Security advisories — page 4
- CVE-2020-25213unknownWordPress File Manager Plugin Remote Code Execution Vulnerability
- CVE-2020-25506unknownD-Link DNS-320 Device Command Injection Vulnerability
- CVE-2021-42013unknownApache HTTP Server Path Traversal Vulnerability
- CVE-2020-2555unknownOracle Multiple Products Remote Code Execution Vulnerability
- CVE-2020-26919unknownNetgear JGS516PE Devices Missing Function Level Access Control Vulnerability
- CVE-2020-27930unknownApple Multiple Products Memory Corruption Vulnerability
- CVE-2020-27932unknownApple Multiple Products Type Confusion Vulnerability
- CVE-2020-27950unknownApple Multiple Products Memory Initialization Vulnerability
- CVE-2021-41773unknownApache HTTP Server Path Traversal Vulnerability
- CVE-2020-29557unknownD-Link DIR-825 R1 Devices Buffer Overflow Vulnerability
- CVE-2020-29583unknownZyxel Multiple Products Use of Hard-Coded Credentials Vulnerability
- CVE-2020-3118unknownCisco IOS XR Software Discovery Protocol Format String Vulnerability
- CVE-2020-3161unknownCisco IP Phones Web Server Remote Code Execution and Denial-of-Service Vulnerability
- CVE-2020-3452unknownCisco ASA and FTD Read-Only Path Traversal Vulnerability
- CVE-2020-3566unknownCisco IOS XR Software DVMRP Memory Exhaustion Vulnerability
- CVE-2020-3569unknownCisco IOS XR Software DVMRP Memory Exhaustion Vulnerability
- CVE-2020-3580unknownCisco ASA and FTD Cross-Site Scripting (XSS) Vulnerability
- CVE-2020-3950unknownVMware Multiple Products Privilege Escalation Vulnerability
- CVE-2020-3952unknownVMware vCenter Server Information Disclosure Vulnerability
- CVE-2020-3992unknownVMware ESXi OpenSLP Use-After-Free Vulnerability
- CVE-2020-4006unknownMultiple VMware Products Command Injection Vulnerability
- CVE-2020-4427unknownIBM Data Risk Manager Security Bypass Vulnerability
- CVE-2020-4428unknownIBM Data Risk Manager Remote Code Execution Vulnerability
- CVE-2020-4430unknownIBM Data Risk Manager Directory Traversal Vulnerability
- CVE-2020-5735unknownAmcrest Cameras and NVR Stack-based Buffer Overflow Vulnerability
- CVE-2020-5847unknownUnraid Remote Code Execution Vulnerability
- CVE-2020-5849unknownUnraid Authentication Bypass Vulnerability
- CVE-2020-5902unknownF5 BIG-IP Traffic Management User Interface (TMUI) Remote Code Execution Vulnerability
- CVE-2020-6207unknownSAP Solution Manager Missing Authentication for Critical Function Vulnerability
- CVE-2020-6287unknownSAP NetWeaver Missing Authentication for Critical Function Vulnerability
- CVE-2020-6418unknownGoogle Chromium V8 Type Confusion Vulnerability
- CVE-2020-6819unknownMozilla Firefox And Thunderbird Use-After-Free Vulnerability
- CVE-2020-6820unknownMozilla Firefox And Thunderbird Use-After-Free Vulnerability
- CVE-2020-7961unknownLiferay Portal Deserialization of Untrusted Data Vulnerability
- CVE-2020-8193unknownCitrix ADC, Gateway, and SD-WAN WANOP Appliance Authorization Bypass Vulnerability
- CVE-2020-8195unknownCitrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability
- CVE-2020-8196unknownCitrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability
- CVE-2020-8243unknownIvanti Pulse Connect Secure Code Execution Vulnerability
- CVE-2020-8260unknownIvanti Pulse Connect Secure Code Execution Vulnerability
- CVE-2020-8467unknownTrend Micro Apex One and OfficeScan Remote Code Execution Vulnerability
- CVE-2020-8468unknownTrend Micro Multiple Products Content Validation Escape Vulnerability
- CVE-2020-8515unknownMultiple DrayTek Vigor Routers Web Management Page Vulnerability
- CVE-2020-8599unknownTrend Micro Apex One and OfficeScan Authentication Bypass Vulnerability
- CVE-2020-8644unknownPlaySMS Server-Side Template Injection Vulnerability
- CVE-2020-8655unknownEyesOfNetwork Improper Privilege Management Vulnerability
- CVE-2020-8657unknownEyesOfNetwork Use of Hard-Coded Credentials Vulnerability
- CVE-2021-40539unknownZoho ManageEngine ADSelfService Plus Authentication Bypass Vulnerability
- CVE-2020-9818unknownApple iOS, iPadOS, and watchOS Out-of-Bounds Write Vulnerability
- CVE-2020-9819unknownApple iOS, iPadOS, and watchOS Memory Corruption Vulnerability
- CVE-2020-9859unknownApple Multiple Products Code Execution Vulnerability
- CVE-2021-1497unknownCisco HyperFlex HX Installer Virtual Machine Command Injection Vulnerability
- CVE-2021-1498unknownCisco HyperFlex HX Data Platform Command Injection Vulnerability
- CVE-2021-1647unknownMicrosoft Defender Remote Code Execution Vulnerability
- CVE-2021-1675unknownMicrosoft Windows Print Spooler Remote Code Execution Vulnerability
- CVE-2021-1732unknownMicrosoft Win32k Privilege Escalation Vulnerability
- CVE-2021-1782unknownApple Multiple Products Race Condition Vulnerability
- CVE-2021-1870unknownApple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability
- CVE-2021-1871unknownApple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability
- CVE-2021-1879unknownApple iOS, iPadOS, and watchOS WebKit Cross-Site Scripting (XSS) Vulnerability
- CVE-2021-1905unknownQualcomm Multiple Chipsets Use-After-Free Vulnerability
- CVE-2021-1906unknownQualcomm Multiple Chipsets Detection of Error Condition Without Action Vulnerability
- CVE-2021-20016unknownSonicWall SSLVPN SMA100 SQL Injection Vulnerability
- CVE-2021-20021unknownSonicWall Email Security Improper Privilege Management Vulnerability
- CVE-2021-20022unknownSonicWall Email Security Unrestricted Upload of File Vulnerability
- CVE-2021-20023unknownSonicWall Email Security Path Traversal Vulnerability
- CVE-2021-20090unknownArcadyan Buffalo Firmware Path Traversal Vulnerability
- CVE-2021-40444unknownMicrosoft MSHTML Remote Code Execution Vulnerability
- CVE-2016-3235unknownMicrosoft Office OLE DLL Side Loading Vulnerability
- CVE-2021-21017unknownAdobe Acrobat and Reader Heap-based Buffer Overflow Vulnerability
- CVE-2021-21148unknownGoogle Chromium V8 Heap Buffer Overflow Vulnerability
- CVE-2021-21166unknownGoogle Chromium Race Condition Vulnerability
- CVE-2021-21193unknownGoogle Chromium Blink Use-After-Free Vulnerability
- CVE-2021-21206unknownGoogle Chromium Blink Use-After-Free Vulnerability
- CVE-2021-21220unknownGoogle Chromium V8 Improper Input Validation Vulnerability
- CVE-2021-21224unknownGoogle Chromium V8 Type Confusion Vulnerability
- CVE-2021-21972unknownVMware vCenter Server Remote Code Execution Vulnerability
- CVE-2021-21985unknownVMware vCenter Server Improper Input Validation Vulnerability
- CVE-2021-22005unknownVMware vCenter Server File Upload Vulnerability
- CVE-2021-22205unknownGitLab Community and Enterprise Editions Remote Code Execution Vulnerability
- CVE-2021-22502unknownMicro Focus Operation Bridge Report (OBR) Remote Code Execution Vulnerability
- CVE-2021-22506unknownMicro Focus Access Manager Information Leakage Vulnerability
- CVE-2021-22893unknownIvanti Pulse Connect Secure Use-After-Free Vulnerability
- CVE-2021-22899unknownIvanti Pulse Connect Secure Command Injection Vulnerability
- CVE-2021-22900unknownIvanti Pulse Connect Secure Unrestricted File Upload Vulnerability
- CVE-2021-22986unknownF5 BIG-IP and BIG-IQ Centralized Management iControl REST Remote Code Execution Vulnerability
- CVE-2021-23874unknownMcAfee Total Protection (MTP) Improper Privilege Management Vulnerability
- CVE-2021-38649unknownMicrosoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability
- CVE-2021-38648unknownMicrosoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability
- CVE-2021-38647unknownMicrosoft Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
- CVE-2021-38645unknownMicrosoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability
- CVE-2021-26084unknownAtlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection Vulnerability
- CVE-2021-26411unknownMicrosoft Internet Explorer Memory Corruption Vulnerability
- CVE-2021-38003unknownGoogle Chromium V8 Memory Corruption Vulnerability
- CVE-2021-38000unknownGoogle Chromium Intents Improper Input Validation Vulnerability
- CVE-2021-26855unknownMicrosoft Exchange Server Remote Code Execution Vulnerability
- CVE-2021-26857unknownMicrosoft Exchange Server Remote Code Execution Vulnerability
- CVE-2021-26858unknownMicrosoft Exchange Server Remote Code Execution Vulnerability
- CVE-2021-27059unknownMicrosoft Office Remote Code Execution Vulnerability
- CVE-2021-27065unknownMicrosoft Exchange Server Remote Code Execution Vulnerability
- CVE-2021-27085unknownMicrosoft Internet Explorer Remote Code Execution Vulnerability
- CVE-2021-27101unknownAccellion FTA SQL Injection Vulnerability
- CVE-2021-27102unknownAccellion FTA OS Command Injection Vulnerability
- CVE-2021-27103unknownAccellion FTA Server-Side Request Forgery (SSRF) Vulnerability
- CVE-2021-27104unknownAccellion FTA OS Command Injection Vulnerability
- CVE-2021-37976unknownGoogle Chromium Information Disclosure Vulnerability
- CVE-2016-3643unknownSolarWinds Virtualization Manager Privilege Escalation Vulnerability
- CVE-2021-37975unknownGoogle Chromium V8 Use-After-Free Vulnerability
- CVE-2021-27561unknownYealink Device Management Server-Side Request Forgery (SSRF) Vulnerability
- CVE-2021-27562unknownArm Trusted Firmware Out-of-Bounds Write Vulnerability
- CVE-2021-30665unknownApple Multiple Products WebKit Memory Corruption Vulnerability
- CVE-2021-30666unknownApple iOS WebKit Buffer Overflow Vulnerability
- CVE-2021-30713unknownApple macOS Unspecified Vulnerability
- CVE-2021-30761unknownApple iOS WebKit Memory Corruption Vulnerability
- CVE-2021-30762unknownApple iOS WebKit Use-After-Free Vulnerability
- CVE-2021-30807unknownApple Multiple Products Memory Corruption Vulnerability
- CVE-2021-30858unknownApple iOS, iPadOS, macOS Use-After-Free Vulnerability
- CVE-2021-30860unknownApple Multiple Products Integer Overflow Vulnerability
- CVE-2021-30869unknownApple iOS, iPadOS, and macOS Type Confusion Vulnerability
- CVE-2021-36955unknownMicrosoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
- CVE-2021-31199unknownMicrosoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability
- CVE-2021-31201unknownMicrosoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability
- CVE-2021-31207unknownMicrosoft Exchange Server Security Feature Bypass Vulnerability
- CVE-2021-36948unknownMicrosoft Windows Update Medic Service Privilege Escalation Vulnerability
- CVE-2021-31755unknownTenda AC11 Router Stack Buffer Overflow Vulnerability
- CVE-2021-31955unknownMicrosoft Windows Kernel Information Disclosure Vulnerability
- CVE-2021-31956unknownMicrosoft Windows NTFS Privilege Escalation Vulnerability
- CVE-2021-31979unknownMicrosoft Windows Kernel Privilege Escalation Vulnerability
- CVE-2021-36942unknownMicrosoft Windows Local Security Authority (LSA) Spoofing Vulnerability
- CVE-2016-4437unknownApache Shiro Code Execution Vulnerability
- CVE-2021-36742unknownTrend Micro Multiple Products Improper Input Validation Vulnerability
- CVE-2021-33739unknownMicrosoft Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability
- CVE-2021-33742unknownMicrosoft Windows MSHTML Platform Remote Code Execution Vulnerability
- CVE-2021-33771unknownMicrosoft Windows Kernel Privilege Escalation Vulnerability
- CVE-2021-34448unknownMicrosoft Windows Scripting Engine Memory Corruption Vulnerability
- CVE-2021-34473unknownMicrosoft Exchange Server Remote Code Execution Vulnerability
- CVE-2021-34523unknownMicrosoft Exchange Server Privilege Escalation Vulnerability
- CVE-2021-34527unknownMicrosoft Windows Print Spooler Remote Code Execution Vulnerability
- CVE-2021-35211unknownSolarWinds Serv-U Remote Code Execution Vulnerability
- CVE-2021-35395unknownRealtek AP-Router SDK Buffer Overflow Vulnerability
- CVE-2021-28310unknownMicrosoft Win32k Privilege Escalation Vulnerability
- CVE-2021-28550unknownAdobe Acrobat and Reader Use-After-Free Vulnerability
- CVE-2021-28663unknownArm Mali Graphics Processing Unit (GPU) Use-After-Free Vulnerability
- CVE-2021-28664unknownArm Mali Graphics Processing Unit (GPU) Unspecified Vulnerability
- CVE-2016-3715unknownImageMagick Arbitrary File Deletion Vulnerability
- CVE-2016-3718unknownImageMagick Server-Side Request Forgery (SSRF) Vulnerability
- CVE-2016-3976unknownSAP NetWeaver Directory Traversal Vulnerability
- CVE-2021-37973unknownGoogle Chromium Portals Use-After-Free Vulnerability
- CVE-2021-30116unknownKaseya Virtual System/Server Administrator (VSA) Information Disclosure Vulnerability
- CVE-2021-30551unknownGoogle Chromium V8 Type Confusion Vulnerability
- CVE-2021-30554unknownGoogle Chromium WebGL Use-After-Free Vulnerability
- CVE-2021-30563unknownGoogle Chromium V8 Type Confusion Vulnerability
- CVE-2021-30632unknownGoogle Chromium V8 Out-of-Bounds Write Vulnerability
- CVE-2021-30633unknownGoogle Chromium Indexed DB API Use-After-Free Vulnerability
- CVE-2021-30657unknownApple macOS Unspecified Vulnerability
- CVE-2021-30661unknownApple Multiple Products WebKit Storage Use-After-Free Vulnerability
- CVE-2021-30663unknownApple Multiple Products WebKit Integer Overflow Vulnerability
- CVE-2019-19576criticalRemote code execution in verot/class.upload.php
- CVE-2024-21626highrunc vulnerable to container breakout through process.cwd trickery and leaked fds
- CVE-2019-19634criticalclass.upload.php in verot.net omits .pht from the set of dangerous file extensions
- CVE-2026-59865criticalCVE-2026-59865 updated by NVD
- CVE-2020-36326criticalObject injection in PHPMailer/PHPMailer
- CVE-2026-31843criticalgoodoneuz/pay-uz: the /payment/api/editable/update endpoint overwrites existing PHP payment hook files
- CVE-2026-59867highMicrosoft Kiota: Generation-time SSRF + remote/local file inclusion via unrestricted $ref
- CVE-2026-48710mediumCVE-2026-48710 updated by NVD
- CVE-2026-32203highMicrosoft Security Advisory CVE-2026-32203 – .NET and Visual Studio Denial of Service Vulnerability
- CVE-2026-52815mediumGogs Vulnerable to Unauthenticated Organization Teams Information Disclosure via API
- CVE-2026-59861highCVE-2026-59861 updated by NVD
- CVE-2026-59866criticalCVE-2026-59866 updated by NVD
- CVE-2024-11958criticalLlamaIndex Retrievers Integration: DuckDBRetriever SQL Injection
- CVE-2026-59864criticalMicrosoft Kiota: Path/URL injection into generated Copilot plugin manifest via x-ai-* extensions
- CVE-2026-59863highMicrosoft Kiota Workspace-config poisoning: out-of-repo file write + generation-time SSRF
- CVE-2026-52813criticalGogs has Path Traversal in organization name that results in RCE through Git hooks
- CVE-2026-11572highCVE-2026-11572 updated by NVD
- CVE-2026-48746criticalCVE-2026-48746 updated by NVD
- CVE-2026-52806criticalGogs vulnerable to RCE via git rebase --exec argument injection in pull request merge
- CVE-2026-59862highCVE-2026-59862 updated by NVD
- CVE-2026-59859highCVE-2026-59859 updated by NVD
- CVE-2026-59860highCVE-2026-59860 updated by NVD
- CVE-2023-6484mediumKeycloak vulnerable to log Injection during WebAuthn authentication or registration
- CVE-2026-67438mediumCVE-2026-67438 updated by NVD
