Recent Vulnerabilities

Sources: amazon_linux archlinux azure_linux bitnami_vulndb capec capec_enrichment_dashboard certeu certfr circl_kev cisa_known_exploited cna_scorecard cnvd csaf_abb csaf_adstecindustrialitgmbh csaf_amd csaf_aumariestergmbhcokg csaf_baadem2mproductsgmbh csaf_beckhoffautomationgmbhcokg csaf_bendergmbhcokg csaf_bosch csaf_bsi csaf_bsi_aggregator csaf_bsi_cvd_white csaf_bsi_white csaf_bsi_wid_white csaf_carlogavazziautomation csaf_certbund csaf_certvde csaf_cisa csaf_cisa_it csaf_cisa_ot csaf_cisco csaf_claaskgaa csaf_codesysgmbh csaf_dell csaf_duraggmbh csaf_endresshauserag csaf_ericsson csaf_euchnergmbhcokg csaf_festosecokg csaf_frauschersensortechnikgmbh csaf_hancom csaf_harmaninternational csaf_helmholzgmbhcokg csaf_himapaulhildebrandtgmbh csaf_hitachi csaf_hpe csaf_huawei csaf_hydacinternationalgmbh csaf_ibm csaf_ifmelectronicgmbh csaf_janitzaelectronicsgmbh csaf_jumogmbhcokg csaf_juniper csaf_kebautomationkg csaf_kukaag csaf_lenovo csaf_lenzese csaf_mbconnectlinegmbh csaf_mettlertoledogmbh csaf_metzconnectgmbh csaf_microsoft csaf_mieleciekg csaf_moxa csaf_murrelektronikgmbh csaf_ncscnl csaf_ndaal csaf_netapp csaf_nozomi csaf_nozominetworks csaf_nvidia csaf_opcfoundation csaf_openeuler csaf_opensuse csaf_oracle csaf_ox csaf_paloalto csaf_panasonic csaf_pentagrid csaf_pepperlfuchsse csaf_phoenix csaf_pilzgmbhcokg csaf_qnap csaf_redhat csaf_samsung csaf_sauterag csaf_schneider csaf_sick csaf_siemens csaf_smasolartechnologyag csaf_suse csaf_swarcotrafficsystemsgmbh csaf_synology csaf_tibco csaf_trend csaf_trumpfsecokg csaf_trustsource csaf_tuxcare csaf_ubiquiti csaf_vartastoragegmbh csaf_vegagrieshaberkg csaf_vmware csaf_wagogmbhcokg csaf_weidmuellerinterfacegmbhcokg csaf_welotecgmbh csaf_wiesemanntheisgmbh csaf_yaskawaeuropegmbh csaf_yokogawa csaf_zyxel cve_forecast cve_icu cve_vs_github_dashboard cvelistv5 cwe_dashboard cwe_enrichment cwec debian_security_tracker drupal emb3d emb3d_dashboard epss_dashboard epss_history epss_kev_enrichment euvd_kev fedora fkie_nvd freebsd gcve gcve_enriched gcve_enrichment gcve_enrichment_dashboard gentoo github gsd jvn kev_ransomware mitre_attack moksha ndaal_kev netbsd nuclei_dashboard nuclei_enrichment nvd nvd_cpe_dictionary openbsd opencve oracle_linux ossf_malicious_packages osv_almalinux osv_alpine osv_bellsoft osv_chainguard osv_cran osv_github_actions osv_golang osv_haskell osv_hex osv_maven osv_npm osv_nuget osv_ocaml osv_ossfuzz osv_packagist osv_pub osv_rocky osv_rubygems osv_rustsec osv_swift osv_ubuntu osv_wolfi publish_stats pysec sadp_pilot ssvc ssvc_dashboard tailscale tsunami_enrichment variot vulnrichment Clear
ID Title Severity CVSS Source Updated
ghsa-pmpg-6pww-fg6q ImageMagick has out-of-bounds access in ConnectedComponentsImage() via CLI-controlled connected-components:* artifacts UNKNOWN 3.3 ghsa unknown
ghsa-67c9-f6v2-qv86 Steeltoe.Discovery.Consul: malformed 'secure' metadata aborts service instance lookup (DoS) UNKNOWN 7.5 ghsa unknown
ghsa-5mq7-rwhj-4fh9 Steeltoe: Header-forwarded client cert lacks proof of private-key possession UNKNOWN 6.5 ghsa unknown
ghsa-hr73-3gpv-hh6q Steeltoe.Discovery.Eureka: malformed enum/bool/timestamp field aborts entire registry fetch (DoS) UNKNOWN 7.5 ghsa unknown
