Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-60726 |
|
Vulnerability in c (CVE-2026-60726)
vulnerability in c (CVE-2026-60726). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60715 |
|
Vulnerability in c (CVE-2026-60715)
vulnerability in c (CVE-2026-60715). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60707 |
|
Vulnerability in c (CVE-2026-60707)
vulnerability in c (CVE-2026-60707). Confidential information can be exposed externally.
|
| CVE-2026-60702 |
|
Vulnerability in c (CVE-2026-60702)
vulnerability in c (CVE-2026-60702). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60699 |
|
Vulnerability in c (CVE-2026-60699)
vulnerability in c (CVE-2026-60699). Confidential information can be exposed externally.
|
| CVE-2026-60693 |
|
Vulnerability in c (CVE-2026-60693)
vulnerability in c (CVE-2026-60693). Confidential information can be exposed externally.
|
| CVE-2026-60698 |
|
Vulnerability in c (CVE-2026-60698)
vulnerability in c (CVE-2026-60698). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60696 |
|
Vulnerability in c (CVE-2026-60696)
vulnerability in c (CVE-2026-60696). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60682 |
|
Vulnerability in c (CVE-2026-60682)
vulnerability in c (CVE-2026-60682). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60672 |
|
Vulnerability in c (CVE-2026-60672)
vulnerability in c (CVE-2026-60672). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60591 |
|
Vulnerability in c (CVE-2026-60591)
vulnerability in c (CVE-2026-60591). Data can be tampered with by attackers.
|
| CVE-2026-60414 |
|
Information Disclosure in c (CVE-2026-60414)
vulnerability in c (CVE-2026-60414). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60415 |
|
Information Disclosure in c (CVE-2026-60415)
vulnerability in c (CVE-2026-60415). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60589 |
|
Information Disclosure in c (CVE-2026-60589)
vulnerability in c (CVE-2026-60589). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60592 |
|
Vulnerability in c (CVE-2026-60592)
vulnerability in c (CVE-2026-60592). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60590 |
|
Vulnerability in c (CVE-2026-60590)
vulnerability in c (CVE-2026-60590). Confidential information can be exposed externally.
|
| CVE-2026-60680 |
|
Vulnerability in c (CVE-2026-60680)
vulnerability in c (CVE-2026-60680). Data can be tampered with by attackers.
|
| CVE-2026-60679 |
|
Authentication Bypass in c (CVE-2026-60679)
authentication bypass in c (CVE-2026-60679). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60391 |
|
Vulnerability in c (CVE-2026-60391)
vulnerability in c (CVE-2026-60391). Confidential information can be exposed externally.
|
| CVE-2026-60412 |
|
Unsafe Deserialization in c (CVE-2026-60412)
vulnerability in c (CVE-2026-60412). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60392 |
|
Unsafe Deserialization in c (CVE-2026-60392)
vulnerability in c (CVE-2026-60392). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60393 |
|
Information Disclosure in c (CVE-2026-60393)
vulnerability in c (CVE-2026-60393). Confidential information can be exposed externally.
