Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: cwe Clear
ID Title
CVE-2026-16077 Vulnerability in CVE-2026-16077 (CVE-2026-16077)
vulnerability in CVE-2026-16077 (CVE-2026-16077). Risk of unauthorized operations or information disclosure.
CVE-2026-16076 Authentication Bypass in CVE-2026-16076 (CVE-2026-16076)
authentication bypass in CVE-2026-16076 (CVE-2026-16076). Risk of unauthorized operations or information disclosure.
CVE-2026-9734 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-9734)
vulnerability in wordpress (CVE-2026-9734). Risk of unauthorized operations or information disclosure.
CVE-2026-16075 Vulnerability in CVE-2026-16075 (CVE-2026-16075)
vulnerability in CVE-2026-16075 (CVE-2026-16075). Risk of unauthorized operations or information disclosure.
CVE-2026-57980 Vulnerability in microsoft (CVE-2026-57980)
vulnerability in microsoft (CVE-2026-57980). Risk of unauthorized operations or information disclosure.
CVE-2026-56740 Vulnerability in org.jline:jline-remote-telnet (CVE-2026-56740)
vulnerability in org.jline:jline-remote-telnet (CVE-2026-56740). Risk of unauthorized operations or information disclosure. Exploitable via ``HashMap``. Mitigation: upgrade to `4.2.1` or later.
CVE-2026-56741 Vulnerability in org.jline:jline-remote-telnet (CVE-2026-56741)
vulnerability in org.jline:jline-remote-telnet (CVE-2026-56741). Risk of unauthorized operations or information disclosure. Exploitable via ``Telnet``. Mitigation: upgrade to `4.2.1` or later.
CVE-2026-52348 cool-admin-java 8.0.0 has a SQL injection vulnerability in the order() method of CrudOption.java.
cool-admin-java 8.0.0 has a SQL injection vulnerability in the order() method of CrudOption.java.
CVE-2026-52203 Information Disclosure in CVE-2026-52203 (CVE-2026-52203)
vulnerability in CVE-2026-52203 (CVE-2026-52203). Confidential information can be exposed externally.
CVE-2026-52584 Vulnerability in CVE-2026-52584 (CVE-2026-52584)
vulnerability in CVE-2026-52584 (CVE-2026-52584). Confidential information can be exposed externally.
CVE-2026-13446 Vulnerability in langflow (CVE-2026-13446)
vulnerability in langflow (CVE-2026-13446). Successful exploitation can lead to full system takeover.
CVE-2026-16074 SSRF (Server-Side Request Forgery) in CVE-2026-16074 (CVE-2026-16074)
SSRF in CVE-2026-16074 (CVE-2026-16074). Risk of unauthorized operations or information disclosure.
CVE-2026-54570 Vulnerability in AngleSharp (CVE-2026-54570)
vulnerability in AngleSharp (CVE-2026-54570). Data can be tampered with by attackers. Exploitable via ``MathAnnotationXmlElement``. Mitigation: upgrade to `1.5.0` or later.
CVE-2026-8861 Vulnerability in ibm (CVE-2026-8861)
vulnerability in ibm (CVE-2026-8861). Risk of unauthorized operations or information disclosure.
CVE-2026-8859 Path Traversal in path-traversal (CVE-2026-8859)
path traversal in path-traversal (CVE-2026-8859). Successful exploitation can lead to full system takeover.
CVE-2026-8635 Code Injection in c (CVE-2026-8635)
code injection in c (CVE-2026-8635). Successful exploitation can lead to full system takeover.
CVE-2026-8505 Vulnerability in langflow (CVE-2026-8505)
vulnerability in langflow (CVE-2026-8505). Successful exploitation can lead to full system takeover.
CVE-2026-8056 IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters...
IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters...
CVE-2026-8481 Code Injection in c (CVE-2026-8481)
code injection in c (CVE-2026-8481). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/v1/validate/code`.
CVE-2026-7771 Vulnerability in dos (CVE-2026-7771)
vulnerability in dos (CVE-2026-7771). Risk of unauthorized operations or information disclosure.
CVE-2026-8476 Unsafe Deserialization in langflow (CVE-2026-8476)
vulnerability in langflow (CVE-2026-8476). Successful exploitation can lead to full system takeover.
CVE-2026-7872 IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files...
IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files...
CVE-2026-7755 IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to...
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to...
CVE-2026-7364 Open Redirect in ibm (CVE-2026-7364)
vulnerability in ibm (CVE-2026-7364). Risk of unauthorized operations or information disclosure.
