Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-2795 Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148.
Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148.
CVE-2026-2799 Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148.
Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148.
CVE-2026-2796 Vulnerability in mozilla (CVE-2026-2796)
vulnerability in mozilla (CVE-2026-2796). Successful exploitation can lead to full system takeover.
CVE-2026-2797 Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148.
Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148.
CVE-2026-2757 Vulnerability in mozilla (CVE-2026-2757)
vulnerability in mozilla (CVE-2026-2757). Successful exploitation can lead to full system takeover.
CVE-2026-2760 Vulnerability in mozilla (CVE-2026-2760)
vulnerability in mozilla (CVE-2026-2760). Successful exploitation can lead to full system takeover.
CVE-2026-2766 Use-After-Free in mozilla (CVE-2026-2766)
vulnerability in mozilla (CVE-2026-2766). Successful exploitation can lead to full system takeover.
CVE-2026-2762 Vulnerability in mozilla (CVE-2026-2762)
vulnerability in mozilla (CVE-2026-2762). Successful exploitation can lead to full system takeover.
CVE-2026-2764 Use-After-Free in mozilla (CVE-2026-2764)
vulnerability in mozilla (CVE-2026-2764). Successful exploitation can lead to full system takeover.
CVE-2026-2763 Use-After-Free in mozilla (CVE-2026-2763)
vulnerability in mozilla (CVE-2026-2763). Successful exploitation can lead to full system takeover.
CVE-2026-2765 Use-After-Free in mozilla (CVE-2026-2765)
vulnerability in mozilla (CVE-2026-2765). Successful exploitation can lead to full system takeover.
CVE-2026-2758 Use-After-Free in mozilla (CVE-2026-2758)
vulnerability in mozilla (CVE-2026-2758). Successful exploitation can lead to full system takeover.
CVE-2026-2761 Vulnerability in mozilla (CVE-2026-2761)
vulnerability in mozilla (CVE-2026-2761). Successful exploitation can lead to full system takeover.
CVE-2026-2759 Vulnerability in mozilla (CVE-2026-2759)
vulnerability in mozilla (CVE-2026-2759). Successful exploitation can lead to full system takeover.
CVE-2026-2767 Use-After-Free in mozilla (CVE-2026-2767)
vulnerability in mozilla (CVE-2026-2767). Successful exploitation can lead to full system takeover.
CVE-2026-2768 Vulnerability in mozilla (CVE-2026-2768)
vulnerability in mozilla (CVE-2026-2768). Successful exploitation can lead to full system takeover.
CVE-2026-2771 Out-of-Bounds Read in mozilla (CVE-2026-2771)
vulnerability in mozilla (CVE-2026-2771). Successful exploitation can lead to full system takeover.
CVE-2026-2772 Use-After-Free in mozilla (CVE-2026-2772)
vulnerability in mozilla (CVE-2026-2772). Successful exploitation can lead to full system takeover.
CVE-2026-2770 Use-After-Free in mozilla (CVE-2026-2770)
vulnerability in mozilla (CVE-2026-2770). Successful exploitation can lead to full system takeover.
CVE-2026-2775 Vulnerability in mozilla (CVE-2026-2775)
vulnerability in mozilla (CVE-2026-2775). Successful exploitation can lead to full system takeover.
CVE-2026-2774 Vulnerability in mozilla (CVE-2026-2774)
vulnerability in mozilla (CVE-2026-2774). Successful exploitation can lead to full system takeover.
CVE-2026-2776 Buffer Overflow in mozilla (CVE-2026-2776)
vulnerability in mozilla (CVE-2026-2776). Successful exploitation can lead to full system takeover.
CVE-2026-2786 Use-After-Free in mozilla (CVE-2026-2786)
vulnerability in mozilla (CVE-2026-2786). Successful exploitation can lead to full system takeover.
CVE-2026-25896 Vulnerability in c (CVE-2026-25896)
vulnerability in c (CVE-2026-25896). Data can be tampered with by attackers. Mitigation: upgrade to `5.3.5` or later.
CVE-2026-26725 Privilege Escalation in edubusinesssolutions (CVE-2026-26725)
vulnerability in edubusinesssolutions (CVE-2026-26725). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `19.76` or later.
CVE-2025-10970 SQL Injection in sqli (CVE-2025-10970)
SQL injection in sqli (CVE-2025-10970). Successful exploitation can lead to full system takeover.
CVE-2026-26339 SSRF (Server-Side Request Forgery) in hyland (CVE-2026-26339)
SSRF in hyland (CVE-2026-26339). Successful exploitation can lead to full system takeover.
CVE-2026-26338 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-26338)
SSRF in ssrf (CVE-2026-26338). Successful exploitation can lead to full system takeover.
