Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-16887 IBM i 7.6 could allow a remote attacker to cause a denial of service due to an out-of-bounds write.
IBM i 7.6 could allow a remote attacker to cause a denial of service due to an out-of-bounds write.
CVE-2026-16868 Vulnerability in dos (CVE-2026-16868)
vulnerability in dos (CVE-2026-16868). Successful exploitation can lead to full system takeover.
CVE-2026-16867 Authentication Bypass in ibm (CVE-2026-16867)
authentication bypass in ibm (CVE-2026-16867). Successful exploitation can lead to full system takeover.
CVE-2026-16815 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and...
CVE-2026-16722 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain unauthorized...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain unauthorized...
CVE-2026-16674 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary...
CVE-2026-14875 Vulnerability in ibm (CVE-2026-14875)
vulnerability in ibm (CVE-2026-14875). Successful exploitation can lead to full system takeover.
CVE-2026-13460 Vulnerability in ibm (CVE-2026-13460)
vulnerability in ibm (CVE-2026-13460). Confidential information can be exposed externally.
CVE-2026-13365 Cross-Site Request Forgery (CSRF) in ibm (CVE-2026-13365)
vulnerability in ibm (CVE-2026-13365). Data can be tampered with by attackers.
CVE-2026-73482 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73482)
vulnerability in csrf (CVE-2026-73482). Data can be tampered with by attackers.
CVE-2026-72777 Next AI Draw.io through 0.4.16 contains a server-side request forgery vulnerability in the POST ...
Next AI Draw.io through 0.4.16 contains a server-side request forgery vulnerability in the POST ...
CVE-2026-18071 Privilege Escalation in ibm (CVE-2026-18071)
vulnerability in ibm (CVE-2026-18071). Successful exploitation can lead to full system takeover.
CVE-2026-17220 Vulnerability in dos (CVE-2026-17220)
vulnerability in dos (CVE-2026-17220). Risk of unauthorized operations or information disclosure.
CVE-2026-17197 Authentication Bypass in ibm (CVE-2026-17197)
authentication bypass in ibm (CVE-2026-17197). Successful exploitation can lead to full system takeover.
CVE-2024-58374 SQL Injection in sqli (CVE-2024-58374)
SQL injection in sqli (CVE-2024-58374). Confidential information can be exposed externally.
CVE-2026-59109 Vulnerability in sqli (CVE-2026-59109)
vulnerability in sqli (CVE-2026-59109). Successful exploitation can lead to full system takeover.
CVE-2026-72741 Vulnerability in CVE-2026-72741 (CVE-2026-72741)
vulnerability in CVE-2026-72741 (CVE-2026-72741). Confidential information can be exposed externally.
CVE-2019-25765 SQL Injection in sqli (CVE-2019-25765)
SQL injection in sqli (CVE-2019-25765). Confidential information can be exposed externally.
CVE-2026-73266 Vulnerability in CVE-2026-73266 (CVE-2026-73266)
vulnerability in CVE-2026-73266 (CVE-2026-73266). Confidential information can be exposed externally.
CVE-2026-13048 Path Traversal in CVE-2026-13048 (CVE-2026-13048)
path traversal in CVE-2026-13048 (CVE-2026-13048). Data can be tampered with by attackers.
CVE-2026-73566 Vulnerability in tar (CVE-2026-73566)
vulnerability in tar (CVE-2026-73566). Risk of unauthorized operations or information disclosure. Exploitable via ``tar``. Mitigation: upgrade to `7.5.21` or later.
CVE-2026-18428 Vulnerability in Amazon aws (CVE-2026-18428)
vulnerability in Amazon aws (CVE-2026-18428). Successful exploitation can lead to full system takeover.
CVE-2025-7639 Unsafe Deserialization in cisa (CVE-2025-7639)
vulnerability in cisa (CVE-2025-7639). Data can be tampered with by attackers.
CVE-2026-73670 SQL Injection in sqli (CVE-2026-73670)
SQL injection in sqli (CVE-2026-73670). Successful exploitation can lead to full system takeover.
CVE-2026-73570 KEV [KEV] OS Command Injection in Synacor zimbra-collaboration-suite (CVE-2026-73570)
OS command injection in Synacor zimbra-collaboration-suite (CVE-2026-73570). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
CVE-2026-73515 Out-of-Bounds Read in dos (CVE-2026-73515)
vulnerability in dos (CVE-2026-73515). Confidential information can be exposed externally.
CVE-2026-73514 Out-of-Bounds Write in CVE-2026-73514 (CVE-2026-73514)
out-of-bounds write in CVE-2026-73514 (CVE-2026-73514). Successful exploitation can lead to full system takeover.