|
| CVE-2026-60413 |
|
Information Disclosure in c (CVE-2026-60413)
vulnerability in c (CVE-2026-60413). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53456 |
|
Vulnerability in CVE-2026-53456 (CVE-2026-53456)
vulnerability in CVE-2026-53456 (CVE-2026-53456). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53454 |
|
Vulnerability in CVE-2026-53454 (CVE-2026-53454)
vulnerability in CVE-2026-53454 (CVE-2026-53454). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53457 |
|
Path Traversal in CVE-2026-53457 (CVE-2026-53457)
path traversal in CVE-2026-53457 (CVE-2026-53457). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53458 |
|
Vulnerability in CVE-2026-53458 (CVE-2026-53458)
vulnerability in CVE-2026-53458 (CVE-2026-53458). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53455 |
|
OS Command Injection in CVE-2026-53455 (CVE-2026-53455)
OS command injection in CVE-2026-53455 (CVE-2026-53455). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53453 |
|
Vulnerability in CVE-2026-53453 (CVE-2026-53453)
vulnerability in CVE-2026-53453 (CVE-2026-53453). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18504 |
|
Vulnerability in CVE-2026-18504 (CVE-2026-18504)
vulnerability in CVE-2026-18504 (CVE-2026-18504). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41921 |
|
Cross-Site Scripting (XSS) in CVE-2026-41921 (CVE-2026-41921)
cross-site scripting in CVE-2026-41921 (CVE-2026-41921). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12631 |
|
Vulnerability in c (CVE-2026-12631)
vulnerability in c (CVE-2026-12631). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12632 |
|
Out-of-Bounds Read in c (CVE-2026-12632)
vulnerability in c (CVE-2026-12632). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76034 |
|
Vulnerability in Google chrome (CVE-2026-76034)
vulnerability in Google chrome (CVE-2026-76034). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71322 |
|
Vulnerability in lemur (CVE-2026-71322)
vulnerability in lemur (CVE-2026-71322). Risk of unauthorized operations or information disclosure. Exploitable via ``CertificateExport``. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-71317 |
|
Vulnerability in lemur (CVE-2026-71317)
vulnerability in lemur (CVE-2026-71317). Data can be tampered with by attackers. Exploitable via `POST /api/1/authorities`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-71308 |
|
Vulnerability in lemur (CVE-2026-71308)
vulnerability in lemur (CVE-2026-71308). Data can be tampered with by attackers. Exploitable via `POST /api/1/certificates`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-71307 |
|
Vulnerability in lemur (CVE-2026-71307)
vulnerability in lemur (CVE-2026-71307). Confidential information can be exposed externally. Exploitable via `GET /api/1/destinations`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-71303 |
|
SSRF (Server-Side Request Forgery) in lemur (CVE-2026-71303)
SSRF in lemur (CVE-2026-71303). Confidential information can be exposed externally. Exploitable via `PUT /api/1/authorities/`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-70666 |
|
SSRF (Server-Side Request Forgery) in lemur (CVE-2026-70666)
SSRF in lemur (CVE-2026-70666). Risk of unauthorized operations or information disclosure. Exploitable via `PUT /authorities/`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-62988 |
|
Information Disclosure in froxlor/froxlor (CVE-2026-62988)
vulnerability in froxlor/froxlor (CVE-2026-62988). Confidential information can be exposed externally. Exploitable via ``password``. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-55593 |
|
Cross-Site Request Forgery (CSRF) in froxlor/froxlor (CVE-2026-55593)
vulnerability in froxlor/froxlor (CVE-2026-55593). Data can be tampered with by attackers. Exploitable via ``allowed_from``. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-54543 |
|
Vulnerability in froxlor/froxlor (CVE-2026-54543)
vulnerability in froxlor/froxlor (CVE-2026-54543). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-54348 |
|
SQL Injection in froxlor/froxlor (CVE-2026-54348)
SQL injection in froxlor/froxlor (CVE-2026-54348). Successful exploitation can lead to full system takeover. Exploitable via ``panel_admins.ip``. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-54347 |
|
Cross-Site Scripting (XSS) in froxlor/froxlor (CVE-2026-54347)
cross-site scripting in froxlor/froxlor (CVE-2026-54347). Confidential information can be exposed externally. Exploitable via ``content``. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-76032 |
|
Vulnerability in CVE-2026-76032 (CVE-2026-76032)
vulnerability in CVE-2026-76032 (CVE-2026-76032). Risk of unauthorized operations or information disclosure. Exploitable via `GET /a/share/link/{Uuid}`.
|
| CVE-2026-75876 |
|
Vulnerability in sqli (CVE-2026-75876)
vulnerability in sqli (CVE-2026-75876). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75877 |
|
Buffer Overflow in CVE-2026-75877 (CVE-2026-75877)
vulnerability in CVE-2026-75877 (CVE-2026-75877). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71676 |
|
Vulnerability in dos (CVE-2026-71676)
vulnerability in dos (CVE-2026-71676). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71675 |
|
Vulnerability in c (CVE-2026-71675)
vulnerability in c (CVE-2026-71675). Risk of unauthorized operations or information disclosure.
|