Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-8514 |
|
Use-After-Free in google (CVE-2026-8514)
vulnerability in google (CVE-2026-8514). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8518 |
|
Use-After-Free in google (CVE-2026-8518)
vulnerability in google (CVE-2026-8518). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8520 |
|
Vulnerability in google (CVE-2026-8520)
vulnerability in google (CVE-2026-8520). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8521 |
|
Use-After-Free in google (CVE-2026-8521)
vulnerability in google (CVE-2026-8521). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8509 |
|
Vulnerability in Google chrome (CVE-2026-8509)
vulnerability in Google chrome (CVE-2026-8509). Successful exploitation can lead to full system takeover.
|
| CVE-2026-0245 |
|
Information Disclosure in paloaltonetworks (CVE-2026-0245)
vulnerability in paloaltonetworks (CVE-2026-0245). Confidential information can be exposed externally.
|
| CVE-2026-0246 |
|
Vulnerability in paloaltonetworks (CVE-2026-0246)
vulnerability in paloaltonetworks (CVE-2026-0246). Successful exploitation can lead to full system takeover.
|
| CVE-2026-0247 |
|
Vulnerability in paloaltonetworks (CVE-2026-0247)
vulnerability in paloaltonetworks (CVE-2026-0247). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44470 |
|
Vulnerability in privilege-escalation (CVE-2026-44470)
vulnerability in privilege-escalation (CVE-2026-44470). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.3834.0` or later.
|
| CVE-2026-34690 |
|
Vulnerability in adobe (CVE-2026-34690)
vulnerability in adobe (CVE-2026-34690). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34687 |
|
Vulnerability in adobe (CVE-2026-34687)
vulnerability in adobe (CVE-2026-34687). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34636 |
|
Out-of-Bounds Write in adobe (CVE-2026-34636)
out-of-bounds write in adobe (CVE-2026-34636). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34661 |
|
Out-of-Bounds Write in adobe (CVE-2026-34661)
out-of-bounds write in adobe (CVE-2026-34661). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34638 |
|
Use-After-Free in adobe (CVE-2026-34638)
vulnerability in adobe (CVE-2026-34638). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34662 |
|
Vulnerability in adobe (CVE-2026-34662)
vulnerability in adobe (CVE-2026-34662). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-34637 |
|
Out-of-Bounds Write in adobe (CVE-2026-34637)
out-of-bounds write in adobe (CVE-2026-34637). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34663 |
|
Out-of-Bounds Read in adobe (CVE-2026-34663)
vulnerability in adobe (CVE-2026-34663). Confidential information can be exposed externally.
|
| CVE-2026-42899 |
|
Vulnerability in dotnet (CVE-2026-42899)
vulnerability in dotnet (CVE-2026-42899). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.27, 9.0.16, 10.0.8` or later.
|
| CVE-2026-35433 |
|
Vulnerability in Microsoft.WindowsDesktop.App.Runtime.win-arm64 (CVE-2026-35433)
vulnerability in Microsoft.WindowsDesktop.App.Runtime.win-arm64 (CVE-2026-35433). Confidential information can be exposed externally. Mitigation: upgrade to `10.0.8` or later.
|
| CVE-2026-32175 |
|
Path Traversal in Microsoft.NetCore.App.Runtime.win-arm (CVE-2026-32175)
path traversal in Microsoft.NetCore.App.Runtime.win-arm (CVE-2026-32175). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `10.0.8` or later.
|
| CVE-2026-32177 |
|
Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.
Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.
|
| CVE-2026-7432 |
|
Vulnerability in ivanti (CVE-2026-7432)
vulnerability in ivanti (CVE-2026-7432). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7431 |
|
Vulnerability in ivanti (CVE-2026-7431)
vulnerability in ivanti (CVE-2026-7431). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6297 |
|
Use-After-Free in Google chrome (CVE-2026-6297)
vulnerability in Google chrome (CVE-2026-6297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7363 |
|
Use-After-Free in Google chrome (CVE-2026-7363)
vulnerability in Google chrome (CVE-2026-7363). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32178 |
|
Vulnerability in dotnet (CVE-2026-32178)
vulnerability in dotnet (CVE-2026-32178). Confidential information can be exposed externally. Mitigation: upgrade to `8.0.26, 9.0.15, 10.0.6` or later.
|
| CVE-2026-26171 |
|
Vulnerability in dotnet (CVE-2026-26171)
vulnerability in dotnet (CVE-2026-26171). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.26, 9.0.15, 10.0.6` or later.
|
| CVE-2026-43941 |
|
Vulnerability in electerm (CVE-2026-43941)
vulnerability in electerm (CVE-2026-43941). Successful exploitation can lead to full system takeover. Exploitable via ``shell.openExternal``.
|
| CVE-2026-8018 |
|
Vulnerability in google (CVE-2026-8018)
vulnerability in google (CVE-2026-8018). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7989 |
|
Vulnerability in google (CVE-2026-7989)
vulnerability in google (CVE-2026-7989). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7979 |
|
Vulnerability in google (CVE-2026-7979)
vulnerability in google (CVE-2026-7979). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7959 |
|
Vulnerability in google (CVE-2026-7959)
vulnerability in google (CVE-2026-7959). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7946 |
|
Vulnerability in google (CVE-2026-7946)
vulnerability in google (CVE-2026-7946). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7932 |
|
Vulnerability in chromium (CVE-2026-7932)
vulnerability in chromium (CVE-2026-7932). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `148.0.7778.96-1~deb12u1` or later.
|
| CVE-2026-7916 |
|
Vulnerability in google (CVE-2026-7916)
vulnerability in google (CVE-2026-7916). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7910 |
|
Use-After-Free in google (CVE-2026-7910)
vulnerability in google (CVE-2026-7910). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7902 |
|
Out-of-Bounds Read in google (CVE-2026-7902)
vulnerability in google (CVE-2026-7902). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7572 |
|
Vulnerability in www.velocidex.com/golang/velociraptor (CVE-2026-7572)
vulnerability in www.velocidex.com/golang/velociraptor (CVE-2026-7572). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.76.5` or later.
|
| CVE-2026-42249 |
|
Path Traversal in path-traversal (CVE-2026-42249)
path traversal in path-traversal (CVE-2026-42249). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42248 |
|
Vulnerability in ollama (CVE-2026-42248)
vulnerability in ollama (CVE-2026-42248). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7355 |
|
Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
|
| CVE-2026-7356 |
|
Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7357 |
|
Use-After-Free in google (CVE-2026-7357)
vulnerability in google (CVE-2026-7357). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7358 |
|
Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7359 |
|
Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Ch...
Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
|
| CVE-2026-7360 |
|
Vulnerability in google (CVE-2026-7360)
vulnerability in google (CVE-2026-7360). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7361 |
|
Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
|
| CVE-2026-7345 |
|
Vulnerability in google (CVE-2026-7345)
vulnerability in google (CVE-2026-7345). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7346 |
|
Buffer Overflow in google (CVE-2026-7346)
vulnerability in google (CVE-2026-7346). Confidential information can be exposed externally.
|
| CVE-2026-7347 |
|
Use-After-Free in google (CVE-2026-7347)
vulnerability in google (CVE-2026-7347). Successful exploitation can lead to full system takeover.
|