Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-41651 Vulnerability in c (CVE-2026-41651)
vulnerability in c (CVE-2026-41651). Successful exploitation can lead to full system takeover. Exploitable via ``RUNNING``.
CVE-2026-31527 Use-After-Free in linux (CVE-2026-31527)
vulnerability in linux (CVE-2026-31527). Successful exploitation can lead to full system takeover.
CVE-2026-31511 Use-After-Free in linux (CVE-2026-31511)
vulnerability in linux (CVE-2026-31511). Successful exploitation can lead to full system takeover.
CVE-2026-31504 Use-After-Free in linux (CVE-2026-31504)
vulnerability in linux (CVE-2026-31504). Successful exploitation can lead to full system takeover. Exploitable via ``NETDEV_UP``.
CVE-2026-31507 Vulnerability in linux (CVE-2026-31507)
vulnerability in linux (CVE-2026-31507). Successful exploitation can lead to full system takeover.
CVE-2026-31508 Vulnerability in linux (CVE-2026-31508)
vulnerability in linux (CVE-2026-31508). Successful exploitation can lead to full system takeover.
CVE-2026-31500 Use-After-Free in c (CVE-2026-31500)
vulnerability in c (CVE-2026-31500). Successful exploitation can lead to full system takeover.
CVE-2026-31494 Out-of-Bounds Write in c (CVE-2026-31494)
out-of-bounds write in c (CVE-2026-31494). Successful exploitation can lead to full system takeover.
CVE-2026-31486 Vulnerability in linux (CVE-2026-31486)
vulnerability in linux (CVE-2026-31486). Data can be tampered with by attackers.
CVE-2026-31488 Use-After-Free in linux (CVE-2026-31488)
vulnerability in linux (CVE-2026-31488). Successful exploitation can lead to full system takeover.
CVE-2026-31489 Vulnerability in linux (CVE-2026-31489)
vulnerability in linux (CVE-2026-31489). Successful exploitation can lead to full system takeover.
CVE-2026-31485 Use-After-Free in linux (CVE-2026-31485)
vulnerability in linux (CVE-2026-31485). Successful exploitation can lead to full system takeover.
CVE-2026-31476 Vulnerability in dos (CVE-2026-31476)
vulnerability in dos (CVE-2026-31476). Risk of unauthorized operations or information disclosure.
CVE-2026-31469 Use-After-Free in c (CVE-2026-31469)
vulnerability in c (CVE-2026-31469). Successful exploitation can lead to full system takeover.
CVE-2026-31455 Use-After-Free in linux (CVE-2026-31455)
vulnerability in linux (CVE-2026-31455). Successful exploitation can lead to full system takeover.
CVE-2026-31450 Vulnerability in linux (CVE-2026-31450)
vulnerability in linux (CVE-2026-31450). Successful exploitation can lead to full system takeover.
CVE-2026-31452 Out-of-Bounds Write in linux (CVE-2026-31452)
out-of-bounds write in linux (CVE-2026-31452). Successful exploitation can lead to full system takeover.
CVE-2026-31446 Use-After-Free in linux (CVE-2026-31446)
vulnerability in linux (CVE-2026-31446). Successful exploitation can lead to full system takeover.
CVE-2026-31447 Vulnerability in linux (CVE-2026-31447)
vulnerability in linux (CVE-2026-31447). Successful exploitation can lead to full system takeover.
CVE-2026-31449 Out-of-Bounds Read in linux (CVE-2026-31449)
vulnerability in linux (CVE-2026-31449). Successful exploitation can lead to full system takeover.
CVE-2026-31435 Out-of-Bounds Read in linux (CVE-2026-31435)
vulnerability in linux (CVE-2026-31435). Successful exploitation can lead to full system takeover.
CVE-2026-6855 Path Traversal in path-traversal (CVE-2026-6855)
path traversal in path-traversal (CVE-2026-6855). Confidential information can be exposed externally. Exploitable via ``logs_dir``.
CVE-2026-31432 Out-of-Bounds Write in linux (CVE-2026-31432)
out-of-bounds write in linux (CVE-2026-31432). Successful exploitation can lead to full system takeover.
CVE-2026-6846 Vulnerability in dos (CVE-2026-6846)
vulnerability in dos (CVE-2026-6846). Successful exploitation can lead to full system takeover.
CVE-2026-31433 Vulnerability in CVE-2026-31433 (CVE-2026-31433)
vulnerability in CVE-2026-31433 (CVE-2026-31433). Successful exploitation can lead to full system takeover.
CVE-2026-40542 Vulnerability in apache (CVE-2026-40542)
vulnerability in apache (CVE-2026-40542). Risk of unauthorized operations or information disclosure.
CVE-2026-22754 Vulnerability in vmware (CVE-2026-22754)
vulnerability in vmware (CVE-2026-22754). Data can be tampered with by attackers.
CVE-2026-33825 KEV [KEV] Vulnerability in Microsoft defender (CVE-2026-33825)
vulnerability in Microsoft defender (CVE-2026-33825). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2026-6832 Path Traversal in path-traversal (CVE-2026-6832)
path traversal in path-traversal (CVE-2026-6832). Data can be tampered with by attackers.
CVE-2026-22016 Information Disclosure in java (CVE-2026-22016)
vulnerability in java (CVE-2026-22016). Confidential information can be exposed externally. Mitigation: upgrade to `1.8.0, 8.0.491, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1` or later.
CVE-2026-40895 Information Disclosure in follow-redirects-project (CVE-2026-40895)
vulnerability in follow-redirects-project (CVE-2026-40895). Confidential information can be exposed externally. Exploitable via `Cookie header`. Mitigation: upgrade to `1.16.0` or later.
CVE-2025-70420 SQL Injection in sqli (CVE-2025-70420)
SQL injection in sqli (CVE-2025-70420). Successful exploitation can lead to full system takeover.
CVE-2026-40938 Vulnerability in github.com/tektoncd/pipeline (CVE-2026-40938)
vulnerability in github.com/tektoncd/pipeline (CVE-2026-40938). Successful exploitation can lead to full system takeover. Exploitable via ``revision``. Mitigation: upgrade to `1.0.2` or later.
CVE-2026-33813 Panic when decoding large WEBP image on 32-bit platforms in golang.org/x/image
Panic when decoding large WEBP image on 32-bit platforms in golang.org/x/image
CVE-2026-40161 Vulnerability in github.com/tektoncd/pipeline (CVE-2026-40161)
vulnerability in github.com/tektoncd/pipeline (CVE-2026-40161). Confidential information can be exposed externally. Exploitable via ``serverURL``. Mitigation: upgrade to `1.11.1` or later.
CVE-2026-40611 Path Traversal in path-traversal (CVE-2026-40611)
path traversal in path-traversal (CVE-2026-40611). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.34.0` or later.
CVE-2026-21571 OS Command Injection in atlassian (CVE-2026-21571)
OS command injection in atlassian (CVE-2026-21571). Successful exploitation can lead to full system takeover.
CVE-2026-6784 Out-of-Bounds Read in mozilla (CVE-2026-6784)
vulnerability in mozilla (CVE-2026-6784). Successful exploitation can lead to full system takeover.
CVE-2026-6754 Use-After-Free in mozilla (CVE-2026-6754)
vulnerability in mozilla (CVE-2026-6754). Risk of unauthorized operations or information disclosure.
CVE-2026-6746 Use-After-Free in mozilla (CVE-2026-6746)
vulnerability in mozilla (CVE-2026-6746). Risk of unauthorized operations or information disclosure.
CVE-2026-6747 Use-After-Free in mozilla (CVE-2026-6747)
vulnerability in mozilla (CVE-2026-6747). Risk of unauthorized operations or information disclosure.
CVE-2026-6749 Vulnerability in mozilla (CVE-2026-6749)
vulnerability in mozilla (CVE-2026-6749). Confidential information can be exposed externally.
CVE-2026-6750 Privilege Escalation in privilege-escalation (CVE-2026-6750)
vulnerability in privilege-escalation (CVE-2026-6750). Successful exploitation can lead to full system takeover.
CVE-2026-6753 Buffer Overflow in mozilla (CVE-2026-6753)
vulnerability in mozilla (CVE-2026-6753). Risk of unauthorized operations or information disclosure.
CVE-2026-6752 Buffer Overflow in mozilla (CVE-2026-6752)
vulnerability in mozilla (CVE-2026-6752). Risk of unauthorized operations or information disclosure.
CVE-2026-6751 Vulnerability in mozilla (CVE-2026-6751)
vulnerability in mozilla (CVE-2026-6751). Risk of unauthorized operations or information disclosure.
CVE-2026-31018 Code Injection in dolibarr (CVE-2026-31018)
code injection in dolibarr (CVE-2026-31018). Successful exploitation can lead to full system takeover.
CVE-2026-31019 OS Command Injection in dolibarr (CVE-2026-31019)
OS command injection in dolibarr (CVE-2026-31019). Successful exploitation can lead to full system takeover.
CVE-2026-40520 OS Command Injection in freepbx (CVE-2026-40520)
OS command injection in freepbx (CVE-2026-40520). Successful exploitation can lead to full system takeover.
CVE-2026-31368 Privilege Escalation in CVE-2026-31368 (CVE-2026-31368)
vulnerability in CVE-2026-31368 (CVE-2026-31368). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →