Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-44716 |
|
Path Traversal in pipecat-ai (CVE-2026-44716)
path traversal in pipecat-ai (CVE-2026-44716). Confidential information can be exposed externally. Exploitable via `GET /files/{filename`. Mitigation: upgrade to `1.2.0` or later.
|
| CVE-2026-41147 |
|
Cross-Site Scripting (XSS) in nukeviet/nukeviet (CVE-2026-41147)
cross-site scripting in nukeviet/nukeviet (CVE-2026-41147). Confidential information can be exposed externally. Exploitable via ``srcdoc``.
|
| CVE-2026-40092 |
|
Vulnerability in nimiq-keys (CVE-2026-40092)
vulnerability in nimiq-keys (CVE-2026-40092). Risk of unauthorized operations or information disclosure. Exploitable via ``TaggedPublicKey``.
|
| CVE-2026-22810 |
|
Vulnerability in @joplin/onenote-converter (CVE-2026-22810)
vulnerability in @joplin/onenote-converter (CVE-2026-22810). Successful exploitation can lead to full system takeover. Exploitable via ``embedded_file.rs``. Mitigation: upgrade to `3.5.7` or later.
|
| CVE-2026-46508 |
|
Command Injection in vercel (CVE-2026-46508)
command injection in vercel (CVE-2026-46508). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.9.14000` or later.
|
| CVE-2026-35194 |
|
Code Injection in flink (CVE-2026-35194)
code injection in flink (CVE-2026-35194). Confidential information can be exposed externally. Mitigation: upgrade to `1.20.4, 2.0.2, 2.1.1, 2.2.1` or later.
|
| CVE-2026-34253 |
|
Vulnerability in c (CVE-2026-34253)
vulnerability in c (CVE-2026-34253). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39054 |
|
Command Injection in CVE-2026-39054 (CVE-2026-39054)
command injection in CVE-2026-39054 (CVE-2026-39054). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-38728 |
|
Vulnerability in smtp-server (CVE-2026-38728)
vulnerability in smtp-server (CVE-2026-38728). Risk of unauthorized operations or information disclosure. Exploitable via ``_remainder``. Mitigation: upgrade to `3.18.3` or later.
|
| CVE-2026-46333 |
|
Privilege Escalation in cisa (CVE-2026-46333)
vulnerability in cisa (CVE-2026-46333). Confidential information can be exposed externally.
|
| CVE-2026-41552 |
|
Path Traversal in path-traversal (CVE-2026-41552)
path traversal in path-traversal (CVE-2026-41552). Confidential information can be exposed externally.
|
| CVE-2026-41964 |
|
Vulnerability in CVE-2026-41964 (CVE-2026-41964)
vulnerability in CVE-2026-41964 (CVE-2026-41964). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6228 |
|
Privilege Escalation in wordpress (CVE-2026-6228)
vulnerability in wordpress (CVE-2026-6228). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6403 |
|
Path Traversal in wordpress (CVE-2026-6403)
path traversal in wordpress (CVE-2026-6403). Confidential information can be exposed externally.
|
| CVE-2026-4094 |
|
The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable to...
The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable to...
|
| CVE-2026-41702 |
|
VMware Fusion contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during an...
VMware Fusion contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during an...
|
| CVE-2024-36333 |
|
Vulnerability in privilege-escalation (CVE-2024-36333)
vulnerability in privilege-escalation (CVE-2024-36333). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43490 |
|
Out-of-Bounds Write in linux (CVE-2026-43490)
out-of-bounds write in linux (CVE-2026-43490). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28761 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-28761 (CVE-2026-28761)
vulnerability in CVE-2026-28761 (CVE-2026-28761). Confidential information can be exposed externally.
|
| CVE-2025-54518 |
|
Vulnerability in privilege-escalation (CVE-2025-54518)
vulnerability in privilege-escalation (CVE-2025-54518). Successful exploitation can lead to full system takeover.
|
| CVE-2026-2652 |
|
Vulnerability in mlflow (CVE-2026-2652)
vulnerability in mlflow (CVE-2026-2652). Data can be tampered with by attackers. Mitigation: upgrade to `3.10.0` or later.
|
| CVE-2026-8585 |
|
Vulnerability in c (CVE-2026-8585)
vulnerability in c (CVE-2026-8585). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8581 |
|
Use-After-Free in google (CVE-2026-8581)
vulnerability in google (CVE-2026-8581). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8629 |
|
Vulnerability in privilege-escalation (CVE-2026-8629)
vulnerability in privilege-escalation (CVE-2026-8629). Confidential information can be exposed externally.
|
| CVE-2026-8587 |
|
Use-After-Free in google (CVE-2026-8587)
vulnerability in google (CVE-2026-8587). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8555 |
|
Use-After-Free in Google chrome (CVE-2026-8555)
vulnerability in Google chrome (CVE-2026-8555). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8558 |
|
Out-of-Bounds Write in google (CVE-2026-8558)
out-of-bounds write in google (CVE-2026-8558). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8557 |
|
Use-After-Free in privilege-escalation (CVE-2026-8557)
vulnerability in privilege-escalation (CVE-2026-8557). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8571 |
|
Vulnerability in google (CVE-2026-8571)
vulnerability in google (CVE-2026-8571). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8573 |
|
Vulnerability in google (CVE-2026-8573)
vulnerability in google (CVE-2026-8573). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8575 |
|
Use-After-Free in google (CVE-2026-8575)
vulnerability in google (CVE-2026-8575). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8569 |
|
Out-of-Bounds Write in google (CVE-2026-8569)
out-of-bounds write in google (CVE-2026-8569). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8574 |
|
Use-After-Free in google (CVE-2026-8574)
vulnerability in google (CVE-2026-8574). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8577 |
|
Vulnerability in google (CVE-2026-8577)
vulnerability in google (CVE-2026-8577). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8526 |
|
Out-of-Bounds Write in google (CVE-2026-8526)
out-of-bounds write in google (CVE-2026-8526). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8527 |
|
Vulnerability in google (CVE-2026-8527)
vulnerability in google (CVE-2026-8527). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8529 |
|
Vulnerability in google (CVE-2026-8529)
vulnerability in google (CVE-2026-8529). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8530 |
|
Use-After-Free in google (CVE-2026-8530)
vulnerability in google (CVE-2026-8530). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8531 |
|
Vulnerability in google (CVE-2026-8531)
vulnerability in google (CVE-2026-8531). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8532 |
|
Vulnerability in google (CVE-2026-8532)
vulnerability in google (CVE-2026-8532). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8540 |
|
Vulnerability in google (CVE-2026-8540)
vulnerability in google (CVE-2026-8540). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8533 |
|
Use-After-Free in google (CVE-2026-8533)
vulnerability in google (CVE-2026-8533). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8534 |
|
Vulnerability in google (CVE-2026-8534)
vulnerability in google (CVE-2026-8534). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8544 |
|
Use-After-Free in google (CVE-2026-8544)
vulnerability in google (CVE-2026-8544). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8549 |
|
Use-After-Free in google (CVE-2026-8549)
vulnerability in google (CVE-2026-8549). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8542 |
|
Use-After-Free in google (CVE-2026-8542)
vulnerability in google (CVE-2026-8542). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8548 |
|
Out-of-Bounds Write in google (CVE-2026-8548)
out-of-bounds write in google (CVE-2026-8548). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8547 |
|
Vulnerability in privilege-escalation (CVE-2026-8547)
vulnerability in privilege-escalation (CVE-2026-8547). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8551 |
|
Use-After-Free in google (CVE-2026-8551)
vulnerability in google (CVE-2026-8551). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8513 |
|
Use-After-Free in google (CVE-2026-8513)
vulnerability in google (CVE-2026-8513). Successful exploitation can lead to full system takeover.
|