General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-24131 | pnpm is a package manager. Prior to version 10.28.2, when pnpm processes a package's `directories.bin` field, it uses `… | Medium (5.5) | 2026-01-26 | General Purpose |
| CVE-2026-24056 | pnpm is a package manager. Prior to version 10.28.2, when pnpm installs a `file:` (directory) or `git:` dependency, it … | Medium (6.5) | 2026-01-26 | General Purpose |
| CVE-2026-24003 | EVerest is an EV charging software stack. In versions up to and including 2025.12.1, it is possible to bypass the seque… | Medium (4.3) | 2026-01-26 | General Purpose |
| CVE-2026-23890 | pnpm is a package manager. Prior to version 10.28.1, a path traversal vulnerability in pnpm's bin linking allows malici… | Medium (6.5) | 2026-01-26 | General Purpose |
| CVE-2026-23889 | pnpm is a package manager. Prior to version 10.28.1, a path traversal vulnerability in pnpm's tarball extraction allows… | Medium (6.5) | 2026-01-26 | General Purpose |