Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-53524 Vulnerability in CVE-2026-53524 (CVE-2026-53524)
vulnerability in CVE-2026-53524 (CVE-2026-53524). Risk of unauthorized operations or information disclosure.
CVE-2026-53499 Vulnerability in CVE-2026-53499 (CVE-2026-53499)
vulnerability in CVE-2026-53499 (CVE-2026-53499). Risk of unauthorized operations or information disclosure.
CVE-2026-48106 Vulnerability in CVE-2026-48106 (CVE-2026-48106)
vulnerability in CVE-2026-48106 (CVE-2026-48106). Risk of unauthorized operations or information disclosure. Exploitable via ``MsgReplicateSync``. Mitigation: upgrade to `2026.06.1` or later.
CVE-2026-48105 Path Traversal in CVE-2026-48105 (CVE-2026-48105)
path traversal in CVE-2026-48105 (CVE-2026-48105). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.06.1` or later.
CVE-2026-34949 Vulnerability in CVE-2026-34949 (CVE-2026-34949)
vulnerability in CVE-2026-34949 (CVE-2026-34949). Risk of unauthorized operations or information disclosure.
CVE-2026-34948 Information Disclosure in CVE-2026-34948 (CVE-2026-34948)
vulnerability in CVE-2026-34948 (CVE-2026-34948). Confidential information can be exposed externally.
CVE-2026-11805 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-11615 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-11609 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-11418 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-53529 Cross-Site Scripting (XSS) in CVE-2026-53529 (CVE-2026-53529)
cross-site scripting in CVE-2026-53529 (CVE-2026-53529). Risk of unauthorized operations or information disclosure.
CVE-2026-53528 Vulnerability in path-traversal (CVE-2026-53528)
vulnerability in path-traversal (CVE-2026-53528). Successful exploitation can lead to full system takeover.
CVE-2026-53527 Privilege Escalation in privilege-escalation (CVE-2026-53527)
vulnerability in privilege-escalation (CVE-2026-53527). Successful exploitation can lead to full system takeover. Exploitable via ``viewer``.
CVE-2026-53497 Information Disclosure in CVE-2026-53497 (CVE-2026-53497)
vulnerability in CVE-2026-53497 (CVE-2026-53497). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/app-auth/status`.
CVE-2026-53468 Cross-Site Scripting (XSS) in CVE-2026-53468 (CVE-2026-53468)
cross-site scripting in CVE-2026-53468 (CVE-2026-53468). Risk of unauthorized operations or information disclosure.
CVE-2026-49849 Unrestricted File Upload in laravel (CVE-2026-49849)
vulnerability in laravel (CVE-2026-49849). Successful exploitation can lead to full system takeover.
CVE-2026-34836 Vulnerability in CVE-2026-34836 (CVE-2026-34836)
vulnerability in CVE-2026-34836 (CVE-2026-34836). Confidential information can be exposed externally.
CVE-2026-34741 Vulnerability in CVE-2026-34741 (CVE-2026-34741)
vulnerability in CVE-2026-34741 (CVE-2026-34741). Data can be tampered with by attackers.
CVE-2026-33333 Vulnerability in CVE-2026-33333 (CVE-2026-33333)
vulnerability in CVE-2026-33333 (CVE-2026-33333). Risk of unauthorized operations or information disclosure.
CVE-2026-33240 Cross-Site Scripting (XSS) in CVE-2026-33240 (CVE-2026-33240)
cross-site scripting in CVE-2026-33240 (CVE-2026-33240). Successful exploitation can lead to full system takeover.
CVE-2026-33047 Vulnerability in CVE-2026-33047 (CVE-2026-33047)
vulnerability in CVE-2026-33047 (CVE-2026-33047). Risk of unauthorized operations or information disclosure.
CVE-2026-31936 Vulnerability in CVE-2026-31936 (CVE-2026-31936)
vulnerability in CVE-2026-31936 (CVE-2026-31936). Successful exploitation can lead to full system takeover.
CVE-2026-69228 Vulnerability in CVE-2026-69228 (CVE-2026-69228)
vulnerability in CVE-2026-69228 (CVE-2026-69228). Risk of unauthorized operations or information disclosure.
CVE-2026-69235 Cross-Site Scripting (XSS) in CVE-2026-69235 (CVE-2026-69235)
cross-site scripting in CVE-2026-69235 (CVE-2026-69235). Risk of unauthorized operations or information disclosure.
CVE-2026-69236 Cross-Site Scripting (XSS) in CVE-2026-69236 (CVE-2026-69236)
cross-site scripting in CVE-2026-69236 (CVE-2026-69236). Risk of unauthorized operations or information disclosure.
CVE-2026-69237 Cross-Site Scripting (XSS) in CVE-2026-69237 (CVE-2026-69237)
cross-site scripting in CVE-2026-69237 (CVE-2026-69237). Risk of unauthorized operations or information disclosure.
CVE-2026-69232 Cross-Site Scripting (XSS) in CVE-2026-69232 (CVE-2026-69232)
cross-site scripting in CVE-2026-69232 (CVE-2026-69232). Risk of unauthorized operations or information disclosure.
CVE-2026-77220 Vulnerability in CVE-2026-77220 (CVE-2026-77220)
vulnerability in CVE-2026-77220 (CVE-2026-77220). Data can be tampered with by attackers.
CVE-2026-69224 Information Disclosure in CVE-2026-69224 (CVE-2026-69224)
vulnerability in CVE-2026-69224 (CVE-2026-69224). Confidential information can be exposed externally.
CVE-2026-69234 Cross-Site Scripting (XSS) in CVE-2026-69234 (CVE-2026-69234)
cross-site scripting in CVE-2026-69234 (CVE-2026-69234). Risk of unauthorized operations or information disclosure.
CVE-2026-69229 Cross-Site Scripting (XSS) in CVE-2026-69229 (CVE-2026-69229)
cross-site scripting in CVE-2026-69229 (CVE-2026-69229). Risk of unauthorized operations or information disclosure.
CVE-2026-77219 Out-of-Bounds Read in CVE-2026-77219 (CVE-2026-77219)
vulnerability in CVE-2026-77219 (CVE-2026-77219). Confidential information can be exposed externally.
CVE-2026-69225 Information Disclosure in CVE-2026-69225 (CVE-2026-69225)
vulnerability in CVE-2026-69225 (CVE-2026-69225). Confidential information can be exposed externally.
CVE-2026-69238 Cross-Site Scripting (XSS) in CVE-2026-69238 (CVE-2026-69238)
cross-site scripting in CVE-2026-69238 (CVE-2026-69238). Risk of unauthorized operations or information disclosure.
CVE-2026-69231 Cross-Site Scripting (XSS) in CVE-2026-69231 (CVE-2026-69231)
cross-site scripting in CVE-2026-69231 (CVE-2026-69231). Risk of unauthorized operations or information disclosure.
CVE-2026-69233 Cross-Site Scripting (XSS) in CVE-2026-69233 (CVE-2026-69233)
cross-site scripting in CVE-2026-69233 (CVE-2026-69233). Risk of unauthorized operations or information disclosure.
CVE-2026-69230 Cross-Site Scripting (XSS) in CVE-2026-69230 (CVE-2026-69230)
cross-site scripting in CVE-2026-69230 (CVE-2026-69230). Risk of unauthorized operations or information disclosure.
CVE-2026-67619 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-62316 Information Disclosure in CVE-2026-62316 (CVE-2026-62316)
vulnerability in CVE-2026-62316 (CVE-2026-62316). Successful exploitation can lead to full system takeover.
CVE-2026-62283 Vulnerability in CVE-2026-62283 (CVE-2026-62283)
vulnerability in CVE-2026-62283 (CVE-2026-62283). Successful exploitation can lead to full system takeover. Exploitable via `GET /ws/terminal/`.
CVE-2026-55168 Vulnerability in CVE-2026-55168 (CVE-2026-55168)
vulnerability in CVE-2026-55168 (CVE-2026-55168). Data can be tampered with by attackers. Exploitable via `PUT /api/user-config/demoapp3`.
CVE-2026-50538 Vulnerability in dos (CVE-2026-50538)
vulnerability in dos (CVE-2026-50538). Successful exploitation can lead to full system takeover. Exploitable via ``libvncclient``.
CVE-2026-45271 Vulnerability in CVE-2026-45271 (CVE-2026-45271)
vulnerability in CVE-2026-45271 (CVE-2026-45271). Risk of unauthorized operations or information disclosure.
CVE-2026-31880 Cross-Site Scripting (XSS) in CVE-2026-31880 (CVE-2026-31880)
cross-site scripting in CVE-2026-31880 (CVE-2026-31880). Successful exploitation can lead to full system takeover.
CVE-2026-31803 Cross-Site Scripting (XSS) in CVE-2026-31803 (CVE-2026-31803)
cross-site scripting in CVE-2026-31803 (CVE-2026-31803). Successful exploitation can lead to full system takeover.
CVE-2026-30890 Cross-Site Scripting (XSS) in CVE-2026-30890 (CVE-2026-30890)
cross-site scripting in CVE-2026-30890 (CVE-2026-30890). Successful exploitation can lead to full system takeover.
CVE-2026-30865 Cross-Site Scripting (XSS) in CVE-2026-30865 (CVE-2026-30865)
cross-site scripting in CVE-2026-30865 (CVE-2026-30865). Risk of unauthorized operations or information disclosure.
CVE-2026-30826 Cross-Site Scripting (XSS) in CVE-2026-30826 (CVE-2026-30826)
cross-site scripting in CVE-2026-30826 (CVE-2026-30826). Successful exploitation can lead to full system takeover.
CVE-2026-77811 Cross-Site Scripting (XSS) in Amazon aws (CVE-2026-77811)
cross-site scripting in Amazon aws (CVE-2026-77811). Confidential information can be exposed externally.
CVE-2026-77415 Code Injection in jsonata (CVE-2026-77415)
code injection in jsonata (CVE-2026-77415). Risk of unauthorized operations or information disclosure. Exploitable via ``evaluateTransformExpression``. Mitigation: upgrade to `1.8.8` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →