Vulnerability index

Browse CVEs

414 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2026-26008 EVerest is an EV charging software stack. Versions prior to 2026.02.0 have an out-of-bounds access (std::vector) that leads to possible remote crash/… Everest 2026.02.0+ Fix from $1,9502026-03-26 HIGH 8.8 CVE-2026-22790 EVerest is an EV charging software stack. Prior to version 2026.02.0, `HomeplugMessage::setup_payload` trusts `len` after an `assert`; in release bui… Everest 2026.02.0+ Fix from $1,9502026-03-26 HIGH 7.8 CVE-2026-22593 EVerest is an EV charging software stack. Prior to version 2026.02.0, an off-by-one check in IsoMux certificate filename handling causes a stack-base… Everest 2026.02.0+ Fix from $1,9502026-03-26 MEDIUM 5.4 CVE-2026-33223 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, the NATS messag… Nats Server 2.11.15 / 2.12.6+ Fix from $1,6002026-03-25 MEDIUM 5.4 CVE-2026-33246 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server offers a `Nats-Request-Info:` message… Nats Server 2.11.15 / 2.12.6+ Fix from $1,6002026-03-25 MEDIUM 5.3 CVE-2026-33247 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, if a nats-serve… Nats Server 2.11.15 / 2.12.6+ Fix from $1,6002026-03-25 HIGH 7.5 CVE-2026-33216 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, for MQTT deploy… Nats Server 2.11.15 / 2.12.6+ Fix from $1,9502026-03-25 HIGH 7.5 CVE-2026-33218 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, a client which … Nats Server 2.11.15 / 2.12.6+ Fix from $1,9502026-03-25 MEDIUM 6.5 CVE-2026-33217 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, when using ACLs… Nats Server 2.11.15 / 2.12.6+ Fix from $1,6002026-03-25 MEDIUM 5.3 CVE-2026-33219 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, a malicious cli… Nats Server 2.11.15 / 2.12.6+ Fix from $1,6002026-03-25 HIGH 7.5 CVE-2026-29785 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.14 and 2.12.5, if the nats-ser… Nats Server 2.11.14 / 2.12.5+ Fix from $1,9502026-03-25 HIGH 7.5 CVE-2026-27889 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.2.0 and prior to versions 2.11.… Nats Server 2.11.14 / 2.12.5+ Fix from $1,9502026-03-25 MEDIUM 6.5 CVE-2026-33215 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server provides an MQTT client interface. Pr… Nats Server 2.11.15 / 2.12.5+ Fix from $1,6002026-03-24 CRITICAL 9.6 CVE-2026-33211 Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Starting in version 1.0.0 and prior to versions 1.0.1, 1.3… Tekton Pipelines 1.3.3 / 1.6.1+ Fix from $2,3002026-03-24 CRITICAL 9.4 CVE-2026-4404 Use of hard coded credentials in GoHarbor Harbor version 2.15.0 and below, allows attackers to use the default password and gain access to the web UI. Harbor after 2.15.0 Fix from $2,3002026-03-23 HIGH 7.8 CVE-2026-4538 A vulnerability was identified in PyTorch 2.10.0. The affected element is an unknown function of the component pt2 Loading Handler. The manipulation … Pytorch Patch available Fix from $1,9502026-03-22 MEDIUM 6.5 CVE-2026-33022 Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Versions 0.60.0 through 1.0.0, 1.1.0 through 1.3.2, 1.4.0 … Tekton Pipelines 1.0.1 / 1.3.3+ Fix from $1,6002026-03-20 CRITICAL 9.1 CVE-2026-28500 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. In versions up to and including 1.20.1, a security con… Onnx after 1.20.1 Fix from $2,3002026-03-18 MEDIUM 6.5 CVE-2026-32237 Backstage is an open framework for building developer portals. Prior to 3.1.5, authenticated users with permission to execute scaffolder dry-runs can… Backstage\/plugin Scaffolder Backend 3.1.5+ Fix from $1,6002026-03-12 HIGH 7.5 CVE-2026-32236 Backstage is an open framework for building developer portals. Prior to 0.27.1, a Server-Side Request Forgery (SSRF) vulnerability exists in @backsta… Backstage after 0.27.0 Fix from $1,9502026-03-12 MEDIUM 5.5 CVE-2026-31890 Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. Prior t… Inspektor Gadget 0.50.1+ Fix from $1,6002026-03-12 HIGH 7.5 CVE-2025-61611 In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed.. Yocto No fix yet Fix from $1,9502026-03-09 CRITICAL 9.8 CVE-2026-29186 Backstage is an open framework for building developer portals. Prior to version 1.14.3, this is a configuration bypass vulnerability that enables arb… Backstage Plugin Techdocs Node 1.14.3+ Fix from $2,3002026-03-07 MEDIUM 6.5 CVE-2026-29184 Backstage is an open framework for building developer portals. Prior to version 3.1.4, a malicious scaffolder template can bypass the log redaction m… Backstage\/plugin Scaffolder Backend 3.1.4+ Fix from $1,6002026-03-07 HIGH 8.8 CVE-2026-27969 Vitess is a database clustering system for horizontal scaling of MySQL. Prior to versions 23.0.3 and 22.0.4, anyone with read/write access to the bac… Vitess 22.0.4 / 23.0.3+ Fix from $1,9502026-02-26 CRITICAL 9.9 CVE-2026-27965 Vitess is a database clustering system for horizontal scaling of MySQL. Prior to versions 23.0.3 and 22.0.4, anyone with read/write access to the bac… Vitess 22.0.4 / 23.0.3+ Fix from $2,3002026-02-26 HIGH 7.5 CVE-2026-27571 NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The WebSockets handling of NATS messages handles comp… Nats Server 2.11.12 / 2.12.3+ Fix from $1,9502026-02-24 HIGH 8.1 CVE-2026-27134 Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. In versions 0.49.0 through 0.… Strimzi Kafka Operator 0.50.1+ Fix from $1,9502026-02-21 MEDIUM 5.9 CVE-2026-27133 Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. From 0.47.0 to before 0.50.1, … Strimzi 0.50.1+ Fix from $1,6002026-02-20 CRITICAL 9.8 CVE-2026-25996 Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. String … Inspektor Gadget 0.49.1+ Fix from $2,3002026-02-12