Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-13228 |
|
Privilege Escalation in wordpress (CVE-2026-13228)
vulnerability in wordpress (CVE-2026-13228). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12142 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12142)
cross-site scripting in wordpress (CVE-2026-12142). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12754 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12754)
cross-site scripting in wordpress (CVE-2026-12754). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13454 |
|
SQL Injection in wordpress (CVE-2026-13454)
SQL injection in wordpress (CVE-2026-13454). Confidential information can be exposed externally.
|
| CVE-2026-10095 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-10095)
cross-site scripting in wordpress (CVE-2026-10095). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13733 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-13733)
cross-site scripting in c (CVE-2026-13733). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12732 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12732)
cross-site scripting in wordpress (CVE-2026-12732). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11570 |
|
Vulnerability in wordpress (CVE-2026-11570)
vulnerability in wordpress (CVE-2026-11570). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11880 |
|
Vulnerability in c (CVE-2026-11880)
vulnerability in c (CVE-2026-11880). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11568 |
|
Vulnerability in wordpress (CVE-2026-11568)
vulnerability in wordpress (CVE-2026-11568). Confidential information can be exposed externally.
|
| CVE-2026-11562 |
|
Vulnerability in wordpress (CVE-2026-11562)
vulnerability in wordpress (CVE-2026-11562). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12435 |
|
Vulnerability in wordpress (CVE-2026-12435)
vulnerability in wordpress (CVE-2026-12435). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11883 |
|
Vulnerability in wordpress (CVE-2026-11883)
vulnerability in wordpress (CVE-2026-11883). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11794 |
|
Vulnerability in wordpress (CVE-2026-11794)
vulnerability in wordpress (CVE-2026-11794). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11887 |
|
Vulnerability in wordpress (CVE-2026-11887)
vulnerability in wordpress (CVE-2026-11887). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-1239 |
|
Vulnerability in wordpress (CVE-2026-1239)
vulnerability in wordpress (CVE-2026-1239). Confidential information can be exposed externally.
|
| CVE-2026-11823 |
|
SQL Injection in wordpress (CVE-2026-11823)
SQL injection in wordpress (CVE-2026-11823). Confidential information can be exposed externally.
|
| CVE-2026-12224 |
|
Privilege Escalation in wordpress (CVE-2026-12224)
vulnerability in wordpress (CVE-2026-12224). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12408 |
|
Information Disclosure in wordpress (CVE-2026-12408)
vulnerability in wordpress (CVE-2026-12408). Risk of unauthorized operations or information disclosure. Exploitable via ``permission_callback``.
|
| CVE-2026-12158 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-12158)
vulnerability in wordpress (CVE-2026-12158). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10096 |
|
Vulnerability in wordpress (CVE-2026-10096)
vulnerability in wordpress (CVE-2026-10096). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11387 |
|
Authentication Bypass in wordpress (CVE-2026-11387)
authentication bypass in wordpress (CVE-2026-11387). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10750 |
|
Vulnerability in wordpress (CVE-2026-10750)
vulnerability in wordpress (CVE-2026-10750). Confidential information can be exposed externally.
|
| CVE-2026-6070 |
|
Vulnerability in wordpress (CVE-2026-6070)
vulnerability in wordpress (CVE-2026-6070). Data can be tampered with by attackers.
|
| CVE-2026-7517 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-7517)
cross-site scripting in wordpress (CVE-2026-7517). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13731 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13731)
cross-site scripting in wordpress (CVE-2026-13731). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9107 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9107)
cross-site scripting in wordpress (CVE-2026-9107). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13015 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13015)
cross-site scripting in wordpress (CVE-2026-13015). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12923 |
|
Vulnerability in wordpress (CVE-2026-12923)
vulnerability in wordpress (CVE-2026-12923). Successful exploitation can lead to full system takeover.
|
| CVE-2026-2387 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2387)
cross-site scripting in wordpress (CVE-2026-2387). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12090 |
|
SQL Injection in wordpress (CVE-2026-12090)
SQL injection in wordpress (CVE-2026-12090). Confidential information can be exposed externally.
|
| CVE-2026-12113 |
|
Vulnerability in wordpress (CVE-2026-12113)
vulnerability in wordpress (CVE-2026-12113). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12110 |
|
SQL Injection in wordpress (CVE-2026-12110)
SQL injection in wordpress (CVE-2026-12110). Confidential information can be exposed externally.
|
| CVE-2026-12135 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12135)
cross-site scripting in wordpress (CVE-2026-12135). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11988 |
|
Vulnerability in wordpress (CVE-2026-11988)
vulnerability in wordpress (CVE-2026-11988). Confidential information can be exposed externally.
|
| CVE-2026-12127 |
|
Vulnerability in wordpress (CVE-2026-12127)
vulnerability in wordpress (CVE-2026-12127). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11380 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11380)
cross-site scripting in wordpress (CVE-2026-11380). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13468 |
|
Vulnerability in wordpress (CVE-2026-13468)
vulnerability in wordpress (CVE-2026-13468). Confidential information can be exposed externally.
|
| CVE-2026-13443 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13443)
cross-site scripting in wordpress (CVE-2026-13443). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11981 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-11981)
vulnerability in wordpress (CVE-2026-11981). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13246 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13246)
cross-site scripting in wordpress (CVE-2026-13246). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12902 |
|
Vulnerability in wordpress (CVE-2026-12902)
vulnerability in wordpress (CVE-2026-12902). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12904 |
|
Vulnerability in wordpress (CVE-2026-12904)
vulnerability in wordpress (CVE-2026-12904). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12133 |
|
Vulnerability in wordpress (CVE-2026-12133)
vulnerability in wordpress (CVE-2026-12133). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57963 |
|
Cross-Site Scripting (XSS) in mozilla (CVE-2026-57963)
cross-site scripting in mozilla (CVE-2026-57963). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57962 |
|
Vulnerability in mozilla (CVE-2026-57962)
vulnerability in mozilla (CVE-2026-57962). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56700 |
|
OS Command Injection in CVE-2026-56700 (CVE-2026-56700)
OS command injection in CVE-2026-56700 (CVE-2026-56700). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.0.0-beta.2` or later.
|
| CVE-2026-56777 |
|
Vulnerability in n8n (CVE-2026-56777)
vulnerability in n8n (CVE-2026-56777). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56377 |
|
Path Traversal in imagemagick (CVE-2026-56377)
path traversal in imagemagick (CVE-2026-56377). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56369 |
|
Vulnerability in imagemagick (CVE-2026-56369)
vulnerability in imagemagick (CVE-2026-56369). Risk of unauthorized operations or information disclosure.
|