Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-62290 |
|
Authorization Flaw in linuxfoundation (CVE-2026-62290)
vulnerability in linuxfoundation (CVE-2026-62290). Confidential information can be exposed externally. Exploitable via `X-API-Key header`.
|
| CVE-2026-47086 |
|
Authorization Flaw in CVE-2026-47086 (CVE-2026-47086)
vulnerability in CVE-2026-47086 (CVE-2026-47086). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47084 |
|
Authorization Flaw in CVE-2026-47084 (CVE-2026-47084)
vulnerability in CVE-2026-47084 (CVE-2026-47084). Data can be tampered with by attackers.
|
| CVE-2026-47082 |
|
Authorization Flaw in CVE-2026-47082 (CVE-2026-47082)
vulnerability in CVE-2026-47082 (CVE-2026-47082). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47081 |
|
Authorization Flaw in CVE-2026-47081 (CVE-2026-47081)
vulnerability in CVE-2026-47081 (CVE-2026-47081). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63085 |
|
Authorization Flaw in CVE-2026-63085 (CVE-2026-63085)
vulnerability in CVE-2026-63085 (CVE-2026-63085). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56743 |
|
Authorization Flaw in cilium (CVE-2026-56743)
vulnerability in cilium (CVE-2026-56743). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59258 |
|
Authorization Flaw in CVE-2026-59258 (CVE-2026-59258)
vulnerability in CVE-2026-59258 (CVE-2026-59258). Data can be tampered with by attackers. Exploitable via `PUT /albums/`.
|
| CVE-2026-61643 |
|
Authorization Flaw in CVE-2026-61643 (CVE-2026-61643)
vulnerability in CVE-2026-61643 (CVE-2026-61643). Data can be tampered with by attackers.
|
| CVE-2026-53515 |
|
Privilege Escalation in @better-auth/sso (CVE-2026-53515)
vulnerability in @better-auth/sso (CVE-2026-53515). Data can be tampered with by attackers. Exploitable via `POST /sso/register`. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-62683 |
|
Authorization Flaw in CVE-2026-62683 (CVE-2026-62683)
vulnerability in CVE-2026-62683 (CVE-2026-62683). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55242 |
|
Authorization Flaw in CVE-2026-55242 (CVE-2026-55242)
vulnerability in CVE-2026-55242 (CVE-2026-55242). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61644 |
|
Authorization Flaw in CVE-2026-61644 (CVE-2026-61644)
vulnerability in CVE-2026-61644 (CVE-2026-61644). Confidential information can be exposed externally. Exploitable via `POST /api/core/chat/record/getCollectionQuote`.
|
| CVE-2026-54563 |
|
Authorization Flaw in github.com/cloudreve/Cloudreve/v4 (CVE-2026-54563)
vulnerability in github.com/cloudreve/Cloudreve/v4 (CVE-2026-54563). Confidential information can be exposed externally. Exploitable via `GET /dav/`. Mitigation: upgrade to `4.0.0-20260606032813-26b6b1044b02` or later.
|
| CVE-2026-54560 |
|
Authorization Flaw in github.com/cloudreve/Cloudreve/v4 (CVE-2026-54560)
vulnerability in github.com/cloudreve/Cloudreve/v4 (CVE-2026-54560). Confidential information can be exposed externally. Exploitable via `POST /api/v4/session/oauth/token`. Mitigation: upgrade to `4.0.0-20260606015557-ed20843dc3df` or later.
|
| CVE-2026-60087 |
|
Authorization Flaw in CVE-2026-60087 (CVE-2026-60087)
vulnerability in CVE-2026-60087 (CVE-2026-60087). Data can be tampered with by attackers.
|
| CVE-2026-15752 |
|
Vulnerability in CVE-2026-15752 (CVE-2026-15752)
vulnerability in CVE-2026-15752 (CVE-2026-15752). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48348 |
|
Authorization Flaw in adobe (CVE-2026-48348)
vulnerability in adobe (CVE-2026-48348). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48349 |
|
Authorization Flaw in adobe (CVE-2026-48349)
vulnerability in adobe (CVE-2026-48349). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47998 |
|
Authorization Flaw in adobe (CVE-2026-47998)
vulnerability in adobe (CVE-2026-47998). Confidential information can be exposed externally.
|
| CVE-2026-47984 |
|
Authorization Flaw in adobe (CVE-2026-47984)
vulnerability in adobe (CVE-2026-47984). Confidential information can be exposed externally.
|
| CVE-2026-47988 |
|
Authorization Flaw in adobe (CVE-2026-47988)
vulnerability in adobe (CVE-2026-47988). Confidential information can be exposed externally.
|
| CVE-2026-47996 |
|
Authorization Flaw in adobe (CVE-2026-47996)
vulnerability in adobe (CVE-2026-47996). Confidential information can be exposed externally.
|
| CVE-2026-47997 |
|
Authorization Flaw in adobe (CVE-2026-47997)
vulnerability in adobe (CVE-2026-47997). Confidential information can be exposed externally.
|
| CVE-2026-59889 |
|
Authorization Flaw in com.fasterxml.jackson.core:jackson-databind (CVE-2026-59889)
vulnerability in com.fasterxml.jackson.core:jackson-databind (CVE-2026-59889). Data can be tampered with by attackers. Exploitable via ``BeanDeserializer.deserializeWithUnwrapped``. Mitigation: upgrade to `2.22.1` or later.
|
| CVE-2026-48327 |
|
Authorization Flaw in adobe (CVE-2026-48327)
vulnerability in adobe (CVE-2026-48327). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48321 |
|
Authorization Flaw in privilege-escalation (CVE-2026-48321)
vulnerability in privilege-escalation (CVE-2026-48321). Confidential information can be exposed externally.
|
| CVE-2026-55608 |
|
Information Disclosure in n8n-mcp (CVE-2026-55608)
vulnerability in n8n-mcp (CVE-2026-55608). Risk of unauthorized operations or information disclosure. Exploitable via ``workflow_versions``. Mitigation: upgrade to `2.57.4` or later.
|
| CVE-2026-50528 |
|
Vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528)
vulnerability in Microsoft.NetCore.App.Runtime.linux-arm (CVE-2026-50528). Data can be tampered with by attackers. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-47303 |
|
Vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47303)
vulnerability in Microsoft.AspNetCore.Authentication.Negotiate (CVE-2026-47303). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-15641 |
|
Authorization Flaw in devolutions (CVE-2026-15641)
vulnerability in devolutions (CVE-2026-15641). Confidential information can be exposed externally.
|
| CVE-2026-9127 |
|
Authorization Flaw in rockwellautomation (CVE-2026-9127)
vulnerability in rockwellautomation (CVE-2026-9127). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62198 |
|
Authorization Flaw in openclaw (CVE-2026-62198)
vulnerability in openclaw (CVE-2026-62198). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62196 |
|
Authorization Flaw in openclaw (CVE-2026-62196)
vulnerability in openclaw (CVE-2026-62196). Confidential information can be exposed externally.
|
| CVE-2026-62193 |
|
Authorization Flaw in openclaw (CVE-2026-62193)
vulnerability in openclaw (CVE-2026-62193). Data can be tampered with by attackers. Mitigation: upgrade to `2026.6.9` or later.
|
| CVE-2026-62190 |
|
Vulnerability in openclaw (CVE-2026-62190)
vulnerability in openclaw (CVE-2026-62190). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62191 |
|
Vulnerability in openclaw (CVE-2026-62191)
vulnerability in openclaw (CVE-2026-62191). Data can be tampered with by attackers.
|
| CVE-2026-62192 |
|
Authorization Flaw in openclaw (CVE-2026-62192)
vulnerability in openclaw (CVE-2026-62192). Data can be tampered with by attackers.
|
| CVE-2026-62188 |
|
Authorization Flaw in openclaw (CVE-2026-62188)
vulnerability in openclaw (CVE-2026-62188). Confidential information can be exposed externally.
|
| CVE-2026-62187 |
|
Authorization Flaw in openclaw (CVE-2026-62187)
vulnerability in openclaw (CVE-2026-62187). Confidential information can be exposed externally.
|
| CVE-2026-62186 |
|
Vulnerability in openclaw (CVE-2026-62186)
vulnerability in openclaw (CVE-2026-62186). Confidential information can be exposed externally.
|
| CVE-2026-58408 |
|
Vulnerability in CVE-2026-58408 (CVE-2026-58408)
vulnerability in CVE-2026-58408 (CVE-2026-58408). Confidential information can be exposed externally. Exploitable via `POST /CSVCreateFile.php`.
|
| CVE-2026-45414 |
|
Vulnerability in decidim (CVE-2026-45414)
vulnerability in decidim (CVE-2026-45414). Confidential information can be exposed externally. Exploitable via `Host header`. Mitigation: upgrade to `0.32.0` or later.
|
| CVE-2026-62147 |
|
Authorization Flaw in CVE-2026-62147 (CVE-2026-62147)
vulnerability in CVE-2026-62147 (CVE-2026-62147). Confidential information can be exposed externally.
|
| CVE-2026-10106 |
|
Authorization Flaw in mattermost (CVE-2026-10106)
vulnerability in mattermost (CVE-2026-10106). Data can be tampered with by attackers.
|
| CVE-2026-15541 |
|
Vulnerability in CVE-2026-15541 (CVE-2026-15541)
vulnerability in CVE-2026-15541 (CVE-2026-15541). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15507 |
|
Vulnerability in CVE-2026-15507 (CVE-2026-15507)
vulnerability in CVE-2026-15507 (CVE-2026-15507). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61874 |
|
Authorization Flaw in CVE-2026-61874 (CVE-2026-61874)
vulnerability in CVE-2026-61874 (CVE-2026-61874). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56252 |
|
Authorization Flaw in CVE-2026-56252 (CVE-2026-56252)
vulnerability in CVE-2026-56252 (CVE-2026-56252). Risk of unauthorized operations or information disclosure. Exploitable via `POST /webhooks/test`.
|
| CVE-2026-1359 |
|
Authorization Flaw in wordpress (CVE-2026-1359)
vulnerability in wordpress (CVE-2026-1359). Successful exploitation can lead to full system takeover.
|