- CVE-2026-33701criticalOpenTelemetry: Unsafe Deserialization in RMI Instrumentation may Lead to Remote Code Execution
- CVE-2025-4318criticalCVE-2025-4318 updated by NVD
- CVE-2026-25119highGogs has an Authentication Bypass via Unvalidated Reverse Proxy Headers
- CVE-2023-26051mediumSaleor has Staff-Authenticated Error Message Information Disclosure Vulnerability via Python Exceptions
- CVE-2026-47302highCVE-2026-47302 updated by NVD
- CVE-2026-42258mediumCVE-2026-42258 updated by NVD
- CVE-2026-30922highCVE-2026-30922 updated by NVD
- CVE-2026-56170highCVE-2026-56170 updated by NVD
- CVE-2026-40938highCVE-2026-40938 updated by NVD
- CVE-2026-20896criticalGitea Docker image: `REVERSE_PROXY_TRUSTED_PROXIES = *` default lets any source IP impersonate any user via `X
- CVE-2026-40912highTraefik has an StripPrefixRegex Middleware Authorization Bypass via Path/RawPath Desync
- CVE-2023-26052lowSaleor Unauthenticated Information Disclosure Vulnerability via Python Exceptions
- CVE-2026-53913criticalApache Camel: KeycloakSecurityPolicy has Improper Authentication, Missing Authentication for Critical Function
- CVE-2026-8634criticalCrabbox: environment variable exposure vulnerability
- CVE-2026-22807highCVE-2026-22807 updated by NVD
- CVE-2026-5807highHashiCorp Vault Vulnerable to Denial-of-Service via Unauthenticated Root Token Generation/Rekey Operations
- CVE-2026-54513highCVE-2026-54513 updated by NVD
- CVE-2026-43868mediumCVE-2026-43868 updated by NVD
- CVE-2026-49980criticalRclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote instantiation, bypassin
- CVE-2026-33646criticalMise Vulnerable to Arbitrary Code Execution via Tera Templates in .tool-versions Files (Trust Bypass)
- CVE-2026-23490highCVE-2026-23490 updated by NVD
- CVE-2026-52816mediumGogs's Unauthenticated Jupyter Notebook (ipynb) Sanitizer allows arbitrary data: URIs leading to XSS
- CVE-2026-55833highCVE-2026-55833 updated by NVD
- CVE-2026-55831highCVE-2026-55831 updated by NVD
- CVE-2026-48059highCVE-2026-48059 updated by NVD
- CVE-2026-39830criticalCVE-2026-39830 updated by NVD
- CVE-2026-50527highCVE-2026-50527 updated by NVD
- CVE-2026-50525highCVE-2026-50525 updated by NVD
- CVE-2026-50648highCVE-2026-50648 updated by NVD
- CVE-2026-48043mediumCVE-2026-48043 updated by NVD
- CVE-2026-13760highaws-cdk-lib: OS Command Injection in NodejsFunction Docker Bundling
- CVE-2026-56816highCVE-2026-56816 updated by NVD
- CVE-2026-42294highCVE-2026-42294 updated by NVD
- CVE-2026-39832criticalCVE-2026-39832 updated by NVD
- CVE-2026-53571highvite: `server.fs.deny` bypass on Windows alternate paths
- CVE-2026-47303highCVE-2026-47303 updated by NVD
- CVE-2025-1793criticalllama_index vulnerable to SQL Injection
- CVE-2026-65595highCVE-2026-65595 updated by NVD
- CVE-2026-52801highGogs has the ability to import local repositories via Mirror Settings
- CVE-2026-65014mediumCVE-2026-65014 updated by NVD
- CVE-2026-44827highDiffusers has a `trust_remote_code` bypass via `custom_pipeline` and local custom components
- CVE-2024-53412highNietThijmen ShoppingCart: Command injection in the connect function
- CVE-2026-56817highCVE-2026-56817 updated by NVD
- CVE-2026-52802mediumGogs has an Open Redirect via redirect_to
- CVE-2026-4598highjsrsasign is vulnerable to DoS through Infinite Loop when processing zero or negative inputs
- CVE-2026-57516highRay: Arbitrary code execution via ray.data.read_webdataset default decoder: pickle.loads(value) and torch.load
- CVE-2026-55607highClaude Code: Sandbox Escape via Git Worktree Path Confusion Allows Unsandboxed Code Execution
- CVE-2026-52814mediumGogs has Unauthenticated Asymmetric Denial of Service (DoS) via SSH Handshake Stall (File Descriptor Exhaustio
- CVE-2026-5241criticalCVE-2026-5241 updated by NVD
- CVE-2026-47300highCVE-2026-47300 updated by NVD
- CVE-2024-29888mediumSaleor: Customers' addresses leak when using Warehouse as a `Pickup: Local stock only` delivery method
- CVE-2026-65591highCVE-2026-65591 updated by NVD
- CVE-2026-65597highCVE-2026-65597 updated by NVD
- CVE-2026-24779highCVE-2026-24779 updated by NVD
- CVE-2026-56745highCVE-2026-56745 updated by NVD
- CVE-2026-55851highCVE-2026-55851 updated by NVD
- CVE-2026-27775highGitea: Cached Per-Branch Permission Check in Pre-Receive Hook Allows Full Repository Write
- CVE-2026-10732mediumCVE-2026-10732 updated by NVD
- CVE-2026-48006highCVE-2026-48006 updated by NVD
- CVE-2026-44503highKiota abstractions RedirectHandler leaks Cookie/Proxy-Authorization headers on cross-host redirect
- CVE-2026-39835mediumCVE-2026-39835 updated by NVD
- CVE-2026-52804mediumGogs Vulnerable to Privilege Escalation via Collaboration Access Mode Validation
- CVE-2026-4602highjsrsasign: Negative Exponent Handling Leads to Signature Verification Bypass
- CVE-2026-67429criticalCVE-2026-67429 updated by NVD
- CVE-2026-65594mediumCVE-2026-65594 updated by NVD
- CVE-2026-65589mediumCVE-2026-65589 updated by NVD
- CVE-2026-39414highCVE-2026-39414 updated by NVD
