Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-57402 |
|
Cross-Site Scripting (XSS) in CVE-2026-57402 (CVE-2026-57402)
cross-site scripting in CVE-2026-57402 (CVE-2026-57402). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57403 |
|
Cross-Site Scripting (XSS) in CVE-2026-57403 (CVE-2026-57403)
cross-site scripting in CVE-2026-57403 (CVE-2026-57403). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57388 |
|
Cross-Site Scripting (XSS) in CVE-2026-57388 (CVE-2026-57388)
cross-site scripting in CVE-2026-57388 (CVE-2026-57388). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57391 |
|
Cross-Site Scripting (XSS) in CVE-2026-57391 (CVE-2026-57391)
cross-site scripting in CVE-2026-57391 (CVE-2026-57391). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57394 |
|
Cross-Site Scripting (XSS) in CVE-2026-57394 (CVE-2026-57394)
cross-site scripting in CVE-2026-57394 (CVE-2026-57394). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57390 |
|
Vulnerability in CVE-2026-57390 (CVE-2026-57390)
vulnerability in CVE-2026-57390 (CVE-2026-57390). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57392 |
|
Vulnerability in CVE-2026-57392 (CVE-2026-57392)
vulnerability in CVE-2026-57392 (CVE-2026-57392). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57389 |
|
Path Traversal in path-traversal (CVE-2026-57389)
path traversal in path-traversal (CVE-2026-57389). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57393 |
|
Vulnerability in CVE-2026-57393 (CVE-2026-57393)
vulnerability in CVE-2026-57393 (CVE-2026-57393). Confidential information can be exposed externally.
|
| CVE-2026-57385 |
|
SQL Injection in sqli (CVE-2026-57385)
SQL injection in sqli (CVE-2026-57385). Confidential information can be exposed externally.
|
| CVE-2026-57379 |
|
Cross-Site Scripting (XSS) in CVE-2026-57379 (CVE-2026-57379)
cross-site scripting in CVE-2026-57379 (CVE-2026-57379). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57380 |
|
Cross-Site Scripting (XSS) in CVE-2026-57380 (CVE-2026-57380)
cross-site scripting in CVE-2026-57380 (CVE-2026-57380). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57381 |
|
Cross-Site Scripting (XSS) in CVE-2026-57381 (CVE-2026-57381)
cross-site scripting in CVE-2026-57381 (CVE-2026-57381). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57382 |
|
Cross-Site Scripting (XSS) in CVE-2026-57382 (CVE-2026-57382)
cross-site scripting in CVE-2026-57382 (CVE-2026-57382). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57383 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-57383)
cross-site scripting in wordpress (CVE-2026-57383). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57387 |
|
Cross-Site Scripting (XSS) in CVE-2026-57387 (CVE-2026-57387)
cross-site scripting in CVE-2026-57387 (CVE-2026-57387). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57368 |
|
Cross-Site Scripting (XSS) in CVE-2026-57368 (CVE-2026-57368)
cross-site scripting in CVE-2026-57368 (CVE-2026-57368). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57369 |
|
Cross-Site Scripting (XSS) in CVE-2026-57369 (CVE-2026-57369)
cross-site scripting in CVE-2026-57369 (CVE-2026-57369). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57376 |
|
Cross-Site Scripting (XSS) in CVE-2026-57376 (CVE-2026-57376)
cross-site scripting in CVE-2026-57376 (CVE-2026-57376). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57375 |
|
Vulnerability in CVE-2026-57375 (CVE-2026-57375)
vulnerability in CVE-2026-57375 (CVE-2026-57375). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57377 |
|
Vulnerability in CVE-2026-57377 (CVE-2026-57377)
vulnerability in CVE-2026-57377 (CVE-2026-57377). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57378 |
|
Vulnerability in CVE-2026-57378 (CVE-2026-57378)
vulnerability in CVE-2026-57378 (CVE-2026-57378). Data can be tampered with by attackers.
|
| CVE-2026-57371 |
|
Unsafe Deserialization in deserialization (CVE-2026-57371)
vulnerability in deserialization (CVE-2026-57371). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57372 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-57372)
SSRF in ssrf (CVE-2026-57372). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49876 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-49876)
SSRF in apache (CVE-2026-49876). Confidential information can be exposed externally.
|
| CVE-2026-57363 |
|
Cross-Site Scripting (XSS) in CVE-2026-57363 (CVE-2026-57363)
cross-site scripting in CVE-2026-57363 (CVE-2026-57363). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57365 |
|
Cross-Site Scripting (XSS) in CVE-2026-57365 (CVE-2026-57365)
cross-site scripting in CVE-2026-57365 (CVE-2026-57365). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-22095 |
|
The network diagnosis endpoint on the web server at port 8090 is vulnerable to command injection.
