Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-60413 |
|
Information Disclosure in c (CVE-2026-60413)
vulnerability in c (CVE-2026-60413). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60412 |
|
Unsafe Deserialization in c (CVE-2026-60412)
vulnerability in c (CVE-2026-60412). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60393 |
|
Information Disclosure in c (CVE-2026-60393)
vulnerability in c (CVE-2026-60393). Confidential information can be exposed externally.
|
| CVE-2026-60392 |
|
Unsafe Deserialization in c (CVE-2026-60392)
vulnerability in c (CVE-2026-60392). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60391 |
|
Vulnerability in c (CVE-2026-60391)
vulnerability in c (CVE-2026-60391). Confidential information can be exposed externally.
|
| CVE-2026-15571 |
|
Vulnerability in CVE-2026-15571 (CVE-2026-15571)
vulnerability in CVE-2026-15571 (CVE-2026-15571). Confidential information can be exposed externally.
|
| CVE-2026-76034 |
|
Vulnerability in Google chrome (CVE-2026-76034)
vulnerability in Google chrome (CVE-2026-76034). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71417 |
|
Vulnerability in lemur (CVE-2026-71417)
vulnerability in lemur (CVE-2026-71417). Risk of unauthorized operations or information disclosure. Exploitable via `PUT /api/1/certificates/`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-71308 |
|
Vulnerability in lemur (CVE-2026-71308)
vulnerability in lemur (CVE-2026-71308). Data can be tampered with by attackers. Exploitable via `POST /api/1/certificates`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-71307 |
|
Vulnerability in lemur (CVE-2026-71307)
vulnerability in lemur (CVE-2026-71307). Confidential information can be exposed externally. Exploitable via `GET /api/1/destinations`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-71303 |
|
SSRF (Server-Side Request Forgery) in lemur (CVE-2026-71303)
SSRF in lemur (CVE-2026-71303). Confidential information can be exposed externally. Exploitable via `PUT /api/1/authorities/`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-70666 |
|
SSRF (Server-Side Request Forgery) in lemur (CVE-2026-70666)
SSRF in lemur (CVE-2026-70666). Risk of unauthorized operations or information disclosure. Exploitable via `PUT /authorities/`. Mitigation: upgrade to `1.9.3` or later.
|
| CVE-2026-54348 |
|
SQL Injection in froxlor/froxlor (CVE-2026-54348)
SQL injection in froxlor/froxlor (CVE-2026-54348). Successful exploitation can lead to full system takeover. Exploitable via ``panel_admins.ip``. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-54347 |
|
Cross-Site Scripting (XSS) in froxlor/froxlor (CVE-2026-54347)
cross-site scripting in froxlor/froxlor (CVE-2026-54347). Confidential information can be exposed externally. Exploitable via ``content``. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-75935 |
|
Vulnerability in Amazon aws (CVE-2026-75935)
vulnerability in Amazon aws (CVE-2026-75935). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75936 |
|
Vulnerability in dos (CVE-2026-75936)
vulnerability in dos (CVE-2026-75936). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71676 |
|
Vulnerability in dos (CVE-2026-71676)
vulnerability in dos (CVE-2026-71676). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71675 |
|
Vulnerability in c (CVE-2026-71675)
vulnerability in c (CVE-2026-71675). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59915 |
|
Vulnerability in CVE-2026-59915 (CVE-2026-59915)
vulnerability in CVE-2026-59915 (CVE-2026-59915). Successful exploitation can lead to full system takeover.
|
| CVE-2026-52481 |
|
Information Disclosure in CVE-2026-52481 (CVE-2026-52481)
vulnerability in CVE-2026-52481 (CVE-2026-52481). Confidential information can be exposed externally.
|
| CVE-2026-47629 |
|
Vulnerability in dos (CVE-2026-47629)
vulnerability in dos (CVE-2026-47629). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47628 |
|
Vulnerability in dos (CVE-2026-47628)
vulnerability in dos (CVE-2026-47628). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-24185 |
|
Vulnerability in CVE-2026-24185 (CVE-2026-24185)
vulnerability in CVE-2026-24185 (CVE-2026-24185). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24184 |
|
Vulnerability in CVE-2026-24184 (CVE-2026-24184)
vulnerability in CVE-2026-24184 (CVE-2026-24184). Successful exploitation can lead to full system takeover.
|
| CVE-2026-24183 |
|
Vulnerability in CVE-2026-24183 (CVE-2026-24183)
vulnerability in CVE-2026-24183 (CVE-2026-24183). Successful exploitation can lead to full system takeover.
|
| CVE-2025-9210 |
|
Vulnerability in CVE-2025-9210 (CVE-2025-9210)
vulnerability in CVE-2025-9210 (CVE-2025-9210). Confidential information can be exposed externally.
|
| CVE-2026-67920 |
|
Vulnerability in CVE-2026-67920 (CVE-2026-67920)
vulnerability in CVE-2026-67920 (CVE-2026-67920). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67262 |
|
Vulnerability in CVE-2026-67262 (CVE-2026-67262)
vulnerability in CVE-2026-67262 (CVE-2026-67262). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67846 |
|
Vulnerability in CVE-2026-67846 (CVE-2026-67846)
vulnerability in CVE-2026-67846 (CVE-2026-67846). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32657 |
|
Vulnerability in CVE-2026-32657 (CVE-2026-32657)
vulnerability in CVE-2026-32657 (CVE-2026-32657). Successful exploitation can lead to full system takeover.
|
| CVE-2026-74038 |
|
Path Traversal in path-traversal (CVE-2026-74038)
path traversal in path-traversal (CVE-2026-74038). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71551 |
|
OS Command Injection in CVE-2026-71551 (CVE-2026-71551)
OS command injection in CVE-2026-71551 (CVE-2026-71551). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44472 |
|
Authentication Bypass in CVE-2026-44472 (CVE-2026-44472)
authentication bypass in CVE-2026-44472 (CVE-2026-44472). Confidential information can be exposed externally.
|
| CVE-2026-75924 |
|
Privilege Escalation in privilege-escalation (CVE-2026-75924)
vulnerability in privilege-escalation (CVE-2026-75924). Confidential information can be exposed externally.
|
| CVE-2026-75897 |
|
Vulnerability in Amazon dos (CVE-2026-75897)
vulnerability in Amazon dos (CVE-2026-75897). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70415 |
|
Vulnerability in dos (CVE-2026-70415)
vulnerability in dos (CVE-2026-70415). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66783 |
|
Vulnerability in CVE-2026-66783 (CVE-2026-66783)
vulnerability in CVE-2026-66783 (CVE-2026-66783). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66782 |
|
Vulnerability in CVE-2026-66782 (CVE-2026-66782)
vulnerability in CVE-2026-66782 (CVE-2026-66782). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61574 |
|
Vulnerability in CVE-2026-61574 (CVE-2026-61574)
vulnerability in CVE-2026-61574 (CVE-2026-61574). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50578 |
|
Vulnerability in CVE-2026-50578 (CVE-2026-50578)
vulnerability in CVE-2026-50578 (CVE-2026-50578). Confidential information can be exposed externally.
|
| CVE-2026-50577 |
|
Vulnerability in CVE-2026-50577 (CVE-2026-50577)
vulnerability in CVE-2026-50577 (CVE-2026-50577). Confidential information can be exposed externally.
|
| CVE-2026-49228 |
|
Vulnerability in CVE-2026-49228 (CVE-2026-49228)
vulnerability in CVE-2026-49228 (CVE-2026-49228). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49225 |
|
Vulnerability in CVE-2026-49225 (CVE-2026-49225)
vulnerability in CVE-2026-49225 (CVE-2026-49225). Confidential information can be exposed externally.
|
| CVE-2026-49224 |
|
Vulnerability in CVE-2026-49224 (CVE-2026-49224)
vulnerability in CVE-2026-49224 (CVE-2026-49224). Confidential information can be exposed externally.
|
| CVE-2026-49223 |
|
Vulnerability in CVE-2026-49223 (CVE-2026-49223)
vulnerability in CVE-2026-49223 (CVE-2026-49223). Data can be tampered with by attackers.
|
| CVE-2026-49222 |
|
Vulnerability in CVE-2026-49222 (CVE-2026-49222)
vulnerability in CVE-2026-49222 (CVE-2026-49222). Data can be tampered with by attackers.
|
| CVE-2026-55839 |
|
Cross-Site Scripting (XSS) in io.kestra:kestra (CVE-2026-55839)
cross-site scripting in io.kestra:kestra (CVE-2026-55839). Confidential information can be exposed externally. Exploitable via ``onclick``. Mitigation: upgrade to `1.3.24` or later.
|
| CVE-2026-75926 |
|
Vulnerability in CVE-2026-75926 (CVE-2026-75926)
vulnerability in CVE-2026-75926 (CVE-2026-75926). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75915 |
|
Information Disclosure in CVE-2026-75915 (CVE-2026-75915)
vulnerability in CVE-2026-75915 (CVE-2026-75915). Confidential information can be exposed externally.
|
| CVE-2026-75914 |
|
Path Traversal in path-traversal (CVE-2026-75914)
path traversal in path-traversal (CVE-2026-75914). Confidential information can be exposed externally.
|