Open Source Vulnerabilities

    Dashboard / Open Source Vulnerabilities

    CGA-47cm-wqqv-fcvw
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-p7f6-j5h5-vx89
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-7c73-8476-c93r
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-8c7q-4wv2-88cq
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-4g76-45m3-h787
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-j7mq-vhxm-f428
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-mw6q-9745-28pv
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-qw98-rv37-mhjm
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-5694-g7hp-gp75
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-f5h8-r5f7-p8gq
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-8h68-rmrj-wq9f
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-chvg-r887-8wpc
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-v247-658c-vxv9
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-43jq-7f33-qhmg
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-856m-mvrm-985h
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-2368-m339-mx6j
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-937x-pp2m-pmp3
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-6f2j-h57c-vp84
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-gj9p-3fhj-8f93
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-6h4c-v7jr-qhm7
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-cvj5-26qm-9mc7
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-v2cm-75g6-pg62
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-2c5h-78m6-7rq9
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-v6jr-mpw8-63mm
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-cgvm-jvc9-gf65
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    CGA-2frv-8j74-cpgp
    No fix available
    Packages

    commercial-gitlab-rails-ee-19.1

    Summary

    Published
    10 Sept 2026
    GHSA-23rh-xw42-fq82
    Fix available
    Packages

    pimcore/pimcore, pimcore/pimcore, pimcore/pimcore

    Summary

    Pimcore: SQL Injection in Custom Reports via Malicious Report Configuration

    Published
    10 Sept 2026
    Packages

    jwt-simple

    Summary

    TuxCare security update for jwt-simple (2 CVEs)

    Published
    10 Sept 2026
    CVE-2026-84432
    No fix available
    Packages

    Summary

    Concrete CMS 9 through 9.5.2 is vulnerable to CSRFin the Boards custom slot dialog controller

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88060
    No fix available
    Packages

    angular.js, angular.js

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88059
    No fix available
    Packages

    angular.js, angular.js

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88058
    No fix available
    Packages

    angular.js, angular.js

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88057
    No fix available
    Packages

    angular.js, angular.js

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88056
    No fix available
    Packages

    angular.js, angular.js

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88036
    No fix available
    Packages

    mongo-c-driver, mongo-c-driver, mongo-c-driver

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88035
    No fix available
    Packages

    mongo-c-driver, mongo-c-driver, mongo-c-driver

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88034
    No fix available
    Packages

    mongo-cxx-driver

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88033
    No fix available
    Packages

    mongo-java-driver, mongo-java-driver, mongo-java-driver

    Summary

    Published
    10 Sept 2026
    DEBIAN-CVE-2026-88032
    No fix available
    Packages

    mongo-java-driver, mongo-java-driver, mongo-java-driver

    Summary

    Published
    10 Sept 2026
    CVE-2026-88061
    Fix available
    Packages

    Summary

    career-ops: Local dashboard API accepted cross-origin and non-loopback requests, allowing unauthenticated command execution

    Published
    10 Sept 2026
    CVE-2026-88060
    Fix available
    Packages

    Summary

    Angular: SSR XSS via Unescaped <template> Content Across DocumentFragment Boundaries in Fallback Raw-Content Elements

    Published
    10 Sept 2026
    CVE-2026-88059
    Fix available
    Packages

    Summary

    Angular: Information Leak via `HttpTransferCache` Bypass When Using `withRequestsMadeViaParent`

    Published
    10 Sept 2026
    CVE-2026-87993
    Fix available
    Packages

    Summary

    Consul-template vulnerable to an information disclosure issue in error handling

    Published
    10 Sept 2026
    CVE-2026-87107
    Fix available
    Packages

    Summary

    Consul vulnerable to an authorization bypass in the catalog deregistration path

    Published
    10 Sept 2026
    CVE-2026-88058
    Fix available
    Packages

    Summary

    Angular: SSR XSS via Unescaped Processing Instruction (<?...?>) Nodes in Fallback Raw-Content Elements

    Published
    10 Sept 2026
    CVE-2026-87106
    Fix available
    Packages

    Summary

    Consul vulnerable to a denial of service in the native RPC listener

    Published
    10 Sept 2026
    Packages

    @babel/core, @babel/helpers, @babel/plugin-syntax-class-properties, @babel/runtime, @babel/runtime-corejs2, @babel/runtime-corejs3, @babel/traverse, @babel/types

    Summary

    TuxCare security update for @babel (1 CVE)

    Published
    10 Sept 2026
    CVE-2026-87090
    Fix available
    Packages

    Summary

    Consul vulnerable to an authorization bypass in the catalog node-write path

    Published
    10 Sept 2026
    CGA-j86g-fx3q-qfv2
    Fix available
    Packages

    grafana-cloudmonitoring-datasource-fips

    Summary

    Published
    10 Sept 2026
    CGA-8863-vx3m-g83j
    No fix available
    Packages

    commercial-gitlab-workhorse-ee-19.1

    Summary

    Published
    10 Sept 2026