Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2026-26008
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have an out-of-bounds access (std::vector) that leads to possible remote crash/…
Everest
2026.02.0+
HIGH 8.8
CVE-2026-22790
EVerest is an EV charging software stack. Prior to version 2026.02.0, `HomeplugMessage::setup_payload` trusts `len` after an `assert`; in release bui…
Everest
2026.02.0+
HIGH 7.8
CVE-2026-22593
EVerest is an EV charging software stack. Prior to version 2026.02.0, an off-by-one check in IsoMux certificate filename handling causes a stack-base…
Everest
2026.02.0+
MEDIUM 5.4
CVE-2026-33223
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, the NATS messag…
Nats Server
2.11.15 / 2.12.6+
MEDIUM 5.4
CVE-2026-33246
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server offers a `Nats-Request-Info:` message…
Nats Server
2.11.15 / 2.12.6+
MEDIUM 5.3
CVE-2026-33247
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, if a nats-serve…
Nats Server
2.11.15 / 2.12.6+
HIGH 7.5
CVE-2026-33216
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, for MQTT deploy…
Nats Server
2.11.15 / 2.12.6+
HIGH 7.5
CVE-2026-33218
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, a client which …
Nats Server
2.11.15 / 2.12.6+
MEDIUM 6.5
CVE-2026-33217
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, when using ACLs…
Nats Server
2.11.15 / 2.12.6+
MEDIUM 5.3
CVE-2026-33219
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, a malicious cli…
Nats Server
2.11.15 / 2.12.6+
HIGH 7.5
CVE-2026-29785
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.14 and 2.12.5, if the nats-ser…
Nats Server
2.11.14 / 2.12.5+
HIGH 7.5
CVE-2026-27889
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.2.0 and prior to versions 2.11.…
Nats Server
2.11.14 / 2.12.5+
MEDIUM 6.5
CVE-2026-33215
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server provides an MQTT client interface. Pr…
Nats Server
2.11.15 / 2.12.5+
CRITICAL 9.6
CVE-2026-33211
Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Starting in version 1.0.0 and prior to versions 1.0.1, 1.3…
Tekton Pipelines
1.3.3 / 1.6.1+
CRITICAL 9.4
CVE-2026-4404
Use of hard coded credentials in GoHarbor Harbor version 2.15.0 and below, allows attackers to use the default password and gain access to the web UI.
Harbor
after 2.15.0
HIGH 7.8
CVE-2026-4538
A vulnerability was identified in PyTorch 2.10.0. The affected element is an unknown function of the component pt2 Loading Handler. The manipulation …
Pytorch
Patch available
MEDIUM 6.5
CVE-2026-33022
Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Versions 0.60.0 through 1.0.0, 1.1.0 through 1.3.2, 1.4.0 …
Tekton Pipelines
1.0.1 / 1.3.3+
CRITICAL 9.1
CVE-2026-28500
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. In versions up to and including 1.20.1, a security con…
Onnx
after 1.20.1
MEDIUM 6.5
CVE-2026-32237
Backstage is an open framework for building developer portals. Prior to 3.1.5, authenticated users with permission to execute scaffolder dry-runs can…
Backstage\/plugin Scaffolder Backend
3.1.5+
HIGH 7.5
CVE-2026-32236
Backstage is an open framework for building developer portals. Prior to 0.27.1, a Server-Side Request Forgery (SSRF) vulnerability exists in @backsta…
Backstage
after 0.27.0
MEDIUM 5.5
CVE-2026-31890
Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. Prior t…
Inspektor Gadget
0.50.1+
HIGH 7.5
CVE-2025-61611
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed..
Yocto
No fix yet
CRITICAL 9.8
CVE-2026-29186
Backstage is an open framework for building developer portals. Prior to version 1.14.3, this is a configuration bypass vulnerability that enables arb…
Backstage Plugin Techdocs Node
1.14.3+
MEDIUM 6.5
CVE-2026-29184
Backstage is an open framework for building developer portals. Prior to version 3.1.4, a malicious scaffolder template can bypass the log redaction m…
Backstage\/plugin Scaffolder Backend
3.1.4+
HIGH 8.8
CVE-2026-27969
Vitess is a database clustering system for horizontal scaling of MySQL. Prior to versions 23.0.3 and 22.0.4, anyone with read/write access to the bac…
Vitess
22.0.4 / 23.0.3+
CRITICAL 9.9
CVE-2026-27965
Vitess is a database clustering system for horizontal scaling of MySQL. Prior to versions 23.0.3 and 22.0.4, anyone with read/write access to the bac…
Vitess
22.0.4 / 23.0.3+
HIGH 7.5
CVE-2026-27571
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The WebSockets handling of NATS messages handles comp…
Nats Server
2.11.12 / 2.12.3+
HIGH 8.1
CVE-2026-27134
Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. In versions 0.49.0 through 0.…
Strimzi Kafka Operator
0.50.1+
MEDIUM 5.9
CVE-2026-27133
Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. From 0.47.0 to before 0.50.1, …
Strimzi
0.50.1+
CRITICAL 9.8
CVE-2026-25996
Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. String …
Inspektor Gadget
0.49.1+