Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-66659 |
|
SQL Injection in sqli (CVE-2026-66659)
SQL injection in sqli (CVE-2026-66659). Confidential information can be exposed externally.
|
| CVE-2026-16977 |
|
SQL Injection in wordpress (CVE-2026-16977)
SQL injection in wordpress (CVE-2026-16977). Confidential information can be exposed externally.
|
| CVE-2026-18474 |
|
SQL Injection in wordpress (CVE-2026-18474)
SQL injection in wordpress (CVE-2026-18474). Confidential information can be exposed externally.
|
| CVE-2026-18230 |
|
SQL Injection in wordpress (CVE-2026-18230)
SQL injection in wordpress (CVE-2026-18230). Confidential information can be exposed externally.
|
| CVE-2026-18057 |
|
SQL Injection in wordpress (CVE-2026-18057)
SQL injection in wordpress (CVE-2026-18057). Confidential information can be exposed externally.
|
| CVE-2026-16066 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16066)
cross-site scripting in wordpress (CVE-2026-16066). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15249 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15249)
cross-site scripting in wordpress (CVE-2026-15249). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17013 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-17013)
cross-site scripting in wordpress (CVE-2026-17013). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19217 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19217)
cross-site scripting in wordpress (CVE-2026-19217). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18035 |
|
Vulnerability in wordpress (CVE-2026-18035)
vulnerability in wordpress (CVE-2026-18035). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18789 |
|
Vulnerability in wordpress (CVE-2026-18789)
vulnerability in wordpress (CVE-2026-18789). Confidential information can be exposed externally.
|
| CVE-2026-19052 |
|
Vulnerability in wordpress (CVE-2026-19052)
vulnerability in wordpress (CVE-2026-19052). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15388 |
|
Authorization Flaw in wordpress (CVE-2026-15388)
vulnerability in wordpress (CVE-2026-15388). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18046 |
|
Authorization Flaw in wordpress (CVE-2026-18046)
vulnerability in wordpress (CVE-2026-18046). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16294 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-16294)
SSRF in wordpress (CVE-2026-16294). Confidential information can be exposed externally.
|
| CVE-2026-16538 |
|
Vulnerability in wordpress (CVE-2026-16538)
vulnerability in wordpress (CVE-2026-16538). Confidential information can be exposed externally.
|
| CVE-2026-16051 |
|
Code Injection in wordpress (CVE-2026-16051)
code injection in wordpress (CVE-2026-16051). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18048 |
|
Vulnerability in wordpress (CVE-2026-18048)
vulnerability in wordpress (CVE-2026-18048). Data can be tampered with by attackers.
|
| CVE-2026-16253 |
|
Information Disclosure in wordpress (CVE-2026-16253)
vulnerability in wordpress (CVE-2026-16253). Confidential information can be exposed externally.
|
| CVE-2026-19073 |
|
Information Disclosure in wordpress (CVE-2026-19073)
vulnerability in wordpress (CVE-2026-19073). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18943 |
|
Information Disclosure in wordpress (CVE-2026-18943)
vulnerability in wordpress (CVE-2026-18943). Confidential information can be exposed externally.
|
| CVE-2026-18049 |
|
Information Disclosure in wordpress (CVE-2026-18049)
vulnerability in wordpress (CVE-2026-18049). Confidential information can be exposed externally.
|
| CVE-2026-18391 |
|
Unrestricted File Upload in wordpress (CVE-2026-18391)
vulnerability in wordpress (CVE-2026-18391). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18366 |
|
Privilege Escalation in wordpress (CVE-2026-18366)
vulnerability in wordpress (CVE-2026-18366). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12976 |
|
Information Disclosure in wordpress (CVE-2026-12976)
vulnerability in wordpress (CVE-2026-12976). Confidential information can be exposed externally.
|
| CVE-2026-13168 |
|
Information Disclosure in wordpress (CVE-2026-13168)
vulnerability in wordpress (CVE-2026-13168). Confidential information can be exposed externally.
|
| CVE-2026-14925 |
|
Information Disclosure in wordpress (CVE-2026-14925)
vulnerability in wordpress (CVE-2026-14925). Confidential information can be exposed externally.
|
| CVE-2026-15039 |
|
Unrestricted File Upload in wordpress (CVE-2026-15039)
vulnerability in wordpress (CVE-2026-15039). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13613 |
|
SQL Injection in wordpress (CVE-2026-13613)
SQL injection in wordpress (CVE-2026-13613). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64954 |
|
Vulnerability in CVE-2026-64954 (CVE-2026-64954)
vulnerability in CVE-2026-64954 (CVE-2026-64954). Confidential information can be exposed externally.
|
| CVE-2026-13171 |
|
Vulnerability in wordpress (CVE-2026-13171)
vulnerability in wordpress (CVE-2026-13171). Data can be tampered with by attackers.
|
| CVE-2026-14859 |
|
Vulnerability in wordpress (CVE-2026-14859)
vulnerability in wordpress (CVE-2026-14859). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12235 |
|
Out-of-Bounds Write in c (CVE-2026-12235)
out-of-bounds write in c (CVE-2026-12235). Data can be tampered with by attackers.
|
| CVE-2026-12234 |
|
Vulnerability in c (CVE-2026-12234)
vulnerability in c (CVE-2026-12234). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12233 |
|
Vulnerability in c (CVE-2026-12233)
vulnerability in c (CVE-2026-12233). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12232 |
|
Out-of-Bounds Read in c (CVE-2026-12232)
vulnerability in c (CVE-2026-12232). Confidential information can be exposed externally.
|
| CVE-2025-15687 |
|
Vulnerability in dos (CVE-2025-15687)
vulnerability in dos (CVE-2025-15687). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-15685 |
|
Buffer Overflow in CVE-2025-15685 (CVE-2025-15685)
vulnerability in CVE-2025-15685 (CVE-2025-15685). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-15686 |
|
Vulnerability in dos (CVE-2025-15686)
vulnerability in dos (CVE-2025-15686). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9318 |
|
Cross-Site Scripting (XSS) in tablib (CVE-2026-9318)
cross-site scripting in tablib (CVE-2026-9318). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.10.0` or later.
|
| CVE-2026-19587 |
|
Vulnerability in CVE-2026-19587 (CVE-2026-19587)
vulnerability in CVE-2026-19587 (CVE-2026-19587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18961 |
|
Authentication Bypass in wordpress (CVE-2026-18961)
authentication bypass in wordpress (CVE-2026-18961). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70398 |
|
Vulnerability in CVE-2026-70398 (CVE-2026-70398)
vulnerability in CVE-2026-70398 (CVE-2026-70398). Confidential information can be exposed externally.
|
| CVE-2026-72526 |
|
Vulnerability in privilege-escalation (CVE-2026-72526)
vulnerability in privilege-escalation (CVE-2026-72526). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73122 |
|
Privilege Escalation in CVE-2026-73122 (CVE-2026-73122)
vulnerability in CVE-2026-73122 (CVE-2026-73122). Confidential information can be exposed externally.
|
| CVE-2024-14044 |
|
Buffer Overflow in c (CVE-2024-14044)
vulnerability in c (CVE-2024-14044). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-14043 |
|
Buffer Overflow in c (CVE-2024-14043)
vulnerability in c (CVE-2024-14043). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73250 |
|
Command Injection in CVE-2026-73250 (CVE-2026-73250)
command injection in CVE-2026-73250 (CVE-2026-73250). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73246 |
|
Information Disclosure in CVE-2026-73246 (CVE-2026-73246)
vulnerability in CVE-2026-73246 (CVE-2026-73246). Confidential information can be exposed externally. Exploitable via `GET /worker`. Mitigation: upgrade to `2.0.0-rc6` or later.
|
| CVE-2026-73245 |
|
Vulnerability in CVE-2026-73245 (CVE-2026-73245)
vulnerability in CVE-2026-73245 (CVE-2026-73245). Risk of unauthorized operations or information disclosure. Exploitable via `GET /env`. Mitigation: upgrade to `2.0.0-rc6` or later.
|