Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-jv8q-pmrx-hf8x |
|
MINI-jv8q-pmrx-hf8x |
| MINI-9368-69r5-8mqq |
|
MINI-9368-69r5-8mqq |
| MINI-28jg-8gmr-j6vq |
|
MINI-28jg-8gmr-j6vq |
| MINI-49cp-fm9j-6v54 |
|
MINI-49cp-fm9j-6v54 |
| MINI-p723-cg95-m9ph |
|
MINI-p723-cg95-m9ph |
| MINI-4rgv-hrqh-j2hc |
|
MINI-4rgv-hrqh-j2hc |
| MINI-2mmj-x549-mmm7 |
|
MINI-2mmj-x549-mmm7 |
| CVE-2026-6382 |
|
Vulnerability in wordpress (CVE-2026-6382)
vulnerability in wordpress (CVE-2026-6382). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14808 |
|
Vulnerability in CVE-2026-14808 (CVE-2026-14808)
vulnerability in CVE-2026-14808 (CVE-2026-14808). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14807 |
|
Vulnerability in CVE-2026-14807 (CVE-2026-14807)
vulnerability in CVE-2026-14807 (CVE-2026-14807). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14802 |
|
A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
|
| CVE-2026-14801 |
|
Vulnerability in c (CVE-2026-14801)
vulnerability in c (CVE-2026-14801). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14800 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-14800 (CVE-2026-14800)
vulnerability in CVE-2026-14800 (CVE-2026-14800). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12083 |
|
Vulnerability in wordpress (CVE-2026-12083)
vulnerability in wordpress (CVE-2026-12083). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11962 |
|
Vulnerability in wordpress (CVE-2026-11962)
vulnerability in wordpress (CVE-2026-11962). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11855 |
|
Vulnerability in wordpress (CVE-2026-11855)
vulnerability in wordpress (CVE-2026-11855). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11766 |
|
Vulnerability in wordpress (CVE-2026-11766)
vulnerability in wordpress (CVE-2026-11766). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10830 |
|
Vulnerability in wordpress (CVE-2026-10830)
vulnerability in wordpress (CVE-2026-10830). Successful exploitation can lead to full system takeover.
|
| CVE-2024-6228 |
|
Vulnerability in wordpress (CVE-2024-6228)
vulnerability in wordpress (CVE-2024-6228). Successful exploitation can lead to full system takeover.
|
| MINI-vf3v-w73q-hh5v |
|
MINI-vf3v-w73q-hh5v |
| MINI-7v9q-f4jr-h4hh |
|
MINI-7v9q-f4jr-h4hh |
| CVE-2022-37189 |
|
XXE (XML External Entity) in mei2volpiano (CVE-2022-37189)
vulnerability in mei2volpiano (CVE-2022-37189). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-2806 |
|
Information Disclosure in sosreport (CVE-2022-2806)
vulnerability in sosreport (CVE-2022-2806). Confidential information can be exposed externally. Mitigation: upgrade to `4.4` or later.
|
| CVE-2022-1930 |
|
Vulnerability in eth-account (CVE-2022-1930)
vulnerability in eth-account (CVE-2022-1930). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.5.9` or later.
|
| CVE-2022-23451 |
|
Authorization Flaw in barbican (CVE-2022-23451)
vulnerability in barbican (CVE-2022-23451). Data can be tampered with by attackers. Mitigation: upgrade to `14.0.0` or later.
|
| CVE-2022-23452 |
|
Authorization Flaw in barbican (CVE-2022-23452)
vulnerability in barbican (CVE-2022-23452). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.0.0` or later.
|
| CVE-2022-38362 |
|
Vulnerability in apache-airflow-providers-docker (CVE-2022-38362)
vulnerability in apache-airflow-providers-docker (CVE-2022-38362). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.0.0` or later.
|
| CVE-2022-31116 |
|
Vulnerability in ujson (CVE-2022-31116)
vulnerability in ujson (CVE-2022-31116). Risk of unauthorized operations or information disclosure. Exploitable via ``json``. Mitigation: upgrade to `5.4.0` or later.
|
| CVE-2022-35920 |
|
Path Traversal in sanic (CVE-2022-35920)
path traversal in sanic (CVE-2022-35920). Risk of unauthorized operations or information disclosure. Exploitable via ``app.static``. Mitigation: upgrade to `20.12.7` or later.
|
| CVE-2018-25045 |
|
Cross-Site Scripting (XSS) in django-rest-framework (CVE-2018-25045)
cross-site scripting in django-rest-framework (CVE-2018-25045). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.9.1` or later.
|
| CVE-2022-31153 |
|
Vulnerability in openzeppelin-cairo-contracts (CVE-2022-31153)
vulnerability in openzeppelin-cairo-contracts (CVE-2022-31153). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.2.1` or later.
|
| CVE-2022-2822 |
|
Vulnerability in octoprint (CVE-2022-2822)
vulnerability in octoprint (CVE-2022-2822). Risk of unauthorized operations or information disclosure. Exploitable via ``devel``.
|
| CVE-2022-37394 |
|
Vulnerability in nova (CVE-2022-37394)
vulnerability in nova (CVE-2022-37394). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `25.0.2` or later.
|
| CVE-2022-2111 |
|
Unrestricted File Upload in inventree (CVE-2022-2111)
vulnerability in inventree (CVE-2022-2111). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.7.2` or later.
|
| CVE-2022-2112 |
|
Vulnerability in inventree (CVE-2022-2112)
vulnerability in inventree (CVE-2022-2112). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.7.2` or later.
|
| CVE-2022-31117 |
|
Vulnerability in ujson (CVE-2022-31117)
vulnerability in ujson (CVE-2022-31117). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.4.0` or later.
|
| CVE-2022-29773 |
|
Authorization Flaw in aleksis-core (CVE-2022-29773)
vulnerability in aleksis-core (CVE-2022-29773). Confidential information can be exposed externally. Mitigation: upgrade to `2.9` or later.
|
| CVE-2022-33146 |
|
Open Redirect in web2py (CVE-2022-33146)
vulnerability in web2py (CVE-2022-33146). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.22.5` or later.
|
| CVE-2019-11340 |
|
Vulnerability in matrix-sydent (CVE-2019-11340)
vulnerability in matrix-sydent (CVE-2019-11340). Data can be tampered with by attackers. Mitigation: upgrade to `1.0.2` or later.
|
| CVE-2019-13594 |
|
Cross-Site Request Forgery (CSRF) in saleor (CVE-2019-13594)
vulnerability in saleor (CVE-2019-13594). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.8.0` or later.
|
| CVE-2020-35459 |
|
Privilege Escalation in crmsh (CVE-2020-35459)
vulnerability in crmsh (CVE-2020-35459). Successful exploitation can lead to full system takeover. Exploitable via ``crm``.
|
| CVE-2020-15703 |
|
Information Disclosure in aptdaemon (CVE-2020-15703)
vulnerability in aptdaemon (CVE-2020-15703). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.1.1` or later.
|
| CVE-2021-38155 |
|
Vulnerability in keystone (CVE-2021-38155)
vulnerability in keystone (CVE-2021-38155). Confidential information can be exposed externally. Mitigation: upgrade to `19.0.1` or later.
|
| CVE-2019-14322 |
|
Path Traversal in werkzeug (CVE-2019-14322)
path traversal in werkzeug (CVE-2019-14322). Confidential information can be exposed externally. Mitigation: upgrade to `0.15.5` or later.
|
| CVE-2019-13628 |
|
Vulnerability in wolfcrypt (CVE-2019-13628)
vulnerability in wolfcrypt (CVE-2019-13628). Confidential information can be exposed externally. Mitigation: upgrade to `4.1.0` or later.
|
| CVE-2019-10047 |
|
Cross-Site Scripting (XSS) in pydio (CVE-2019-10047)
cross-site scripting in pydio (CVE-2019-10047). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-9543 |
|
Information Disclosure in nova (CVE-2015-9543)
vulnerability in nova (CVE-2015-9543). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `20.1.0` or later.
|
| CVE-2011-2185 |
|
Vulnerability in fabric (CVE-2011-2185)
vulnerability in fabric (CVE-2011-2185). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.1.0` or later.
|
| CVE-2013-1665 |
|
Information Disclosure in django (CVE-2013-1665)
vulnerability in django (CVE-2013-1665). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.4` or later.
|
| CVE-2013-1664 |
|
XXE (XML External Entity) in django (CVE-2013-1664)
vulnerability in django (CVE-2013-1664). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.4` or later.
|