Where
AND
-Infinity
0

Google glogVulnerability when creating log files in github.com/golang/glog

Risk 52
Severity
7.1
First published (updated )

go/github.com/go-git/go-gitgo-git clients vulnerable to DoS via maliciously crafted Git server replies

Risk 31
Severity
7.5
EPSS
0.04%
First published (updated )

go/k8s.io/kubernetesArbitrary command execution through gitRepo volume

Risk 65
Severity
8.1
First published (updated )

maven/org.springframework:spring-webmvcPath Traversal

Risk 46
Severity
7.5
First published (updated )

npm/cross-spawnVersions of the package cross-spawn before 7.0.5 are vulnerable to Regular Expression Denial of Serv…

Risk 46
Severity
7.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

PAM pam_accessPam: improper hostname interpretation in pam_access leads to access control bypass

Risk 59
Severity
7.4
First published (updated )

npm/http-proxy-middlewarehttp-proxy-middleware is vulnerable to a denial of service, caused by an UnhandledPromiseRejection e…

Risk 46
Severity
7.5
First published (updated )

maven/org.springframework:spring-webfluxPath traversal vulnerability in functional web frameworks

Risk 46
Severity
7.5
First published (updated )

npm/body-parserbody-parser vulnerable to denial of service when url encoding is enabled

Risk 46
Severity
7.5
First published (updated )

pip/setuptoolsRemote Code Execution in pypa/setuptools

Risk 58
Severity
8.8
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat/golangEtcd: incomplete fix for cve-2023-39325/cve-2023-44487 in openstack platform

Risk 31
Severity
7.5
EPSS
0.04%
First published (updated )

redhat/GoEtcd: incomplete fix for cve-2021-44716 in openstack platform

Risk 31
Severity
7.5
EPSS
0.04%
First published (updated )

redhat/golangEtcd: incomplete fix for cve-2022-41723 in openstack platform

Risk 31
Severity
7.5
EPSS
0.04%
First published (updated )

go/github.com/containers/image/v5Containers/image: digest type does not guarantee valid type

Risk 55
Severity
8.4
EPSS
0.04%
First published (updated )

maven/org.springframework:spring-webSpring Framework URL Parsing with Host Validation

Risk 62
Severity
8.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxPython-cryptography: bleichenbacher timing oracle attack against rsa decryption - incomplete fix for cve-2020-25659

Risk 46
Severity
7.5
First published (updated )

maven/ch.qos.logback:logback-classicLogback "receiver" DOS vulnerability

Risk 31
Severity
7.5
EPSS
0.05%
First published (updated )

ubuntu/python-cryptographycryptography vulnerable to NULL-dereference when loading PKCS7 certificates

Risk 47
Severity
7.5
First published (updated )

Apache TomcatApache Tomcat: HTTP request smuggling via malformed trailer headers

Risk 47
Severity
7.5
First published (updated )

go/go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpcDoS vulnerability in otelgrpc (uncontrolled resource consumption) due to unbound cardinality metrics

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Golang GoInsecure parsing of Windows paths with a \??\ prefix in path/filepath

Risk 45
Severity
7.5
First published (updated )

redhat ansibleAnsible: template injection

Risk 53
Severity
7.8
EPSS
0.04%
First published (updated )

Kubernetes kubernetesKubernetes - Windows nodes - Insufficient input sanitization in in-tree storage plugin leads to privilege escalation

Risk 65
Severity
8.8
EPSS
18.08%
First published (updated )

ubuntu/golang-yaml.v2Excessive resource consumption in gopkg.in/yaml.v2

Risk 46
Severity
7.5
First published (updated )

pypa pipInput Validation

Risk 68
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat/openshiftKubernetes node setting allows for neighboring hosts to bypass localhost boundary

Risk 81
Severity
8.8
First published (updated )

redhat/python-psutilDouble Free, Use After Free

Risk 46
Severity
7.5
First published (updated )

Kubernetes kubernetesKubernetes API Server JSON/YAML parsing vulnerable to resource exhaustion attack

Risk 46
Severity
7.5
First published (updated )

Kubernetes kubernetesKubernetes kube-apiserver allows access to custom resources via wrong scope

Risk 62
Severity
8.1
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203