Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2025-8714 |
|
Vulnerability in jvn (CVE-2025-8714)
vulnerability in jvn (CVE-2025-8714). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77392 |
|
Vulnerability in sqli (CVE-2026-77392)
vulnerability in sqli (CVE-2026-77392). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77391 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-77391 (CVE-2026-77391)
vulnerability in CVE-2026-77391 (CVE-2026-77391). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76157 |
|
Vulnerability in CVE-2026-76157 (CVE-2026-76157)
vulnerability in CVE-2026-76157 (CVE-2026-76157). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76156 |
|
OS Command Injection in CVE-2026-76156 (CVE-2026-76156)
OS command injection in CVE-2026-76156 (CVE-2026-76156). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76155 |
|
Vulnerability in CVE-2026-76155 (CVE-2026-76155)
vulnerability in CVE-2026-76155 (CVE-2026-76155). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77651 |
|
Vulnerability in CVE-2026-77651 (CVE-2026-77651)
vulnerability in CVE-2026-77651 (CVE-2026-77651). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77650 |
|
Vulnerability in CVE-2026-77650 (CVE-2026-77650)
vulnerability in CVE-2026-77650 (CVE-2026-77650). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77649 |
|
Vulnerability in CVE-2026-77649 (CVE-2026-77649)
vulnerability in CVE-2026-77649 (CVE-2026-77649). Successful exploitation can lead to full system takeover.
|
| CVE-2026-43679 |
|
Vulnerability in apple (CVE-2026-43679)
vulnerability in apple (CVE-2026-43679). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-20679 |
|
Out-of-Bounds Read in apple (CVE-2026-20679)
vulnerability in apple (CVE-2026-20679). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16520 |
|
Vulnerability in sqli (CVE-2026-16520)
vulnerability in sqli (CVE-2026-16520). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77648 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-77648)
SSRF in ssrf (CVE-2026-77648). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77647 |
|
Code Injection in CVE-2026-77647 (CVE-2026-77647)
code injection in CVE-2026-77647 (CVE-2026-77647). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77113 |
|
Vulnerability in path-traversal (CVE-2026-77113)
vulnerability in path-traversal (CVE-2026-77113). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77646 |
|
Unsafe Deserialization in ssrf (CVE-2026-77646)
vulnerability in ssrf (CVE-2026-77646). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77645 |
|
Vulnerability in deserialization (CVE-2026-77645)
vulnerability in deserialization (CVE-2026-77645). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77644 |
|
Vulnerability in CVE-2026-77644 (CVE-2026-77644)
vulnerability in CVE-2026-77644 (CVE-2026-77644). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77643 |
|
Cross-Site Scripting (XSS) in CVE-2026-77643 (CVE-2026-77643)
cross-site scripting in CVE-2026-77643 (CVE-2026-77643). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77642 |
|
Out-of-Bounds Write in CVE-2026-77642 (CVE-2026-77642)
out-of-bounds write in CVE-2026-77642 (CVE-2026-77642). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72860 |
|
Vulnerability in CVE-2026-72860 (CVE-2026-72860)
vulnerability in CVE-2026-72860 (CVE-2026-72860). Confidential information can be exposed externally. Exploitable via `POST /api/provider-nodes/validate`.
|
| CVE-2026-72858 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-72848 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-72848 (CVE-2026-72848)
SSRF in CVE-2026-72848 (CVE-2026-72848). Confidential information can be exposed externally.
|
| CVE-2026-72846 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-72846 (CVE-2026-72846)
SSRF in CVE-2026-72846 (CVE-2026-72846). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72843 |
|
Vulnerability in c (CVE-2026-72843)
vulnerability in c (CVE-2026-72843). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72818 |
|
Vulnerability in CVE-2026-72818 (CVE-2026-72818)
vulnerability in CVE-2026-72818 (CVE-2026-72818). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70105 |
|
Vulnerability in CVE-2026-70105 (CVE-2026-70105)
vulnerability in CVE-2026-70105 (CVE-2026-70105). Confidential information can be exposed externally.
|
| CVE-2026-69855 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-69855)
SSRF in ssrf (CVE-2026-69855). Confidential information can be exposed externally.
|
| CVE-2026-69851 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-69851)
SSRF in ssrf (CVE-2026-69851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69836 KEV |
|
[KEV] Unsafe Deserialization in Microsoft deserialization (CVE-2026-69836)
vulnerability in Microsoft deserialization (CVE-2026-69836). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-69558 |
|
Vulnerability in microsoft (CVE-2026-69558)
vulnerability in microsoft (CVE-2026-69558). Confidential information can be exposed externally.
|
| CVE-2026-69555 |
|
Authorization Flaw in microsoft (CVE-2026-69555)
vulnerability in microsoft (CVE-2026-69555). Confidential information can be exposed externally.
|
| CVE-2026-69543 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-69543)
SSRF in ssrf (CVE-2026-69543). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69519 |
|
Vulnerability in microsoft (CVE-2026-69519)
vulnerability in microsoft (CVE-2026-69519). Confidential information can be exposed externally.
|
| CVE-2026-69419 |
|
Vulnerability in CVE-2026-69419 (CVE-2026-69419)
vulnerability in CVE-2026-69419 (CVE-2026-69419). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69400 |
|
Path Traversal in path-traversal (CVE-2026-69400)
path traversal in path-traversal (CVE-2026-69400). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68789 |
|
SQL Injection in sqli (CVE-2026-68789)
SQL injection in sqli (CVE-2026-68789). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68782 |
|
SQL Injection in sqli (CVE-2026-68782)
SQL injection in sqli (CVE-2026-68782). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66800 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-66800)
SSRF in ssrf (CVE-2026-66800). Confidential information can be exposed externally.
|
| CVE-2026-66309 |
|
Vulnerability in microsoft (CVE-2026-66309)
vulnerability in microsoft (CVE-2026-66309). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65816 |
|
Vulnerability in microsoft (CVE-2026-65816)
vulnerability in microsoft (CVE-2026-65816). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65801 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-65801)
SSRF in ssrf (CVE-2026-65801). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65770 |
|
Vulnerability in apache (CVE-2026-65770)
vulnerability in apache (CVE-2026-65770). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64773 |
|
Vulnerability in CVE-2026-64773 (CVE-2026-64773)
vulnerability in CVE-2026-64773 (CVE-2026-64773). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63509 |
|
Vulnerability in path-traversal (CVE-2026-63509)
vulnerability in path-traversal (CVE-2026-63509). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62945 |
|
Vulnerability in CVE-2026-62945 (CVE-2026-62945)
vulnerability in CVE-2026-62945 (CVE-2026-62945). Risk of unauthorized operations or information disclosure. Exploitable via `POST /api/trips/`.
|
| CVE-2026-62834 |
|
Vulnerability in microsoft (CVE-2026-62834)
vulnerability in microsoft (CVE-2026-62834). Confidential information can be exposed externally.
|
| CVE-2026-55894 |
|
Out-of-Bounds Read in c (CVE-2026-55894)
vulnerability in c (CVE-2026-55894). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55893 |
|
Vulnerability in c (CVE-2026-55893)
vulnerability in c (CVE-2026-55893). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55769 |
|
Vulnerability in CVE-2026-55769 (CVE-2026-55769)
vulnerability in CVE-2026-55769 (CVE-2026-55769). Risk of unauthorized operations or information disclosure.
|