Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-75480 |
|
Authorization Flaw in CVE-2026-75480 (CVE-2026-75480)
vulnerability in CVE-2026-75480 (CVE-2026-75480). Confidential information can be exposed externally.
|
| CVE-2026-75110 |
|
Vulnerability in CVE-2026-75110 (CVE-2026-75110)
vulnerability in CVE-2026-75110 (CVE-2026-75110). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75479 |
|
Vulnerability in CVE-2026-75479 (CVE-2026-75479)
vulnerability in CVE-2026-75479 (CVE-2026-75479). Confidential information can be exposed externally.
|
| CVE-2026-75481 |
|
Privilege Escalation in CVE-2026-75481 (CVE-2026-75481)
vulnerability in CVE-2026-75481 (CVE-2026-75481). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75104 |
|
Path Traversal in CVE-2026-75104 (CVE-2026-75104)
path traversal in CVE-2026-75104 (CVE-2026-75104). Confidential information can be exposed externally.
|
| CVE-2026-75108 |
|
Vulnerability in CVE-2026-75108 (CVE-2026-75108)
vulnerability in CVE-2026-75108 (CVE-2026-75108). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75109 |
|
Vulnerability in CVE-2026-75109 (CVE-2026-75109)
vulnerability in CVE-2026-75109 (CVE-2026-75109). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73560 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-73560 (CVE-2026-73560)
SSRF in CVE-2026-73560 (CVE-2026-73560). Confidential information can be exposed externally.
|
| CVE-2026-71518 |
|
Authorization Flaw in CVE-2026-71518 (CVE-2026-71518)
vulnerability in CVE-2026-71518 (CVE-2026-71518). Confidential information can be exposed externally.
|
| CVE-2026-68765 |
|
Vulnerability in CVE-2026-68765 (CVE-2026-68765)
vulnerability in CVE-2026-68765 (CVE-2026-68765). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67966 |
|
Vulnerability in CVE-2026-67966 (CVE-2026-67966)
vulnerability in CVE-2026-67966 (CVE-2026-67966). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67967 |
|
Vulnerability in CVE-2026-67967 (CVE-2026-67967)
vulnerability in CVE-2026-67967 (CVE-2026-67967). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65976 |
|
Vulnerability in cpp (CVE-2026-65976)
vulnerability in cpp (CVE-2026-65976). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66795 |
|
Vulnerability in privilege-escalation (CVE-2026-66795)
vulnerability in privilege-escalation (CVE-2026-66795). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67926 |
|
Code Injection in CVE-2026-67926 (CVE-2026-67926)
code injection in CVE-2026-67926 (CVE-2026-67926). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67965 |
|
OS Command Injection in CVE-2026-67965 (CVE-2026-67965)
OS command injection in CVE-2026-67965 (CVE-2026-67965). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67925 |
|
Cross-Site Scripting (XSS) in CVE-2026-67925 (CVE-2026-67925)
cross-site scripting in CVE-2026-67925 (CVE-2026-67925). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67917 |
|
SQL Injection in sqli (CVE-2026-67917)
SQL injection in sqli (CVE-2026-67917). Successful exploitation can lead to full system takeover. Exploitable via ``db.sql``.
|
| CVE-2026-64657 |
|
SQL Injection in CVE-2026-64657 (CVE-2026-64657)
SQL injection in CVE-2026-64657 (CVE-2026-64657). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65822 |
|
SQL Injection in CVE-2026-65822 (CVE-2026-65822)
SQL injection in CVE-2026-65822 (CVE-2026-65822). Confidential information can be exposed externally.
|
| CVE-2026-63409 |
|
Out-of-Bounds Read in cpp (CVE-2026-63409)
vulnerability in cpp (CVE-2026-63409). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65832 |
|
Out-of-Bounds Read in cpp (CVE-2026-65832)
vulnerability in cpp (CVE-2026-65832). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65974 |
|
Vulnerability in CVE-2026-65974 (CVE-2026-65974)
vulnerability in CVE-2026-65974 (CVE-2026-65974). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65640 |
|
Unrestricted File Upload in wordpress (CVE-2026-65640)
vulnerability in wordpress (CVE-2026-65640). Successful exploitation can lead to full system takeover. Exploitable via ``upload_files``.
|
| CVE-2026-54356 |
|
Vulnerability in @budibase/server (CVE-2026-54356)
vulnerability in @budibase/server (CVE-2026-54356). Data can be tampered with by attackers. Exploitable via `POST /api/attachments/`.
