Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-14387 |
|
Vulnerability in google (CVE-2026-14387)
vulnerability in google (CVE-2026-14387). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14388 |
|
Out-of-Bounds Read in google (CVE-2026-14388)
vulnerability in google (CVE-2026-14388). Confidential information can be exposed externally.
|
| CVE-2026-14395 |
|
Out-of-Bounds Write in google (CVE-2026-14395)
out-of-bounds write in google (CVE-2026-14395). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14391 |
|
Vulnerability in google (CVE-2026-14391)
vulnerability in google (CVE-2026-14391). Confidential information can be exposed externally.
|
| CVE-2026-14400 |
|
Out-of-Bounds Write in google (CVE-2026-14400)
out-of-bounds write in google (CVE-2026-14400). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14398 |
|
Use-After-Free in google (CVE-2026-14398)
vulnerability in google (CVE-2026-14398). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14390 |
|
Use-After-Free in google (CVE-2026-14390)
vulnerability in google (CVE-2026-14390). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14393 |
|
Use-After-Free in google (CVE-2026-14393)
vulnerability in google (CVE-2026-14393). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14397 |
|
Out-of-Bounds Write in google (CVE-2026-14397)
out-of-bounds write in google (CVE-2026-14397). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14402 |
|
Vulnerability in google (CVE-2026-14402)
vulnerability in google (CVE-2026-14402). Confidential information can be exposed externally.
|
| CVE-2026-14389 |
|
Vulnerability in google (CVE-2026-14389)
vulnerability in google (CVE-2026-14389). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14407 |
|
Code Injection in google (CVE-2026-14407)
code injection in google (CVE-2026-14407). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14403 |
|
Use-After-Free in google (CVE-2026-14403)
vulnerability in google (CVE-2026-14403). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14411 |
|
Vulnerability in google (CVE-2026-14411)
vulnerability in google (CVE-2026-14411). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14413 |
|
Vulnerability in google (CVE-2026-14413)
vulnerability in google (CVE-2026-14413). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14392 |
|
Out-of-Bounds Write in google (CVE-2026-14392)
out-of-bounds write in google (CVE-2026-14392). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14410 |
|
Vulnerability in google (CVE-2026-14410)
vulnerability in google (CVE-2026-14410). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14406 |
|
Out-of-Bounds Read in google (CVE-2026-14406)
vulnerability in google (CVE-2026-14406). Confidential information can be exposed externally.
|
| CVE-2026-14405 |
|
Vulnerability in google (CVE-2026-14405)
vulnerability in google (CVE-2026-14405). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14394 |
|
Use-After-Free in google (CVE-2026-14394)
vulnerability in google (CVE-2026-14394). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14412 |
|
Vulnerability in google (CVE-2026-14412)
vulnerability in google (CVE-2026-14412). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14404 |
|
Vulnerability in google (CVE-2026-14404)
vulnerability in google (CVE-2026-14404). Data can be tampered with by attackers.
|
| CVE-2026-14409 |
|
Vulnerability in google (CVE-2026-14409)
vulnerability in google (CVE-2026-14409). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14399 |
|
Vulnerability in google (CVE-2026-14399)
vulnerability in google (CVE-2026-14399). Confidential information can be exposed externally.
|
| CVE-2026-14401 |
|
Vulnerability in google (CVE-2026-14401)
vulnerability in google (CVE-2026-14401). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14384 |
|
Out-of-Bounds Read in google (CVE-2026-14384)
vulnerability in google (CVE-2026-14384). Confidential information can be exposed externally.
|
| CVE-2026-14385 |
|
Vulnerability in google (CVE-2026-14385)
vulnerability in google (CVE-2026-14385). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14381 |
|
Vulnerability in google (CVE-2026-14381)
vulnerability in google (CVE-2026-14381). Data can be tampered with by attackers.
|
| CVE-2026-14383 |
|
Code Injection in google (CVE-2026-14383)
code injection in google (CVE-2026-14383). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54704 |
|
Vulnerability in io.opentelemetry.javaagent:opentelemetry-javaagent (CVE-2026-54704)
vulnerability in io.opentelemetry.javaagent:opentelemetry-javaagent (CVE-2026-54704). Confidential information can be exposed externally. Mitigation: upgrade to `2.28.0-alpha` or later.
