Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-50230 |
|
Cross-Site Scripting (XSS) in CVE-2026-50230 (CVE-2026-50230)
cross-site scripting in CVE-2026-50230 (CVE-2026-50230). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50231 |
|
Cross-Site Scripting (XSS) in CVE-2026-50231 (CVE-2026-50231)
cross-site scripting in CVE-2026-50231 (CVE-2026-50231). Risk of unauthorized operations or information disclosure. Exploitable via `User-Agent header`.
|
| CVE-2026-50232 |
|
Cross-Site Scripting (XSS) in CVE-2026-50232 (CVE-2026-50232)
cross-site scripting in CVE-2026-50232 (CVE-2026-50232). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50235 |
|
Cross-Site Scripting (XSS) in CVE-2026-50235 (CVE-2026-50235)
cross-site scripting in CVE-2026-50235 (CVE-2026-50235). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50264 |
|
Out-of-Bounds Write in privilege-escalation (CVE-2026-50264)
out-of-bounds write in privilege-escalation (CVE-2026-50264). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50262 |
|
Out-of-Bounds Read in xorg (CVE-2026-50262)
vulnerability in xorg (CVE-2026-50262). Confidential information can be exposed externally.
|
| CVE-2026-50260 |
|
Use-After-Free in privilege-escalation (CVE-2026-50260)
vulnerability in privilege-escalation (CVE-2026-50260). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50261 |
|
Use-After-Free in privilege-escalation (CVE-2026-50261)
vulnerability in privilege-escalation (CVE-2026-50261). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50263 |
|
Use-After-Free in xorg (CVE-2026-50263)
vulnerability in xorg (CVE-2026-50263). Confidential information can be exposed externally.
|
| CVE-2026-50258 |
|
Vulnerability in privilege-escalation (CVE-2026-50258)
vulnerability in privilege-escalation (CVE-2026-50258). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50259 |
|
Vulnerability in privilege-escalation (CVE-2026-50259)
vulnerability in privilege-escalation (CVE-2026-50259). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50256 |
|
Vulnerability in privilege-escalation (CVE-2026-50256)
vulnerability in privilege-escalation (CVE-2026-50256). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50257 |
|
Use-After-Free in privilege-escalation (CVE-2026-50257)
vulnerability in privilege-escalation (CVE-2026-50257). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11346 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-11346)
SSRF in ssrf (CVE-2026-11346). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11345 |
|
Authentication Bypass in CVE-2026-11345 (CVE-2026-11345)
authentication bypass in CVE-2026-11345 (CVE-2026-11345). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8914 |
|
Vulnerability in CVE-2026-8914 (CVE-2026-8914)
vulnerability in CVE-2026-8914 (CVE-2026-8914). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21038 |
|
Out-of-Bounds Read in samsung (CVE-2026-21038)
vulnerability in samsung (CVE-2026-21038). Confidential information can be exposed externally.
|
| CVE-2026-50265 |
|
OS Command Injection in CVE-2026-50265 (CVE-2026-50265)
OS command injection in CVE-2026-50265 (CVE-2026-50265). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21036 |
|
Authorization Flaw in samsung (CVE-2026-21036)
vulnerability in samsung (CVE-2026-21036). Confidential information can be exposed externally.
|
| CVE-2026-21031 |
|
Authorization Flaw in samsung (CVE-2026-21031)
vulnerability in samsung (CVE-2026-21031). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11347 |
|
Vulnerability in CVE-2026-11347 (CVE-2026-11347)
vulnerability in CVE-2026-11347 (CVE-2026-11347). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6274 |
|
Authentication Bypass in CVE-2026-6274 (CVE-2026-6274)
authentication bypass in CVE-2026-6274 (CVE-2026-6274). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11332 |
|
Vulnerability in ansible-core (CVE-2026-11332)
vulnerability in ansible-core (CVE-2026-11332). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.21.1rc1` or later.
|
| CVE-2026-9088 |
|
Vulnerability in org.keycloak:keycloak-services (CVE-2026-9088)
vulnerability in org.keycloak:keycloak-services (CVE-2026-9088). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `26.7.0` or later.
