Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-62643 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-62643)
SSRF in ssrf (CVE-2026-62643). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62644 |
|
Vulnerability in roundcube (CVE-2026-62644)
vulnerability in roundcube (CVE-2026-62644). Confidential information can be exposed externally.
|
| CVE-2026-59839 |
|
Path Traversal in path-traversal (CVE-2026-59839)
path traversal in path-traversal (CVE-2026-59839). Data can be tampered with by attackers.
|
| CVE-2026-59840 |
|
Vulnerability in fortinet (CVE-2026-59840)
vulnerability in fortinet (CVE-2026-59840). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59841 |
|
Vulnerability in fortinet (CVE-2026-59841)
vulnerability in fortinet (CVE-2026-59841). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59835 |
|
Vulnerability in fortinet (CVE-2026-59835)
vulnerability in fortinet (CVE-2026-59835). Confidential information can be exposed externally.
|
| CVE-2026-59836 |
|
Vulnerability in fortinet (CVE-2026-59836)
vulnerability in fortinet (CVE-2026-59836). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59837 |
|
Vulnerability in fortinet (CVE-2026-59837)
vulnerability in fortinet (CVE-2026-59837). Successful exploitation can lead to full system takeover.
|
| CVE-2026-52840 |
|
SSRF (Server-Side Request Forgery) in alextselegidis/easyappointments (CVE-2026-52840)
SSRF in alextselegidis/easyappointments (CVE-2026-52840). Risk of unauthorized operations or information disclosure. Exploitable via ``caldav_url``.
|
| CVE-2026-52841 |
|
Vulnerability in alextselegidis/easyappointments (CVE-2026-52841)
vulnerability in alextselegidis/easyappointments (CVE-2026-52841). Risk of unauthorized operations or information disclosure. Exploitable via ``provider_id``.
|
| CVE-2026-23573 |
|
Cross-Site Scripting (XSS) in fortinet (CVE-2026-23573)
cross-site scripting in fortinet (CVE-2026-23573). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11944 |
|
Path Traversal in path-traversal (CVE-2026-11944)
path traversal in path-traversal (CVE-2026-11944). Confidential information can be exposed externally.
|
| CVE-2025-43892 |
|
Vulnerability in fortinet (CVE-2025-43892)
vulnerability in fortinet (CVE-2025-43892). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-53379 |
|
Out-of-Bounds Read in fortinet (CVE-2025-53379)
vulnerability in fortinet (CVE-2025-53379). Confidential information can be exposed externally.
|
| CVE-2025-62675 |
|
Vulnerability in fortinet (CVE-2025-62675)
vulnerability in fortinet (CVE-2025-62675). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-62826 |
|
Vulnerability in fortinet (CVE-2025-62826)
vulnerability in fortinet (CVE-2025-62826). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52837 |
|
Information Disclosure in alextselegidis/easyappointments (CVE-2026-52837)
vulnerability in alextselegidis/easyappointments (CVE-2026-52837). Risk of unauthorized operations or information disclosure. Exploitable via ``appointment_hash``.
|
| CVE-2026-14903 |
|
Path Traversal in path-traversal (CVE-2026-14903)
path traversal in path-traversal (CVE-2026-14903). Confidential information can be exposed externally.
|
| CVE-2026-14902 |
|
Open Redirect in ivanti (CVE-2026-14902)
vulnerability in ivanti (CVE-2026-14902). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62390 |
|
SQL Injection in apache (CVE-2026-62390)
SQL injection in apache (CVE-2026-62390). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62392 |
|
OS Command Injection in apache (CVE-2026-62392)
OS command injection in apache (CVE-2026-62392). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62393 |
|
Vulnerability in apache (CVE-2026-62393)
vulnerability in apache (CVE-2026-62393). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49488 |
|
Path Traversal in apache (CVE-2026-49488)
path traversal in apache (CVE-2026-49488). Confidential information can be exposed externally.