- CVE-2026-54092highFile Browser has a DoS Vulnerability via Public Login API
- CVE-2026-52807mediumGogs has DOM-based XSS via Milestone Name on New Issue Page
- CVE-2026-25038highGitea: Unauthorized Access to Labels of Private Organizations
- CVE-2026-24451highGitea: Fork Synchronization Continues After Parent Repository Changes from Public to Private
- CVE-2026-20779highGitea: TOTP TOCTOU race on web 2FA paths + missing replay check on Basic-Auth `X-Gitea-OTP` surface
- CVE-2026-56746mediumCVE-2026-56746 updated by NVD
- CVE-2026-52808highGogs's write-level collaborators can mutate admin-only repository settings via API
- CVE-2026-40575criticalOAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing
- CVE-2026-4599criticaljsrsasign: Incomplete Comparison Allows DSA Private Key Recovery via Biased Nonce Generation
- CVE-2026-52811criticalGogs: UploadRepoFiles writes outside repo working tree via committed parent sym
- CVE-2026-54091highFile Browser has incorrect access control for public directory shares via rule path rebasing
- CVE-2026-22874criticalGitea: Incomplete SSRF Protection in Webhook and Migration Allow-list Default Filter
- CVE-2026-50559highCVE-2026-50559 updated by NVD
- CVE-2026-54351highBudibase: Mass Assignment in Webhook Trigger Allows Cross-Workspace Automation Execution via appId Override
- CVE-2026-15074highCVE-2026-15074 updated by NVD
- CVE-2026-34742highCVE-2026-34742 updated by NVD
- CVE-2026-48204criticalApache Camel: camel-mongodb-gridfs producer allows GridFS operation override and NoSQL operator injection via
- CVE-2026-54171mediumCVE-2026-54171 updated by NVD
- CVE-2026-65015highCVE-2026-65015 updated by NVD
- CVE-2024-6875mediumInfinispan Potential Out of Memory Error via REST Compare API Buffer API
- CVE-2026-39852highCVE-2026-39852 updated by NVD
- CVE-2026-65590mediumCVE-2026-65590 updated by NVD
- CVE-2025-64719mediumGogs has a Denial of Service in repository/wiki file listing web pages
- CVE-2026-49755highCVE-2026-49755 updated by NVD
- CVE-2026-67432highCVE-2026-67432 updated by NVD
- CVE-2026-59892highOpenTelemetry JavaScript: Denial of service in `JaegerPropagator` via unhandled exception on a malformed heade
- CVE-2026-52798highGogs has Stored XSS in `.ipynb` Preview
- CVE-2026-52810highGogs allows users to write to readonly repositories using receive-pack + service=git-upload-pack confusion
- CVE-2026-54680criticalCVE-2026-54680 updated by NVD
- CVE-2026-52799highGogs Missing Authorization in Attachment Download
- CVE-2026-41134highKiota: Code Generation Literal Injection
- CVE-2026-54635highCVE-2026-54635 updated by NVD
- CVE-2026-28222mediumWagtail Vulnerable to Cross-site Scripting in TableBlock class attributes
- CVE-2026-16756highCVE-2026-16756 updated by NVD
- CVE-2026-59889mediumjackson-databind: @JsonView ypassed for @JsonUnwrapped container properties on deserialization
- CVE-2026-50137highBudibase: POST /api/attachments/:datasourceId/url is unauthenticated and lets anonymous callers mint S3 PUT pr
- CVE-2026-55404highyt-dlp: Downstream command injection via improper sanitization of yt-dlp --write-link output
- CVE-2026-65592highCVE-2026-65592 updated by NVD
- CVE-2026-54097highFile Browser: Cross-user unauthorized share-link deletion via unbounded prefix match in DeleteWithPathPrefix
- CVE-2026-59939highhttplib2: Decompression Bomb Denial of Service via Unbounded gzip/deflate Response Handling
- CVE-2026-42577highNetty epoll transport denial of service via RST on half-closed TCP connection
- CVE-2026-54293highCVE-2026-54293 updated by NVD
- CVE-2026-25699mediumCVE-2026-25699 updated by NVD
- CVE-2026-25688mediumCVE-2026-25688 updated by NVD
- CVE-2026-4525highHashiCorp Vault May Expose Tokens to Auth Plugins Due to Incorrect Header Sanitization
- CVE-2026-23879highpy7zr: Arbitrary File Write Vulnerability
- CVE-2026-47267highGogs has SSRF in webhook deliveries
- CVE-2026-46608highGlances: XML-RPC Multi-Origin CORS Configuration Silently Falls Back to Wildcard (Incomplete Fix for CVE-2026-
- CVE-2026-41842highCVE-2026-41842 updated by NVD
- CVE-2026-54658criticalCVE-2026-54658 updated by NVD
- CVE-2026-61609highCVE-2026-61609 updated by NVD
- CVE-2026-47427highCVE-2026-47427 updated by NVD
- CVE-2026-54345mediumCVE-2026-54345 updated by NVD
- CVE-2026-55575highLiquidJS: `pop` filter bypasses `memoryLimit` accounting that its array-filter siblings enforce
- CVE-2026-13676highCVE-2026-13676 updated by NVD
- CVE-2026-52805highGogs has a Migration Redirect Bypass that Leads to Internal Repository Theft
- CVE-2026-43973highCVE-2026-43973 updated by NVD
- CVE-2026-43974highCVE-2026-43974 updated by NVD
- CVE-2026-59220mediumOpen WebUI: ReDoS in skill-mention regexes causes whole-instance DoS on default config
- CVE-2026-10224mediumCVE-2026-10224 updated by NVD
- CVE-2026-59880highImmutabl: Hash-collision algorithmic complexity denial of service in Immutable.Map/Set
- CVE-2026-59879highImmutable.js `List` 32-bit trie overflow → unrecoverable DoS
- CVE-2026-48205criticalApache Camel DNS Has Improper Input Validation, Leading to Server-Side Request Forgery (SSRF)
- CVE-2026-54659mediumCVE-2026-54659 updated by NVD
- CVE-2026-54332mediumCVE-2026-54332 updated by NVD
- CVE-2026-59935highpypdf: Possible infinite loop for not terminated inline images (ASCII85 and ASCIIHex filter)
- CVE-2026-27761mediumGitea: API access token scope enforcement bypass on repository RSS/Atom feed endpoints leaks private repositor
- CVE-2025-71344highPicklescan is missing detection when calling built-in python ensurepip._run_pip
- CVE-2025-1057mediumKeylime registrar is vulnerable to Denial-of-Service attack when updated to version 7.12.0
- CVE-2026-65596mediumCVE-2026-65596 updated by NVD
- CVE-2026-65016highCVE-2026-65016 updated by NVD
- CVE-2026-65593mediumCVE-2026-65593 updated by NVD
- CVE-2026-55389highCVE-2026-55389 updated by NVD
- CVE-2026-59221highopen-webui terminal proxy path traversal guard bypass via 9x encoded traversal
- CVE-2026-54650highCVE-2026-54650 updated by NVD
- CVE-2026-55390highCVE-2026-55390 updated by NVD
- CVE-2026-41851mediumCVE-2026-41851 updated by NVD
- CVE-2026-41850highCVE-2026-41850 updated by NVD
- CVE-2026-54593highCVE-2026-54593 updated by NVD
- CVE-2026-59821lowLiteLLM: Custom Code Guardrails production endpoints bypass code safety checks
- CVE-2026-67437highCVE-2026-67437 updated by NVD
- CVE-2026-59884highCVE-2026-59884 updated by NVD
- CVE-2026-50195mediumcontainerd: CRI checkpoint import allows local image tag poisoning
- CVE-2026-52837mediumCVE-2026-52837 updated by NVD
- CVE-2026-54735criticalCVE-2026-54735 updated by NVD
- CVE-2026-52797highGogs: Overwriting critical files results in a denial of service
- CVE-2026-53632mediumlaunch-editor: NTLMv2 hash disclosure via UNC path handling on Windows
- CVE-2026-13149highbrace-expansion: DoS via exponential-time expansion of consecutive non-expanding {} groups
- CVE-2026-54638highCVE-2026-54638 updated by NVD
- CVE-2026-59887highlinkify-it: Quadratic-complexity DoS via the `mailto:` validator scan-loop on attacker text
- CVE-2026-34476highApache SkyWalking MCP: Server-Side Request Forgery via SW-URL Header in MCP Server
- CVE-2026-55771highCedar-Java has policy injection, type confusion, and incorrect equality comparison vulnerabilities
- CVE-2026-62325criticalCVE-2026-62325 updated by NVD
- CVE-2026-54693highCVE-2026-54693 updated by NVD
- CVE-2026-58422highGitea: Improper authorization on OAuth sign-in callback silently re-enables administrator-disabled accounts
- CVE-2026-41843mediumCVE-2026-41843 updated by NVD
- CVE-2026-59936highpypdf: Possible infinite loop for not terminated inline images
- CVE-2026-59937mediumpypdf: Possible long runtimes for repeated malformed cross-reference entries
- CVE-2026-67427highCVE-2026-67427 updated by NVD
- CVE-2026-14257highCVE-2026-14257 updated by NVD
- CVE-2026-59886highCVE-2026-59886 updated by NVD
- CVE-2026-59885highCVE-2026-59885 updated by NVD
- CVE-2026-54653highCVE-2026-54653 updated by NVD
- CVE-2026-67428highCVE-2026-67428 updated by NVD
- CVE-2026-64863criticalCVE-2026-64863 updated by NVD
- CVE-2026-5052mediumHashiCorp Vault has Server-Side Request Forgery in ACME Challenge Validation via Attacker-Controlled DNS
- CVE-2026-58421highGitea: Unauthenticated ReDoS via CODEOWNERS pattern matching allows denial of service
- CVE-2026-59212mediumOpen WebUI: Model meta.knowledge read-only file access can be upgraded to file write/delete
- CVE-2026-44907highCVE-2026-44907 updated by NVD
- CVE-2026-53781medium@steipete/summarize is Vulnerable to Disk Exhaustion via Crafted Media Responses
- CVE-2026-16796highCVE-2026-16796 updated by NVD
- CVE-2026-28740highGitea: Git LFS object reuse allows non-Code access to authorize private source objects
- CVE-2026-54090highFile Browser has a Command Execution Allowlist Bypass via Shell Metacharacter Injection
- CVE-2026-11393highCVE-2026-11393 updated by NVD
- CVE-2026-59222mediumOpen WebUI: /api/v1/channels/{id}/members exposes full user model including sensitive credentials
- CVE-2026-59891criticalCVE-2026-59891 updated by NVD
- CVE-2026-54078highCVE-2026-54078 updated by NVD
- CVE-2026-54079highCVE-2026-54079 updated by NVD
- CVE-2026-44210mediumCVE-2026-44210 updated by NVD
- CVE-2026-67425highCVE-2026-67425 updated by NVD
- CVE-2026-41848lowCVE-2026-41848 updated by NVD
- CVE-2026-59259mediumn8n: External Secrets Permission Bypass via Expression Parser Mismatch
- CVE-2026-59257mediumn8n: MySQL v1 Node executeQuery Operation Allows SQL Injection via Unparameterized Expression Interpolation
- CVE-2026-59820mediumLiteLLM: Arbitrary file write via path traversal in Skills archive extraction
- CVE-2026-41841mediumCVE-2026-41841 updated by NVD
- CVE-2026-43966mediumCVE-2026-43966 updated by NVD
- CVE-2026-44788mediumCVE-2026-44788 updated by NVD
- CVE-2026-54588criticalPoweradmin has Host Header Injection in OIDC redirect_uri, SAML ACS/SLO URL, and Logout Redirect Construction.
- CVE-2026-58423highGitea: LFS authentication bypass via malformed SSH sub-verb allows unauthorized read access to private reposit
- CVE-2026-66064mediumCVE-2026-66064 updated by NVD
- CVE-2026-59216highOpen WebUI: Cross-user code-interpreter and tool execution via unvalidated Socket.IO event-caller session_id
- CVE-2026-59219highOpen WebUI: Realtime endpoints accept Redis-revoked JWTs after signout/backchannel logout
- CVE-2026-10221mediumCVE-2026-10221 updated by NVD
- CVE-2026-59226lowOpen WebUI: Scheduled automations continue after pending-user deactivation and stored model ACL revocation
- CVE-2026-59938mediumpypdf: Possible large memory usage for wrong image dimensions
- CVE-2026-46607highGlances has Insecure Pickle Deserialization in its Version Cache that Leads to Arbitrary Code Execution
- CVE-2026-11477lowCVE-2026-11477 updated by NVD
- CVE-2026-54081mediumCVE-2026-54081 updated by NVD
- CVE-2026-54080mediumCVE-2026-54080 updated by NVD
- CVE-2024-56526highOXID eShop May Display User Information
- CVE-2026-50567highFission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory
- CVE-2026-54696lowRuby json: JSON generator heap buffer overflow when streaming to an IO
- CVE-2026-55689mediumOpenFGA: OIDC audience validation skipped when --authn-oidc-audience is unset
- CVE-2026-11470lowCVE-2026-11470 updated by NVD
- CVE-2026-41007highCVE-2026-41007 updated by NVD
- CVE-2026-58419highGitea: Notification API leaks private issue metadata after access revocation
- CVE-2026-59213lowOpen WebUI: Cross-user model-list exposure via static cache key in get_all_models (aiocache key= vs key_builde
- CVE-2026-59206highn8n: Prototype Pollution via Workflow Credentials Leads to Unauthenticated User and Project Enumeration
- CVE-2026-52845highCaddy: FastCGI header normalization bypass in `forward_auth copy_headers`
- CVE-2026-56820highCVE-2026-56820 updated by NVD
- CVE-2026-59209highn8n: Shared Credential Header Leak via HTTP Request Pagination Expression
- CVE-2026-55773highCedarJava has policy injection vulnerability
- CVE-2026-59217mediumOpen WebUI: Upload `metadata.knowledge_id` bypasses the knowledge-base write-access check (read-only users can
- CVE-2026-54286mediumhono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`)
- CVE-2026-67426criticalCVE-2026-67426 updated by NVD
- CVE-2026-67430mediumCVE-2026-67430 updated by NVD
- CVE-2026-59890mediumsetuptools: MANIFEST.in exclusion bypass in sdist via Unicode normalization collision (NFC/NFD) on macOS APFS/
- CVE-2026-48501highCVE-2026-48501 updated by NVD
- CVE-2026-49138mediumCVE-2026-49138 updated by NVD
- CVE-2026-67435mediumCVE-2026-67435 updated by NVD
- CVE-2026-54666highCVE-2026-54666 updated by NVD
- CVE-2026-59224highOpen WebUI: Terminal proxy forwards a spoofable, integrity-unbound user identity to the upstream (X-User-Id he
- CVE-2026-59214highOpen WebUI: Stored web worker XSS via Pyodide
- CVE-2026-47691highCVE-2026-47691 updated by NVD
- CVE-2026-50650highCVE-2026-50650 updated by NVD
- CVE-2026-55223mediumc3p0 can, in combination with other libraries, compose to a "sink" for deserialization gadgets
- CVE-2026-52796lowGogs has DoS in rendering issue index pattern
- CVE-2026-54719highCVE-2026-54719 updated by NVD
- CVE-2026-57495highCVE-2026-57495 updated by NVD
- CVE-2026-11500lowCVE-2026-11500 updated by NVD
- CVE-2026-41710mediumCVE-2026-41710 updated by NVD
- CVE-2026-67431highCVE-2026-67431 updated by NVD
- CVE-2026-55415highCVE-2026-55415 updated by NVD
- CVE-2026-56266criticalCrawl4AI: Multiple Docker API Vulnerabilities - File Write, SSRF, Auth Bypass, XSS, JS Execution
- CVE-2026-41006highCVE-2026-41006 updated by NVD
- CVE-2024-4029mediumWildfly vulnerable to denial of service
- CVE-2026-50570highFission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS
- CVE-2026-55772highCVE-2026-55772 updated by NVD
- CVE-2026-46448mediumOpenStack Nova: Nova scheduler hint injection bypasses Placement resource claims and scheduling constraints
- CVE-2026-35596mediumVikunja has Broken Access Control on Label Read via SQL Operator Precedence Bug
- CVE-2026-54664highCVE-2026-54664 updated by NVD
- CVE-2026-54661highCVE-2026-54661 updated by NVD
- CVE-2026-54662highCVE-2026-54662 updated by NVD
- CVE-2026-52888mediumNocoBase: Sensitive Data Exposure via SQL Blacklist Bypass
- CVE-2026-54603highCVE-2026-54603 updated by NVD
- CVE-2026-65599mediumCVE-2026-65599 updated by NVD
- CVE-2026-65914mediumCVE-2026-65914 updated by NVD
- CVE-2026-65598highCVE-2026-65598 updated by NVD
- CVE-2026-10222lowCVE-2026-10222 updated by NVD
- CVE-2026-59254mediumn8n: External Secrets Accessible via Workflow Expressions Outside Credentials
- CVE-2026-54712mediumOpenTelemetry Javaagent RMI context propagation allows resource exhaustion
- CVE-2026-54609highCVE-2026-54609 updated by NVD
- CVE-2026-59207highn8n: "Allowed HTTP Request Domains" Restriction Bypass via AI Agents MCP Connector
- CVE-2026-41849highCVE-2026-41849 updated by NVD
- CVE-2026-59227mediumOpen WebUI: POST /api/v1/images/edit bypasses the global image-edit switch and the per-user image-generation p
- CVE-2026-59819lowLiteLLM: Local file read via request-supplied OIDC file references
- CVE-2026-41720highCVE-2026-41720 updated by NVD
- CVE-2026-59215lowOpen WebUI: Private channel messages can be disclosed through cross-channel thread parent_id binding
- CVE-2026-10051mediumEclipse Jetty: Cross-Request Leakage for trailers on HTTP/1.1 keep-alive connections
- CVE-2026-11466lowCVE-2026-11466 updated by NVD
- CVE-2025-71354highPicklescan has a missing detection when calling built-in python idlelib.debugobj.ObjectTreeItem
- CVE-2026-67439mediumCVE-2026-67439 updated by NVD
- CVE-2024-7708highEclipse Jetty: DoS attack triggering OutOfMemory with 100-Continue requests
- CVE-2026-6634lowMemos has an Incorrect Privilege Assignment issue
- CVE-2026-42597mediumGotenberg allows Chromium URL conversion routes to read arbitrary files under /tmp via file:// scheme
- CVE-2026-50558mediumCVE-2026-50558 updated by NVD
- CVE-2026-52800highGogs Vulnerable to CSRF Leading to Organization Owner Takeover
- CVE-2026-55170lowOpenFGA Improper Policy Enforcement
- CVE-2026-54290highhono: CORS Middleware reflects any Origin with credentials when `origin` defaults to the wildcard
- CVE-2026-5199lowTemporal Server: attacker-controlled namespace could signal, delete, and reset workflows or activities in a vi
- CVE-2026-43983highPocket ID: OIDC refresh token flow bypasses authorization revocation, account disabling, and group restriction
- CVE-2026-59888mediumjackson-databind: @JsonIgnore on a Record property is bypassed with a PropertyNamingStrategy
- CVE-2026-41840mediumCVE-2026-41840 updated by NVD
- CVE-2026-54660highCVE-2026-54660 updated by NVD
- CVE-2026-59822highLiteLLM: MCP Authentication Bypass via OAuth2 Passthrough Fallback
- CVE-2026-58418mediumGitea: SSRF via HTTP Redirect in Repository Migration
- CVE-2026-55594mediumImageMagick: Stack Overflow in MVG decoder due to missing depth check.
- CVE-2026-59218mediumOpen WebUI: Account enumeration via observable login timing discrepancy
- CVE-2026-21724mediumGrafana OSS: Authorization bypass allows users with Editor role to modify protected webhook URLs without permi
- CVE-2026-67424highCVE-2026-67424 updated by NVD
- CVE-2026-54291highPostgreSQL JDBC Driver: Silent channel-binding authentication downgrade via unsupported certificate algorithms
- CVE-2026-52812highGogs: LFS dedupe path leaks private repo content across tenants
- CVE-2026-43910highCVE-2026-43910 updated by NVD
- CVE-2026-54673highelectron-updater: Cross-origin redirect leaks `PRIVATE-TOKEN` and mixed-case `Authorization` credentials in `b
- CVE-2026-66063mediumCVE-2026-66063 updated by NVD
- CVE-2026-7120mediumCVE-2026-7120 updated by NVD
- CVE-2026-54082mediumCVE-2026-54082 updated by NVD
- CVE-2026-44727criticalCVE-2026-44727 updated by NVD
- CVE-2026-47121mediumCVE-2026-47121 updated by NVD
- CVE-2026-10223lowCVE-2026-10223 updated by NVD
- CVE-2026-50569mediumFission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks
- CVE-2026-58661mediumn8n: Authenticated Users Can Exhaust Temporary Disk Storage via Data-Table File Uploads
- CVE-2026-4600highjsrsasign: DSA signatures or X.509 certificates can be forged via DSA domain-parameter validation in KJUR.cryp
- CVE-2026-54704mediumOpenTelemetry Java Instrumentation: JDBC Auto-Instrumentation Logging Clear-Text Passwords
- CVE-2026-49447mediumCVE-2026-49447 updated by NVD
- CVE-2026-45674highCVE-2026-45674 updated by NVD
- CVE-2026-7879mediumCVE-2026-7879 updated by NVD
- CVE-2026-59223mediumOpen WebUI: `WEB_FETCH_FILTER_LIST` host allow/block filter bypassable via URL path and non-label-boundary mat
- CVE-2026-24834mediumKata Container to Guest micro VM privilege escalation
- CVE-2026-59715lowOpen WebUI: Unauthenticated WebSocket Access to Collaborative Document Handlers (ydoc:awareness:update, ydoc:d
- CVE-2026-55883highTilt: Cross-site WebSocket hijacking of the Tilt HUD stream
- CVE-2026-16221highCVE-2026-16221 updated by NVD
- CVE-2026-46680highcontainerd user ID handling bypass allows runAsNonRoot evasion
- CVE-2026-11465lowCVE-2026-11465 updated by NVD
- CVE-2024-13484highOpenShift GitOps Operator Namespace Isolation Break
- CVE-2026-47214highDocling: Unsafe URI and Path Handling in HTML Backend
- CVE-2026-48776mediumLangGraph SDK has unsafe URL path construction
- CVE-2026-65899mediumCVE-2026-65899 updated by NVD
- CVE-2026-43972mediumCVE-2026-43972 updated by NVD
- CVE-2026-46606highGlances is Vulnerable to Command Injection via KVM/QEMU VM Domain Names in glances/plugins/vms/engines/virsh.p
- CVE-2026-55403lowCVE-2026-55403 updated by NVD
- CVE-2026-59225mediumOpen WebUI: Arena task endpoints can bypass underlying model access controls
- CVE-2026-40987highCVE-2026-40987 updated by NVD