Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| ROOT-APP-MAVEN-CVE-2024-31573 |
|
Vulnerability in io.root.org.xmlunit:xmlunit-core (ROOT-APP-MAVEN-CVE-2024-31573)
vulnerability in io.root.org.xmlunit:xmlunit-core (ROOT-APP-MAVEN-CVE-2024-31573). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.9.1-root.io.1` or later.
|
| SUSE-SU-2026:2530-1 |
|
Vulnerability in libinput (SUSE-SU-2026:2530-1)
vulnerability in libinput (SUSE-SU-2026:2530-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.19.4-150400.3.3.1` or later.
|
| SUSE-SU-2026:2529-1 |
|
Vulnerability in libinput (SUSE-SU-2026:2529-1)
vulnerability in libinput (SUSE-SU-2026:2529-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.25.0-150600.3.3.1` or later.
|
| ROOT-APP-PYPI-CVE-2019-11236 |
|
Vulnerability in rootio-urllib3 (ROOT-APP-PYPI-CVE-2019-11236)
vulnerability in rootio-urllib3 (ROOT-APP-PYPI-CVE-2019-11236). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.21.1+root.io.4` or later.
|
| openSUSE-SU-2026:21143-1 |
|
Vulnerability in gleam (openSUSE-SU-2026:21143-1)
vulnerability in gleam (openSUSE-SU-2026:21143-1). Risk of unauthorized operations or information disclosure. Exploitable via ``path``. Mitigation: upgrade to `1.17.0-bp160.1.1` or later.
|
| openSUSE-SU-2026:21151-1 |
|
Vulnerability in warewulf4 (openSUSE-SU-2026:21151-1)
vulnerability in warewulf4 (openSUSE-SU-2026:21151-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.7.0-bp160.1.1` or later.
|
| CVE-2026-11374 |
|
Authentication Bypass in CVE-2026-11374 (CVE-2026-11374)
authentication bypass in CVE-2026-11374 (CVE-2026-11374). Successful exploitation can lead to full system takeover.
|
| SUSE-SU-2026:2528-1 |
|
Vulnerability in sqlite3 (SUSE-SU-2026:2528-1)
vulnerability in sqlite3 (SUSE-SU-2026:2528-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.53.2-150000.3.42.1` or later.
|
| SUSE-SU-2026:2527-1 |
|
Vulnerability in sqlite3 (SUSE-SU-2026:2527-1)
vulnerability in sqlite3 (SUSE-SU-2026:2527-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.53.2-9.50.1` or later.
|
| SUSE-SU-2026:2553-1 |
|
Vulnerability in kgraft-patch-SLE12-SP5_Update_83 (SUSE-SU-2026:2553-1)
vulnerability in kgraft-patch-SLE12-SP5_Update_83 (SUSE-SU-2026:2553-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2-2.1` or later.
|
| SUSE-SU-2026:2524-1 |
|
Vulnerability in libinput (SUSE-SU-2026:2524-1)
vulnerability in libinput (SUSE-SU-2026:2524-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.27.1-150700.3.3.1` or later.
|
| SUSE-SU-2026:2523-1 |
|
Vulnerability in libinput (SUSE-SU-2026:2523-1)
vulnerability in libinput (SUSE-SU-2026:2523-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.21.0-150500.3.3.1` or later.
|
| ECHO-00b6-a8a9-0340 |
|
ECHO-00b6-a8a9-0340 |
| CVE-2026-9733 |
|
Vulnerability in csrf (CVE-2026-9733)
vulnerability in csrf (CVE-2026-9733). Confidential information can be exposed externally.
|
| CVE-2026-10521 |
|
An high privileged remote attacker can access a hidden configuration method, that should not be...
An high privileged remote attacker can access a hidden configuration method, that should not be...
|
| SUSE-SU-2026:2520-1 |
|
Vulnerability in kernel-livepatch-SLE15-SP6_Update_22 (SUSE-SU-2026:2520-1)
vulnerability in kernel-livepatch-SLE15-SP6_Update_22 (SUSE-SU-2026:2520-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5-150600.2.1` or later.
|
| CVE-2026-8379 |
|
Vulnerability in wordpress (CVE-2026-8379)
vulnerability in wordpress (CVE-2026-8379). Confidential information can be exposed externally.