ghsa-8phw-xrj9-cpqp Steeltoe.Management.Endpoint: HttpExchanges URI masking leaks query-string secrets UNKNOWN 5.9 ghsa unknown
ghsa-mggc-4xg6-vcxf SSH.NET: ScpClient allows server-side RCE via default SCP path handling UNKNOWN 7.5 ghsa unknown
ghsa-wr57-hqmp-fgvh Umbraco: Delivery API leaks protected (Public Access) content through Content Picker / Multi-Node Tree Picker expansion UNKNOWN 8.7 ghsa unknown
ghsa-rfx3-98h7-v3xp Marten's LINQ provider has SQL injection via unescaped string literals UNKNOWN 9.1 ghsa unknown
ghsa-v8pv-4842-x354 OpenTelemetry.Resources.Host vulnerable to arbitrary code execution via local PATH hijacking on macOS UNKNOWN 7.0 ghsa unknown
ghsa-63gh-g2x5-x69v Microsoft Security Advisory CVE-2026-71328 – .NET and Visual Studio Remote Code Execution Vulnerability UNKNOWN 8.8 ghsa unknown
ghsa-w7cw-xp7h-6j5j Microsoft Security Advisory CVE-2026-50524 – .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-cvvh-rhrc-wg4q Microsoft Security Advisory CVE-2026-47302 – .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-wp74-jgxh-gv4q Microsoft Security Advisory CVE-2026-50651 – .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-74jp-vm22-8q8x Microsoft Security Advisory CVE-2026-50659 – .NET Spoofing Vulnerability UNKNOWN 6.5 ghsa unknown
ghsa-rp2p-6cmp-jxj9 Microsoft Security Advisory CVE-2026-57108 – .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-vmwf-m9c5-3jvc Microsoft Security Advisory CVE-2026-32178 – .NET Spoofing Vulnerability UNKNOWN ghsa unknown
ghsa-422r-8c97-xcg4 ImageMagick: Heap Buffer Over-Write in fx operation UNKNOWN 5.0 ghsa unknown
ghsa-8q5v-6pqq-x66h Microsoft Security Advisory CVE-2026-50525 – .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-q742-qvgc-gc2f TinyMCE Cross-Site Scripting (XSS) vulnerability using through data-mce- prefixed src, href, style attributes UNKNOWN 8.7 ghsa unknown
ghsa-23rf-6693-g89p Microsoft Security Advisory CVE-2026-50648 – .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-mh5m-5hw4-5c69 TinyMCE Cross-Site Scripting (XSS) vulnerability using sanitization bypass through nested SVGs UNKNOWN 8.7 ghsa unknown
ghsa-85jm-cwp2-mvpv CefSharp.Common: `FolderSchemeHandlerFactory` path boundary check can expose files outside the configured root folder UNKNOWN 5.3 ghsa unknown
ghsa-5r4x-w6p5-222q ImageMagick: Use-After-Free in MSL decoder. UNKNOWN 6.2 ghsa unknown
ghsa-4vgm-c2wm-63mw .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-mw3m-pqr2-qv7c ImageMagick has an Out-of-Bounds write of a zero byte in its X11 display interaction UNKNOWN 4.0 ghsa unknown
ghsa-w3x6-4m5h-cxqf Microsoft Security Advisory CVE-2026-26171 – .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown
ghsa-8793-7xv6-82cf ImageMagick has an Out-of-bounds Write via InterpretImageFilename UNKNOWN 5.1 ghsa unknown
ghsa-qvw7-jm5c-6hqw Microsoft Security Advisory CVE-2026-50528 – .NET Security Feature Bypass Vulnerability UNKNOWN 8.2 ghsa unknown
ghsa-q834-8qmm-v933 OpenTelemetry dotnet: OTLP exporter reads unbounded HTTP response bodies UNKNOWN 5.3 ghsa unknown
ghsa-vh8f-65qg-3m8j Duplicate Advisory: .NET Denial of Service Vulnerability UNKNOWN 7.5 ghsa unknown