|
| CVE-2026-48907 KEV |
|
[KEV] Vulnerability in Widget factory widgetfactorylimited (CVE-2026-48907)
vulnerability in Widget factory widgetfactorylimited (CVE-2026-48907). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-21837 |
|
OS Command Injection in hcltech (CVE-2026-21837)
OS command injection in hcltech (CVE-2026-21837). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10732 |
|
Vulnerability in decompress (CVE-2026-10732)
vulnerability in decompress (CVE-2026-10732). Data can be tampered with by attackers.
|
| CVE-2026-21826 |
|
Open Redirect in hcltech (CVE-2026-21826)
vulnerability in hcltech (CVE-2026-21826). Risk of unauthorized operations or information disclosure. Exploitable via `Host header`.
|
| CVE-2026-21825 |
|
Cross-Site Scripting (XSS) in hcltech (CVE-2026-21825)
cross-site scripting in hcltech (CVE-2026-21825). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50593 |
|
Vulnerability in CVE-2026-50593 (CVE-2026-50593)
vulnerability in CVE-2026-50593 (CVE-2026-50593). Data can be tampered with by attackers.
|
| CVE-2026-50590 |
|
In Mimecast Incydr before 2.6.0, arbitrary file access can occur.
In Mimecast Incydr before 2.6.0, arbitrary file access can occur.
|
| CVE-2026-50591 |
|
IN Znuny LTS before 6.5.21 and Znuny before 7.3.3, XSS can occur via stored user preferences.
IN Znuny LTS before 6.5.21 and Znuny before 7.3.3, XSS can occur via stored user preferences.
|
| CVE-2026-50592 |
|
Cross-Site Scripting (XSS) in CVE-2026-50592 (CVE-2026-50592)
cross-site scripting in CVE-2026-50592 (CVE-2026-50592). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11326 |
|
Vulnerability in CVE-2026-11326 (CVE-2026-11326)
vulnerability in CVE-2026-11326 (CVE-2026-11326). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11312 |
|
Vulnerability in infinistore (CVE-2026-11312)
vulnerability in infinistore (CVE-2026-11312). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50589 |
|
Vulnerability in ironic (CVE-2026-50589)
vulnerability in ironic (CVE-2026-50589). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `37.0.0` or later.
|
| CVE-2026-11302 |
|
Vulnerability in google (CVE-2026-11302)
vulnerability in google (CVE-2026-11302). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11303 |
|
Use-After-Free in google (CVE-2026-11303)
vulnerability in google (CVE-2026-11303). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11304 |
|
Use-After-Free in google (CVE-2026-11304)
vulnerability in google (CVE-2026-11304). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11305 |
|
Use-After-Free in google (CVE-2026-11305)
vulnerability in google (CVE-2026-11305). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11306 |
|
Use-After-Free in google (CVE-2026-11306)
vulnerability in google (CVE-2026-11306). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11307 |
|
Use-After-Free in google (CVE-2026-11307)
vulnerability in google (CVE-2026-11307). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11308 |
|
Privilege Escalation in privilege-escalation (CVE-2026-11308)
vulnerability in privilege-escalation (CVE-2026-11308). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11295 |
|
Privilege Escalation in privilege-escalation (CVE-2026-11295)
vulnerability in privilege-escalation (CVE-2026-11295). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11296 |
|
Privilege Escalation in privilege-escalation (CVE-2026-11296)
vulnerability in privilege-escalation (CVE-2026-11296). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11294 |
|
Vulnerability in google (CVE-2026-11294)
vulnerability in google (CVE-2026-11294). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11300 |
|
Vulnerability in google (CVE-2026-11300)
vulnerability in google (CVE-2026-11300). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11297 |
|
Vulnerability in google (CVE-2026-11297)
vulnerability in google (CVE-2026-11297). Data can be tampered with by attackers.
|
| CVE-2026-11299 |
|
Out-of-Bounds Read in google (CVE-2026-11299)
vulnerability in google (CVE-2026-11299). Confidential information can be exposed externally.
|
| CVE-2026-11301 |
|
Out-of-Bounds Read in google (CVE-2026-11301)
vulnerability in google (CVE-2026-11301). Successful exploitation can lead to full system takeover.
|