2026-28496 (CVE-2026-28496). Risk of unauthorized operations or information disclosure. Exploitable via ``string_render``.
|
| CVE-2026-27604 |
|
Information Disclosure in csrf (CVE-2026-27604)
vulnerability in csrf (CVE-2026-27604). Risk of unauthorized operations or information disclosure. Exploitable via ``system``.
|
| CVE-2026-35018 |
|
OS Command Injection in CVE-2026-35018 (CVE-2026-35018)
OS command injection in CVE-2026-35018 (CVE-2026-35018). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12969 |
|
Out-of-Bounds Read in c (CVE-2026-12969)
vulnerability in c (CVE-2026-12969). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11772 |
|
Cross-Site Scripting (XSS) in CVE-2026-11772 (CVE-2026-11772)
cross-site scripting in CVE-2026-11772 (CVE-2026-11772). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10609 |
|
Vulnerability in redhat (CVE-2026-10609)
vulnerability in redhat (CVE-2026-10609). Confidential information can be exposed externally.
|
| CVE-2026-56379 |
|
Vulnerability in imagemagick (CVE-2026-56379)
vulnerability in imagemagick (CVE-2026-56379). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56376 |
|
Use-After-Free in dos (CVE-2026-56376)
vulnerability in dos (CVE-2026-56376). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56371 |
|
Vulnerability in c (CVE-2026-56371)
vulnerability in c (CVE-2026-56371). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56762 |
|
Vulnerability in CVE-2026-56762 (CVE-2026-56762)
vulnerability in CVE-2026-56762 (CVE-2026-56762). Risk of unauthorized operations or information disclosure. Exploitable via `Cookie header`.
|
| CVE-2026-56701 |
|
XXE (XML External Entity) in CVE-2026-56701 (CVE-2026-56701)
vulnerability in CVE-2026-56701 (CVE-2026-56701). Confidential information can be exposed externally.
|
| CVE-2026-56275 |
|
SSRF (Server-Side Request Forgery) in flowiseai (CVE-2026-56275)
SSRF in flowiseai (CVE-2026-56275). Confidential information can be exposed externally.
|
| CVE-2026-56322 |
|
Information Disclosure in CVE-2026-56322 (CVE-2026-56322)
vulnerability in CVE-2026-56322 (CVE-2026-56322). Confidential information can be exposed externally.
|
| CVE-2026-56315 |
|
Vulnerability in CVE-2026-56315 (CVE-2026-56315)
vulnerability in CVE-2026-56315 (CVE-2026-56315). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56301 |
|
Vulnerability in nuxt (CVE-2026-56301)
vulnerability in nuxt (CVE-2026-56301). Confidential information can be exposed externally.
|
| CVE-2026-56274 |
|
OS Command Injection in flowiseai (CVE-2026-56274)
OS command injection in flowiseai (CVE-2026-56274). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56263 |
|
Cross-Site Scripting (XSS) in kidocode (CVE-2026-56263)
cross-site scripting in kidocode (CVE-2026-56263). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56248 |
|
Vulnerability in dos (CVE-2026-56248)
vulnerability in dos (CVE-2026-56248). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56258 |
|
Path Traversal in crawl4ai (CVE-2026-56258)
path traversal in crawl4ai (CVE-2026-56258). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.8.8` or later.
|
| CVE-2026-56225 |
|
Privilege Escalation in CVE-2026-56225 (CVE-2026-56225)
vulnerability in CVE-2026-56225 (CVE-2026-56225). Confidential information can be exposed externally.
|
| CVE-2026-56243 |
|
Vulnerability in CVE-2026-56243 (CVE-2026-56243)
vulnerability in CVE-2026-56243 (CVE-2026-56243). Confidential information can be exposed externally.
|
| CVE-2026-4610 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-4610)
cross-site scripting in wordpress (CVE-2026-4610). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44089 |
|
Vulnerability in CVE-2026-44089 (CVE-2026-44089)
vulnerability in CVE-2026-44089 (CVE-2026-44089). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10711 |
|
Vulnerability in CVE-2026-10711 (CVE-2026-10711)
vulnerability in CVE-2026-10711 (CVE-2026-10711). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10857 |
|
Cross-Site Scripting (XSS) in CVE-2026-10857 (CVE-2026-10857)
cross-site scripting in CVE-2026-10857 (CVE-2026-10857). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-71341 |
|
Unsafe Deserialization in CVE-2025-71341 (CVE-2025-71341)
vulnerability in CVE-2025-71341 (CVE-2025-71341). Confidential information can be exposed externally.
|
| CVE-2025-71365 |
|
Unsafe Deserialization in CVE-2025-71365 (CVE-2025-71365)
vulnerability in CVE-2025-71365 (CVE-2025-71365). Confidential information can be exposed externally.
|
| CVE-2025-71370 |
|
Unsafe Deserialization in CVE-2025-71370 (CVE-2025-71370)
vulnerability in CVE-2025-71370 (CVE-2025-71370). Confidential information can be exposed externally.
|
| CVE-2025-71376 |
|
Unsafe Deserialization in CVE-2025-71376 (CVE-2025-71376)
vulnerability in CVE-2025-71376 (CVE-2025-71376). Confidential information can be exposed externally.
|
| CVE-2023-54365 |
|
Vulnerability in traefik (CVE-2023-54365)
vulnerability in traefik (CVE-2023-54365). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4983 |
|
Cross-Site Scripting (XSS) in eclipse (CVE-2026-4983)
cross-site scripting in eclipse (CVE-2026-4983). Risk of unauthorized operations or information disclosure.
|