The network diagnosis endpoint on the web server at port 8090 is vulnerable to command injection.
|
| CVE-2026-22103 |
|
The NPC start endpoint on the web server at port 8090 is vulnerable to command injection.
The NPC start endpoint on the web server at port 8090 is vulnerable to command injection.
|
| CVE-2026-22102 |
|
Vulnerability in dos (CVE-2026-22102)
vulnerability in dos (CVE-2026-22102). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-22097 |
|
Vulnerability in CVE-2026-22097 (CVE-2026-22097)
vulnerability in CVE-2026-22097 (CVE-2026-22097). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-22096 |
|
Vulnerability in CVE-2026-22096 (CVE-2026-22096)
vulnerability in CVE-2026-22096 (CVE-2026-22096). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-22100 |
|
OS Command Injection in CVE-2026-22100 (CVE-2026-22100)
OS command injection in CVE-2026-22100 (CVE-2026-22100). Risk of unauthorized operations or information disclosure. Exploitable via ``ReserveLogin``.
|
| CVE-2026-22098 |
|
Various sensitive information such as passwords and charging card UIDs are written to log files.
Various sensitive information such as passwords and charging card UIDs are written to log files.
|
| CVE-2026-22099 |
|
Authentication Bypass in CVE-2026-22099 (CVE-2026-22099)
authentication bypass in CVE-2026-22099 (CVE-2026-22099). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15557 |
|
Authentication Bypass in CVE-2026-15557 (CVE-2026-15557)
authentication bypass in CVE-2026-15557 (CVE-2026-15557). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-22093 |
|
Vulnerability in CVE-2026-22093 (CVE-2026-22093)
vulnerability in CVE-2026-22093 (CVE-2026-22093). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15548 |
|
Buffer Overflow in CVE-2026-15548 (CVE-2026-15548)
vulnerability in CVE-2026-15548 (CVE-2026-15548). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13014 |
|
Path Traversal in django (CVE-2026-13014)
path traversal in django (CVE-2026-13014). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9571 |
|
Vulnerability in mattermost (CVE-2026-9571)
vulnerability in mattermost (CVE-2026-9571). Confidential information can be exposed externally.
|
| CVE-2026-9597 |
|
Vulnerability in mattermost (CVE-2026-9597)
vulnerability in mattermost (CVE-2026-9597). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15546 |
|
Command Injection in CVE-2026-15546 (CVE-2026-15546)
command injection in CVE-2026-15546 (CVE-2026-15546). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15547 |
|
Command Injection in CVE-2026-15547 (CVE-2026-15547)
command injection in CVE-2026-15547 (CVE-2026-15547). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62143 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-62143)
SSRF in ssrf (CVE-2026-62143). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15545 |
|
Buffer Overflow in CVE-2026-15545 (CVE-2026-15545)
vulnerability in CVE-2026-15545 (CVE-2026-15545). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14453 |
|
Code Injection in CVE-2026-14453 (CVE-2026-14453)
code injection in CVE-2026-14453 (CVE-2026-14453). Confidential information can be exposed externally.
|
| CVE-2026-10106 |
|
Authorization Flaw in mattermost (CVE-2026-10106)
vulnerability in mattermost (CVE-2026-10106). Data can be tampered with by attackers.
|
| CVE-2026-10085 |
|
Vulnerability in mattermost (CVE-2026-10085)
vulnerability in mattermost (CVE-2026-10085). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57830 |
|
The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.
The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.
|
| CVE-2026-57829 |
|
The Joomla extension Helix Ultimate is vulnerable to an unauthenticated stored XSS.
The Joomla extension Helix Ultimate is vulnerable to an unauthenticated stored XSS.
|