Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-18527 |
|
Vulnerability in CVE-2026-18527 (CVE-2026-18527)
vulnerability in CVE-2026-18527 (CVE-2026-18527). Successful exploitation can lead to full system takeover.
|
| CVE-2026-81826 |
|
Vulnerability in CVE-2026-81826 (CVE-2026-81826)
vulnerability in CVE-2026-81826 (CVE-2026-81826). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70594 |
|
Vulnerability in ghost (CVE-2026-70594)
vulnerability in ghost (CVE-2026-70594). Confidential information can be exposed externally. Mitigation: upgrade to `6.54.1` or later.
|
| CVE-2026-69245 |
|
Vulnerability in guzzlehttp/guzzle (CVE-2026-69245)
vulnerability in guzzlehttp/guzzle (CVE-2026-69245). Risk of unauthorized operations or information disclosure. Exploitable via ``Domain``. Mitigation: upgrade to `7.15.2` or later.
|
| CVE-2026-16496 |
|
Vulnerability in CVE-2026-16496 (CVE-2026-16496)
vulnerability in CVE-2026-16496 (CVE-2026-16496). Confidential information can be exposed externally.
|
| CVE-2021-32088 |
|
Vulnerability in quest (CVE-2021-32088)
vulnerability in quest (CVE-2021-32088). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16089 |
|
Vulnerability in redhat (CVE-2026-16089)
vulnerability in redhat (CVE-2026-16089). Confidential information can be exposed externally.
|
| CVE-2026-59883 |
|
Information Disclosure in guzzlehttp/guzzle (CVE-2026-59883)
vulnerability in guzzlehttp/guzzle (CVE-2026-59883). Risk of unauthorized operations or information disclosure. Exploitable via ``CookieJar``. Mitigation: upgrade to `7.12.3` or later.
|
| CVE-2026-14609 |
|
Vulnerability in CVE-2026-14609 (CVE-2026-14609)
vulnerability in CVE-2026-14609 (CVE-2026-14609). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13707 |
|
Vulnerability in mediawiki (CVE-2026-13707)
vulnerability in mediawiki (CVE-2026-13707). Confidential information can be exposed externally.
|
| CVE-2026-56224 |
|
Vulnerability in CVE-2026-56224 (CVE-2026-56224)
vulnerability in CVE-2026-56224 (CVE-2026-56224). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-35095 |
|
Vulnerability in CVE-2026-35095 (CVE-2026-35095)
vulnerability in CVE-2026-35095 (CVE-2026-35095). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40082 |
|
Vulnerability in cacti (CVE-2026-40082)
vulnerability in cacti (CVE-2026-40082). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56425 |
|
Vulnerability in csrf (CVE-2026-56425)
vulnerability in csrf (CVE-2026-56425). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
|
| CVE-2026-12581 |
|
Vulnerability in csharp (CVE-2026-12581)
vulnerability in csharp (CVE-2026-12581). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53900 |
|
Vulnerability in mozilla (CVE-2026-53900)
vulnerability in mozilla (CVE-2026-53900). Risk of unauthorized operations or information disclosure.
|
| CVE-2009-10007 |
|
Vulnerability in CVE-2009-10007 (CVE-2009-10007)
vulnerability in CVE-2009-10007 (CVE-2009-10007). Confidential information can be exposed externally.
|
| CVE-2026-41839 |
|
Vulnerability in org.springframework:spring-webflux (CVE-2026-41839)
vulnerability in org.springframework:spring-webflux (CVE-2026-41839). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11335 |
|
Vulnerability in CVE-2026-11335 (CVE-2026-11335)
vulnerability in CVE-2026-11335 (CVE-2026-11335). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-67446 |
|
Vulnerability in CVE-2025-67446 (CVE-2025-67446)
vulnerability in CVE-2025-67446 (CVE-2025-67446). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33384 |
|
Vulnerability in CVE-2026-33384 (CVE-2026-33384)
vulnerability in CVE-2026-33384 (CVE-2026-33384). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48545 |
|
Vulnerability in gradio (CVE-2026-48545)
vulnerability in gradio (CVE-2026-48545). Confidential information can be exposed externally. Mitigation: upgrade to `6.15.0` or later.
|
| CVE-2026-43827 |
|
Vulnerability in org.apache.shiro:shiro-core (CVE-2026-43827)
vulnerability in org.apache.shiro:shiro-core (CVE-2026-43827). Confidential information can be exposed externally. Mitigation: upgrade to `3.0.0-alpha-2` or later.
|
| CVE-2026-45773 |
|
Cross-Site Request Forgery (CSRF) in turbo (CVE-2026-45773)
vulnerability in turbo (CVE-2026-45773). Data can be tampered with by attackers. Exploitable via ``turbo``. Mitigation: upgrade to `2.9.14` or later.
|
| CVE-2026-41613 |
|
OS Command Injection in microsoft (CVE-2026-41613)
OS command injection in microsoft (CVE-2026-41613). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30808 |
|
Vulnerability in artica (CVE-2026-30808)
vulnerability in artica (CVE-2026-30808). Confidential information can be exposed externally.
|
| CVE-2025-65415 |
|
Vulnerability in CVE-2025-65415 (CVE-2025-65415)
vulnerability in CVE-2025-65415 (CVE-2025-65415). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-46605 |
|
Vulnerability in dell (CVE-2025-46605)
vulnerability in dell (CVE-2025-46605). Confidential information can be exposed externally.
|
| CVE-2026-34454 |
|
Vulnerability in oauth2-proxy (CVE-2026-34454)
vulnerability in oauth2-proxy (CVE-2026-34454). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.15.2` or later.
|
| CVE-2026-33757 |
|
Vulnerability in openbao (CVE-2026-33757)
vulnerability in openbao (CVE-2026-33757). Confidential information can be exposed externally. Exploitable via ``callback_mode``.
|
| CVE-2026-24352 |
|
Vulnerability in pluxml (CVE-2026-24352)
vulnerability in pluxml (CVE-2026-24352). Successful exploitation can lead to full system takeover.
|
| CVE-2025-71057 |
|
Authentication Bypass in CVE-2025-71057 (CVE-2025-71057)
authentication bypass in CVE-2025-71057 (CVE-2025-71057). Data can be tampered with by attackers.
|
| CVE-2025-7014 |
|
Vulnerability in qrmenumpro (CVE-2025-7014)
vulnerability in qrmenumpro (CVE-2025-7014). Confidential information can be exposed externally.
|
| CVE-2025-7015 |
|
Vulnerability in akinsoft (CVE-2025-7015)
vulnerability in akinsoft (CVE-2025-7015). Confidential information can be exposed externally.
|
| CVE-2025-56400 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-56400)
vulnerability in csrf (CVE-2025-56400). Successful exploitation can lead to full system takeover.
|
| CVE-2025-10228 |
|
Vulnerability in CVE-2025-10228 (CVE-2025-10228)
vulnerability in CVE-2025-10228 (CVE-2025-10228). Successful exploitation can lead to full system takeover.
|
| CVE-2025-45949 |
|
Vulnerability in phpgurukul (CVE-2025-45949)
vulnerability in phpgurukul (CVE-2025-45949). Successful exploitation can lead to full system takeover.
|
| CVE-2025-45953 |
|
Vulnerability in phpgurukul (CVE-2025-45953)
vulnerability in phpgurukul (CVE-2025-45953). Confidential information can be exposed externally.
|
| CVE-2023-50176 |
|
Vulnerability in fortinet (CVE-2023-50176)
vulnerability in fortinet (CVE-2023-50176). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-8643 |
|
Vulnerability in oceanicsoft (CVE-2024-8643)
vulnerability in oceanicsoft (CVE-2024-8643). Successful exploitation can lead to full system takeover.
|
| CVE-2024-7341 |
|
Vulnerability in redhat (CVE-2024-7341)
vulnerability in redhat (CVE-2024-7341). Successful exploitation can lead to full system takeover.
|
| CVE-2024-23679 |
|
Vulnerability in enonic (CVE-2024-23679)
vulnerability in enonic (CVE-2024-23679). Successful exploitation can lead to full system takeover.
|
| CVE-2023-30056 |
|
Vulnerability in fico (CVE-2023-30056)
vulnerability in fico (CVE-2023-30056). Data can be tampered with by attackers.
|
| CVE-2022-27305 |
|
Vulnerability in gibbonedu (CVE-2022-27305)
vulnerability in gibbonedu (CVE-2022-27305). Successful exploitation can lead to full system takeover.
|
| CVE-2021-2351 |
|
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unau...
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Su...
|
| CVE-2017-1270 |
|
Vulnerability in ibm (CVE-2017-1270)
vulnerability in ibm (CVE-2017-1270). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11562 |
|
Vulnerability in mt4 (CVE-2017-11562)
vulnerability in mt4 (CVE-2017-11562). Successful exploitation can lead to full system takeover.
|
| CVE-2017-10890 |
|
Vulnerability in sharp (CVE-2017-10890)
vulnerability in sharp (CVE-2017-10890). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000150 |
|
Vulnerability in mahara (CVE-2017-1000150)
vulnerability in mahara (CVE-2017-1000150). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14163 |
|
Vulnerability in mahara (CVE-2017-14163)
vulnerability in mahara (CVE-2017-14163). Successful exploitation can lead to full system takeover.
|