Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-60350 |
|
Information Disclosure in c (CVE-2026-60350)
vulnerability in c (CVE-2026-60350). Confidential information can be exposed externally.
|
| CVE-2026-60354 |
|
Information Disclosure in c (CVE-2026-60354)
vulnerability in c (CVE-2026-60354). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60339 |
|
Information Disclosure in c (CVE-2026-60339)
vulnerability in c (CVE-2026-60339). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60315 |
|
Information Disclosure in c (CVE-2026-60315)
vulnerability in c (CVE-2026-60315). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60318 |
|
Information Disclosure in c (CVE-2026-60318)
vulnerability in c (CVE-2026-60318). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60307 |
|
Information Disclosure in c (CVE-2026-60307)
vulnerability in c (CVE-2026-60307). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60283 |
|
Information Disclosure in c (CVE-2026-60283)
vulnerability in c (CVE-2026-60283). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60294 |
|
Vulnerability in c (CVE-2026-60294)
vulnerability in c (CVE-2026-60294). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60293 |
|
Information Disclosure in c (CVE-2026-60293)
vulnerability in c (CVE-2026-60293). Confidential information can be exposed externally.
|
| CVE-2026-60266 |
|
Information Disclosure in c (CVE-2026-60266)
vulnerability in c (CVE-2026-60266). Confidential information can be exposed externally.
|
| CVE-2026-60264 |
|
Information Disclosure in c (CVE-2026-60264)
vulnerability in c (CVE-2026-60264). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60260 |
|
Information Disclosure in c (CVE-2026-60260)
vulnerability in c (CVE-2026-60260). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60237 |
|
Information Disclosure in c (CVE-2026-60237)
vulnerability in c (CVE-2026-60237). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60176 |
|
Information Disclosure in c (CVE-2026-60176)
vulnerability in c (CVE-2026-60176). Confidential information can be exposed externally.
|
| CVE-2026-60160 |
|
Information Disclosure in c (CVE-2026-60160)
vulnerability in c (CVE-2026-60160). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60167 |
|
Information Disclosure in c (CVE-2026-60167)
vulnerability in c (CVE-2026-60167). Confidential information can be exposed externally.
|
| CVE-2026-60156 |
|
Information Disclosure in c (CVE-2026-60156)
vulnerability in c (CVE-2026-60156). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47043 |
|
Information Disclosure in c (CVE-2026-47043)
vulnerability in c (CVE-2026-47043). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47009 |
|
Information Disclosure in c (CVE-2026-47009)
vulnerability in c (CVE-2026-47009). Confidential information can be exposed externally.
|
| CVE-2026-47016 |
|
Information Disclosure in c (CVE-2026-47016)
vulnerability in c (CVE-2026-47016). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47247 |
|
Information Disclosure in wordpress (CVE-2026-47247)
vulnerability in wordpress (CVE-2026-47247). Confidential information can be exposed externally.
|
| CVE-2026-58511 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-58511)
vulnerability in code.gitea.io/gitea (CVE-2026-58511). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/v1/repos/{owner}/{repo}/hooks`. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-57897 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-57897)
vulnerability in code.gitea.io/gitea (CVE-2026-57897). Confidential information can be exposed externally. Exploitable via `GET /api/v1/orgs/{org}/actions/runs`. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-58510 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-58510)
vulnerability in code.gitea.io/gitea (CVE-2026-58510). Risk of unauthorized operations or information disclosure. Exploitable via `PATCH /api/v1/repos/{owner}/{repo}`. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-58427 |
|
Information Disclosure in gitea.dev (CVE-2026-58427)
vulnerability in gitea.dev (CVE-2026-58427). Confidential information can be exposed externally. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-52474 |
|
Information Disclosure in CVE-2026-52474 (CVE-2026-52474)
vulnerability in CVE-2026-52474 (CVE-2026-52474). Confidential information can be exposed externally.