|
| CVE-2026-15718 |
|
Vulnerability in mozilla (CVE-2026-15718)
vulnerability in mozilla (CVE-2026-15718). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15719 |
|
Vulnerability in mozilla (CVE-2026-15719)
vulnerability in mozilla (CVE-2026-15719). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9341 |
|
Vulnerability in wordpress (CVE-2026-9341)
vulnerability in wordpress (CVE-2026-9341). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62422 |
|
Vulnerability in jetbrains (CVE-2026-62422)
vulnerability in jetbrains (CVE-2026-62422). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58319 |
|
Vulnerability in apache (CVE-2026-58319)
vulnerability in apache (CVE-2026-58319). Data can be tampered with by attackers.
|
| CVE-2026-59083 |
|
Vulnerability in apache (CVE-2026-59083)
vulnerability in apache (CVE-2026-59083). Confidential information can be exposed externally.
|
| CVE-2026-59084 |
|
Vulnerability in apache (CVE-2026-59084)
vulnerability in apache (CVE-2026-59084). Confidential information can be exposed externally.
|
| CVE-2026-57898 |
|
Path Traversal in CVE-2026-57898 (CVE-2026-57898)
path traversal in CVE-2026-57898 (CVE-2026-57898). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6851 |
|
Vulnerability in bitdefender (CVE-2026-6851)
vulnerability in bitdefender (CVE-2026-6851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15678 |
|
Cross-Site Scripting (XSS) in CVE-2026-15678 (CVE-2026-15678)
cross-site scripting in CVE-2026-15678 (CVE-2026-15678). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15677 |
|
Vulnerability in CVE-2026-15677 (CVE-2026-15677)
vulnerability in CVE-2026-15677 (CVE-2026-15677). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11563 |
|
Vulnerability in wordpress (CVE-2026-11563)
vulnerability in wordpress (CVE-2026-11563). Data can be tampered with by attackers.
|
| CVE-2026-12583 |
|
Unsafe Deserialization in wordpress (CVE-2026-12583)
vulnerability in wordpress (CVE-2026-12583). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15672 |
|
Vulnerability in sqli (CVE-2026-15672)
vulnerability in sqli (CVE-2026-15672). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15676 |
|
Vulnerability in sqli (CVE-2026-15676)
vulnerability in sqli (CVE-2026-15676). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15675 |
|
Vulnerability in sqli (CVE-2026-15675)
vulnerability in sqli (CVE-2026-15675). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11567 |
|
Vulnerability in wordpress (CVE-2026-11567)
vulnerability in wordpress (CVE-2026-11567). Data can be tampered with by attackers.
|
| CVE-2026-12988 |
|
Vulnerability in c (CVE-2026-12988)
vulnerability in c (CVE-2026-12988). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12511 |
|
Vulnerability in wordpress (CVE-2026-12511)
vulnerability in wordpress (CVE-2026-12511). Confidential information can be exposed externally.
|
| CVE-2025-15665 |
|
Vulnerability in wordpress (CVE-2025-15665)
vulnerability in wordpress (CVE-2025-15665). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7640 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-7640)
cross-site scripting in wordpress (CVE-2026-7640). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11802 |
|
Vulnerability in wordpress (CVE-2026-11802)
vulnerability in wordpress (CVE-2026-11802). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11390 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11390)
cross-site scripting in wordpress (CVE-2026-11390). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44752 |
|
Cross-Site Scripting (XSS) in CVE-2026-44752 (CVE-2026-44752)
cross-site scripting in CVE-2026-44752 (CVE-2026-44752). Confidential information can be exposed externally.
|
| CVE-2026-15409 KEV |
|
[KEV] SSRF (Server-Side Request Forgery) in Sonicwall ssrf (CVE-2026-15409)
SSRF in Sonicwall ssrf (CVE-2026-15409). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-15410 KEV |
|
[KEV] Code Injection in Sonicwall sma6210-firmware (CVE-2026-15410)
code injection in Sonicwall sma6210-firmware (CVE-2026-15410). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-57855 |
|
Vulnerability in CVE-2026-57855 (CVE-2026-57855)
vulnerability in CVE-2026-57855 (CVE-2026-57855). Successful exploitation can lead to full system takeover.
|