CVE-2026-24834 Vulnerability in github.com/kata-containers/kata-containers/src/runtime (CVE-2026-24834)
vulnerability in github.com/kata-containers/kata-containers/src/runtime (CVE-2026-24834). Successful exploitation can lead to full system takeover. Exploitable via ``ND_REGION_PAGEMAP``. Mitigation: upgrade to `0.0.0-20260219090056-6a672503973b` or later.
CVE-2025-9953 Vulnerability in sqli (CVE-2025-9953)
vulnerability in sqli (CVE-2025-9953). Successful exploitation can lead to full system takeover.
CVE-2025-8350 Vulnerability in CVE-2025-8350 (CVE-2025-8350)
vulnerability in CVE-2025-8350 (CVE-2025-8350). Successful exploitation can lead to full system takeover.
CVE-2025-13590 Unrestricted File Upload in org.wso2.carbon.apimgt:org.wso2.carbon.apimgt.rest.api.admin.v1 (CVE-2025-13590)
vulnerability in org.wso2.carbon.apimgt:org.wso2.carbon.apimgt.rest.api.admin.v1 (CVE-2025-13590). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `9.32.167` or later.
CVE-2026-26980 SQL Injection in ghost (CVE-2026-26980)
SQL injection in ghost (CVE-2026-26980). Confidential information can be exposed externally. Mitigation: upgrade to `6.19.1` or later.
CVE-2026-22208 Vulnerability in CVE-2026-22208 (CVE-2026-22208)
vulnerability in CVE-2026-22208 (CVE-2026-22208). Successful exploitation can lead to full system takeover.
CVE-2026-23112 Out-of-Bounds Write in linux (CVE-2026-23112)
out-of-bounds write in linux (CVE-2026-23112). Successful exploitation can lead to full system takeover.
CVE-2026-26218 Vulnerability in newbee-mall-project (CVE-2026-26218)
vulnerability in newbee-mall-project (CVE-2026-26218). Successful exploitation can lead to full system takeover.
CVE-2026-26219 Vulnerability in newbee-mall-project (CVE-2026-26219)
vulnerability in newbee-mall-project (CVE-2026-26219). Confidential information can be exposed externally.
CVE-2026-26216 Code Injection in crawl4ai (CVE-2026-26216)
code injection in crawl4ai (CVE-2026-26216). Successful exploitation can lead to full system takeover. Exploitable via `POST /crawl`. Mitigation: upgrade to `0.8.0` or later.
CVE-2025-14014 Unrestricted File Upload in CVE-2025-14014 (CVE-2025-14014)
vulnerability in CVE-2025-14014 (CVE-2025-14014). Successful exploitation can lead to full system takeover.
CVE-2025-10969 SQL Injection in sqli (CVE-2025-10969)
SQL injection in sqli (CVE-2025-10969). Successful exploitation can lead to full system takeover.
CVE-2026-20677 Vulnerability in apple (CVE-2026-20677)
vulnerability in apple (CVE-2026-20677). Successful exploitation can lead to full system takeover.
CVE-2025-69872 Code Injection in CVE-2025-69872 (CVE-2025-69872)
code injection in CVE-2025-69872 (CVE-2025-69872). Successful exploitation can lead to full system takeover.
CVE-2025-12059 Vulnerability in c (CVE-2025-12059)
vulnerability in c (CVE-2025-12059). Successful exploitation can lead to full system takeover.
CVE-2025-8668 Cross-Site Scripting (XSS) in CVE-2025-8668 (CVE-2025-8668)
cross-site scripting in CVE-2025-8668 (CVE-2025-8668). Data can be tampered with by attackers.
CVE-2025-8025 Vulnerability in CVE-2025-8025 (CVE-2025-8025)
vulnerability in CVE-2025-8025 (CVE-2025-8025). Successful exploitation can lead to full system takeover.
CVE-2025-11242 SSRF (Server-Side Request Forgery) in ssrf (CVE-2025-11242)
SSRF in ssrf (CVE-2025-11242). Successful exploitation can lead to full system takeover.
CVE-2025-6830 SQL Injection in sqli (CVE-2025-6830)
SQL injection in sqli (CVE-2025-6830). Successful exploitation can lead to full system takeover.
CVE-2026-1615 Code Injection in CVE-2026-1615 (CVE-2026-1615)
code injection in CVE-2026-1615 (CVE-2026-1615). Successful exploitation can lead to full system takeover.
CVE-2026-25858 Vulnerability in macrozheng (CVE-2026-25858)
vulnerability in macrozheng (CVE-2026-25858). Confidential information can be exposed externally.
CVE-2026-25560 Vulnerability in wekan-project (CVE-2026-25560)
vulnerability in wekan-project (CVE-2026-25560). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →