Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-56624 |
|
Vulnerability in apache (CVE-2026-56624)
vulnerability in apache (CVE-2026-56624). Confidential information can be exposed externally.
|
| CVE-2026-58624 |
|
Vulnerability in apache (CVE-2026-58624)
vulnerability in apache (CVE-2026-58624). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53594 |
|
Path Traversal in laravel (CVE-2026-53594)
path traversal in laravel (CVE-2026-53594). Confidential information can be exposed externally.
|
| CVE-2026-53595 |
|
Vulnerability in laravel (CVE-2026-53595)
vulnerability in laravel (CVE-2026-53595). Confidential information can be exposed externally. Exploitable via `POST /user-setup/{hash}/{invite_sent_at}`.
|
| CVE-2026-53596 |
|
Vulnerability in laravel (CVE-2026-53596)
vulnerability in laravel (CVE-2026-53596). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56452 |
|
Path Traversal in c (CVE-2026-56452)
path traversal in c (CVE-2026-56452). Data can be tampered with by attackers.
|
| CVE-2026-56623 |
|
Path Traversal in apache (CVE-2026-56623)
path traversal in apache (CVE-2026-56623). Confidential information can be exposed externally.
|
| CVE-2026-53591 |
|
Authentication Bypass in laravel (CVE-2026-53591)
authentication bypass in laravel (CVE-2026-53591). Data can be tampered with by attackers. Exploitable via ``last_reply_from``.
|
| CVE-2026-53592 |
|
Vulnerability in laravel (CVE-2026-53592)
vulnerability in laravel (CVE-2026-53592). Risk of unauthorized operations or information disclosure. Exploitable via ``getQueryParam``.
|
| CVE-2026-53593 |
|
Unrestricted File Upload in laravel (CVE-2026-53593)
vulnerability in laravel (CVE-2026-53593). Successful exploitation can lead to full system takeover. Exploitable via `POST /uploads/upload`.
|
| CVE-2026-60026 |
|
Code Injection in CVE-2026-60026 (CVE-2026-60026)
code injection in CVE-2026-60026 (CVE-2026-60026). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48389 |
|
Vulnerability in adobe (CVE-2026-48389)
vulnerability in adobe (CVE-2026-48389). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48812 |
|
Authentication Bypass in laravel (CVE-2026-48812)
authentication bypass in laravel (CVE-2026-48812). Confidential information can be exposed externally. Exploitable via ``token_type``.
|
| CVE-2026-45295 |
|
Vulnerability in laravel (CVE-2026-45295)
vulnerability in laravel (CVE-2026-45295). Risk of unauthorized operations or information disclosure. Exploitable via `GET /thread/read/{conversation_id}/{thread_id}`.
|
| CVE-2026-34239 |
|
Vulnerability in CVE-2026-34239 (CVE-2026-34239)
vulnerability in CVE-2026-34239 (CVE-2026-34239). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64190 |
|
Vulnerability in c (CVE-2026-64190)
vulnerability in c (CVE-2026-64190). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64191 |
|
Out-of-Bounds Read in c (CVE-2026-64191)
vulnerability in c (CVE-2026-64191). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64192 |
|
Vulnerability in linux (CVE-2026-64192)
vulnerability in linux (CVE-2026-64192). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64205 |
|
Vulnerability in linux (CVE-2026-64205)
vulnerability in linux (CVE-2026-64205). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64206 |
|
Vulnerability in linux (CVE-2026-64206)
vulnerability in linux (CVE-2026-64206). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64207 |
|
Vulnerability in linux (CVE-2026-64207)
vulnerability in linux (CVE-2026-64207). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64187 |
|
Vulnerability in c (CVE-2026-64187)
vulnerability in c (CVE-2026-64187). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64188 |
|
Use-After-Free in c (CVE-2026-64188)
vulnerability in c (CVE-2026-64188). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64189 |
|
Vulnerability in c (CVE-2026-64189)
vulnerability in c (CVE-2026-64189). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50743 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-50743)
vulnerability in csrf (CVE-2026-50743). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-35048 |
|
Vulnerability in CVE-2026-35048 (CVE-2026-35048)
vulnerability in CVE-2026-35048 (CVE-2026-35048). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32825 |
|
Vulnerability in rails (CVE-2026-32825)
vulnerability in rails (CVE-2026-32825). Confidential information can be exposed externally.
|
| CVE-2026-32820 |
|
Path Traversal in rails (CVE-2026-32820)
path traversal in rails (CVE-2026-32820). Confidential information can be exposed externally. Exploitable via ``docs``.
|
| CVE-2026-32823 |
|
Cross-Site Request Forgery (CSRF) in rails (CVE-2026-32823)
vulnerability in rails (CVE-2026-32823). Risk of unauthorized operations or information disclosure. Exploitable via ``GET``.
|
| CVE-2026-63102 |
|
Vulnerability in privilege-escalation (CVE-2026-63102)
vulnerability in privilege-escalation (CVE-2026-63102). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-51027 |
|
Information Disclosure in CVE-2026-51027 (CVE-2026-51027)
vulnerability in CVE-2026-51027 (CVE-2026-51027). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28220 |
|
Unsafe Deserialization in wazuh (CVE-2026-28220)
vulnerability in wazuh (CVE-2026-28220). Successful exploitation can lead to full system takeover. Exploitable via ``ALLOWED_CALLABLES_PACKAGES``.
|
| CVE-2026-53405 |
|
Vulnerability in apache (CVE-2026-53405)
vulnerability in apache (CVE-2026-53405). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57308 |
|
SQL Injection in apache (CVE-2026-57308)
SQL injection in apache (CVE-2026-57308). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62418 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-62418)
SSRF in apache (CVE-2026-62418). Confidential information can be exposed externally.
|
| CVE-2026-63071 |
|
Vulnerability in apache (CVE-2026-63071)
vulnerability in apache (CVE-2026-63071). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53421 |
|
Vulnerability in apache (CVE-2026-53421)
vulnerability in apache (CVE-2026-53421). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62183 |
|
Privilege Escalation in apache (CVE-2026-62183)
vulnerability in apache (CVE-2026-62183). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57311 |
|
Unrestricted File Upload in CVE-2026-57311 (CVE-2026-57311)
vulnerability in CVE-2026-57311 (CVE-2026-57311). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16244 |
|
Vulnerability in sqli (CVE-2026-16244)
vulnerability in sqli (CVE-2026-16244). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2445 |
|
Cross-Site Scripting (XSS) in wso2 (CVE-2026-2445)
cross-site scripting in wso2 (CVE-2026-2445). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8825 |
|
Information Disclosure in wordpress (CVE-2026-8825)
vulnerability in wordpress (CVE-2026-8825). Confidential information can be exposed externally.
|
| CVE-2026-9833 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9833)
cross-site scripting in wordpress (CVE-2026-9833). Risk of unauthorized operations or information disclosure. Exploitable via ``edit_pages``.
|
| CVE-2026-12898 |
|
Path Traversal in wordpress (CVE-2026-12898)
path traversal in wordpress (CVE-2026-12898). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12970 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12970)
cross-site scripting in wordpress (CVE-2026-12970). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12972 |
|
Vulnerability in wordpress (CVE-2026-12972)
vulnerability in wordpress (CVE-2026-12972). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12973 |
|
Vulnerability in wordpress (CVE-2026-12973)
vulnerability in wordpress (CVE-2026-12973). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13142 |
|
Privilege Escalation in wordpress (CVE-2026-13142)
vulnerability in wordpress (CVE-2026-13142). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13147 |
|
Vulnerability in wordpress (CVE-2026-13147)
vulnerability in wordpress (CVE-2026-13147). Confidential information can be exposed externally.
|
| CVE-2026-13156 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-13156)
vulnerability in wordpress (CVE-2026-13156). Risk of unauthorized operations or information disclosure.
|