|
| CVE-2026-54712 |
|
Vulnerability in io.opentelemetry.javaagent:opentelemetry-javaagent (CVE-2026-54712)
vulnerability in io.opentelemetry.javaagent:opentelemetry-javaagent (CVE-2026-54712). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.27.0` or later.
|
| CVE-2026-58451 |
|
Path Traversal in csrf (CVE-2026-58451)
path traversal in csrf (CVE-2026-58451). Confidential information can be exposed externally.
|
| CVE-2026-50521 |
|
Use-After-Free in microsoft (CVE-2026-50521)
vulnerability in microsoft (CVE-2026-50521). Confidential information can be exposed externally.
|
| CVE-2026-41121 |
|
Vulnerability in dell (CVE-2026-41121)
vulnerability in dell (CVE-2026-41121). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54720 |
|
Cross-Site Scripting (XSS) in silverstripe/framework (CVE-2026-54720)
cross-site scripting in silverstripe/framework (CVE-2026-54720). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.2.2` or later.
|
| CVE-2026-55153 |
|
Vulnerability in com.mchange:mchange-commons-java (CVE-2026-55153)
vulnerability in com.mchange:mchange-commons-java (CVE-2026-55153). Successful exploitation can lead to full system takeover. Exploitable via ``ObjectFactory``. Mitigation: upgrade to `0.6.0` or later.
|
| CVE-2026-44935 |
|
Authorization Flaw in github.com/rancher/fleet (CVE-2026-44935)
vulnerability in github.com/rancher/fleet (CVE-2026-44935). Successful exploitation can lead to full system takeover. Exploitable via ``HelmOp``. Mitigation: upgrade to `0.12.15` or later.
|
| CVE-2026-44936 |
|
SSRF (Server-Side Request Forgery) in github.com/rancher/fleet (CVE-2026-44936)
SSRF in github.com/rancher/fleet (CVE-2026-44936). Risk of unauthorized operations or information disclosure. Exploitable via ``helmRepoURLRegex``. Mitigation: upgrade to `0.12.15` or later.
|
| CVE-2026-44937 |
|
Vulnerability in github.com/rancher/fleet (CVE-2026-44937)
vulnerability in github.com/rancher/fleet (CVE-2026-44937). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.12.15` or later.
|
| CVE-2026-14265 |
|
Unsafe Deserialization in Amazon aws (CVE-2026-14265)
vulnerability in Amazon aws (CVE-2026-14265). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55688 |
|
Vulnerability in org.asynchttpclient:async-http-client (CVE-2026-55688)
vulnerability in org.asynchttpclient:async-http-client (CVE-2026-55688). Risk of unauthorized operations or information disclosure. Exploitable via ``ThreadSafeCookieStore``. Mitigation: upgrade to `3.0.11` or later.
|
| CVE-2026-54164 |
|
Vulnerability in api-platform/core (CVE-2026-54164)
vulnerability in api-platform/core (CVE-2026-54164). Data can be tampered with by attackers. Exploitable via ``AbstractItemNormalizer``. Mitigation: upgrade to `4.3.12` or later.
|
| CVE-2026-55594 |
|
Vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-55594)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-55594). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-55595 |
|
Vulnerability in imagemagick (CVE-2026-55595)
vulnerability in imagemagick (CVE-2026-55595). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55597 |
|
Vulnerability in imagemagick (CVE-2026-55597)
vulnerability in imagemagick (CVE-2026-55597). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53466 |
|
Vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-53466)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-53466). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-53467 |
|
Information Disclosure in Magick.NET-Q16-AnyCPU (CVE-2026-53467)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-53467). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-55510 |
|
Use-After-Free in Magick.NET-Q16-AnyCPU (CVE-2026-55510)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-55510). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.15.0` or later.
|
| CVE-2026-55577 |
|
Vulnerability in imagemagick (CVE-2026-55577)
vulnerability in imagemagick (CVE-2026-55577). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49981 |
|
Vulnerability in twig/twig (CVE-2026-49981)
vulnerability in twig/twig (CVE-2026-49981). Confidential information can be exposed externally. Exploitable via ``Template``. Mitigation: upgrade to `3.27.0` or later.
|