Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-54606 |
|
Cross-Site Scripting (XSS) in suneditor (CVE-2026-54606)
cross-site scripting in suneditor (CVE-2026-54606). Risk of unauthorized operations or information disclosure. Exploitable via `GET /poc.js`. Mitigation: upgrade to `3.1.4` or later.
|
| CVE-2026-75062 |
|
Vulnerability in CVE-2026-75062 (CVE-2026-75062)
vulnerability in CVE-2026-75062 (CVE-2026-75062). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13480 |
|
Vulnerability in c (CVE-2026-13480)
vulnerability in c (CVE-2026-13480). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13481 |
|
Out-of-Bounds Read in c (CVE-2026-13481)
vulnerability in c (CVE-2026-13481). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13479 |
|
Out-of-Bounds Read in c (CVE-2026-13479)
vulnerability in c (CVE-2026-13479). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54511 |
|
Vulnerability in @logtape/syslog (CVE-2026-54511)
vulnerability in @logtape/syslog (CVE-2026-54511). Data can be tampered with by attackers. Mitigation: upgrade to `1.3.11` or later.
|
| CVE-2026-54550 |
|
Path Traversal in org.codehaus.izpack:izpack-installer (CVE-2026-54550)
path traversal in org.codehaus.izpack:izpack-installer (CVE-2026-54550). Data can be tampered with by attackers. Exploitable via ``targetPath``.
|
| CVE-2026-54523 |
|
Vulnerability in github.com/kyverno/kyverno (CVE-2026-54523)
vulnerability in github.com/kyverno/kyverno (CVE-2026-54523). Confidential information can be exposed externally. Exploitable via ``NamespacedMutatingPolicy``. Mitigation: upgrade to `1.18.2` or later.
|
| CVE-2026-54548 |
|
Vulnerability in kas (CVE-2026-54548)
vulnerability in kas (CVE-2026-54548). Risk of unauthorized operations or information disclosure. Exploitable via ``SSH_PRIVATE_KEY``. Mitigation: upgrade to `5.4` or later.
|
| CVE-2026-79902 |
|
Vulnerability in c (CVE-2026-79902)
vulnerability in c (CVE-2026-79902). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77801 |
|
Vulnerability in dos (CVE-2026-77801)
vulnerability in dos (CVE-2026-77801). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75896 |
|
Vulnerability in CVE-2026-75896 (CVE-2026-75896)
vulnerability in CVE-2026-75896 (CVE-2026-75896). Confidential information can be exposed externally.
|
| CVE-2026-75960 |
|
Vulnerability in CVE-2026-75960 (CVE-2026-75960)
vulnerability in CVE-2026-75960 (CVE-2026-75960). Confidential information can be exposed externally.
|
| CVE-2026-73108 |
|
Vulnerability in dos (CVE-2026-73108)
vulnerability in dos (CVE-2026-73108). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3035 |
|
Vulnerability in CVE-2026-3035 (CVE-2026-3035)
vulnerability in CVE-2026-3035 (CVE-2026-3035). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18252 |
|
Vulnerability in CVE-2026-18252 (CVE-2026-18252)
vulnerability in CVE-2026-18252 (CVE-2026-18252). Confidential information can be exposed externally.
|
| CVE-2026-12717 |
|
Vulnerability in CVE-2026-12717 (CVE-2026-12717)
vulnerability in CVE-2026-12717 (CVE-2026-12717). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15990 |
|
Path Traversal in wordpress (CVE-2026-15990)
path traversal in wordpress (CVE-2026-15990). Confidential information can be exposed externally.
|
| CVE-2025-10903 |
|
Vulnerability in dos (CVE-2025-10903)
vulnerability in dos (CVE-2025-10903). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54553 |
|
Information Disclosure in starlette-admin (CVE-2026-54553)
vulnerability in starlette-admin (CVE-2026-54553). Risk of unauthorized operations or information disclosure. Exploitable via ``metadata``. Mitigation: upgrade to `0.16.1` or later.
|
| CVE-2026-79619 |
|
Authorization Flaw in CVE-2026-79619 (CVE-2026-79619)
vulnerability in CVE-2026-79619 (CVE-2026-79619). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77658 |
|
Vulnerability in c (CVE-2026-77658)
vulnerability in c (CVE-2026-77658). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12587 |
|
Vulnerability in CVE-2026-12587 (CVE-2026-12587)
vulnerability in CVE-2026-12587 (CVE-2026-12587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63041 |
|
Vulnerability in apache (CVE-2026-63041)
vulnerability in apache (CVE-2026-63041). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77551 |
|
Vulnerability in CVE-2026-77551 (CVE-2026-77551)
vulnerability in CVE-2026-77551 (CVE-2026-77551). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77553 |
|
Vulnerability in CVE-2026-77553 (CVE-2026-77553)
vulnerability in CVE-2026-77553 (CVE-2026-77553). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77557 |
|
Vulnerability in CVE-2026-77557 (CVE-2026-77557)
vulnerability in CVE-2026-77557 (CVE-2026-77557). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80203 |
|
Authorization Flaw in CVE-2026-80203 (CVE-2026-80203)
vulnerability in CVE-2026-80203 (CVE-2026-80203). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77552 |
|
Vulnerability in CVE-2026-77552 (CVE-2026-77552)
vulnerability in CVE-2026-77552 (CVE-2026-77552). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77554 |
|
Vulnerability in CVE-2026-77554 (CVE-2026-77554)
vulnerability in CVE-2026-77554 (CVE-2026-77554). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77546 |
|
Vulnerability in CVE-2026-77546 (CVE-2026-77546)
vulnerability in CVE-2026-77546 (CVE-2026-77546). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77547 |
|
Vulnerability in CVE-2026-77547 (CVE-2026-77547)
vulnerability in CVE-2026-77547 (CVE-2026-77547). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77548 |
|
Vulnerability in CVE-2026-77548 (CVE-2026-77548)
vulnerability in CVE-2026-77548 (CVE-2026-77548). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5092 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-5092)
cross-site scripting in wordpress (CVE-2026-5092). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77532 |
|
Vulnerability in CVE-2026-77532 (CVE-2026-77532)
vulnerability in CVE-2026-77532 (CVE-2026-77532). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77550 |
|
Vulnerability in CVE-2026-77550 (CVE-2026-77550)
vulnerability in CVE-2026-77550 (CVE-2026-77550). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77549 |
|
Vulnerability in CVE-2026-77549 (CVE-2026-77549)
vulnerability in CVE-2026-77549 (CVE-2026-77549). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18080 |
|
Unrestricted File Upload in wordpress (CVE-2026-18080)
vulnerability in wordpress (CVE-2026-18080). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77542 |
|
Vulnerability in CVE-2026-77542 (CVE-2026-77542)
vulnerability in CVE-2026-77542 (CVE-2026-77542). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77543 |
|
Vulnerability in CVE-2026-77543 (CVE-2026-77543)
vulnerability in CVE-2026-77543 (CVE-2026-77543). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77541 |
|
Vulnerability in CVE-2026-77541 (CVE-2026-77541)
vulnerability in CVE-2026-77541 (CVE-2026-77541). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80346 |
|
Vulnerability in CVE-2026-80346 (CVE-2026-80346)
vulnerability in CVE-2026-80346 (CVE-2026-80346). Data can be tampered with by attackers.
|
| CVE-2026-77534 |
|
Vulnerability in CVE-2026-77534 (CVE-2026-77534)
vulnerability in CVE-2026-77534 (CVE-2026-77534). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77536 |
|
Vulnerability in CVE-2026-77536 (CVE-2026-77536)
vulnerability in CVE-2026-77536 (CVE-2026-77536). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77538 |
|
Vulnerability in CVE-2026-77538 (CVE-2026-77538)
vulnerability in CVE-2026-77538 (CVE-2026-77538). Data can be tampered with by attackers.
|
| CVE-2026-77539 |
|
Vulnerability in CVE-2026-77539 (CVE-2026-77539)
vulnerability in CVE-2026-77539 (CVE-2026-77539). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77540 |
|
Vulnerability in CVE-2026-77540 (CVE-2026-77540)
vulnerability in CVE-2026-77540 (CVE-2026-77540). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77535 |
|
Vulnerability in CVE-2026-77535 (CVE-2026-77535)
vulnerability in CVE-2026-77535 (CVE-2026-77535). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77537 |
|
Vulnerability in CVE-2026-77537 (CVE-2026-77537)
vulnerability in CVE-2026-77537 (CVE-2026-77537). Successful exploitation can lead to full system takeover.
|
| CVE-2026-2388 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2388)
cross-site scripting in wordpress (CVE-2026-2388). Risk of unauthorized operations or information disclosure.
|