CVE-2026-7754 IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery ...
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery ...
CVE-2026-7667 IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow...
IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow...
CVE-2026-63030 KEV WordPress Core — WordPress Core Interpretation Conflict Vulnerability
WordPress Core contains an interpretation conflict vulnerability that could allow an attacker to perform SQL Injection and achieve Remote Code Execution. This vulnerability can be chained with CVE-2026-60137.
CVE-2026-60137 KEV [KEV] SQL Injection in Wordpress sqli (CVE-2026-60137)
SQL injection in Wordpress sqli (CVE-2026-60137). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
CVE-2026-52199 Command Injection in CVE-2026-52199 (CVE-2026-52199)
command injection in CVE-2026-52199 (CVE-2026-52199). Confidential information can be exposed externally.
CVE-2026-51833 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-51833)
SSRF in ssrf (CVE-2026-51833). Confidential information can be exposed externally.
CVE-2026-4938 Authorization Flaw in ibm (CVE-2026-4938)
vulnerability in ibm (CVE-2026-4938). Data can be tampered with by attackers.
CVE-2026-48373 Vulnerability in adobe (CVE-2026-48373)
vulnerability in adobe (CVE-2026-48373). Successful exploitation can lead to full system takeover.
CVE-2026-16118 Vulnerability in c (CVE-2026-16118)
vulnerability in c (CVE-2026-16118). Data can be tampered with by attackers.
CVE-2026-36669 Unrestricted File Upload in CVE-2026-36669 (CVE-2026-36669)
vulnerability in CVE-2026-36669 (CVE-2026-36669). Successful exploitation can lead to full system takeover.
CVE-2026-42168 OS Command Injection in django (CVE-2026-42168)
OS command injection in django (CVE-2026-42168). Confidential information can be exposed externally.
CVE-2026-15995 Vulnerability in ibm (CVE-2026-15995)
vulnerability in ibm (CVE-2026-15995). Risk of unauthorized operations or information disclosure.
CVE-2026-15069 OS Command Injection in ibm (CVE-2026-15069)
OS command injection in ibm (CVE-2026-15069). Risk of unauthorized operations or information disclosure.
CVE-2026-15093 Open Redirect in ibm (CVE-2026-15093)
vulnerability in ibm (CVE-2026-15093). Risk of unauthorized operations or information disclosure.
CVE-2026-15091 Cross-Site Scripting (XSS) in ibm (CVE-2026-15091)
cross-site scripting in ibm (CVE-2026-15091). Confidential information can be exposed externally.
CVE-2026-14499 OS Command Injection in langflow (CVE-2026-14499)
OS command injection in langflow (CVE-2026-14499). Successful exploitation can lead to full system takeover.
CVE-2026-13448 Vulnerability in langflow (CVE-2026-13448)
vulnerability in langflow (CVE-2026-13448). Successful exploitation can lead to full system takeover.
CVE-2026-13473 Vulnerability in ibm (CVE-2026-13473)
vulnerability in ibm (CVE-2026-13473). Successful exploitation can lead to full system takeover.
CVE-2025-51678 Buffer Overflow in CVE-2025-51678 (CVE-2025-51678)
vulnerability in CVE-2025-51678 (CVE-2025-51678). Risk of unauthorized operations or information disclosure.
CVE-2025-51677 Vulnerability in CVE-2025-51677 (CVE-2025-51677)
vulnerability in CVE-2025-51677 (CVE-2025-51677). Data can be tampered with by attackers.
CVE-2026-15415 Vulnerability in Amazon aws (CVE-2026-15415)
vulnerability in Amazon aws (CVE-2026-15415). Data can be tampered with by attackers.
CVE-2026-12283 SQL Injection in Amazon aws (CVE-2026-12283)
SQL injection in Amazon aws (CVE-2026-12283). Confidential information can be exposed externally.
CVE-2026-9171 Vulnerability in dos (CVE-2026-9171)
vulnerability in dos (CVE-2026-9171). Risk of unauthorized operations or information disclosure.
CVE-2026-9135 Code Injection in langflow (CVE-2026-9135)
code injection in langflow (CVE-2026-9135). Successful exploitation can lead to full system takeover.
CVE-2026-9103 Vulnerability in langflow (CVE-2026-9103)
vulnerability in langflow (CVE-2026-9103). Successful exploitation can lead to full system takeover.
CVE-2026-58195 OS Command Injection in CVE-2026-58195 (CVE-2026-58195)
OS command injection in CVE-2026-58195 (CVE-2026-58195). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →