Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: languages Tag: cwe-73 Clear
ID Title
CVE-2026-12513 Vulnerability in wordpress (CVE-2026-12513)
vulnerability in wordpress (CVE-2026-12513). Data can be tampered with by attackers.
CVE-2026-55609 Vulnerability in consciousness-explorer (CVE-2026-55609)
vulnerability in consciousness-explorer (CVE-2026-55609). Data can be tampered with by attackers. Exploitable via ``export_state``. Mitigation: upgrade to `1.1.2` or later.
CVE-2026-78675 GitPython before 3.1.59 fails to disable merge_includes when parsing .gitmodules, allowing...
GitPython before 3.1.59 fails to disable merge_includes when parsing .gitmodules, allowing...
CVE-2026-56705 Vulnerability in CVE-2026-56705 (CVE-2026-56705)
vulnerability in CVE-2026-56705 (CVE-2026-56705). Successful exploitation can lead to full system takeover.
CVE-2026-34967 Vulnerability in path-traversal (CVE-2026-34967)
vulnerability in path-traversal (CVE-2026-34967). Risk of unauthorized operations or information disclosure.
CVE-2026-78208 exceljs-hardened before 5.0.0 contains a path traversal vulnerability in the Workbook.addImage()...
exceljs-hardened before 5.0.0 contains a path traversal vulnerability in the Workbook.addImage()...
CVE-2026-64679 Path Traversal in github.com/runatlantis/atlantis (CVE-2026-64679)
path traversal in github.com/runatlantis/atlantis (CVE-2026-64679). Data can be tampered with by attackers. Exploitable via ``workspace``. Mitigation: upgrade to `0.45.0` or later.
CVE-2026-76210 Vulnerability in CVE-2026-76210 (CVE-2026-76210)
vulnerability in CVE-2026-76210 (CVE-2026-76210). Confidential information can be exposed externally.
CVE-2026-52875 Path Traversal in CVE-2026-52875 (CVE-2026-52875)
path traversal in CVE-2026-52875 (CVE-2026-52875). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.6.0` or later.
CVE-2026-52872 Path Traversal in CVE-2026-52872 (CVE-2026-52872)
path traversal in CVE-2026-52872 (CVE-2026-52872). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.5.0` or later.
CVE-2026-48798 Path Traversal in SSH.NET (CVE-2026-48798)
path traversal in SSH.NET (CVE-2026-48798). Data can be tampered with by attackers. Exploitable via ``ScpException``. Mitigation: upgrade to `2026.0.0` or later.
CVE-2026-72742 DSPy 3.3.0b1 contains a file exfiltration vulnerability in the Image and Audio output field...
DSPy 3.3.0b1 contains a file exfiltration vulnerability in the Image and Audio output field...
CVE-2026-19353 Vulnerability in CVE-2026-19353 (CVE-2026-19353)
vulnerability in CVE-2026-19353 (CVE-2026-19353). Risk of unauthorized operations or information disclosure.
CVE-2026-56452 Path Traversal in c (CVE-2026-56452)
path traversal in c (CVE-2026-56452). Data can be tampered with by attackers.
CVE-2026-58484 Path Traversal in network-ai (CVE-2026-58484)
path traversal in network-ai (CVE-2026-58484). Data can be tampered with by attackers. Exploitable via ``path``. Mitigation: upgrade to `5.12.2` or later.
CVE-2026-15921 Path Traversal in CVE-2026-15921 (CVE-2026-15921)
path traversal in CVE-2026-15921 (CVE-2026-15921). Risk of unauthorized operations or information disclosure. Exploitable via ``index.tab``.
CVE-2026-61873 Vulnerability in path-traversal (CVE-2026-61873)
vulnerability in path-traversal (CVE-2026-61873). Data can be tampered with by attackers.
CVE-2026-57898 Path Traversal in CVE-2026-57898 (CVE-2026-57898)
path traversal in CVE-2026-57898 (CVE-2026-57898). Successful exploitation can lead to full system takeover.
CVE-2026-61462 Vulnerability in path-traversal (CVE-2026-61462)
vulnerability in path-traversal (CVE-2026-61462). Confidential information can be exposed externally.
CVE-2026-13014 Path Traversal in django (CVE-2026-13014)
path traversal in django (CVE-2026-13014). Risk of unauthorized operations or information disclosure.
CVE-2026-15540 Vulnerability in CVE-2026-15540 (CVE-2026-15540)
vulnerability in CVE-2026-15540 (CVE-2026-15540). Risk of unauthorized operations or information disclosure.
CVE-2026-14480 Vulnerability in cisa (CVE-2026-14480)
vulnerability in cisa (CVE-2026-14480). Successful exploitation can lead to full system takeover.
CVE-2026-6101 Vulnerability in wordpress (CVE-2026-6101)
vulnerability in wordpress (CVE-2026-6101). Successful exploitation can lead to full system takeover.
CVE-2026-6070 Vulnerability in wordpress (CVE-2026-6070)
vulnerability in wordpress (CVE-2026-6070). Data can be tampered with by attackers.
CVE-2026-8095 Vulnerability in wordpress (CVE-2026-8095)
vulnerability in wordpress (CVE-2026-8095). Data can be tampered with by attackers.
CVE-2026-49358 Vulnerability in pontedilana/php-weasyprint (CVE-2026-49358)
vulnerability in pontedilana/php-weasyprint (CVE-2026-49358). Risk of unauthorized operations or information disclosure. Exploitable via ``realpath``. Mitigation: upgrade to `2.6.0` or later.
CVE-2026-8118 Vulnerability in wordpress (CVE-2026-8118)
vulnerability in wordpress (CVE-2026-8118). Confidential information can be exposed externally.
CVE-2026-53632 Vulnerability in launch-editor (CVE-2026-53632)
vulnerability in launch-editor (CVE-2026-53632). Risk of unauthorized operations or information disclosure. Exploitable via ``smbserver.py``. Mitigation: upgrade to `2.14.1` or later.
CVE-2026-46397 Path Traversal in CVE-2026-46397 (CVE-2026-46397)
path traversal in CVE-2026-46397 (CVE-2026-46397). Confidential information can be exposed externally.
CVE-2026-46399 Vulnerability in CVE-2026-46399 (CVE-2026-46399)
vulnerability in CVE-2026-46399 (CVE-2026-46399). Risk of unauthorized operations or information disclosure.
CVE-2026-40605 Path Traversal in path-traversal (CVE-2026-40605)
path traversal in path-traversal (CVE-2026-40605). Risk of unauthorized operations or information disclosure.
CVE-2026-10694 Vulnerability in CVE-2026-10694 (CVE-2026-10694)
vulnerability in CVE-2026-10694 (CVE-2026-10694). Risk of unauthorized operations or information disclosure.
CVE-2026-10558 Vulnerability in CVE-2026-10558 (CVE-2026-10558)
vulnerability in CVE-2026-10558 (CVE-2026-10558). Risk of unauthorized operations or information disclosure.
CVE-2026-10559 Vulnerability in CVE-2026-10559 (CVE-2026-10559)
vulnerability in CVE-2026-10559 (CVE-2026-10559). Risk of unauthorized operations or information disclosure.
CVE-2026-47425 Path Traversal in rattler (CVE-2026-47425)
path traversal in rattler (CVE-2026-47425). Risk of unauthorized operations or information disclosure. Exploitable via ``rattler_conda_types``. Mitigation: upgrade to `0.43.2` or later.
CVE-2026-9559 Path Traversal in mautic/core (CVE-2026-9559)
path traversal in mautic/core (CVE-2026-9559). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `7.1.2` or later.
CVE-2026-29962 Vulnerability in path-traversal (CVE-2026-29962)
vulnerability in path-traversal (CVE-2026-29962). Confidential information can be exposed externally.
CVE-2026-45139 Vulnerability in ci4-cms-erp/ci4ms (CVE-2026-45139)
vulnerability in ci4-cms-erp/ci4ms (CVE-2026-45139). Data can be tampered with by attackers. Exploitable via ``saveFile``. Mitigation: upgrade to `0.31.9.0` or later.
CVE-2026-46383 Path Traversal in apm-cli (CVE-2026-46383)
path traversal in apm-cli (CVE-2026-46383). Data can be tampered with by attackers. Exploitable via ``main``. Mitigation: upgrade to `0.13.0` or later.
CVE-2026-41693 Path Traversal in i18next-fs-backend (CVE-2026-41693)
path traversal in i18next-fs-backend (CVE-2026-41693). Confidential information can be exposed externally. Exploitable via ``lng``. Mitigation: upgrade to `2.6.4` or later.
CVE-2026-35174 Path Traversal in path-traversal (CVE-2026-35174)
path traversal in path-traversal (CVE-2026-35174). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2026.01` or later.
CVE-2025-68428 Vulnerability in path-traversal (CVE-2025-68428)
vulnerability in path-traversal (CVE-2025-68428). Confidential information can be exposed externally. Exploitable via ``addImage``.
CVE-2025-1686 Vulnerability in pebbletemplates (CVE-2025-1686)
vulnerability in pebbletemplates (CVE-2025-1686). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →