pkg:Debian/glances
16 total CVEsCRITICAL2HIGH9MEDIUM5
✅ Check your installed version
All known vulnerabilities
- from 0, < 4.5.1+dfsg-1
- CRITICAL9.1CVE-2026-32633Glances's Browser API Exposes Reusable Downstream Credentials via `/api/4/serverslist`from 0
- from 0
- HIGH8.1CVE-2026-32634Glances Central Browser Autodiscovery Leaks Reusable Credentials to Zeroconf-Spoofed Serversfrom 0
- from 0
- from 0
- HIGH7.5CVE-2026-32609Glances has Incomplete Secrets Redaction: /api/v4/args Endpoint Leaks Password Hash and SNMP Credentialsfrom 0
- from 0
- from 0
- HIGH7.0CVE-2026-32611Glances has a SQL Injection in DuckDB Export via Unparameterized DDL Statementsfrom 0
- from 0
- MEDIUM6.5CVE-2026-34839Glances: Cross-Origin Information Disclosure via Unauthenticated REST API (/api/4) due to Permissive CORSfrom 0
- MEDIUM6.5CVE-2026-33533Glances Vulnerable to Cross-Origin System Information Disclosure via XML-RPC Server CORS Wildcardfrom 0
- MEDIUM6.3CVE-2026-35588Glances has CQL Injection in its Cassandra Export Module via Unsanitized Config Valuesfrom 0
- from 0, < 3.2.3.1+dfsg-1
- MEDIUM5.9CVE-2026-32632Glances's REST/WebUI Lacks Host Validation and Remains Exposed to DNS Rebindingfrom 0