Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: cwe Clear
ID Title
CVE-2026-28008 Vulnerability in CVE-2026-28008 (CVE-2026-28008)
vulnerability in CVE-2026-28008 (CVE-2026-28008). Successful exploitation can lead to full system takeover.
CVE-2026-27999 Subscriber Broken Access Control in Tourfic <= 2.23.1 versions.
Subscriber Broken Access Control in Tourfic <= 2.23.1 versions.
CVE-2026-27535 Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.
Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.
CVE-2026-27538 Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
CVE-2026-27536 Unauthenticated Cross Site Scripting (XSS) in MailChimp Subscribe Forms <= 4.3.3 versions.
Unauthenticated Cross Site Scripting (XSS) in MailChimp Subscribe Forms <= 4.3.3 versions.
CVE-2026-27537 Unauthenticated Cross Site Scripting (XSS) in Popup by Supsystic <= 1.11.2 versions.
Unauthenticated Cross Site Scripting (XSS) in Popup by Supsystic <= 1.11.2 versions.
CVE-2026-27539 Unauthenticated Cross Site Scripting (XSS) in Welcart e-Commerce <= 2.11.31 versions.
Unauthenticated Cross Site Scripting (XSS) in Welcart e-Commerce <= 2.11.31 versions.
CVE-2026-27544 Unauthenticated Remote Code Execution (RCE) in QA Analytics <= 5.2.0.0 versions.
Unauthenticated Remote Code Execution (RCE) in QA Analytics <= 5.2.0.0 versions.
CVE-2026-27345 Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.
Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.
CVE-2026-27380 Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.
Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.
CVE-2026-19716 Cross-Site Scripting (XSS) in CVE-2026-19716 (CVE-2026-19716)
cross-site scripting in CVE-2026-19716 (CVE-2026-19716). Risk of unauthorized operations or information disclosure.
CVE-2025-62318 Cross-Site Request Forgery (CSRF) in CVE-2025-62318 (CVE-2025-62318)
vulnerability in CVE-2025-62318 (CVE-2025-62318). Risk of unauthorized operations or information disclosure.
CVE-2025-62315 Vulnerability in CVE-2025-62315 (CVE-2025-62315)
vulnerability in CVE-2025-62315 (CVE-2025-62315). Risk of unauthorized operations or information disclosure.
CVE-2026-55088 Information Disclosure in ep_etherpad-lite (CVE-2026-55088)
vulnerability in ep_etherpad-lite (CVE-2026-55088). Confidential information can be exposed externally. Exploitable via ``prefsHttp``. Mitigation: upgrade to `3.1.0` or later.
CVE-2026-55086 Vulnerability in ep_etherpad-lite (CVE-2026-55086)
vulnerability in ep_etherpad-lite (CVE-2026-55086). Risk of unauthorized operations or information disclosure. Exploitable via ``ExportHandler``. Mitigation: upgrade to `3.1.0` or later.
CVE-2026-55087 Cross-Site Scripting (XSS) in ep_etherpad-lite (CVE-2026-55087)
cross-site scripting in ep_etherpad-lite (CVE-2026-55087). Risk of unauthorized operations or information disclosure. Exploitable via ``String.prototype.replaceAll``. Mitigation: upgrade to `3.1.0` or later.
CVE-2026-73583 Out-of-Bounds Read in dos (CVE-2026-73583)
vulnerability in dos (CVE-2026-73583). Risk of unauthorized operations or information disclosure.
CVE-2026-6464 Vulnerability in postgresql (CVE-2026-6464)
vulnerability in postgresql (CVE-2026-6464). Successful exploitation can lead to full system takeover.
CVE-2026-6470 Vulnerability in dos (CVE-2026-6470)
vulnerability in dos (CVE-2026-6470). Risk of unauthorized operations or information disclosure.
CVE-2026-6471 Vulnerability in postgresql (CVE-2026-6471)
vulnerability in postgresql (CVE-2026-6471). Successful exploitation can lead to full system takeover.
CVE-2026-49827 Vulnerability in CVE-2026-49827 (CVE-2026-49827)
vulnerability in CVE-2026-49827 (CVE-2026-49827). Successful exploitation can lead to full system takeover.
CVE-2026-19385 Vulnerability in postgresql (CVE-2026-19385)
vulnerability in postgresql (CVE-2026-19385). Successful exploitation can lead to full system takeover.
CVE-2026-18408 Vulnerability in postgresql (CVE-2026-18408)
vulnerability in postgresql (CVE-2026-18408). Successful exploitation can lead to full system takeover.
CVE-2026-15742 Vulnerability in postgresql (CVE-2026-15742)
vulnerability in postgresql (CVE-2026-15742). Successful exploitation can lead to full system takeover.
