Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-42930 |
|
Vulnerability in f5 (CVE-2026-42930)
vulnerability in f5 (CVE-2026-42930). Confidential information can be exposed externally.
|
| CVE-2026-42920 |
|
Vulnerability in f5 (CVE-2026-42920)
vulnerability in f5 (CVE-2026-42920). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42924 |
|
OS Command Injection in privilege-escalation (CVE-2026-42924)
OS command injection in privilege-escalation (CVE-2026-42924). Confidential information can be exposed externally.
|
| CVE-2026-42266 |
|
Vulnerability in jupyterlab (CVE-2026-42266)
vulnerability in jupyterlab (CVE-2026-42266). Successful exploitation can lead to full system takeover. Exploitable via ``allowed_extensions_uris``. Mitigation: upgrade to `4.5.7` or later.
|
| CVE-2026-42409 |
|
Vulnerability in f5 (CVE-2026-42409)
vulnerability in f5 (CVE-2026-42409). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42406 |
|
Vulnerability in f5 (CVE-2026-42406)
vulnerability in f5 (CVE-2026-42406). Confidential information can be exposed externally.
|
| CVE-2026-41957 |
|
Unsafe Deserialization in f5 (CVE-2026-41957)
vulnerability in f5 (CVE-2026-41957). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41956 |
|
Vulnerability in f5 (CVE-2026-41956)
vulnerability in f5 (CVE-2026-41956). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41953 |
|
Command Injection in privilege-escalation (CVE-2026-41953)
command injection in privilege-escalation (CVE-2026-41953). Confidential information can be exposed externally.
|
| CVE-2026-41218 |
|
Use-After-Free in f5 (CVE-2026-41218)
vulnerability in f5 (CVE-2026-41218). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41227 |
|
Vulnerability in dos (CVE-2026-41227)
vulnerability in dos (CVE-2026-41227). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41217 |
|
Vulnerability in f5 (CVE-2026-41217)
vulnerability in f5 (CVE-2026-41217). Confidential information can be exposed externally.
|
| CVE-2026-40631 |
|
Vulnerability in privilege-escalation (CVE-2026-40631)
vulnerability in privilege-escalation (CVE-2026-40631). Confidential information can be exposed externally.
|
| CVE-2026-40698 |
|
Command Injection in privilege-escalation (CVE-2026-40698)
command injection in privilege-escalation (CVE-2026-40698). Confidential information can be exposed externally.
|
| CVE-2026-40629 |
|
Vulnerability in f5 (CVE-2026-40629)
vulnerability in f5 (CVE-2026-40629). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40618 |
|
Vulnerability in f5 (CVE-2026-40618)
vulnerability in f5 (CVE-2026-40618). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40067 |
|
Vulnerability in f5 (CVE-2026-40067)
vulnerability in f5 (CVE-2026-40067). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40061 |
|
Command Injection in f5 (CVE-2026-40061)
command injection in f5 (CVE-2026-40061). Confidential information can be exposed externally.
|
| CVE-2026-40423 |
|
Vulnerability in f5 (CVE-2026-40423)
vulnerability in f5 (CVE-2026-40423). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39458 |
|
Vulnerability in f5 (CVE-2026-39458)
vulnerability in f5 (CVE-2026-39458). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39455 |
|
Vulnerability in f5 (CVE-2026-39455)
vulnerability in f5 (CVE-2026-39455). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-36741 |
|
Command Injection in u-speed (CVE-2026-36741)
command injection in u-speed (CVE-2026-36741). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34176 |
|
OS Command Injection in f5 (CVE-2026-34176)
OS command injection in f5 (CVE-2026-34176). Confidential information can be exposed externally.
|
| CVE-2026-32643 |
|
Vulnerability in f5 (CVE-2026-32643)
vulnerability in f5 (CVE-2026-32643). Confidential information can be exposed externally.
|
| CVE-2026-32673 |
|
Vulnerability in f5 (CVE-2026-32673)
vulnerability in f5 (CVE-2026-32673). Confidential information can be exposed externally.
|
| CVE-2026-20916 |
|
Path Traversal in f5 (CVE-2026-20916)
path traversal in f5 (CVE-2026-20916). Data can be tampered with by attackers.
|
| CVE-2025-28344 |
|
striso-control-firmware 54c9722 is vulnerable to Buffer Overflow in function AuxJack.
striso-control-firmware 54c9722 is vulnerable to Buffer Overflow in function AuxJack.
|
| CVE-2024-55045 |
|
Vulnerability in c (CVE-2024-55045)
vulnerability in c (CVE-2024-55045). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-28343 |
|
striso-control-firmware 54c9722 is vulnerable to Buffer Overflow in function ThreadReadButtons.
striso-control-firmware 54c9722 is vulnerable to Buffer Overflow in function ThreadReadButtons.
|
| CVE-2020-37226 |
|
SQL Injection in sqli (CVE-2020-37226)
SQL injection in sqli (CVE-2020-37226). Confidential information can be exposed externally.
|
| CVE-2020-37218 |
|
SQL Injection in sqli (CVE-2020-37218)
SQL injection in sqli (CVE-2020-37218). Confidential information can be exposed externally.
|
| CVE-2020-37224 |
|
SQL Injection in sqli (CVE-2020-37224)
SQL injection in sqli (CVE-2020-37224). Confidential information can be exposed externally.
|
| CVE-2020-37222 |
|
Cross-Site Scripting (XSS) in c (CVE-2020-37222)
cross-site scripting in c (CVE-2020-37222). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-37219 |
|
Path Traversal in path-traversal (CVE-2020-37219)
path traversal in path-traversal (CVE-2020-37219). Confidential information can be exposed externally.
|
| CVE-2020-37221 |
|
Vulnerability in CVE-2020-37221 (CVE-2020-37221)
vulnerability in CVE-2020-37221 (CVE-2020-37221). Successful exploitation can lead to full system takeover.
|
| CVE-2020-37220 |
|
Vulnerability in CVE-2020-37220 (CVE-2020-37220)
vulnerability in CVE-2020-37220 (CVE-2020-37220). Confidential information can be exposed externally.
|
| CVE-2026-45152 |
|
OS Command Injection in gitlab.com/uniget-org/cli (CVE-2026-45152)
OS command injection in gitlab.com/uniget-org/cli (CVE-2026-45152). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.27.1` or later.
|
| CVE-2026-45137 |
|
Vulnerability in anchor-lang (CVE-2026-45137)
vulnerability in anchor-lang (CVE-2026-45137). Data can be tampered with by attackers. Mitigation: upgrade to `1.0.2` or later.
|
| CVE-2026-45136 |
|
OS Command Injection in claude-code-cache-fix (CVE-2026-45136)
OS command injection in claude-code-cache-fix (CVE-2026-45136). Successful exploitation can lead to full system takeover. Exploitable via ``statusLine``. Mitigation: upgrade to `3.5.2` or later.
|
| CVE-2026-44798 |
|
Vulnerability in nautobot (CVE-2026-44798)
vulnerability in nautobot (CVE-2026-44798). Risk of unauthorized operations or information disclosure. Exploitable via ``current_head``. Mitigation: upgrade to `2.4.33` or later.
|
| CVE-2026-44797 |
|
SSRF (Server-Side Request Forgery) in nautobot (CVE-2026-44797)
SSRF in nautobot (CVE-2026-44797). Confidential information can be exposed externally. Exploitable via ``Webhook``. Mitigation: upgrade to `2.4.33` or later.
|
| CVE-2026-45134 |
|
Unsafe Deserialization in langsmith (CVE-2026-45134)
vulnerability in langsmith (CVE-2026-45134). Confidential information can be exposed externally. Exploitable via ``pull_prompt``. Mitigation: upgrade to `0.8.0` or later.
|
| CVE-2026-44724 |
|
OS Command Injection in systeminformation (CVE-2026-44724)
OS command injection in systeminformation (CVE-2026-44724). Successful exploitation can lead to full system takeover. Exploitable via ``systeminformation``. Mitigation: upgrade to `5.31.6` or later.
|
| CVE-2026-4609 |
|
Vulnerability in wordpress (CVE-2026-4609)
vulnerability in wordpress (CVE-2026-4609). Data can be tampered with by attackers.
|
| CVE-2026-39806 |
|
Vulnerability in bandit (CVE-2026-39806)
vulnerability in bandit (CVE-2026-39806). Risk of unauthorized operations or information disclosure. Exploitable via ``rest``. Mitigation: upgrade to `1.11.1` or later.
|
| CVE-2026-37430 |
|
Unrestricted File Upload in CVE-2026-37430 (CVE-2026-37430)
vulnerability in CVE-2026-37430 (CVE-2026-37430). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39803 |
|
Vulnerability in bandit (CVE-2026-39803)
vulnerability in bandit (CVE-2026-39803). Risk of unauthorized operations or information disclosure. Exploitable via ``Plug.Parsers``. Mitigation: upgrade to `1.11.1` or later.
|
| CVE-2026-6177 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-6177)
cross-site scripting in wordpress (CVE-2026-6177). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3425 |
|
Vulnerability in wordpress (CVE-2026-3425)
vulnerability in wordpress (CVE-2026-3425). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35506 |
|
OS Command Injection in CVE-2026-35506 (CVE-2026-35506)
OS command injection in CVE-2026-35506 (CVE-2026-35506). Successful exploitation can lead to full system takeover.
|