Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-14951 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-14951 (CVE-2026-14951)
vulnerability in CVE-2026-14951 (CVE-2026-14951). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14949 |
|
Authorization Flaw in CVE-2026-14949 (CVE-2026-14949)
vulnerability in CVE-2026-14949 (CVE-2026-14949). Data can be tampered with by attackers.
|
| CVE-2026-76569 |
|
Cross-Site Scripting (XSS) in CVE-2026-76569 (CVE-2026-76569)
cross-site scripting in CVE-2026-76569 (CVE-2026-76569). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76565 |
|
Cross-Site Scripting (XSS) in CVE-2026-76565 (CVE-2026-76565)
cross-site scripting in CVE-2026-76565 (CVE-2026-76565). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76564 |
|
Cross-Site Scripting (XSS) in CVE-2026-76564 (CVE-2026-76564)
cross-site scripting in CVE-2026-76564 (CVE-2026-76564). Risk of unauthorized operations or information disclosure. Exploitable via `User-Agent header`.
|
| CVE-2026-75948 |
|
Cross-Site Scripting (XSS) in CVE-2026-75948 (CVE-2026-75948)
cross-site scripting in CVE-2026-75948 (CVE-2026-75948). Risk of unauthorized operations or information disclosure. Exploitable via ``image``.
|
| CVE-2026-14952 |
|
Vulnerability in CVE-2026-14952 (CVE-2026-14952)
vulnerability in CVE-2026-14952 (CVE-2026-14952). Confidential information can be exposed externally.
|
| CVE-2026-14946 |
|
Unrestricted File Upload in CVE-2026-14946 (CVE-2026-14946)
vulnerability in CVE-2026-14946 (CVE-2026-14946). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14163 |
|
Vulnerability in CVE-2026-14163 (CVE-2026-14163)
vulnerability in CVE-2026-14163 (CVE-2026-14163). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75963 |
|
Vulnerability in wordpress (CVE-2026-75963)
vulnerability in wordpress (CVE-2026-75963). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75860 |
|
Privilege Escalation in wordpress (CVE-2026-75860)
vulnerability in wordpress (CVE-2026-75860). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15049 |
|
Unrestricted File Upload in wordpress (CVE-2026-15049)
vulnerability in wordpress (CVE-2026-15049). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19699 |
|
Authorization Flaw in wordpress (CVE-2026-19699)
vulnerability in wordpress (CVE-2026-19699). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17153 |
|
Vulnerability in wordpress (CVE-2026-17153)
vulnerability in wordpress (CVE-2026-17153). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13405 |
|
Code Injection in wordpress (CVE-2026-13405)
code injection in wordpress (CVE-2026-13405). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74992 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-74992)
cross-site scripting in wordpress (CVE-2026-74992). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19697 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19697)
cross-site scripting in wordpress (CVE-2026-19697). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19615 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19615)
cross-site scripting in wordpress (CVE-2026-19615). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76957 |
|
Use-After-Free in CVE-2026-76957 (CVE-2026-76957)
vulnerability in CVE-2026-76957 (CVE-2026-76957). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19582 |
|
Out-of-Bounds Write in CVE-2026-19582 (CVE-2026-19582)
out-of-bounds write in CVE-2026-19582 (CVE-2026-19582). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76800 |
|
Vulnerability in CVE-2026-76800 (CVE-2026-76800)
vulnerability in CVE-2026-76800 (CVE-2026-76800). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76799 |
|
Vulnerability in CVE-2026-76799 (CVE-2026-76799)
vulnerability in CVE-2026-76799 (CVE-2026-76799). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76795 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-76795 (CVE-2026-76795)
SSRF in CVE-2026-76795 (CVE-2026-76795). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76785 |
|
Vulnerability in sqli (CVE-2026-76785)
vulnerability in sqli (CVE-2026-76785). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76783 |
|
Vulnerability in sqli (CVE-2026-76783)
vulnerability in sqli (CVE-2026-76783). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75628 |
|
Open Redirect in CVE-2026-75628 (CVE-2026-75628)
vulnerability in CVE-2026-75628 (CVE-2026-75628). Confidential information can be exposed externally. Exploitable via ``evil.example``.
|
| CVE-2026-76764 |
|
Vulnerability in sqli (CVE-2026-76764)
vulnerability in sqli (CVE-2026-76764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76762 |
|
Vulnerability in sqli (CVE-2026-76762)
vulnerability in sqli (CVE-2026-76762). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8619 |
|
Vulnerability in CVE-2026-8619 (CVE-2026-8619)
vulnerability in CVE-2026-8619 (CVE-2026-8619). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76927 |
|
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76928 |
|
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76923 |
|
Out-of-Bounds Read in dos (CVE-2026-76923)
vulnerability in dos (CVE-2026-76923). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76924 |
|
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76929 |
|
Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76921 |
|
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76922 |
|
Vulnerability in dos (CVE-2026-76922)
vulnerability in dos (CVE-2026-76922). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76920 |
|
3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76917 |
|
Vulnerability in dos (CVE-2026-76917)
vulnerability in dos (CVE-2026-76917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76918 |
|
SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76883 |
|
Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76886 |
|
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76887 |
|
Vulnerability in dos (CVE-2026-76887)
vulnerability in dos (CVE-2026-76887). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76888 |
|
RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76889 |
|
UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76882 |
|
Out-of-Bounds Read in dos (CVE-2026-76882)
vulnerability in dos (CVE-2026-76882). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76881 |
|
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76880 |
|
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76879 |
|
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
|
| CVE-2026-76761 |
|
Command Injection in CVE-2026-76761 (CVE-2026-76761)
command injection in CVE-2026-76761 (CVE-2026-76761). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76760 |
|
Vulnerability in c (CVE-2026-76760)
vulnerability in c (CVE-2026-76760). Risk of unauthorized operations or information disclosure.
|