|
| CVE-2026-55982 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-55982)
vulnerability in code.gitea.io/gitea (CVE-2026-55982). Confidential information can be exposed externally. Exploitable via `GET /login/oauth/userinfo`. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-58434 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-58434)
vulnerability in code.gitea.io/gitea (CVE-2026-58434). Confidential information can be exposed externally. Exploitable via `GET /api/v1/user/starred`. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-50105 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-50105)
vulnerability in code.gitea.io/gitea (CVE-2026-50105). Risk of unauthorized operations or information disclosure. Exploitable via `GET /{owner}/{repo}.rss`. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-58442 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-58442)
vulnerability in code.gitea.io/gitea (CVE-2026-58442). Confidential information can be exposed externally. Exploitable via ``ipAllowed``. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-58425 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-58425)
vulnerability in code.gitea.io/gitea (CVE-2026-58425). Risk of unauthorized operations or information disclosure. Exploitable via ``admin``. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-58432 |
|
Information Disclosure in code.gitea.io/gitea (CVE-2026-58432)
vulnerability in code.gitea.io/gitea (CVE-2026-58432). Confidential information can be exposed externally. Exploitable via `GET /attachments/{uuid}`. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2026-56579 |
|
Information Disclosure in hcltech (CVE-2026-56579)
vulnerability in hcltech (CVE-2026-56579). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56578 |
|
Information Disclosure in hcltech (CVE-2026-56578)
vulnerability in hcltech (CVE-2026-56578). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21579 |
|
Information Disclosure in atlassian (CVE-2026-21579)
vulnerability in atlassian (CVE-2026-21579). Confidential information can be exposed externally.
|
| CVE-2026-56584 |
|
Information Disclosure in nginx (CVE-2026-56584)
vulnerability in nginx (CVE-2026-56584). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16405 |
|
Information Disclosure in mozilla (CVE-2026-16405)
vulnerability in mozilla (CVE-2026-16405). Confidential information can be exposed externally.
|
| CVE-2026-16400 |
|
Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153.
Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153.
|
| CVE-2026-16391 |
|
Information Disclosure in mozilla (CVE-2026-16391)
vulnerability in mozilla (CVE-2026-16391). Confidential information can be exposed externally.
|
| CVE-2026-16398 |
|
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 153.
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 153.
|
| CVE-2026-16387 |
|
Information Disclosure in mozilla (CVE-2026-16387)
vulnerability in mozilla (CVE-2026-16387). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16374 |
|
Information Disclosure in mozilla (CVE-2026-16374)
vulnerability in mozilla (CVE-2026-16374). Confidential information can be exposed externally.
|
| CVE-2026-16373 |
|
Information Disclosure in mozilla (CVE-2026-16373)
vulnerability in mozilla (CVE-2026-16373). Confidential information can be exposed externally.
|
| CVE-2026-16354 |
|
Information Disclosure in mozilla (CVE-2026-16354)
vulnerability in mozilla (CVE-2026-16354). Confidential information can be exposed externally.
|
| CVE-2026-65009 |
|
Information Disclosure in CVE-2026-65009 (CVE-2026-65009)
vulnerability in CVE-2026-65009 (CVE-2026-65009). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/{realm}/syslog/event`.
|
| CVE-2026-62684 |
|
Information Disclosure in github.com/filebrowser/filebrowser/v2 (CVE-2026-62684)
vulnerability in github.com/filebrowser/filebrowser/v2 (CVE-2026-62684). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api/shares`. Mitigation: upgrade to `2.63.17` or later.
|
| CVE-2026-44508 |
|
Vulnerability in CVE-2026-44508 (CVE-2026-44508)
vulnerability in CVE-2026-44508 (CVE-2026-44508). Confidential information can be exposed externally.
|
| CVE-2026-44231 |
|
Information Disclosure in privilege-escalation (CVE-2026-44231)
vulnerability in privilege-escalation (CVE-2026-44231). Confidential information can be exposed externally.
|
| CVE-2026-60031 |
|
Information Disclosure in CVE-2026-60031 (CVE-2026-60031)
vulnerability in CVE-2026-60031 (CVE-2026-60031). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-51027 |
|
Information Disclosure in CVE-2026-51027 (CVE-2026-51027)
vulnerability in CVE-2026-51027 (CVE-2026-51027). Successful exploitation can lead to full system takeover.
|