Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-59801 |
|
Vulnerability in dos (CVE-2026-59801)
vulnerability in dos (CVE-2026-59801). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58500 |
|
Cross-Site Scripting (XSS) in appium (CVE-2026-58500)
cross-site scripting in appium (CVE-2026-58500). Data can be tampered with by attackers.
|
| CVE-2026-58488 |
|
Vulnerability in CVE-2026-58488 (CVE-2026-58488)
vulnerability in CVE-2026-58488 (CVE-2026-58488). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58487 |
|
Cross-Site Scripting (XSS) in CVE-2026-58487 (CVE-2026-58487)
cross-site scripting in CVE-2026-58487 (CVE-2026-58487). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58411 |
|
Cross-Site Scripting (XSS) in privilege-escalation (CVE-2026-58411)
cross-site scripting in privilege-escalation (CVE-2026-58411). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56877 |
|
Vulnerability in dos (CVE-2026-56877)
vulnerability in dos (CVE-2026-56877). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52533 |
|
Privilege Escalation in CVE-2026-52533 (CVE-2026-52533)
vulnerability in CVE-2026-52533 (CVE-2026-52533). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51821 |
|
SQL Injection in sqli (CVE-2026-51821)
SQL injection in sqli (CVE-2026-51821). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51541 |
|
Out-of-Bounds Read in opener-project (CVE-2026-51541)
vulnerability in opener-project (CVE-2026-51541). Confidential information can be exposed externally.
|
| CVE-2026-51540 |
|
Vulnerability in opener-project (CVE-2026-51540)
vulnerability in opener-project (CVE-2026-51540). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51539 |
|
Vulnerability in dos (CVE-2026-51539)
vulnerability in dos (CVE-2026-51539). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-51538 |
|
Vulnerability in opener-project (CVE-2026-51538)
vulnerability in opener-project (CVE-2026-51538). Confidential information can be exposed externally.
|
| CVE-2026-51537 |
|
Out-of-Bounds Read in opener-project (CVE-2026-51537)
vulnerability in opener-project (CVE-2026-51537). Confidential information can be exposed externally.
|
| CVE-2026-51536 |
|
Vulnerability in opener-project (CVE-2026-51536)
vulnerability in opener-project (CVE-2026-51536). Confidential information can be exposed externally.
|
| CVE-2026-39042 |
|
Vulnerability in dos (CVE-2026-39042)
vulnerability in dos (CVE-2026-39042). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15685 |
|
Vulnerability in ollama (CVE-2026-15685)
vulnerability in ollama (CVE-2026-15685). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15684 |
|
Vulnerability in privilege-escalation (CVE-2026-15684)
vulnerability in privilege-escalation (CVE-2026-15684). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15683 |
|
Vulnerability in CVE-2026-15683 (CVE-2026-15683)
vulnerability in CVE-2026-15683 (CVE-2026-15683). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15682 |
|
Vulnerability in anydesk (CVE-2026-15682)
vulnerability in anydesk (CVE-2026-15682). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15681 |
|
Vulnerability in anydesk (CVE-2026-15681)
vulnerability in anydesk (CVE-2026-15681). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15680 |
|
Vulnerability in CVE-2026-15680 (CVE-2026-15680)
vulnerability in CVE-2026-15680 (CVE-2026-15680). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15598 |
|
Code Injection in CVE-2026-15598 (CVE-2026-15598)
code injection in CVE-2026-15598 (CVE-2026-15598). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15597 |
|
Vulnerability in sqli (CVE-2026-15597)
vulnerability in sqli (CVE-2026-15597). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15596 |
|
Cross-Site Scripting (XSS) in CVE-2026-15596 (CVE-2026-15596)
cross-site scripting in CVE-2026-15596 (CVE-2026-15596). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48363 |
|
Vulnerability in adobe (CVE-2026-48363)
vulnerability in adobe (CVE-2026-48363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48364 |
|
Vulnerability in adobe (CVE-2026-48364)
vulnerability in adobe (CVE-2026-48364). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12536 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12536)
cross-site scripting in wordpress (CVE-2026-12536). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15594 |
|
Vulnerability in CVE-2026-15594 (CVE-2026-15594)
vulnerability in CVE-2026-15594 (CVE-2026-15594). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15595 |
|
Cross-Site Scripting (XSS) in CVE-2026-15595 (CVE-2026-15595)
cross-site scripting in CVE-2026-15595 (CVE-2026-15595). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12385 |
|
Information Disclosure in wordpress (CVE-2026-12385)
vulnerability in wordpress (CVE-2026-12385). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58410 |
|
Vulnerability in CVE-2026-58410 (CVE-2026-58410)
vulnerability in CVE-2026-58410 (CVE-2026-58410). Confidential information can be exposed externally. Exploitable via ``familyId``.
|
| CVE-2026-58409 |
|
Unrestricted File Upload in CVE-2026-58409 (CVE-2026-58409)
vulnerability in CVE-2026-58409 (CVE-2026-58409). Successful exploitation can lead to full system takeover. Exploitable via ``php``.
|
| CVE-2026-58408 |
|
Vulnerability in CVE-2026-58408 (CVE-2026-58408)
vulnerability in CVE-2026-58408 (CVE-2026-58408). Confidential information can be exposed externally. Exploitable via `POST /CSVCreateFile.php`.
|
| CVE-2026-58407 |
|
Rejected reason: Please submit CVE requests for each vulnerability.
Rejected reason: Please submit CVE requests for each vulnerability.
|
| CVE-2026-55771 |
|
Code Injection in com.cedarpolicy:cedar-java (CVE-2026-55771)
code injection in com.cedarpolicy:cedar-java (CVE-2026-55771). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.9.0` or later.
|
| CVE-2026-6875 |
|
Code Injection in CVE-2026-6875 (CVE-2026-6875)
code injection in CVE-2026-6875 (CVE-2026-6875). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58228 |
|
Cross-Site Scripting (XSS) in CVE-2026-58228 (CVE-2026-58228)
cross-site scripting in CVE-2026-58228 (CVE-2026-58228). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49972 |
|
Unrestricted File Upload in laravel (CVE-2026-49972)
vulnerability in laravel (CVE-2026-49972). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49971 |
|
Cross-Site Scripting (XSS) in laravel (CVE-2026-49971)
cross-site scripting in laravel (CVE-2026-49971). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49970 |
|
Path Traversal in plank/laravel-mediable (CVE-2026-49970)
path traversal in plank/laravel-mediable (CVE-2026-49970). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `7.0.0` or later.
|
| CVE-2026-49969 |
|
SSRF (Server-Side Request Forgery) in laravel (CVE-2026-49969)
SSRF in laravel (CVE-2026-49969). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26396 |
|
Path Traversal in path-traversal (CVE-2026-26396)
path traversal in path-traversal (CVE-2026-26396). Confidential information can be exposed externally.
|
| CVE-2026-14906 |
|
Unrestricted File Upload in mozilla (CVE-2026-14906)
vulnerability in mozilla (CVE-2026-14906). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-45869 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2025-45869)
SSRF in ssrf (CVE-2025-45869). Risk of unauthorized operations or information disclosure.
|
| GHSA-7xw9-549r-8jrc |
|
SQL Injection in DIRAC (GHSA-7xw9-549r-8jrc)
SQL injection in DIRAC (GHSA-7xw9-549r-8jrc). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.1.10` or later.
|
| CVE-2026-61668 |
|
Vulnerability in DIRAC (CVE-2026-61668)
vulnerability in DIRAC (CVE-2026-61668). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.1.10` or later.
|
| CVE-2026-61667 |
|
SQL Injection in DIRAC (CVE-2026-61667)
SQL injection in DIRAC (CVE-2026-61667). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.1.10` or later.
|
| CVE-2026-59955 |
|
Vulnerability in com.ctrip.framework.apollo:apollo (CVE-2026-59955)
vulnerability in com.ctrip.framework.apollo:apollo (CVE-2026-59955). Confidential information can be exposed externally.
|
| CVE-2026-61505 |
|
Path Traversal in path-traversal (CVE-2026-61505)
path traversal in path-traversal (CVE-2026-61505). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61503 |
|
Vulnerability in CVE-2026-61503 (CVE-2026-61503)
vulnerability in CVE-2026-61503 (CVE-2026-61503). Risk of unauthorized operations or information disclosure.
|