Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-14387 |
|
Vulnerability in google (CVE-2026-14387)
vulnerability in google (CVE-2026-14387). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14388 |
|
Out-of-Bounds Read in google (CVE-2026-14388)
vulnerability in google (CVE-2026-14388). Confidential information can be exposed externally.
|
| CVE-2026-14395 |
|
Out-of-Bounds Write in google (CVE-2026-14395)
out-of-bounds write in google (CVE-2026-14395). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14400 |
|
Out-of-Bounds Write in google (CVE-2026-14400)
out-of-bounds write in google (CVE-2026-14400). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14398 |
|
Use-After-Free in google (CVE-2026-14398)
vulnerability in google (CVE-2026-14398). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14390 |
|
Use-After-Free in google (CVE-2026-14390)
vulnerability in google (CVE-2026-14390). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14393 |
|
Use-After-Free in google (CVE-2026-14393)
vulnerability in google (CVE-2026-14393). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14401 |
|
Vulnerability in google (CVE-2026-14401)
vulnerability in google (CVE-2026-14401). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14389 |
|
Vulnerability in google (CVE-2026-14389)
vulnerability in google (CVE-2026-14389). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14407 |
|
Code Injection in google (CVE-2026-14407)
code injection in google (CVE-2026-14407). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14403 |
|
Use-After-Free in google (CVE-2026-14403)
vulnerability in google (CVE-2026-14403). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14411 |
|
Vulnerability in google (CVE-2026-14411)
vulnerability in google (CVE-2026-14411). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14413 |
|
Vulnerability in google (CVE-2026-14413)
vulnerability in google (CVE-2026-14413). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14392 |
|
Out-of-Bounds Write in google (CVE-2026-14392)
out-of-bounds write in google (CVE-2026-14392). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14397 |
|
Out-of-Bounds Write in google (CVE-2026-14397)
out-of-bounds write in google (CVE-2026-14397). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14384 |
|
Out-of-Bounds Read in google (CVE-2026-14384)
vulnerability in google (CVE-2026-14384). Confidential information can be exposed externally.
|
| CVE-2026-14381 |
|
Vulnerability in google (CVE-2026-14381)
vulnerability in google (CVE-2026-14381). Data can be tampered with by attackers.
|
| CVE-2026-14383 |
|
Code Injection in google (CVE-2026-14383)
code injection in google (CVE-2026-14383). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14385 |
|
Vulnerability in google (CVE-2026-14385)
vulnerability in google (CVE-2026-14385). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58451 |
|
Path Traversal in csrf (CVE-2026-58451)
path traversal in csrf (CVE-2026-58451). Confidential information can be exposed externally.
|
| CVE-2026-54720 |
|
Cross-Site Scripting (XSS) in silverstripe/framework (CVE-2026-54720)
cross-site scripting in silverstripe/framework (CVE-2026-54720). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.2.2` or later.
|
| CVE-2026-54164 |
|
Vulnerability in api-platform/core (CVE-2026-54164)
vulnerability in api-platform/core (CVE-2026-54164). Data can be tampered with by attackers. Exploitable via ``AbstractItemNormalizer``. Mitigation: upgrade to `4.3.12` or later.
|
| CVE-2026-55594 |
|
Vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-55594)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-55594). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-55595 |
|
Vulnerability in imagemagick (CVE-2026-55595)
vulnerability in imagemagick (CVE-2026-55595). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55597 |
|
Vulnerability in imagemagick (CVE-2026-55597)
vulnerability in imagemagick (CVE-2026-55597). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53466 |
|
Vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-53466)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-53466). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-53467 |
|
Information Disclosure in Magick.NET-Q16-AnyCPU (CVE-2026-53467)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-53467). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-55510 |
|
Use-After-Free in Magick.NET-Q16-AnyCPU (CVE-2026-55510)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-55510). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-55577 |
|
Vulnerability in imagemagick (CVE-2026-55577)
vulnerability in imagemagick (CVE-2026-55577). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49981 |
|
Vulnerability in twig/twig (CVE-2026-49981)
vulnerability in twig/twig (CVE-2026-49981). Confidential information can be exposed externally. Exploitable via ``Template``. Mitigation: upgrade to `3.27.0` or later.
|
| CVE-2026-49090 |
|
Vulnerability in elasticsearch (CVE-2026-49090)
vulnerability in elasticsearch (CVE-2026-49090). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.17.24, 8.15.0` or later.
|
| CVE-2026-54428 |
|
Vulnerability in org.apache.httpcomponents.core5:httpcore5-h2 (CVE-2026-54428)
vulnerability in org.apache.httpcomponents.core5:httpcore5-h2 (CVE-2026-54428). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.5-beta2` or later.
|
| CVE-2026-49091 |
|
Vulnerability in elastic (CVE-2026-49091)
vulnerability in elastic (CVE-2026-49091). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56151 |
|
Vulnerability in dos (CVE-2026-56151)
vulnerability in dos (CVE-2026-56151). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56149 |
|
Vulnerability in elasticsearch (CVE-2026-56149)
vulnerability in elasticsearch (CVE-2026-56149). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.19.17, 9.3.6, 9.4.3` or later.
|
| CVE-2026-56148 |
|
Vulnerability in elasticsearch (CVE-2026-56148)
vulnerability in elasticsearch (CVE-2026-56148). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.19.17, 9.3.6, 9.4.3` or later.
|
| CVE-2026-54399 |
|
Vulnerability in org.apache.httpcomponents.core5:httpcore5 (CVE-2026-54399)
vulnerability in org.apache.httpcomponents.core5:httpcore5 (CVE-2026-54399). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.5-beta2` or later.
|
| CVE-2026-34112 |
|
OS Command Injection in CVE-2026-34112 (CVE-2026-34112)
OS command injection in CVE-2026-34112 (CVE-2026-34112). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34114 |
|
OS Command Injection in CVE-2026-34114 (CVE-2026-34114)
OS command injection in CVE-2026-34114 (CVE-2026-34114). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34117 |
|
OS Command Injection in CVE-2026-34117 (CVE-2026-34117)
OS command injection in CVE-2026-34117 (CVE-2026-34117). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34110 |
|
OS Command Injection in CVE-2026-34110 (CVE-2026-34110)
OS command injection in CVE-2026-34110 (CVE-2026-34110). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34113 |
|
OS Command Injection in CVE-2026-34113 (CVE-2026-34113)
OS command injection in CVE-2026-34113 (CVE-2026-34113). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34108 |
|
OS Command Injection in CVE-2026-34108 (CVE-2026-34108)
OS command injection in CVE-2026-34108 (CVE-2026-34108). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34111 |
|
OS Command Injection in CVE-2026-34111 (CVE-2026-34111)
OS command injection in CVE-2026-34111 (CVE-2026-34111). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34116 |
|
OS Command Injection in CVE-2026-34116 (CVE-2026-34116)
OS command injection in CVE-2026-34116 (CVE-2026-34116). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34115 |
|
OS Command Injection in CVE-2026-34115 (CVE-2026-34115)
OS command injection in CVE-2026-34115 (CVE-2026-34115). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49087 |
|
Vulnerability in dos (CVE-2026-49087)
vulnerability in dos (CVE-2026-49087). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49088 |
|
Vulnerability in elastic (CVE-2026-49088)
vulnerability in elastic (CVE-2026-49088). Confidential information can be exposed externally.
|
| CVE-2026-34104 |
|
SQL Injection in sqli (CVE-2026-34104)
SQL injection in sqli (CVE-2026-34104). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34103 |
|
SQL Injection in sqli (CVE-2026-34103)
SQL injection in sqli (CVE-2026-34103). Successful exploitation can lead to full system takeover.
|