Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.8
CVE-2026-29859
An arbitrary file upload vulnerability in aaPanel v7.57.0 allows attackers to execute arbitrary code via uploading a crafted file.
Aapanel
Mitigation only
HIGH 7.5
CVE-2026-29856
An issue in the VirtualHost configuration handling/parser component of aaPanel v7.57.0 allows attackers to cause a Regular Expression Denial of Servi…
Aapanel
No fix yet
HIGH 7.5
CVE-2026-29858
A lack of path validation in aaPanel v7.57.0 allows attackers to execute a local file inclusion (LFI), leadingot sensitive information exposure.
Aapanel
No fix yet
MEDIUM 6.5
CVE-2024-42922
AAPanel v7.0.7 was discovered to contain an OS command injection vulnerability.
Aapanel
after 7.0.7
MEDIUM 6.5
CVE-2022-26252
aaPanel v6.8.21 was discovered to be vulnerable to directory traversal. This vulnerability allows attackers to obtain the root user private SSH key(i…
Aapanel
No fix yet
HIGH 8.8
CVE-2021-37840
aaPanel through 6.8.12 allows Cross-Site WebSocket Hijacking (CSWH) involving OS commands within WebSocket messages at a ws:// URL for /webssh (the v…
Aapanel
after 6.8.12
HIGH 8.8
CVE-2020-14950
aaPanel through 6.6.6 allows remote authenticated users to execute arbitrary commands via shell metacharacters in a modified /system?action=ServiceAd…
Aapanel
after 6.6.6
HIGH 7.2
CVE-2020-14421EPSS 6%
aaPanel through 6.6.6 allows remote authenticated users to execute arbitrary commands via the Script Content box on the Add Cron Job screen.
Aapanel
after 6.6.6