cve.li

Recent

CVE-2026-28493CWE-190

ImageMagick has a Integer Overflow leading to out of bounds write in SIXEL decoder

Published 2026-03-09 by GitHub_M

CVE-2026-28433CWE-639CWE-862

Misskey lacks resource ownership validation

Published 2026-03-09 by GitHub_M

CVE-2026-28432CWE-347

HTTP signature verification can be bypassed

Published 2026-03-09 by GitHub_M

CVE-2026-28431CWE-285

Misskey lacks proper authorization checks and input validation

Published 2026-03-09 by GitHub_M

CVE-2026-26982CWE-78

Ghostty affected by arbitrary command execution via control characters in paste and drag-and-drop operations

Published 2026-03-09 by GitHub_M

CVE-2026-31802CWE-22

node-tar Symlink Path Traversal via Drive-Relative Linkpath

Published 2026-03-09 by GitHub_M

CVE-2026-1776CWE-22

Camaleon CMS AWS Uploader Authenticated Path Traversal Arbitrary File Read

Published 2026-03-09 by VulnCheck

CVE-2026-30926CWE-284CWE-862

SiYuan Note publish service authorization bypass allows low-privilege users to modify notebook content

Published 2026-03-09 by GitHub_M

CVE-2026-25960CWE-918

SSRF Protection Bypass in vLLM

Published 2026-03-09 by GitHub_M

CVE-2026-3288CWE-20

ingress-nginx rewrite-target nginx configuration injection

Published 2026-03-09 by kubernetes

Load more ↓