Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-48274 |
|
Out-of-Bounds Write in adobe (CVE-2026-48274)
out-of-bounds write in adobe (CVE-2026-48274). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47472 |
|
Unsafe Deserialization in dos (CVE-2026-47472)
vulnerability in dos (CVE-2026-47472). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47971 |
|
Vulnerability in adobe (CVE-2026-47971)
vulnerability in adobe (CVE-2026-47971). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47473 |
|
Vulnerability in dos (CVE-2026-47473)
vulnerability in dos (CVE-2026-47473). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24268 |
|
Vulnerability in nvidia (CVE-2026-24268)
vulnerability in nvidia (CVE-2026-24268). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24238 |
|
Vulnerability in nvidia (CVE-2026-24238)
vulnerability in nvidia (CVE-2026-24238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15774 |
|
Use-After-Free in google (CVE-2026-15774)
vulnerability in google (CVE-2026-15774). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15777 |
|
Use-After-Free in google (CVE-2026-15777)
vulnerability in google (CVE-2026-15777). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15643 |
|
SSRF (Server-Side Request Forgery) in Amazon aws (CVE-2026-15643)
SSRF in Amazon aws (CVE-2026-15643). Confidential information can be exposed externally.
|
| CVE-2026-50649 |
|
Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.
Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.
|
| CVE-2026-50651 |
|
Vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50651)
vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50651). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-50650 |
|
Code Injection in Microsoft.WindowsDesktop.App.Runtime.win-x64 (CVE-2026-50650)
code injection in Microsoft.WindowsDesktop.App.Runtime.win-x64 (CVE-2026-50650). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-50524 |
|
Vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50524)
vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50524). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-50525 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-50525)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-50525). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-50527 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-50527)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-50527). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-50526 |
|
Vulnerability in Microsoft.NET.Build.Containers (CVE-2026-50526)
vulnerability in Microsoft.NET.Build.Containers (CVE-2026-50526). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-50528 |
|
Vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528)
vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528). Data can be tampered with by attackers. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-50648 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-50648)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-50648). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-50646 |
|
Unsafe Deserialization in csharp (CVE-2026-50646)
vulnerability in csharp (CVE-2026-50646). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44891 |
|
Vulnerability in io.netty:netty-codec-stomp (CVE-2026-44891)
vulnerability in io.netty:netty-codec-stomp (CVE-2026-44891). Risk of unauthorized operations or information disclosure. Exploitable via ``maxLineLength``. Mitigation: upgrade to `4.1.136.Final` or later.
|
| CVE-2026-47300 |
|
Vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47300)
vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47300). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-47301 |
|
Vulnerability in microsoft (CVE-2026-47301)
vulnerability in microsoft (CVE-2026-47301). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47302 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-47302)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-47302). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-47303 |
|
Vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47303)
vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47303). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-47304 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-47304)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-47304). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-47305 |
|
Vulnerability in microsoft (CVE-2026-47305)
vulnerability in microsoft (CVE-2026-47305). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15637 |
|
Vulnerability in devolutions (CVE-2026-15637)
vulnerability in devolutions (CVE-2026-15637). Confidential information can be exposed externally.
|
| CVE-2026-15641 |
|
Authorization Flaw in devolutions (CVE-2026-15641)
vulnerability in devolutions (CVE-2026-15641). Confidential information can be exposed externally.
|
| CVE-2026-15720 |
|
Out-of-Bounds Read in dos (CVE-2026-15720)
vulnerability in dos (CVE-2026-15720). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54115 |
|
Vulnerability in microsoft (CVE-2026-54115)
vulnerability in microsoft (CVE-2026-54115). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50498 |
|
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
|
| CVE-2026-50499 |
|
Vulnerability in microsoft (CVE-2026-50499)
vulnerability in microsoft (CVE-2026-50499). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50500 |
|
Use-After-Free in microsoft (CVE-2026-50500)
vulnerability in microsoft (CVE-2026-50500). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50501 |
|
Vulnerability in microsoft (CVE-2026-50501)
vulnerability in microsoft (CVE-2026-50501). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50510 |
|
Vulnerability in microsoft (CVE-2026-50510)
vulnerability in microsoft (CVE-2026-50510). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50647 |
|
Vulnerability in microsoft (CVE-2026-50647)
vulnerability in microsoft (CVE-2026-50647). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50655 |
|
Vulnerability in microsoft (CVE-2026-50655)
vulnerability in microsoft (CVE-2026-50655). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50509 |
|
Unsafe Deserialization in deserialization (CVE-2026-50509)
vulnerability in deserialization (CVE-2026-50509). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50503 |
|
Vulnerability in microsoft (CVE-2026-50503)
vulnerability in microsoft (CVE-2026-50503). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50505 |
|
Use-After-Free in microsoft (CVE-2026-50505)
vulnerability in microsoft (CVE-2026-50505). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50488 |
|
Command Injection in microsoft (CVE-2026-50488)
command injection in microsoft (CVE-2026-50488). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50493 |
|
Use-After-Free in microsoft (CVE-2026-50493)
vulnerability in microsoft (CVE-2026-50493). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50496 |
|
Out-of-Bounds Read in microsoft (CVE-2026-50496)
vulnerability in microsoft (CVE-2026-50496). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50484 |
|
Vulnerability in microsoft (CVE-2026-50484)
vulnerability in microsoft (CVE-2026-50484). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50489 |
|
Vulnerability in microsoft (CVE-2026-50489)
vulnerability in microsoft (CVE-2026-50489). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50490 |
|
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50487 |
|
Use-After-Free in microsoft (CVE-2026-50487)
vulnerability in microsoft (CVE-2026-50487). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50486 |
|
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50476 |
|
Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.
Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.
|
| CVE-2026-50471 |
|
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
|