Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-5621 |
|
Command Injection in CVE-2026-5621 (CVE-2026-5621)
command injection in CVE-2026-5621 (CVE-2026-5621). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5619 |
|
Command Injection in CVE-2026-5619 (CVE-2026-5619)
command injection in CVE-2026-5619 (CVE-2026-5619). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5603 |
|
Command Injection in CVE-2026-5603 (CVE-2026-5603)
command injection in CVE-2026-5603 (CVE-2026-5603). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5602 |
|
Command Injection in CVE-2026-5602 (CVE-2026-5602)
command injection in CVE-2026-5602 (CVE-2026-5602). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5547 |
|
Command Injection in tenda (CVE-2026-5547)
command injection in tenda (CVE-2026-5547). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5532 |
|
Command Injection in CVE-2026-5532 (CVE-2026-5532)
command injection in CVE-2026-5532 (CVE-2026-5532). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5528 |
|
Command Injection in CVE-2026-5528 (CVE-2026-5528)
command injection in CVE-2026-5528 (CVE-2026-5528). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34779 |
|
OS Command Injection in electronjs (CVE-2026-34779)
OS command injection in electronjs (CVE-2026-34779). Confidential information can be exposed externally.
|
| CVE-2026-34955 |
|
OS Command Injection in c (CVE-2026-34955)
OS command injection in c (CVE-2026-34955). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34937 |
|
OS Command Injection in c (CVE-2026-34937)
OS command injection in c (CVE-2026-34937). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34935 |
|
OS Command Injection in praisonai (CVE-2026-34935)
OS command injection in praisonai (CVE-2026-34935). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.5.69` or later.
|
| CVE-2017-20236 |
|
OS Command Injection in prosoft-technology (CVE-2017-20236)
OS command injection in prosoft-technology (CVE-2017-20236). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28797 |
|
Vulnerability in infiniflow (CVE-2026-28797)
vulnerability in infiniflow (CVE-2026-28797). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35216 |
|
OS Command Injection in budibase (CVE-2026-35216)
OS command injection in budibase (CVE-2026-35216). Successful exploitation can lead to full system takeover.
|
| CVE-2026-25044 |
|
OS Command Injection in budibase (CVE-2026-25044)
OS command injection in budibase (CVE-2026-25044). Successful exploitation can lead to full system takeover.
|
| CVE-2025-64340 |
|
OS Command Injection in jlowin (CVE-2025-64340)
OS command injection in jlowin (CVE-2025-64340). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5353 |
|
Command Injection in trendnet (CVE-2026-5353)
command injection in trendnet (CVE-2026-5353). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5354 |
|
Command Injection in trendnet (CVE-2026-5354)
command injection in trendnet (CVE-2026-5354). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5355 |
|
Command Injection in trendnet (CVE-2026-5355)
command injection in trendnet (CVE-2026-5355). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5352 |
|
Command Injection in trendnet (CVE-2026-5352)
command injection in trendnet (CVE-2026-5352). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5351 |
|
Command Injection in trendnet (CVE-2026-5351)
command injection in trendnet (CVE-2026-5351). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34796 |
|
OS Command Injection in endian (CVE-2026-34796)
OS command injection in endian (CVE-2026-34796). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34797 |
|
OS Command Injection in endian (CVE-2026-34797)
OS command injection in endian (CVE-2026-34797). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34794 |
|
OS Command Injection in endian (CVE-2026-34794)
OS command injection in endian (CVE-2026-34794). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34795 |
|
OS Command Injection in endian (CVE-2026-34795)
OS command injection in endian (CVE-2026-34795). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34792 |
|
OS Command Injection in endian (CVE-2026-34792)
OS command injection in endian (CVE-2026-34792). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34793 |
|
OS Command Injection in endian (CVE-2026-34793)
OS command injection in endian (CVE-2026-34793). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3692 |
|
OS Command Injection in progress (CVE-2026-3692)
OS command injection in progress (CVE-2026-3692). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24154 |
|
OS Command Injection in dos (CVE-2026-24154)
OS command injection in dos (CVE-2026-24154). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34243 |
|
Command Injection in njzjz (CVE-2026-34243)
command injection in njzjz (CVE-2026-34243). Successful exploitation can lead to full system takeover.
|
| CVE-2026-0596 |
|
OS Command Injection in mlflow (CVE-2026-0596)
OS command injection in mlflow (CVE-2026-0596). Successful exploitation can lead to full system takeover. Exploitable via ``model_uri``. Mitigation: upgrade to `3.9.0` or later.
|
| CVE-2026-30312 |
|
OS Command Injection in CVE-2026-30312 (CVE-2026-30312)
OS command injection in CVE-2026-30312 (CVE-2026-30312). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30314 |
|
OS Command Injection in ridvay (CVE-2026-30314)
OS command injection in ridvay (CVE-2026-30314). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30309 |
|
OS Command Injection in tokfinity (CVE-2026-30309)
OS command injection in tokfinity (CVE-2026-30309). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30311 |
|
OS Command Injection in ridvay (CVE-2026-30311)
OS command injection in ridvay (CVE-2026-30311). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32917 |
|
OS Command Injection in openclaw (CVE-2026-32917)
OS command injection in openclaw (CVE-2026-32917). Successful exploitation can lead to full system takeover.
|
| CVE-2025-14213 |
|
Vulnerability in CVE-2025-14213 (CVE-2025-14213)
vulnerability in CVE-2025-14213 (CVE-2025-14213). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34714 |
|
OS Command Injection in vim (CVE-2026-34714)
OS command injection in vim (CVE-2026-34714). Confidential information can be exposed externally.
|
| CVE-2025-15379 |
|
Command Injection in mlflow (CVE-2025-15379)
command injection in mlflow (CVE-2025-15379). Successful exploitation can lead to full system takeover. Exploitable via ``python_env.yaml``. Mitigation: upgrade to `3.8.1` or later.
|
| CVE-2026-4946 |
|
OS Command Injection in nsa (CVE-2026-4946)
OS command injection in nsa (CVE-2026-4946). Successful exploitation can lead to full system takeover.
|
| CVE-2026-26213 |
|
OS Command Injection in thingino (CVE-2026-26213)
OS command injection in thingino (CVE-2026-26213). Successful exploitation can lead to full system takeover.
|
| CVE-2026-1961 |
|
OS Command Injection in CVE-2026-1961 (CVE-2026-1961)
OS command injection in CVE-2026-1961 (CVE-2026-1961). Successful exploitation can lead to full system takeover.
|
| CVE-2025-15101 |
|
OS Command Injection in asus (CVE-2025-15101)
OS command injection in asus (CVE-2025-15101). Successful exploitation can lead to full system takeover.
|
| CVE-2026-26832 |
|
OS Command Injection in zapolnoch (CVE-2026-26832)
OS command injection in zapolnoch (CVE-2026-26832). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33412 |
|
OS Command Injection in vim (CVE-2026-33412)
OS command injection in vim (CVE-2026-33412). Data can be tampered with by attackers.
|
| CVE-2026-3227 |
|
OS Command Injection in tp-link (CVE-2026-3227)
OS command injection in tp-link (CVE-2026-3227). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31386 |
|
OS Command Injection in litespeedtech (CVE-2026-31386)
OS command injection in litespeedtech (CVE-2026-31386). Successful exploitation can lead to full system takeover.
|
| CVE-2025-14287 |
|
Code Injection in lfprojects (CVE-2025-14287)
code injection in lfprojects (CVE-2025-14287). Successful exploitation can lead to full system takeover.
|
| CVE-2025-70082 |
|
OS Command Injection in lantronix (CVE-2025-70082)
OS command injection in lantronix (CVE-2025-70082). Successful exploitation can lead to full system takeover.
|
| CVE-2025-67041 |
|
OS Command Injection in lantronix (CVE-2025-67041)
OS command injection in lantronix (CVE-2025-67041). Successful exploitation can lead to full system takeover.
|