|
| CVE-2026-54336 |
|
Path Traversal in CVE-2026-54336 (CVE-2026-54336)
path traversal in CVE-2026-54336 (CVE-2026-54336). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44846 |
|
Authorization Flaw in CVE-2026-44846 (CVE-2026-44846)
vulnerability in CVE-2026-44846 (CVE-2026-44846). Confidential information can be exposed externally. Exploitable via `POST /api/v1/users/users/invite/`.
|
| CVE-2026-44845 |
|
Vulnerability in CVE-2026-44845 (CVE-2026-44845)
vulnerability in CVE-2026-44845 (CVE-2026-44845). Confidential information can be exposed externally.
|
| CVE-2026-34399 |
|
Vulnerability in CVE-2026-34399 (CVE-2026-34399)
vulnerability in CVE-2026-34399 (CVE-2026-34399). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34398 |
|
Vulnerability in CVE-2026-34398 (CVE-2026-34398)
vulnerability in CVE-2026-34398 (CVE-2026-34398). Successful exploitation can lead to full system takeover.
|
| CVE-2026-39254 |
|
Vulnerability in CVE-2026-39254 (CVE-2026-39254)
vulnerability in CVE-2026-39254 (CVE-2026-39254). Successful exploitation can lead to full system takeover.
|
| CVE-2026-39255 |
|
Vulnerability in CVE-2026-39255 (CVE-2026-39255)
vulnerability in CVE-2026-39255 (CVE-2026-39255). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40506 |
|
Path Traversal in path-traversal (CVE-2026-40506)
path traversal in path-traversal (CVE-2026-40506). Data can be tampered with by attackers.
|
| CVE-2026-34789 |
|
Code Injection in cpp (CVE-2026-34789)
code injection in cpp (CVE-2026-34789). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19589 |
|
Path Traversal in CVE-2026-19589 (CVE-2026-19589)
path traversal in CVE-2026-19589 (CVE-2026-19589). Data can be tampered with by attackers.
|
| CVE-2026-75013 |
|
Vulnerability in CVE-2026-75013 (CVE-2026-75013)
vulnerability in CVE-2026-75013 (CVE-2026-75013). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75012 |
|
Vulnerability in c (CVE-2026-75012)
vulnerability in c (CVE-2026-75012). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75014 |
|
Vulnerability in sqli (CVE-2026-75014)
vulnerability in sqli (CVE-2026-75014). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71858 |
|
OS Command Injection in CVE-2026-71858 (CVE-2026-71858)
OS command injection in CVE-2026-71858 (CVE-2026-71858). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74234 |
|
Vulnerability in CVE-2026-74234 (CVE-2026-74234)
vulnerability in CVE-2026-74234 (CVE-2026-74234). Confidential information can be exposed externally.
|
| CVE-2026-71553 |
|
Vulnerability in dos (CVE-2026-71553)
vulnerability in dos (CVE-2026-71553). Risk of unauthorized operations or information disclosure. Exploitable via `PATCH /api/v1/article/`.
|
| CVE-2026-70495 |
|
Privilege Escalation in CVE-2026-70495 (CVE-2026-70495)
vulnerability in CVE-2026-70495 (CVE-2026-70495). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67678 |
|
Unrestricted File Upload in CVE-2026-67678 (CVE-2026-67678)
vulnerability in CVE-2026-67678 (CVE-2026-67678). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71472 |
|
OS Command Injection in CVE-2026-71472 (CVE-2026-71472)
OS command injection in CVE-2026-71472 (CVE-2026-71472). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68005 |
|
Vulnerability in dos (CVE-2026-68005)
vulnerability in dos (CVE-2026-68005). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68004 |
|
Vulnerability in cpp (CVE-2026-68004)
vulnerability in cpp (CVE-2026-68004). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71486 |
|
Vulnerability in CVE-2026-71486 (CVE-2026-71486)
vulnerability in CVE-2026-71486 (CVE-2026-71486). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63670 |
|
Cross-Site Scripting (XSS) in CVE-2026-63670 (CVE-2026-63670)
cross-site scripting in CVE-2026-63670 (CVE-2026-63670). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52886 |
|
Path Traversal in CVE-2026-52886 (CVE-2026-52886)
path traversal in CVE-2026-52886 (CVE-2026-52886). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57233 |
|
Path Traversal in CVE-2026-57233 (CVE-2026-57233)
path traversal in CVE-2026-57233 (CVE-2026-57233). Data can be tampered with by attackers.
|