|
| CVE-2026-8378 |
|
Vulnerability in wordpress (CVE-2026-8378)
vulnerability in wordpress (CVE-2026-8378). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8172 |
|
Vulnerability in wordpress (CVE-2026-8172)
vulnerability in wordpress (CVE-2026-8172). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8163 |
|
Vulnerability in wordpress (CVE-2026-8163)
vulnerability in wordpress (CVE-2026-8163). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7842 |
|
Vulnerability in wordpress (CVE-2026-7842)
vulnerability in wordpress (CVE-2026-7842). Confidential information can be exposed externally.
|
| SUSE-SU-2026:2518-1 |
|
Vulnerability in kgraft-patch-SLE12-SP5_Update_70 (SUSE-SU-2026:2518-1)
vulnerability in kgraft-patch-SLE12-SP5_Update_70 (SUSE-SU-2026:2518-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `17-2.1` or later.
|
| ROOT-APP-MAVEN-CVE-2023-51074 |
|
Vulnerability in io.root.com.jayway.jsonpath:json-path (ROOT-APP-MAVEN-CVE-2023-51074)
vulnerability in io.root.com.jayway.jsonpath:json-path (ROOT-APP-MAVEN-CVE-2023-51074). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.8.0-root.io.1` or later.
|
| CVE-2026-12866 |
|
Code Injection in CVE-2026-12866 (CVE-2026-12866)
code injection in CVE-2026-12866 (CVE-2026-12866). Successful exploitation can lead to full system takeover.
|
| GHSA-6vr2-5hpq-589c |
|
Vulnerability in node-core-libs (GHSA-6vr2-5hpq-589c)
vulnerability in node-core-libs (GHSA-6vr2-5hpq-589c). Risk of unauthorized operations or information disclosure. Exploitable via ``windowsHide``.
|
| BELL-CVE-2026-9375 |
|
BELL-CVE-2026-9375 |
| BELL-CVE-2026-52911 |
|
BELL-CVE-2026-52911 |
| BELL-CVE-2026-56407 |
|
BELL-CVE-2026-56407 |
| BELL-CVE-2026-56408 |
|
BELL-CVE-2026-56408 |
| BELL-CVE-2026-56410 |
|
BELL-CVE-2026-56410 |
| BELL-CVE-2026-56411 |
|
BELL-CVE-2026-56411 |
| BELL-CVE-2026-56409 |
|
BELL-CVE-2026-56409 |
| BELL-CVE-2026-56406 |
|
BELL-CVE-2026-56406 |
| BELL-CVE-2026-56131 |
|
BELL-CVE-2026-56131 |
| BELL-CVE-2026-56404 |
|
BELL-CVE-2026-56404 |
| BELL-CVE-2026-56132 |
|
BELL-CVE-2026-56132 |
| BELL-CVE-2026-49337 |
|
BELL-CVE-2026-49337 |
| BELL-CVE-2026-49295 |
|
BELL-CVE-2026-49295 |
| BELL-CVE-2026-49346 |
|
BELL-CVE-2026-49346 |
| BELL-CVE-2026-49271 |
|
BELL-CVE-2026-49271 |
| BELL-CVE-2026-52909 |
|
BELL-CVE-2026-52909 |
| BELL-CVE-2026-52908 |
|
BELL-CVE-2026-52908 |
| BELL-CVE-2026-52910 |
|
BELL-CVE-2026-52910 |
| BELL-CVE-2026-56403 |
|
BELL-CVE-2026-56403 |
| BELL-CVE-2026-56412 |
|
BELL-CVE-2026-56412 |
| BELL-CVE-2026-56405 |
|
BELL-CVE-2026-56405 |
| GHSA-fgqv-2jmm-2p39 |
|
Vulnerability in search-from-search (GHSA-fgqv-2jmm-2p39)
vulnerability in search-from-search (GHSA-fgqv-2jmm-2p39). Risk of unauthorized operations or information disclosure. Exploitable via ``preinstall``.
|
| MGASA-2026-0227 |
|
Vulnerability in sslh (MGASA-2026-0227)
vulnerability in sslh (MGASA-2026-0227). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.3.1-1.1.mga9` or later.
|
| MGASA-2026-0228 |
|
Vulnerability in mumble (MGASA-2026-0228)
vulnerability in mumble (MGASA-2026-0228). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.287-3.1.mga9` or later.
|
| RLSA-2026:28037 |
|
Vulnerability in pgaudit (RLSA-2026:28037)
vulnerability in pgaudit (RLSA-2026:28037). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0:1.7.0-1.module+el9.7.0+40011+28af63c9` or later.
|