Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-7204 |
|
Command Injection in CVE-2026-7204 (CVE-2026-7204)
command injection in CVE-2026-7204 (CVE-2026-7204). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32649 |
|
OS Command Injection in CVE-2026-32649 (CVE-2026-32649)
OS command injection in CVE-2026-32649 (CVE-2026-32649). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6942 |
|
OS Command Injection in radare (CVE-2026-6942)
OS command injection in radare (CVE-2026-6942). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5935 |
|
OS Command Injection in ibm (CVE-2026-5935)
OS command injection in ibm (CVE-2026-5935). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41179 |
|
OS Command Injection in github.com/rclone/rclone (CVE-2026-41179)
OS command injection in github.com/rclone/rclone (CVE-2026-41179). Successful exploitation can lead to full system takeover. Exploitable via ``bearer_token_command``. Mitigation: upgrade to `1.73.5` or later.
|
| CVE-2026-21571 |
|
OS Command Injection in atlassian (CVE-2026-21571)
OS command injection in atlassian (CVE-2026-21571). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31019 |
|
OS Command Injection in dolibarr (CVE-2026-31019)
OS command injection in dolibarr (CVE-2026-31019). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40520 |
|
OS Command Injection in freepbx (CVE-2026-40520)
OS command injection in freepbx (CVE-2026-40520). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5965 |
|
OS Command Injection in CVE-2026-5965 (CVE-2026-5965)
OS command injection in CVE-2026-5965 (CVE-2026-5965). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32311 |
|
OS Command Injection in flowsint (CVE-2026-32311)
OS command injection in flowsint (CVE-2026-32311). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5967 |
|
OS Command Injection in privilege-escalation (CVE-2026-5967)
OS command injection in privilege-escalation (CVE-2026-5967). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40527 |
|
OS Command Injection in radare (CVE-2026-40527)
OS command injection in radare (CVE-2026-40527). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35072 |
|
OS Command Injection in dell (CVE-2026-35072)
OS command injection in dell (CVE-2026-35072). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35073 |
|
OS Command Injection in dell (CVE-2026-35073)
OS command injection in dell (CVE-2026-35073). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35074 |
|
OS Command Injection in dell (CVE-2026-35074)
OS command injection in dell (CVE-2026-35074). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41113 |
|
OS Command Injection in c (CVE-2026-41113)
OS command injection in c (CVE-2026-41113). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6349 |
|
OS Command Injection in CVE-2026-6349 (CVE-2026-6349)
OS command injection in CVE-2026-6349 (CVE-2026-6349). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34197 KEV |
|
[KEV] Vulnerability in Apache activemq (CVE-2026-34197)
vulnerability in Apache activemq (CVE-2026-34197). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-40176 |
|
Vulnerability in composer/composer (CVE-2026-40176)
vulnerability in composer/composer (CVE-2026-40176). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.2.27` or later.
|
| CVE-2026-40261 |
|
Vulnerability in composer/composer (CVE-2026-40261)
vulnerability in composer/composer (CVE-2026-40261). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.2.27` or later.
|
| CVE-2026-33414 |
|
OS Command Injection in github.com/containers/podman (CVE-2026-33414)
OS command injection in github.com/containers/podman (CVE-2026-33414). Successful exploitation can lead to full system takeover. Exploitable via ``fmt.Sprintf``. Mitigation: upgrade to `5.8.2` or later.
|
| CVE-2026-35196 |
|
OS Command Injection in chamilo (CVE-2026-35196)
OS command injection in chamilo (CVE-2026-35196). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24893 |
|
Vulnerability in it-novum (CVE-2026-24893)
vulnerability in it-novum (CVE-2026-24893). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28291 |
|
OS Command Injection in simple-git (CVE-2026-28291)
OS command injection in simple-git (CVE-2026-28291). Successful exploitation can lead to full system takeover. Exploitable via ``allowUnsafePack``. Mitigation: upgrade to `3.32.0` or later.
|
| CVE-2026-21915 |
|
Vulnerability in juniper (CVE-2026-21915)
vulnerability in juniper (CVE-2026-21915). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5831 |
|
Command Injection in CVE-2026-5831 (CVE-2026-5831)
command injection in CVE-2026-5831 (CVE-2026-5831). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40029 |
|
OS Command Injection in khyrenz (CVE-2026-40029)
OS command injection in khyrenz (CVE-2026-40029). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40030 |
|
OS Command Injection in khyrenz (CVE-2026-40030)
OS command injection in khyrenz (CVE-2026-40030). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40032 |
|
OS Command Injection in CVE-2026-40032 (CVE-2026-40032)
OS command injection in CVE-2026-40032 (CVE-2026-40032). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5802 |
|
Command Injection in CVE-2026-5802 (CVE-2026-5802)
command injection in CVE-2026-5802 (CVE-2026-5802). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39862 |
|
OS Command Injection in c (CVE-2026-39862)
OS command injection in c (CVE-2026-39862). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.5.1` or later.
|
| CVE-2026-30815 |
|
OS Command Injection in tp-link (CVE-2026-30815)
OS command injection in tp-link (CVE-2026-30815). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30818 |
|
OS Command Injection in tp-link (CVE-2026-30818)
OS command injection in tp-link (CVE-2026-30818). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27806 |
|
OS Command Injection in github.com/fleetdm/fleet/v4 (CVE-2026-27806)
OS command injection in github.com/fleetdm/fleet/v4 (CVE-2026-27806). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.81.1` or later.
|
| CVE-2026-5208 |
|
OS Command Injection in coolercontrol (CVE-2026-5208)
OS command injection in coolercontrol (CVE-2026-5208). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35585 |
|
OS Command Injection in github.com/filebrowser/filebrowser/v2 (CVE-2026-35585)
OS command injection in github.com/filebrowser/filebrowser/v2 (CVE-2026-35585). Successful exploitation can lead to full system takeover. Exploitable via ``os.Expand``. Mitigation: upgrade to `2.33.8` or later.
|
| CVE-2026-5741 |
|
Command Injection in CVE-2026-5741 (CVE-2026-5741)
command injection in CVE-2026-5741 (CVE-2026-5741). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39382 |
|
OS Command Injection in CVE-2026-39382 (CVE-2026-39382)
OS command injection in CVE-2026-39382 (CVE-2026-39382). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4631 |
|
OS Command Injection in CVE-2026-4631 (CVE-2026-4631)
OS command injection in CVE-2026-4631 (CVE-2026-4631). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5692 |
|
Command Injection in CVE-2026-5692 (CVE-2026-5692)
command injection in CVE-2026-5692 (CVE-2026-5692). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5691 |
|
Command Injection in CVE-2026-5691 (CVE-2026-5691)
command injection in CVE-2026-5691 (CVE-2026-5691). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5690 |
|
Command Injection in CVE-2026-5690 (CVE-2026-5690)
command injection in CVE-2026-5690 (CVE-2026-5690). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5689 |
|
Command Injection in CVE-2026-5689 (CVE-2026-5689)
command injection in CVE-2026-5689 (CVE-2026-5689). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5688 |
|
Command Injection in CVE-2026-5688 (CVE-2026-5688)
command injection in CVE-2026-5688 (CVE-2026-5688). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5709 |
|
OS Command Injection in c (CVE-2026-5709)
OS command injection in c (CVE-2026-5709). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5679 |
|
Command Injection in CVE-2026-5679 (CVE-2026-5679)
command injection in CVE-2026-5679 (CVE-2026-5679). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5677 |
|
Command Injection in CVE-2026-5677 (CVE-2026-5677)
command injection in CVE-2026-5677 (CVE-2026-5677). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5678 |
|
Command Injection in CVE-2026-5678 (CVE-2026-5678)
command injection in CVE-2026-5678 (CVE-2026-5678). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34977 |
|
OS Command Injection in c (CVE-2026-34977)
OS command injection in c (CVE-2026-34977). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.2.1` or later.
|
| CVE-2026-34982 |
|
OS Command Injection in vim (CVE-2026-34982)
OS command injection in vim (CVE-2026-34982). Confidential information can be exposed externally. Exploitable via ``complete``.
|