Vulnerability search
Batch lookup →158 matches
- CVE-2024-21626Container breakout through process.cwd trickery and leaked fds in github.com/opencontainers/runc4 sources· osv_advisory · cvehighEPSS 18%107.78.697.0%2024-06-28 15:28 UTC
- CVE-2026-33701OpenTelemetry: Unsafe Deserialization in RMI Instrumentation may Lead to Remote Code Execution3 sources· cve · osv_advisorycriticalEPSS 0.9%103.39.857.8%2026-03-27 01:16 UTC
- CVE-2026-24747PyTorch Vulnerable to Remote Code Execution via Untrusted Checkpoint Files5 sources· osv_advisory · cvehighEPSS 0.7%103.18.850.8%2026-07-07 16:03 UTC
- CVE-2019-5736runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to…highEPSS 98%103.08.699.9%2019-02-11 00:00 UTC
- CVE-2026-44477CloudNativePG's metrics exporter allows privilege escalation to PostgreSQL superuser and OS RCE in…5 sources· osv_advisory · cve · euvd_advisorycriticalEPSS 0.5%102.39.939.5%2026-06-25 18:26 UTC
- CVE-2026-35171Kedro has Arbitrary Code Execution via Malicious Logging Configuration4 sources· osv_advisory · cvecriticalEPSS 0.7%101.39.851.4%2026-04-06 18:16 UTC
- CVE-2026-33211Path traversal in Tekton Pipelines git resolver in github.com/tektoncd/pipeline5 sources· bsi_warning · osv_advisory · cvecriticalEPSS 0.6%100.89.645.1%2026-05-29 10:25 UTC
- CVE-2026-40938Tekton Pipelines git resolver revision parameter argument injection in github.com/tektoncd/pipeline6 sources· osv_advisory · bsi_warning · cve …highEPSS 0.8%98.58.553.8%2026-06-25 18:43 UTC
- CVE-2024-24421A type confusion in the nas_message_decode function of Magma <= 1.8.0 (fixed in v1.9 commit…2 sources· cvecriticalEPSS 0.9%92.59.859.0%2025-01-21 23:15 UTC
- CVE-2026-27489onnx Vulnerable to Path Traversal via Symlink4 sources· cve · osv_advisoryhighEPSS 0.6%91.77.546.0%2026-04-01 18:16 UTC
- CVE-2026-50151Oras-go: Blob upload vulnerable to credential forwarding via unvalidated Location header in…3 sources· osv_advisory · cvehighEPSS 0.4%90.77.531.4%2026-07-24 18:35 UTC
- CVE-2026-29785NATS Server panic via malicious compression on leafnode port in github.com/nats-io/nats-server5 sources· bsi_warning · osv_advisory · cvehighEPSS 0.7%90.57.549.4%2026-06-02 07:37 UTC
- CVE-2026-58207NATS Server: Remote crash via integer overflow in Connz pagination3 sources· msrc_update_guide · cvehighEPSS 0.6%90.07.744.8%2026-07-11 01:07 UTC
- CVE-2026-34045Podman Desktop is a graphical tool for developing on containers and Kubernetes.2 sources· cvecriticalEPSS 0.5%89.49.139.1%2026-04-07 21:17 UTC
- CVE-2026-29186TechDocs Mkdocs Configuration Key Enables Arbitrary Code Execution3 sources· cve · osv_advisorycriticalEPSS 0.8%89.19.853.5%2026-03-07 15:15 UTC
- CVE-2026-58208NATS Server: MQTT-over-WebSocket Path Can Crash WebSocket-Only JetStream Servers Before MQTT Is…3 sources· cve · msrc_update_guidemediumEPSS 0.6%86.96.846.8%2026-07-11 01:08 UTC
- CVE-2026-33218NATS has pre-auth server panic via leafnode handling in github.com/nats-io/nats-server4 sources· osv_advisory · cvehighEPSS 0.6%85.97.547.5%2026-03-26 20:33 UTC
- CVE-2026-27889NATS: Pre-auth remote server crash via WebSocket frame length overflow in wsRead4 sources· osv_advisory · cvehighEPSS 0.6%84.77.545.9%2026-03-26 20:33 UTC
- CVE-2026-25153@backstage/plugin-techdocs-node vulnerable to arbitrary code execution via MkDocs hooks3 sources· osv_advisory · cvehighEPSS 0.6%81.48.844.9%2026-02-02 20:19 UTC
- CVE-2026-33216NATS has MQTT plaintext password disclosure in github.com/nats-io/nats-server4 sources· osv_advisory · cvehighEPSS 0.4%81.18.629.8%2026-03-26 20:33 UTC
- CVE-2023-52724Open Networking Foundation SD-RAN onos-kpimon 0.4.7 allows out-of-bounds array access in the…2 sources· cvehighEPSS 0.9%80.28.157.0%2024-04-30 00:15 UTC
- CVE-2026-65918PyTorch: Schwachstelle ermöglicht Denial of Service und Offenlegung von Informationen3 sources· cve · bsi_warninghighEPSS 0.3%80.07.125.7%2026-07-24 09:27 UTC
- CVE-2026-33247NATS credentials are exposed in monitoring port via command-line argv in…4 sources· osv_advisory · cvehighEPSS 0.4%77.97.434.8%2026-03-26 20:33 UTC
- CVE-2026-28500ONNX Untrusted Model Repository Warnings Suppressed by silent=True in onnx.hub.load() — Silent…4 sources· cve · osv_advisorycriticalEPSS 0.3%77.69.124.1%2026-03-18 02:16 UTC
- CVE-2026-49835Sigstore Timestamp Authority is a service for issuing RFC 3161 timestamps.2 sources· cvehighEPSS 0.4%77.67.537.6%2026-07-17 19:17 UTC