Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-19213 |
|
Vulnerability in CVE-2026-19213 (CVE-2026-19213)
vulnerability in CVE-2026-19213 (CVE-2026-19213). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19229 |
|
Information Disclosure in CVE-2026-19229 (CVE-2026-19229)
vulnerability in CVE-2026-19229 (CVE-2026-19229). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47361 |
|
Vulnerability in CVE-2026-47361 (CVE-2026-47361)
vulnerability in CVE-2026-47361 (CVE-2026-47361). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44964 |
|
Vulnerability in c (CVE-2026-44964)
vulnerability in c (CVE-2026-44964). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47363 |
|
Vulnerability in CVE-2026-47363 (CVE-2026-47363)
vulnerability in CVE-2026-47363 (CVE-2026-47363). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66058 |
|
Vulnerability in CVE-2026-66058 (CVE-2026-66058)
vulnerability in CVE-2026-66058 (CVE-2026-66058). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64638 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-64638)
cross-site scripting in wordpress (CVE-2026-64638). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19082 |
|
Out-of-Bounds Read in CVE-2026-19082 (CVE-2026-19082)
vulnerability in CVE-2026-19082 (CVE-2026-19082). Confidential information can be exposed externally.
|
| CVE-2026-68772 |
|
Unsafe Deserialization in CVE-2026-68772 (CVE-2026-68772)
vulnerability in CVE-2026-68772 (CVE-2026-68772). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67585 |
|
Vulnerability in CVE-2026-67585 (CVE-2026-67585)
vulnerability in CVE-2026-67585 (CVE-2026-67585). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20348 |
|
Vulnerability in dos (CVE-2026-20348)
vulnerability in dos (CVE-2026-20348). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20347 |
|
Out-of-Bounds Read in dos (CVE-2026-20347)
vulnerability in dos (CVE-2026-20347). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20346 |
|
Out-of-Bounds Read in dos (CVE-2026-20346)
vulnerability in dos (CVE-2026-20346). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20345 |
|
Vulnerability in dos (CVE-2026-20345)
vulnerability in dos (CVE-2026-20345). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20339 |
|
Vulnerability in dos (CVE-2026-20339)
vulnerability in dos (CVE-2026-20339). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20338 |
|
Vulnerability in dos (CVE-2026-20338)
vulnerability in dos (CVE-2026-20338). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19212 |
|
Vulnerability in CVE-2026-19212 (CVE-2026-19212)
vulnerability in CVE-2026-19212 (CVE-2026-19212). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19211 |
|
Vulnerability in sqli (CVE-2026-19211)
vulnerability in sqli (CVE-2026-19211). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17603 |
|
Code Injection in CVE-2026-17603 (CVE-2026-17603)
code injection in CVE-2026-17603 (CVE-2026-17603). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17601 |
|
Vulnerability in CVE-2026-17601 (CVE-2026-17601)
vulnerability in CVE-2026-17601 (CVE-2026-17601). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17600 |
|
Vulnerability in CVE-2026-17600 (CVE-2026-17600)
vulnerability in CVE-2026-17600 (CVE-2026-17600). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17599 |
|
Vulnerability in CVE-2026-17599 (CVE-2026-17599)
vulnerability in CVE-2026-17599 (CVE-2026-17599). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17598 |
|
Vulnerability in CVE-2026-17598 (CVE-2026-17598)
vulnerability in CVE-2026-17598 (CVE-2026-17598). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17597 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-17597)
SSRF in ssrf (CVE-2026-17597). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17596 |
|
Cross-Site Scripting (XSS) in CVE-2026-17596 (CVE-2026-17596)
cross-site scripting in CVE-2026-17596 (CVE-2026-17596). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17595 |
|
Vulnerability in CVE-2026-17595 (CVE-2026-17595)
vulnerability in CVE-2026-17595 (CVE-2026-17595). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17594 |
|
Authorization Flaw in CVE-2026-17594 (CVE-2026-17594)
vulnerability in CVE-2026-17594 (CVE-2026-17594). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17593 |
|
Vulnerability in CVE-2026-17593 (CVE-2026-17593)
vulnerability in CVE-2026-17593 (CVE-2026-17593). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14644 |
|
Vulnerability in privilege-escalation (CVE-2026-14644)
vulnerability in privilege-escalation (CVE-2026-14644). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56818 |
|
Vulnerability in io.netty:netty-codec-redis (CVE-2026-56818)
vulnerability in io.netty:netty-codec-redis (CVE-2026-56818). Risk of unauthorized operations or information disclosure. Exploitable via ``RedisArrayAggregator``. Mitigation: upgrade to `4.2.16.Final` or later.
|
| CVE-2026-66062 |
|
Vulnerability in @sveltejs/kit (CVE-2026-66062)
vulnerability in @sveltejs/kit (CVE-2026-66062). Risk of unauthorized operations or information disclosure. Exploitable via ``Accept``. Mitigation: upgrade to `2.70.2` or later.
|
| GHSA-7c4v-fwgw-9rf7 |
|
Information Disclosure in nuxt (GHSA-7c4v-fwgw-9rf7)
vulnerability in nuxt (GHSA-7c4v-fwgw-9rf7). Risk of unauthorized operations or information disclosure. Exploitable via `GET /.well-known/appspecific/com.chrome.devtools.json`. Mitigation: upgrade to `3.21.10` or later.
|
| CVE-2026-71557 |
|
Path Traversal in github.com/go-git/go-git/v5 (CVE-2026-71557)
path traversal in github.com/go-git/go-git/v5 (CVE-2026-71557). Data can be tampered with by attackers. Exploitable via ``dotgit``. Mitigation: upgrade to `5.19.2` or later.
|
| CVE-2026-71556 |
|
Vulnerability in github.com/go-git/go-git/v5 (CVE-2026-71556)
vulnerability in github.com/go-git/go-git/v5 (CVE-2026-71556). Data can be tampered with by attackers. Exploitable via ``worktreeFilesystem``. Mitigation: upgrade to `5.19.2` or later.
|
| CVE-2026-20337 |
|
Vulnerability in Cisco dos (CVE-2026-20337)
vulnerability in Cisco dos (CVE-2026-20337). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66059 |
|
Authorization Flaw in CVE-2026-66059 (CVE-2026-66059)
vulnerability in CVE-2026-66059 (CVE-2026-66059). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48093 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-48093)
cross-site scripting in wordpress (CVE-2026-48093). Risk of unauthorized operations or information disclosure. Exploitable via ``unfiltered_html``.
|
| CVE-2026-19210 |
|
Vulnerability in CVE-2026-19210 (CVE-2026-19210)
vulnerability in CVE-2026-19210 (CVE-2026-19210). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19209 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-19209)
cross-site scripting in c (CVE-2026-19209). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19208 |
|
Vulnerability in cpp (CVE-2026-19208)
vulnerability in cpp (CVE-2026-19208). Risk of unauthorized operations or information disclosure.
|
| GHSA-wvpp-8hx9-p66j |
|
Vulnerability in GitPython (GHSA-wvpp-8hx9-p66j)
vulnerability in GitPython (GHSA-wvpp-8hx9-p66j). Risk of unauthorized operations or information disclosure. Exploitable via ``check_unsafe_options``. Mitigation: upgrade to `3.1.58` or later.
|
| GHSA-jm78-9fvv-mhgr |
|
Vulnerability in GitPython (GHSA-jm78-9fvv-mhgr)
vulnerability in GitPython (GHSA-jm78-9fvv-mhgr). Risk of unauthorized operations or information disclosure. Exploitable via ``write_section``. Mitigation: upgrade to `3.1.58` or later.
|
| GHSA-hmq2-w58f-27jc |
|
Path Traversal in GitPython (GHSA-hmq2-w58f-27jc)
path traversal in GitPython (GHSA-hmq2-w58f-27jc). Risk of unauthorized operations or information disclosure. Exploitable via ``sm._name``. Mitigation: upgrade to `3.1.58` or later.
|
| GHSA-hh9p-6wh2-4mfc |
|
Vulnerability in GitPython (GHSA-hh9p-6wh2-4mfc)
vulnerability in GitPython (GHSA-hh9p-6wh2-4mfc). Risk of unauthorized operations or information disclosure. Exploitable via ``GitCommandError.stderr``. Mitigation: upgrade to `3.1.58` or later.
|
| GHSA-9rj7-rf2p-w77r |
|
Vulnerability in GitPython (GHSA-9rj7-rf2p-w77r)
vulnerability in GitPython (GHSA-9rj7-rf2p-w77r). Risk of unauthorized operations or information disclosure. Exploitable via ``allow_unsafe_options``. Mitigation: upgrade to `3.1.58` or later.
|
| GHSA-4gmw-gg2m-w46p |
|
Vulnerability in GitPython (GHSA-4gmw-gg2m-w46p)
vulnerability in GitPython (GHSA-4gmw-gg2m-w46p). Risk of unauthorized operations or information disclosure. Exploitable via ``IndexFile.from_tree``. Mitigation: upgrade to `3.1.58` or later.
|
| CVE-2022-4995 |
|
Unrestricted File Upload in CVE-2022-4995 (CVE-2022-4995)
vulnerability in CVE-2022-4995 (CVE-2022-4995). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19264 |
|
Path Traversal in CVE-2026-19264 (CVE-2026-19264)
path traversal in CVE-2026-19264 (CVE-2026-19264). Successful exploitation can lead to full system takeover.
|
| CVE-2026-37171 |
|
Authorization Flaw in CVE-2026-37171 (CVE-2026-37171)
vulnerability in CVE-2026-37171 (CVE-2026-37171). Confidential information can be exposed externally.
|
| CVE-2026-66914 |
|
Path Traversal in path-traversal (CVE-2026-66914)
path traversal in path-traversal (CVE-2026-66914). Risk of unauthorized operations or information disclosure.
|