Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MGASA-2026-0288
  • Mageia:10/dnsmasq
  • Mageia:9/dnsmasq
Updated dnsmasq packages fix security vulnerabilities 1 hour ago
  • Fix available
MGASA-2026-0289
  • Mageia:10/apache
  • Mageia:9/apache
Updated apache packages fix security vulnerabilities 1 hour ago
  • Fix available
MGASA-2026-0290
  • Mageia:10/socat
  • Mageia:9/socat
Updated socat package fixes a security vulnerability 1 hour ago
  • Fix available
MGASA-2026-0291
  • Mageia:10/cifs-utils
  • Mageia:9/cifs-utils
Updated cifs-utils packages fix a security vulnerability 1 hour ago
  • Fix available
GO-2026-5987
  • Go/github.com/forgekeep/nebula-mesh
  • Go/github.com/juev/nebula-mesh
Insecure enrollment token TTL in nebula-mesh in github.com/forgekeep/nebula-mesh 1 hour ago
  • Fix available
GO-2026-5989
  • Go/github.com/forgekeep/nebula-mesh
  • Go/github.com/juev/nebula-mesh
Unauthenticated OIDC login in nebula-mesh allows unbounded memory allocation in github.com/forgekeep/nebula-mesh 1 hour ago
  • Fix available
ROOT-OS-DEBIAN-12-CVE-2026-44169
  • Root:Debian:12/rootio-mariadb
CVE-2026-44169 in rootio-mariadb - Patched by Root 2 hours ago
  • Fix available
GO-2026-5675
  • Go/github.com/dgraph-io/dgraph
  • Go/github.com/dgraph-io/dgraph/v25
  • Go/github.com/hypermodeinc/dgraph/v24
Unauthenticated admin token disclosure via /debug/vars in github.com/dgraph-io/dgraph 2 hours ago
  • Fix available
GHSA-g867-7843-wf8q
  • PyPI/pypdf
pypdf: Possible infinite loop for not terminated inline images (ASCII85 and ASCIIHex filter) 2 hours ago
  • Fix available
  • Severity - 8.7 (High)
GHSA-5xf7-4p34-54qr
  • PyPI/pypdf
pypdf: Possible infinite loop for not terminated inline images 2 hours ago
  • Fix available
  • Severity - 8.7 (High)
GO-2026-5542
  • Go/github.com/defenseunicorns/zarf
  • Go/github.com/zarf-dev/zarf
Path traversal via malicious package name in github.com/zarf-dev/zarf 2 hours ago
  • Fix available
PYSEC-2026-3543
  • PyPI/open-webui
Open WebUI's API key endpoint restrictions bypassed via `x-api-key` header — full message processing on restricted endpoints 3 hours ago
  • Fix available
  • Severity - 6.5 (Medium)
ECHO-7a9e-a9fb-a110
  • Echo/nano
See record for full details 3 hours ago
  • No fix available
ECHO-a2db-be25-3367
  • Echo/webkit2gtk
See record for full details 3 hours ago
  • Fix available
ECHO-c6b6-00e3-22da
  • Echo/webkit2gtk
See record for full details 3 hours ago
  • Fix available
ECHO-2502-f8c6-6198
  • Echo/webkit2gtk
See record for full details 3 hours ago
  • Fix available