CVE-2026-16238 Vulnerability in postgresql (CVE-2026-16238)
vulnerability in postgresql (CVE-2026-16238). Successful exploitation can lead to full system takeover.
CVE-2026-16239 Vulnerability in postgresql (CVE-2026-16239)
vulnerability in postgresql (CVE-2026-16239). Successful exploitation can lead to full system takeover.
CVE-2026-16241 Vulnerability in dos (CVE-2026-16241)
vulnerability in dos (CVE-2026-16241). Risk of unauthorized operations or information disclosure.
CVE-2026-14680 Vulnerability in postgresql (CVE-2026-14680)
vulnerability in postgresql (CVE-2026-14680). Successful exploitation can lead to full system takeover.
CVE-2026-14677 Vulnerability in postgresql (CVE-2026-14677)
vulnerability in postgresql (CVE-2026-14677). Successful exploitation can lead to full system takeover.
CVE-2026-14679 Vulnerability in postgresql (CVE-2026-14679)
vulnerability in postgresql (CVE-2026-14679). Risk of unauthorized operations or information disclosure.
CVE-2026-15741 SQL Injection in sqli (CVE-2026-15741)
SQL injection in sqli (CVE-2026-15741). Successful exploitation can lead to full system takeover.
CVE-2026-14673 Vulnerability in postgresql (CVE-2026-14673)
vulnerability in postgresql (CVE-2026-14673). Risk of unauthorized operations or information disclosure.
CVE-2026-14668 Vulnerability in postgresql (CVE-2026-14668)
vulnerability in postgresql (CVE-2026-14668). Confidential information can be exposed externally.
CVE-2026-14671 Vulnerability in postgresql (CVE-2026-14671)
vulnerability in postgresql (CVE-2026-14671). Successful exploitation can lead to full system takeover.
CVE-2026-14669 Vulnerability in postgresql (CVE-2026-14669)
vulnerability in postgresql (CVE-2026-14669). Successful exploitation can lead to full system takeover.
CVE-2026-14670 Vulnerability in postgresql (CVE-2026-14670)
vulnerability in postgresql (CVE-2026-14670). Successful exploitation can lead to full system takeover.
CVE-2026-14676 Vulnerability in postgresql (CVE-2026-14676)
vulnerability in postgresql (CVE-2026-14676). Successful exploitation can lead to full system takeover.
CVE-2026-14664 Vulnerability in postgresql (CVE-2026-14664)
vulnerability in postgresql (CVE-2026-14664). Successful exploitation can lead to full system takeover.
CVE-2026-14662 Vulnerability in postgresql (CVE-2026-14662)
vulnerability in postgresql (CVE-2026-14662). Successful exploitation can lead to full system takeover.
CVE-2025-52640 Vulnerability in CVE-2025-52640 (CVE-2025-52640)
vulnerability in CVE-2025-52640 (CVE-2025-52640). Risk of unauthorized operations or information disclosure.
CVE-2026-73623 OS Command Injection in gitpython-project (CVE-2026-73623)
OS command injection in gitpython-project (CVE-2026-73623). Successful exploitation can lead to full system takeover.
CVE-2026-73625 OS Command Injection in gitpython-project (CVE-2026-73625)
OS command injection in gitpython-project (CVE-2026-73625). Successful exploitation can lead to full system takeover.
CVE-2026-73624 Vulnerability in CVE-2026-73624 (CVE-2026-73624)
vulnerability in CVE-2026-73624 (CVE-2026-73624). Data can be tampered with by attackers.
CVE-2026-73621 Vulnerability in gitpython-project (CVE-2026-73621)
vulnerability in gitpython-project (CVE-2026-73621). Risk of unauthorized operations or information disclosure.
CVE-2026-73622 Information Disclosure in gitpython-project (CVE-2026-73622)
vulnerability in gitpython-project (CVE-2026-73622). Confidential information can be exposed externally.
CVE-2026-73614 Vulnerability in CVE-2026-73614 (CVE-2026-73614)
vulnerability in CVE-2026-73614 (CVE-2026-73614). Successful exploitation can lead to full system takeover.
CVE-2026-73615 Vulnerability in CVE-2026-73615 (CVE-2026-73615)
vulnerability in CVE-2026-73615 (CVE-2026-73615). Successful exploitation can lead to full system takeover.
CVE-2026-73629 SSRF (Server-Side Request Forgery) in CVE-2026-73629 (CVE-2026-73629)
SSRF in CVE-2026-73629 (CVE-2026-73629). Confidential information can be exposed externally.
CVE-2026-73620 Path Traversal in gitpython-project (CVE-2026-73620)
path traversal in gitpython-project (CVE-2026-73620). Data can be tampered with by attackers.
CVE-2026-73626 Vulnerability in CVE-2026-73626 (CVE-2026-73626)
vulnerability in CVE-2026-73626 (CVE-2026-73626). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →