Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-45734 |
|
Vulnerability in CVE-2026-45734 (CVE-2026-45734)
vulnerability in CVE-2026-45734 (CVE-2026-45734). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45129 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45129 (CVE-2026-45129)
vulnerability in CVE-2026-45129 (CVE-2026-45129). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45128 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45128 (CVE-2026-45128)
vulnerability in CVE-2026-45128 (CVE-2026-45128). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45127 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45127 (CVE-2026-45127)
vulnerability in CVE-2026-45127 (CVE-2026-45127). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45126 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-45126)
vulnerability in csrf (CVE-2026-45126). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45125 |
|
Vulnerability in CVE-2026-45125 (CVE-2026-45125)
vulnerability in CVE-2026-45125 (CVE-2026-45125). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45124 |
|
Vulnerability in CVE-2026-45124 (CVE-2026-45124)
vulnerability in CVE-2026-45124 (CVE-2026-45124). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45123 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-45123 (CVE-2026-45123)
SSRF in CVE-2026-45123 (CVE-2026-45123). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45122 |
|
Authorization Flaw in CVE-2026-45122 (CVE-2026-45122)
vulnerability in CVE-2026-45122 (CVE-2026-45122). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45121 |
|
Authorization Flaw in CVE-2026-45121 (CVE-2026-45121)
vulnerability in CVE-2026-45121 (CVE-2026-45121). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45120 |
|
Vulnerability in CVE-2026-45120 (CVE-2026-45120)
vulnerability in CVE-2026-45120 (CVE-2026-45120). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45119 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45119 (CVE-2026-45119)
vulnerability in CVE-2026-45119 (CVE-2026-45119). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45118 |
|
Vulnerability in CVE-2026-45118 (CVE-2026-45118)
vulnerability in CVE-2026-45118 (CVE-2026-45118). Confidential information can be exposed externally. Exploitable via `Referer header`.
|
| CVE-2026-45117 |
|
Code Injection in CVE-2026-45117 (CVE-2026-45117)
code injection in CVE-2026-45117 (CVE-2026-45117). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45116 |
|
Cross-Site Scripting (XSS) in CVE-2026-45116 (CVE-2026-45116)
cross-site scripting in CVE-2026-45116 (CVE-2026-45116). Confidential information can be exposed externally.
|
| CVE-2026-45115 |
|
Cross-Site Scripting (XSS) in CVE-2026-45115 (CVE-2026-45115)
cross-site scripting in CVE-2026-45115 (CVE-2026-45115). Confidential information can be exposed externally.
|
| CVE-2026-74012 |
|
Editor PHP Object Injection in TaxoPress <= 3.51.0 versions.
Editor PHP Object Injection in TaxoPress <= 3.51.0 versions.
|
| CVE-2026-75872 |
|
Vulnerability in c (CVE-2026-75872)
vulnerability in c (CVE-2026-75872). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71539 |
|
Vulnerability in CVE-2026-71539 (CVE-2026-71539)
vulnerability in CVE-2026-71539 (CVE-2026-71539). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73376 |
|
Unauthenticated PHP Object Injection in Ultimate Maps by Supsystic < 1.5.0 versions.
Unauthenticated PHP Object Injection in Ultimate Maps by Supsystic < 1.5.0 versions.
|
| CVE-2026-73380 |
|
Unauthenticated PHP Object Injection in Popup by Supsystic <= 1.13.0 versions.
Unauthenticated PHP Object Injection in Popup by Supsystic <= 1.13.0 versions.
|
| CVE-2026-73366 |
|
Unauthenticated PHP Object Injection in Easy Google Maps <= 1.13.0 versions.
Unauthenticated PHP Object Injection in Easy Google Maps <= 1.13.0 versions.
|
| CVE-2026-73341 |
|
Unauthenticated PHP Object Injection in RegistrationMagic <= 6.0.9.7 versions.
Unauthenticated PHP Object Injection in RegistrationMagic <= 6.0.9.7 versions.
|
| CVE-2026-66046 |
|
Vulnerability in c (CVE-2026-66046)
vulnerability in c (CVE-2026-66046). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-32470 |
|
Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions.
Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions.
|
| CVE-2026-66620 |
|
Editor PHP Object Injection in OptionTree <= 2.7.3 versions.
Editor PHP Object Injection in OptionTree <= 2.7.3 versions.
|
| CVE-2026-32465 |
|
Customer PHP Object Injection in Essential Real Estate <= 5.3.3 versions.
Customer PHP Object Injection in Essential Real Estate <= 5.3.3 versions.
|
| CVE-2026-75778 |
|
Vulnerability in sqli (CVE-2026-75778)
vulnerability in sqli (CVE-2026-75778). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74984 |
|
Vulnerability in mozilla (CVE-2026-74984)
vulnerability in mozilla (CVE-2026-74984). Confidential information can be exposed externally.
|
| CVE-2026-74976 |
|
Vulnerability in mozilla (CVE-2026-74976)
vulnerability in mozilla (CVE-2026-74976). Confidential information can be exposed externally.
|
| CVE-2026-74938 |
|
Vulnerability in mozilla (CVE-2026-74938)
vulnerability in mozilla (CVE-2026-74938). Confidential information can be exposed externally.
|
| CVE-2026-74937 |
|
Use-After-Free in mozilla (CVE-2026-74937)
vulnerability in mozilla (CVE-2026-74937). Successful exploitation can lead to full system takeover.
|
| CVE-2026-74936 |
|
Use-After-Free in mozilla (CVE-2026-74936)
vulnerability in mozilla (CVE-2026-74936). Successful exploitation can lead to full system takeover.
|
| CVE-2026-23935 |
|
Out-of-Bounds Read in CVE-2026-23935 (CVE-2026-23935)
vulnerability in CVE-2026-23935 (CVE-2026-23935). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-23938 |
|
Vulnerability in dos (CVE-2026-23938)
vulnerability in dos (CVE-2026-23938). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68939 |
|
OS Command Injection in CVE-2026-68939 (CVE-2026-68939)
OS command injection in CVE-2026-68939 (CVE-2026-68939). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75851 |
|
Privilege Escalation in CVE-2026-75851 (CVE-2026-75851)
vulnerability in CVE-2026-75851 (CVE-2026-75851). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `26.8.1` or later.
|
| CVE-2026-75843 |
|
Privilege Escalation in CVE-2026-75843 (CVE-2026-75843)
vulnerability in CVE-2026-75843 (CVE-2026-75843). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75852 |
|
Vulnerability in c (CVE-2026-75852)
vulnerability in c (CVE-2026-75852). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75831 |
|
Cross-Site Scripting (XSS) in CVE-2026-75831 (CVE-2026-75831)
cross-site scripting in CVE-2026-75831 (CVE-2026-75831). Confidential information can be exposed externally.
|
| CVE-2026-75840 |
|
Vulnerability in CVE-2026-75840 (CVE-2026-75840)
vulnerability in CVE-2026-75840 (CVE-2026-75840). Confidential information can be exposed externally.
|
| CVE-2026-75827 |
|
Code Injection in CVE-2026-75827 (CVE-2026-75827)
code injection in CVE-2026-75827 (CVE-2026-75827). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75835 |
|
Vulnerability in CVE-2026-75835 (CVE-2026-75835)
vulnerability in CVE-2026-75835 (CVE-2026-75835). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75834 |
|
Cross-Site Scripting (XSS) in CVE-2026-75834 (CVE-2026-75834)
cross-site scripting in CVE-2026-75834 (CVE-2026-75834). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75107 |
|
Cross-Site Scripting (XSS) in CVE-2026-75107 (CVE-2026-75107)
cross-site scripting in CVE-2026-75107 (CVE-2026-75107). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74907 |
|
Path Traversal in path-traversal (CVE-2026-74907)
path traversal in path-traversal (CVE-2026-74907). Confidential information can be exposed externally.
|
| CVE-2026-74902 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-74902)
cross-site scripting in c (CVE-2026-74902). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15371 |
|
Vulnerability in CVE-2026-15371 (CVE-2026-15371)
vulnerability in CVE-2026-15371 (CVE-2026-15371). Confidential information can be exposed externally.
|
| CVE-2026-75090 |
|
Buffer Overflow in c (CVE-2026-75090)
vulnerability in c (CVE-2026-75090). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75088 |
|
Vulnerability in sqli (CVE-2026-75088)
vulnerability in sqli (CVE-2026-75088). Risk of unauthorized operations or information disclosure.
|