CVE-2026-19710 Vulnerability in sqli (CVE-2026-19710)
vulnerability in sqli (CVE-2026-19710). Risk of unauthorized operations or information disclosure.
CVE-2026-68454 Vulnerability in CVE-2026-68454 (CVE-2026-68454)
vulnerability in CVE-2026-68454 (CVE-2026-68454). Successful exploitation can lead to full system takeover.
CVE-2026-68452 Vulnerability in CVE-2026-68452 (CVE-2026-68452)
vulnerability in CVE-2026-68452 (CVE-2026-68452). Successful exploitation can lead to full system takeover.
CVE-2026-68453 Vulnerability in CVE-2026-68453 (CVE-2026-68453)
vulnerability in CVE-2026-68453 (CVE-2026-68453). Confidential information can be exposed externally.
CVE-2026-63424 Vulnerability in CVE-2026-63424 (CVE-2026-63424)
vulnerability in CVE-2026-63424 (CVE-2026-63424). Data can be tampered with by attackers.
CVE-2026-66256 Unsafe Deserialization in apache (CVE-2026-66256)
vulnerability in apache (CVE-2026-66256). Successful exploitation can lead to full system takeover.
CVE-2026-63425 Vulnerability in CVE-2026-63425 (CVE-2026-63425)
vulnerability in CVE-2026-63425 (CVE-2026-63425). Successful exploitation can lead to full system takeover.
CVE-2026-63426 Vulnerability in CVE-2026-63426 (CVE-2026-63426)
vulnerability in CVE-2026-63426 (CVE-2026-63426). Data can be tampered with by attackers.
CVE-2026-68451 Vulnerability in CVE-2026-68451 (CVE-2026-68451)
vulnerability in CVE-2026-68451 (CVE-2026-68451). Successful exploitation can lead to full system takeover.
CVE-2026-6387 Vulnerability in CVE-2026-6387 (CVE-2026-6387)
vulnerability in CVE-2026-6387 (CVE-2026-6387). Successful exploitation can lead to full system takeover.
CVE-2026-63423 Vulnerability in CVE-2026-63423 (CVE-2026-63423)
vulnerability in CVE-2026-63423 (CVE-2026-63423). Successful exploitation can lead to full system takeover.
CVE-2026-28154 Cross-Site Scripting (XSS) in wordpress (CVE-2026-28154)
cross-site scripting in wordpress (CVE-2026-28154). Risk of unauthorized operations or information disclosure.
CVE-2026-19291 Vulnerability in CVE-2026-19291 (CVE-2026-19291)
vulnerability in CVE-2026-19291 (CVE-2026-19291). Successful exploitation can lead to full system takeover.
CVE-2026-15994 Vulnerability in c (CVE-2026-15994)
vulnerability in c (CVE-2026-15994). Successful exploitation can lead to full system takeover.
CVE-2026-14456 Vulnerability in dos (CVE-2026-14456)
vulnerability in dos (CVE-2026-14456). Risk of unauthorized operations or information disclosure.
CVE-2026-19292 Vulnerability in CVE-2026-19292 (CVE-2026-19292)
vulnerability in CVE-2026-19292 (CVE-2026-19292). Successful exploitation can lead to full system takeover.
CVE-2026-19293 Vulnerability in CVE-2026-19293 (CVE-2026-19293)
vulnerability in CVE-2026-19293 (CVE-2026-19293). Successful exploitation can lead to full system takeover.
CVE-2026-16101 Vulnerability in CVE-2026-16101 (CVE-2026-16101)
vulnerability in CVE-2026-16101 (CVE-2026-16101). Successful exploitation can lead to full system takeover.
CVE-2026-12036 Vulnerability in CVE-2026-12036 (CVE-2026-12036)
vulnerability in CVE-2026-12036 (CVE-2026-12036). Data can be tampered with by attackers.
CVE-2026-70464 Vulnerability in dos (CVE-2026-70464)
vulnerability in dos (CVE-2026-70464). Risk of unauthorized operations or information disclosure.
CVE-2026-70463 Authorization Flaw in CVE-2026-70463 (CVE-2026-70463)
vulnerability in CVE-2026-70463 (CVE-2026-70463). Confidential information can be exposed externally.
CVE-2026-70461 Out-of-Bounds Write in CVE-2026-70461 (CVE-2026-70461)
out-of-bounds write in CVE-2026-70461 (CVE-2026-70461). Risk of unauthorized operations or information disclosure.
CVE-2026-70460 Path Traversal in path-traversal (CVE-2026-70460)
path traversal in path-traversal (CVE-2026-70460). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →