Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-16053 |
|
Vulnerability in path-traversal (CVE-2026-16053)
vulnerability in path-traversal (CVE-2026-16053). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16974 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16974)
cross-site scripting in wordpress (CVE-2026-16974). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19425 |
|
SQL Injection in sqli (CVE-2026-19425)
SQL injection in sqli (CVE-2026-19425). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13716 |
|
Vulnerability in path-traversal (CVE-2026-13716)
vulnerability in path-traversal (CVE-2026-13716). Data can be tampered with by attackers.
|
| CVE-2026-6181 |
|
Vulnerability in CVE-2026-6181 (CVE-2026-6181)
vulnerability in CVE-2026-6181 (CVE-2026-6181). Confidential information can be exposed externally.
|
| CVE-2026-4757 |
|
Vulnerability in privilege-escalation (CVE-2026-4757)
vulnerability in privilege-escalation (CVE-2026-4757). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6505 |
|
Vulnerability in privilege-escalation (CVE-2026-6505)
vulnerability in privilege-escalation (CVE-2026-6505). Confidential information can be exposed externally.
|
| CVE-2026-5304 |
|
Vulnerability in privilege-escalation (CVE-2026-5304)
vulnerability in privilege-escalation (CVE-2026-5304). Confidential information can be exposed externally.
|
| CVE-2026-5303 |
|
Vulnerability in privilege-escalation (CVE-2026-5303)
vulnerability in privilege-escalation (CVE-2026-5303). Confidential information can be exposed externally.
|
| CVE-2026-12051 |
|
Vulnerability in c (CVE-2026-12051)
vulnerability in c (CVE-2026-12051). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12052 |
|
Out-of-Bounds Write in c (CVE-2026-12052)
out-of-bounds write in c (CVE-2026-12052). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11893 |
|
Vulnerability in c (CVE-2026-11893)
vulnerability in c (CVE-2026-11893). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-24329 |
|
Vulnerability in dos (CVE-2026-24329)
vulnerability in dos (CVE-2026-24329). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8917 |
|
Vulnerability in privilege-escalation (CVE-2026-8917)
vulnerability in privilege-escalation (CVE-2026-8917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66779 |
|
Cross-Site Scripting (XSS) in CVE-2026-66779 (CVE-2026-66779)
cross-site scripting in CVE-2026-66779 (CVE-2026-66779). Confidential information can be exposed externally.
|
| CVE-2026-66770 |
|
SQL Injection in sqli (CVE-2026-66770)
SQL injection in sqli (CVE-2026-66770). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66764 |
|
Vulnerability in privilege-escalation (CVE-2026-66764)
vulnerability in privilege-escalation (CVE-2026-66764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11812 |
|
Vulnerability in c (CVE-2026-11812)
vulnerability in c (CVE-2026-11812). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73030 |
|
Path Traversal in path-traversal (CVE-2026-73030)
path traversal in path-traversal (CVE-2026-73030). Data can be tampered with by attackers.
|
| CVE-2026-73033 |
|
Path Traversal in wordpress (CVE-2026-73033)
path traversal in wordpress (CVE-2026-73033). Data can be tampered with by attackers.
|
| CVE-2026-72743 |
|
Cross-Site Scripting (XSS) in CVE-2026-72743 (CVE-2026-72743)
cross-site scripting in CVE-2026-72743 (CVE-2026-72743). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63622 |
|
Vulnerability in privilege-escalation (CVE-2026-63622)
vulnerability in privilege-escalation (CVE-2026-63622). Successful exploitation can lead to full system takeover. Exploitable via ``swtpm``.
|
| CVE-2026-18948 |
|
Unsafe Deserialization in deserialization (CVE-2026-18948)
vulnerability in deserialization (CVE-2026-18948). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18947 |
|
Vulnerability in dos (CVE-2026-18947)
vulnerability in dos (CVE-2026-18947). Data can be tampered with by attackers.
|
| CVE-2026-19411 |
|
Vulnerability in c (CVE-2026-19411)
vulnerability in c (CVE-2026-19411). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18950 |
|
Privilege Escalation in privilege-escalation (CVE-2026-18950)
vulnerability in privilege-escalation (CVE-2026-18950). Successful exploitation can lead to full system takeover. Exploitable via ``roleRef``.
|
| CVE-2026-18941 |
|
Vulnerability in dos (CVE-2026-18941)
vulnerability in dos (CVE-2026-18941). Confidential information can be exposed externally.
|
| CVE-2026-18618 |
|
Vulnerability in dos (CVE-2026-18618)
vulnerability in dos (CVE-2026-18618). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18617 |
|
Vulnerability in privilege-escalation (CVE-2026-18617)
vulnerability in privilege-escalation (CVE-2026-18617). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72912 |
|
Vulnerability in privilege-escalation (CVE-2026-72912)
vulnerability in privilege-escalation (CVE-2026-72912). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72904 |
|
Command Injection in ssrf (CVE-2026-72904)
command injection in ssrf (CVE-2026-72904). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11810 |
|
Vulnerability in c (CVE-2026-11810)
vulnerability in c (CVE-2026-11810). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11809 |
|
Out-of-Bounds Read in c (CVE-2026-11809)
vulnerability in c (CVE-2026-11809). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72882 |
|
OS Command Injection in CVE-2026-72882 (CVE-2026-72882)
OS command injection in CVE-2026-72882 (CVE-2026-72882). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71965 |
|
Vulnerability in CVE-2026-71965 (CVE-2026-71965)
vulnerability in CVE-2026-71965 (CVE-2026-71965). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69118 |
|
Authorization Flaw in CVE-2026-69118 (CVE-2026-69118)
vulnerability in CVE-2026-69118 (CVE-2026-69118). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69112 |
|
Path Traversal in path-traversal (CVE-2026-69112)
path traversal in path-traversal (CVE-2026-69112). Confidential information can be exposed externally.
|
| CVE-2026-44401 |
|
Cross-Site Scripting (XSS) in CVE-2026-44401 (CVE-2026-44401)
cross-site scripting in CVE-2026-44401 (CVE-2026-44401). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-15681 |
|
Vulnerability in CVE-2025-15681 (CVE-2025-15681)
vulnerability in CVE-2025-15681 (CVE-2025-15681). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-13294 |
|
SQL Injection in sqli (CVE-2025-13294)
SQL injection in sqli (CVE-2025-13294). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71967 |
|
Vulnerability in dos (CVE-2026-71967)
vulnerability in dos (CVE-2026-71967). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12339 |
|
Path Traversal in path-traversal (CVE-2026-12339)
path traversal in path-traversal (CVE-2026-12339). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72730 |
|
Cross-Site Scripting (XSS) in CVE-2026-72730 (CVE-2026-72730)
cross-site scripting in CVE-2026-72730 (CVE-2026-72730). Confidential information can be exposed externally.
|
| CVE-2026-72727 |
|
Cross-Site Scripting (XSS) in CVE-2026-72727 (CVE-2026-72727)
cross-site scripting in CVE-2026-72727 (CVE-2026-72727). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56619 |
|
Cross-Site Scripting (XSS) in CVE-2026-56619 (CVE-2026-56619)
cross-site scripting in CVE-2026-56619 (CVE-2026-56619). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72725 |
|
Cross-Site Scripting (XSS) in CVE-2026-72725 (CVE-2026-72725)
cross-site scripting in CVE-2026-72725 (CVE-2026-72725). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2026.1.6` or later.
|
| CVE-2026-47754 |
|
Path Traversal in tomcat (CVE-2026-47754)
path traversal in tomcat (CVE-2026-47754). Confidential information can be exposed externally. Exploitable via ``archiveEntryName``.
|
| CVE-2026-72751 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-72751)
cross-site scripting in c (CVE-2026-72751). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18412 |
|
Vulnerability in path-traversal (CVE-2026-18412)
vulnerability in path-traversal (CVE-2026-18412). Confidential information can be exposed externally.
|
| CVE-2026-63105 |
|
Cross-Site Scripting (XSS) in vue (CVE-2026-63105)
cross-site scripting in vue (CVE-2026-63105). Risk of unauthorized operations or information disclosure.
|