Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-254
  • PyPI/hairest
Malicious code in hairest (PyPI) 1 hour ago
  • No fix available
CGA-jm95-mcf8-hjj6
  • Chainguard/redis-6.0
  • Chainguard/redis-6.2
  • Chainguard/redis-6.2-bitnami-compat
  • Chainguard/redis-6.2-iamguarded-compat
  • Chainguard/redis-6.2.10
  • ... 86 more
See record for full details 1 hour ago
  • Fix available
CGA-f4xj-2x79-qrc6
  • Chainguard/ollama
  • Chainguard/ollama-cpu
  • Chainguard/ollama-fips
  • Wolfi/ollama
  • Wolfi/ollama-cpu
See record for full details 1 hour ago
  • Fix available
CGA-5wf3-hgjp-47c3
  • Chainguard/wpa_supplicant
See record for full details 1 hour ago
  • Fix available
CGA-58v8-9585-96g7
  • Chainguard/airflow-2
  • Chainguard/airflow-2-bitnami-compat
  • Chainguard/airflow-2-compat
  • Chainguard/airflow-2-iamguarded-compat
  • Chainguard/airflow-3
  • ... 32 more
See record for full details 1 hour ago
  • Fix available
CGA-455f-g86x-5phg
  • Chainguard/go-1.20
  • Chainguard/go-1.20-doc
  • Chainguard/go-1.22
  • Chainguard/go-1.22-doc
  • Chainguard/newrelic-fluent-bit-output
  • ... 11 more
See record for full details 1 hour ago
  • Fix available
CGA-vq8r-8j75-3r5p
  • Chainguard/redis-6.0
  • Chainguard/redis-6.2
  • Chainguard/redis-6.2-bitnami-compat
  • Chainguard/redis-6.2-iamguarded-compat
  • Chainguard/redis-6.2.10
  • ... 86 more
See record for full details 1 hour ago
  • Fix available
GO-2025-4248
  • Go/github.com/mattermost/mattermost
  • Go/github.com/mattermost/mattermost-server
  • Go/github.com/mattermost/mattermost-server/v5
  • Go/github.com/mattermost/mattermost-server/v6
  • Go/github.com/mattermost/mattermost/server/v8
Mattermost has missing redirect URL validation in github.com/mattermost/mattermost 1 hour ago
  • Fix available
GO-2025-4251
  • Go/github.com/ollama/ollama
Ollama has missing authentication enabling attackers to perform model management operations in github.com/ollama/ollama 1 hour ago
  • No fix available
GO-2026-4273
  • Go/go.temporal.io/server
Temporal has an Incorrect Authorization vulnerability in go.temporal.io/server 1 hour ago
  • Fix available
MINI-c973-6qqv-hhwm
  • MinimOS/ruby-3.1
  • MinimOS/ruby-3.1-dev
  • MinimOS/ruby-3.1-doc
See record for full details 1 hour ago
  • No fix available
MINI-c7wq-3r7x-853x
  • MinimOS/kubectl-1.31
  • MinimOS/kubectl-1.31-advanced-compat
  • MinimOS/kubernetes-1.31
See record for full details 1 hour ago
  • No fix available
MINI-3h9c-c825-jg4m
  • MinimOS/k8s-sidecar
See record for full details 1 hour ago
  • Fix available
CVE-2026-23498
  • github.com/shopware/shopware
Shopware Improper Control of Generation of Code in Twig rendered views 2 hours ago
  • Fix available
  • Severity - 7.2 (High)
CVE-2026-23497
  • github.com/frappe/lms
Frappe LMS has a Stored XSS via Unsanitized Image Filename in Course and Jobs Pages 2 hours ago
  • No fix available
  • Severity - 1.3 (Low)
CVE-2026-23492
  • github.com/pimcore/pimcore
Pimcore has a Blind SQL Injection in Admin Search Find API due to an incomplete fix for CVE-2023-30848 2 hours ago
  • Fix available
  • Severity - 8.8 (High)