Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-16016 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-16016 (CVE-2026-16016)
SSRF in CVE-2026-16016 (CVE-2026-16016). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16015 |
|
Authentication Bypass in CVE-2026-16015 (CVE-2026-16015)
authentication bypass in CVE-2026-16015 (CVE-2026-16015). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16072 |
|
Vulnerability in redhat (CVE-2026-16072)
vulnerability in redhat (CVE-2026-16072). Data can be tampered with by attackers.
|
| CVE-2024-23568 |
|
Information Disclosure in CVE-2024-23568 (CVE-2024-23568)
vulnerability in CVE-2024-23568 (CVE-2024-23568). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-23570 |
|
Information Disclosure in CVE-2024-23570 (CVE-2024-23570)
vulnerability in CVE-2024-23570 (CVE-2024-23570). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13410 |
|
Vulnerability in CVE-2026-13410 (CVE-2026-13410)
vulnerability in CVE-2026-13410 (CVE-2026-13410). Confidential information can be exposed externally.
|
| CVE-2026-16014 |
|
Vulnerability in sqli (CVE-2026-16014)
vulnerability in sqli (CVE-2026-16014). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8396 |
|
XXE (XML External Entity) in CVE-2026-8396 (CVE-2026-8396)
vulnerability in CVE-2026-8396 (CVE-2026-8396). Confidential information can be exposed externally.
|
| CVE-2026-16009 |
|
Vulnerability in sqli (CVE-2026-16009)
vulnerability in sqli (CVE-2026-16009). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16013 |
|
Buffer Overflow in CVE-2026-16013 (CVE-2026-16013)
vulnerability in CVE-2026-16013 (CVE-2026-16013). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8075 |
|
Vulnerability in mattermost (CVE-2026-8075)
vulnerability in mattermost (CVE-2026-8075). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9602 |
|
Vulnerability in mattermost (CVE-2026-9602)
vulnerability in mattermost (CVE-2026-9602). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16008 |
|
Code Injection in CVE-2026-16008 (CVE-2026-16008)
code injection in CVE-2026-16008 (CVE-2026-16008). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62764 |
|
Vulnerability in apache (CVE-2026-62764)
vulnerability in apache (CVE-2026-62764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9656 |
|
Information Disclosure in wordpress (CVE-2026-9656)
vulnerability in wordpress (CVE-2026-9656). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15380 |
|
Privilege Escalation in CVE-2026-15380 (CVE-2026-15380)
vulnerability in CVE-2026-15380 (CVE-2026-15380). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15379 |
|
Privilege Escalation in CVE-2026-15379 (CVE-2026-15379)
vulnerability in CVE-2026-15379 (CVE-2026-15379). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9810 |
|
Privilege Escalation in wordpress (CVE-2026-9810)
vulnerability in wordpress (CVE-2026-9810). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13402 |
|
Information Disclosure in wordpress (CVE-2026-13402)
vulnerability in wordpress (CVE-2026-13402). Risk of unauthorized operations or information disclosure.
|
| CVE-2019-25764 |
|
Vulnerability in privilege-escalation (CVE-2019-25764)
vulnerability in privilege-escalation (CVE-2019-25764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10525 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-10525)
cross-site scripting in wordpress (CVE-2026-10525). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11575 |
|
Vulnerability in wordpress (CVE-2026-11575)
vulnerability in wordpress (CVE-2026-11575). Data can be tampered with by attackers.
|
| CVE-2026-11961 |
|
Privilege Escalation in wordpress (CVE-2026-11961)
vulnerability in wordpress (CVE-2026-11961). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15982 |
|
Privilege Escalation in wordpress (CVE-2026-15982)
vulnerability in wordpress (CVE-2026-15982). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15094 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15094)
cross-site scripting in wordpress (CVE-2026-15094). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60060 |
|
Vulnerability in CVE-2026-60060 (CVE-2026-60060)
vulnerability in CVE-2026-60060 (CVE-2026-60060). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41993 |
|
Vulnerability in CVE-2026-41993 (CVE-2026-41993)
vulnerability in CVE-2026-41993 (CVE-2026-41993). Data can be tampered with by attackers.
|
| CVE-2026-15349 |
|
Vulnerability in wordpress (CVE-2026-15349)
vulnerability in wordpress (CVE-2026-15349). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15457 |
|
Path Traversal in wordpress (CVE-2026-15457)
path traversal in wordpress (CVE-2026-15457). Confidential information can be exposed externally.
|
| CVE-2026-15161 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15161)
cross-site scripting in wordpress (CVE-2026-15161). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15759 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15759)
cross-site scripting in wordpress (CVE-2026-15759). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-21770 |
|
Vulnerability in CVE-2026-21770 (CVE-2026-21770)
vulnerability in CVE-2026-21770 (CVE-2026-21770). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14503 |
|
Information Disclosure in wordpress (CVE-2026-14503)
vulnerability in wordpress (CVE-2026-14503). Confidential information can be exposed externally.
|
| CVE-2026-13765 |
|
Vulnerability in wordpress (CVE-2026-13765)
vulnerability in wordpress (CVE-2026-13765). Confidential information can be exposed externally.
|
| CVE-2026-13352 |
|
Unrestricted File Upload in wordpress (CVE-2026-13352)
vulnerability in wordpress (CVE-2026-13352). Successful exploitation can lead to full system takeover.
|
| CVE-2026-8616 |
|
Vulnerability in wordpress (CVE-2026-8616)
vulnerability in wordpress (CVE-2026-8616). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15160 |
|
Path Traversal in wordpress (CVE-2026-15160)
path traversal in wordpress (CVE-2026-15160). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11324 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11324)
cross-site scripting in wordpress (CVE-2026-11324). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15395 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15395)
cross-site scripting in wordpress (CVE-2026-15395). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62238 |
|
SQL Injection in sqli (CVE-2026-62238)
SQL injection in sqli (CVE-2026-62238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62235 |
|
Vulnerability in CVE-2026-62235 (CVE-2026-62235)
vulnerability in CVE-2026-62235 (CVE-2026-62235). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62234 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-62234 (CVE-2026-62234)
SSRF in CVE-2026-62234 (CVE-2026-62234). Confidential information can be exposed externally.
|
| CVE-2026-62241 |
|
Vulnerability in mohibshaikh (CVE-2026-62241)
vulnerability in mohibshaikh (CVE-2026-62241). Confidential information can be exposed externally. Exploitable via `GET /api/v1/scans`.
|
| CVE-2026-62236 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-62236)
vulnerability in csrf (CVE-2026-62236). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62232 |
|
Vulnerability in csrf (CVE-2026-62232)
vulnerability in csrf (CVE-2026-62232). Confidential information can be exposed externally.
|
| CVE-2026-62233 |
|
Vulnerability in CVE-2026-62233 (CVE-2026-62233)
vulnerability in CVE-2026-62233 (CVE-2026-62233). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62228 |
|
Authorization Flaw in openclaw (CVE-2026-62228)
vulnerability in openclaw (CVE-2026-62228). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62231 |
|
Authorization Flaw in CVE-2026-62231 (CVE-2026-62231)
vulnerability in CVE-2026-62231 (CVE-2026-62231). Confidential information can be exposed externally. Mitigation: upgrade to `1.0.6` or later.
|
| CVE-2026-62227 |
|
SSRF (Server-Side Request Forgery) in openclaw (CVE-2026-62227)
SSRF in openclaw (CVE-2026-62227). Confidential information can be exposed externally.
|
| CVE-2026-62229 |
|
Path Traversal in openclaw (CVE-2026-62229)
path traversal in openclaw (CVE-2026-62229). Successful exploitation can lead to full system takeover.
|