Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
MINI-jv8q-pmrx-hf8x MINI-jv8q-pmrx-hf8x
MINI-9368-69r5-8mqq MINI-9368-69r5-8mqq
MINI-28jg-8gmr-j6vq MINI-28jg-8gmr-j6vq
MINI-49cp-fm9j-6v54 MINI-49cp-fm9j-6v54
MINI-p723-cg95-m9ph MINI-p723-cg95-m9ph
MINI-4rgv-hrqh-j2hc MINI-4rgv-hrqh-j2hc
MINI-2mmj-x549-mmm7 MINI-2mmj-x549-mmm7
CVE-2026-6382 Vulnerability in wordpress (CVE-2026-6382)
vulnerability in wordpress (CVE-2026-6382). Successful exploitation can lead to full system takeover.
CVE-2026-14808 Vulnerability in CVE-2026-14808 (CVE-2026-14808)
vulnerability in CVE-2026-14808 (CVE-2026-14808). Successful exploitation can lead to full system takeover.
CVE-2026-14807 Vulnerability in CVE-2026-14807 (CVE-2026-14807)
vulnerability in CVE-2026-14807 (CVE-2026-14807). Successful exploitation can lead to full system takeover.
CVE-2026-14802 A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
CVE-2026-14801 Vulnerability in c (CVE-2026-14801)
vulnerability in c (CVE-2026-14801). Risk of unauthorized operations or information disclosure.
CVE-2026-14800 Cross-Site Request Forgery (CSRF) in CVE-2026-14800 (CVE-2026-14800)
vulnerability in CVE-2026-14800 (CVE-2026-14800). Risk of unauthorized operations or information disclosure.
CVE-2026-12083 Vulnerability in wordpress (CVE-2026-12083)
vulnerability in wordpress (CVE-2026-12083). Successful exploitation can lead to full system takeover.
CVE-2026-11962 Vulnerability in wordpress (CVE-2026-11962)
vulnerability in wordpress (CVE-2026-11962). Successful exploitation can lead to full system takeover.
CVE-2026-11855 Vulnerability in wordpress (CVE-2026-11855)
vulnerability in wordpress (CVE-2026-11855). Successful exploitation can lead to full system takeover.
CVE-2026-11766 Vulnerability in wordpress (CVE-2026-11766)
vulnerability in wordpress (CVE-2026-11766). Successful exploitation can lead to full system takeover.
CVE-2026-10830 Vulnerability in wordpress (CVE-2026-10830)
vulnerability in wordpress (CVE-2026-10830). Successful exploitation can lead to full system takeover.
CVE-2024-6228 Vulnerability in wordpress (CVE-2024-6228)
vulnerability in wordpress (CVE-2024-6228). Successful exploitation can lead to full system takeover.
MINI-vf3v-w73q-hh5v MINI-vf3v-w73q-hh5v
MINI-7v9q-f4jr-h4hh MINI-7v9q-f4jr-h4hh
CVE-2022-37189 XXE (XML External Entity) in mei2volpiano (CVE-2022-37189)
vulnerability in mei2volpiano (CVE-2022-37189). Risk of unauthorized operations or information disclosure.
CVE-2022-2806 Information Disclosure in sosreport (CVE-2022-2806)
vulnerability in sosreport (CVE-2022-2806). Confidential information can be exposed externally. Mitigation: upgrade to `4.4` or later.
CVE-2022-1930 Vulnerability in eth-account (CVE-2022-1930)
vulnerability in eth-account (CVE-2022-1930). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.5.9` or later.
CVE-2022-23451 Authorization Flaw in barbican (CVE-2022-23451)
vulnerability in barbican (CVE-2022-23451). Data can be tampered with by attackers. Mitigation: upgrade to `14.0.0` or later.
CVE-2022-23452 Authorization Flaw in barbican (CVE-2022-23452)
vulnerability in barbican (CVE-2022-23452). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.0.0` or later.
CVE-2022-38362 Vulnerability in apache-airflow-providers-docker (CVE-2022-38362)
vulnerability in apache-airflow-providers-docker (CVE-2022-38362). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.0.0` or later.
CVE-2022-31116 Vulnerability in ujson (CVE-2022-31116)
vulnerability in ujson (CVE-2022-31116). Risk of unauthorized operations or information disclosure. Exploitable via ``json``. Mitigation: upgrade to `5.4.0` or later.
