A vulnerability marked as problematic has been reported in go-git up to 5.18.x/6.0.0-alpha.2. This affects an unknown function. Performing a manipulation results in incorrect behavior order: validate before canonicalize.
This vulnerability was named CVE-2026-45022. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability, which was classified as critical, was found in go-git up to 5.19.0/6.0.0-alpha.3. This affects an unknown part. Such manipulation leads to escaping of output.
This vulnerability is listed as CVE-2026-45570. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
A vulnerability was found in RabbitMQ rabbitmq-server up to 4.0.12/4.1.1. It has been declared as problematic. This issue affects some unknown processing. The manipulation results in basic cross site scripting.
This vulnerability is cataloged as CVE-2026-44839. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Keycloak on Red Hat and classified as problematic. Affected by this vulnerability is an unknown functionality of the component JSON Web Token Handler. Executing a manipulation of the argument subject_token can lead to improper validation of specified quantity in input.
The identification of this vulnerability is CVE-2026-9704. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in Keycloak on Red Hat. It has been classified as problematic. This vulnerability affects unknown code. Performing a manipulation results in improper verification of cryptographic signature.
This vulnerability is reported as CVE-2026-9793. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability categorized as critical has been discovered in FlowIntel up to 3.2.x. Affected by this issue is some unknown functionality of the file app/case/task.py of the component HEAD Request Handler. Such manipulation leads to server-side request forgery.
This vulnerability is uniquely identified as CVE-2026-9813. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability was found in cloudnative-pg CloudNativePG up to 1.28.2/1.29.0. It has been classified as critical. The impacted element is an unknown function of the component Transaction Handler. The manipulation leads to execution with unnecessary privileges.
This vulnerability is documented as CVE-2026-44477. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Tigera Calico up to 3.31.5/3.31.x. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. Such manipulation of the argument __SERVICEACCOUNT_TOKEN__ leads to sensitive information in log files.
This vulnerability is documented as CVE-2026-41184. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Tigera Calico, Calico Enterprise and Calico Cloud. It has been declared as problematic. This vulnerability affects unknown code of the file /var/log/calico/cni/cni.log of the component Kubernetes Authentication. Executing a manipulation can lead to sensitive information in log files.
This vulnerability is registered as CVE-2026-41185. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability identified as critical has been detected in RabbitMQ rabbitmq-server up to 4.2.3. This issue affects some unknown processing of the component Regular Expression Handler. This manipulation causes incorrect authorization.
This vulnerability appears as CVE-2026-44838. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
A vulnerability classified as problematic was found in element-hq synapse up to 1.152.0. Impacted is an unknown function. Such manipulation leads to denial of service.
This vulnerability is referenced as CVE-2026-45076. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
A vulnerability was found in bzip2 up to 1.0.8 and classified as critical. Affected by this vulnerability is an unknown functionality of the component bzip2recover. The manipulation results in out-of-bounds write.
This vulnerability is reported as CVE-2026-42250. The attack requires a local approach. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability marked as critical has been reported in Linux Kernel up to 5.10.187/5.15.120/6.1.39/6.4.4. This affects the function trace_find_next_entry of the component tracing. The manipulation leads to memory leak.
This vulnerability is documented as CVE-2023-54171. The attack requires being on the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.1. This vulnerability affects the function sk_stream_kill_queues of the component net. The manipulation results in improper update of reference count.
This vulnerability is known as CVE-2022-50838. Access to the local network is required for this attack. No exploit is available.
The affected component should be upgraded.
A vulnerability was found in Linux Kernel up to 6.4.4. It has been declared as critical. The affected element is the function snprintf of the component scsi. Such manipulation leads to improper validation of array index.
This vulnerability is referenced as CVE-2023-54179. The attack needs to be initiated within the local network. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.1.1 and classified as critical. Affected is the function ipr_init of the file kernel/notifier.c. This manipulation causes denial of service.
This vulnerability is tracked as CVE-2022-50850. The attack is only possible within the local network. No exploit exists.
The affected component should be upgraded.
A vulnerability has been found in Linux Kernel up to 6.3.1 and classified as critical. Affected by this issue is the function raid10_run. This manipulation causes memory leak.
This vulnerability is registered as CVE-2023-54294. The attack requires access to the local network. No exploit is available.
The affected component should be upgraded.
A vulnerability classified as critical has been found in Linux Kernel up to 6.4.7. This affects the function trace_buffered_event_disable. Performing a manipulation results in buffer overflow.
This vulnerability is reported as CVE-2023-54211. The attacker must have access to the local network to execute the attack. No exploit exists.
It is recommended to upgrade the affected component.