CVE-2022-35920 Path Traversal in sanic (CVE-2022-35920)
path traversal in sanic (CVE-2022-35920). Risk of unauthorized operations or information disclosure. Exploitable via ``app.static``. Mitigation: upgrade to `20.12.7` or later.
CVE-2018-25045 Cross-Site Scripting (XSS) in django-rest-framework (CVE-2018-25045)
cross-site scripting in django-rest-framework (CVE-2018-25045). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.9.1` or later.
CVE-2022-31153 Vulnerability in openzeppelin-cairo-contracts (CVE-2022-31153)
vulnerability in openzeppelin-cairo-contracts (CVE-2022-31153). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.2.1` or later.
CVE-2022-2822 Vulnerability in octoprint (CVE-2022-2822)
vulnerability in octoprint (CVE-2022-2822). Risk of unauthorized operations or information disclosure. Exploitable via ``devel``.
CVE-2022-37394 Vulnerability in nova (CVE-2022-37394)
vulnerability in nova (CVE-2022-37394). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `25.0.2` or later.
CVE-2022-2111 Unrestricted File Upload in inventree (CVE-2022-2111)
vulnerability in inventree (CVE-2022-2111). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.7.2` or later.
CVE-2022-2112 Vulnerability in inventree (CVE-2022-2112)
vulnerability in inventree (CVE-2022-2112). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.7.2` or later.
CVE-2022-31117 Vulnerability in ujson (CVE-2022-31117)
vulnerability in ujson (CVE-2022-31117). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.4.0` or later.
CVE-2022-29773 Authorization Flaw in aleksis-core (CVE-2022-29773)
vulnerability in aleksis-core (CVE-2022-29773). Confidential information can be exposed externally. Mitigation: upgrade to `2.9` or later.
CVE-2022-33146 Open Redirect in web2py (CVE-2022-33146)
vulnerability in web2py (CVE-2022-33146). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.22.5` or later.
CVE-2019-11340 Vulnerability in matrix-sydent (CVE-2019-11340)
vulnerability in matrix-sydent (CVE-2019-11340). Data can be tampered with by attackers. Mitigation: upgrade to `1.0.2` or later.
CVE-2019-13594 Cross-Site Request Forgery (CSRF) in saleor (CVE-2019-13594)
vulnerability in saleor (CVE-2019-13594). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.8.0` or later.
CVE-2020-35459 Privilege Escalation in crmsh (CVE-2020-35459)
vulnerability in crmsh (CVE-2020-35459). Successful exploitation can lead to full system takeover. Exploitable via ``crm``.
CVE-2020-15703 Information Disclosure in aptdaemon (CVE-2020-15703)
vulnerability in aptdaemon (CVE-2020-15703). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.1.1` or later.
CVE-2021-38155 Vulnerability in keystone (CVE-2021-38155)
vulnerability in keystone (CVE-2021-38155). Confidential information can be exposed externally. Mitigation: upgrade to `19.0.1` or later.
CVE-2019-14322 Path Traversal in werkzeug (CVE-2019-14322)
path traversal in werkzeug (CVE-2019-14322). Confidential information can be exposed externally. Mitigation: upgrade to `0.15.5` or later.
CVE-2019-13628 Vulnerability in wolfcrypt (CVE-2019-13628)
vulnerability in wolfcrypt (CVE-2019-13628). Confidential information can be exposed externally. Mitigation: upgrade to `4.1.0` or later.
CVE-2019-10047 Cross-Site Scripting (XSS) in pydio (CVE-2019-10047)
cross-site scripting in pydio (CVE-2019-10047). Risk of unauthorized operations or information disclosure.
CVE-2015-9543 Information Disclosure in nova (CVE-2015-9543)
vulnerability in nova (CVE-2015-9543). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `20.1.0` or later.
CVE-2011-2185 Vulnerability in fabric (CVE-2011-2185)
vulnerability in fabric (CVE-2011-2185). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.1.0` or later.
CVE-2013-1665 Information Disclosure in django (CVE-2013-1665)
vulnerability in django (CVE-2013-1665). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.4` or later.
CVE-2013-1664 XXE (XML External Entity) in django (CVE-2013-1664)
vulnerability in django (CVE-2013-1664). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.4` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →