Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-57914 |
|
Vulnerability in apache (CVE-2026-57914)
vulnerability in apache (CVE-2026-57914). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-1869 |
|
Vulnerability in wordpress (CVE-2026-1869)
vulnerability in wordpress (CVE-2026-1869). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-10268 |
|
Vulnerability in wordpress (CVE-2025-10268)
vulnerability in wordpress (CVE-2025-10268). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10823 |
|
Vulnerability in wordpress (CVE-2026-10823)
vulnerability in wordpress (CVE-2026-10823). Confidential information can be exposed externally.
|
| CVE-2026-8380 |
|
Vulnerability in wordpress (CVE-2026-8380)
vulnerability in wordpress (CVE-2026-8380). Data can be tampered with by attackers.
|
| CVE-2026-10835 |
|
Vulnerability in wordpress (CVE-2026-10835)
vulnerability in wordpress (CVE-2026-10835). Confidential information can be exposed externally.
|
| CVE-2026-49486 |
|
Vulnerability in apache-airflow-providers-ftp (CVE-2026-49486)
vulnerability in apache-airflow-providers-ftp (CVE-2026-49486). Confidential information can be exposed externally. Exploitable via ``ftplib.FTP_TLS``. Mitigation: upgrade to `3.15.1` or later.
|
| CVE-2026-2053 |
|
SSRF (Server-Side Request Forgery) in wso2 (CVE-2026-2053)
SSRF in wso2 (CVE-2026-2053). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13281 |
|
Vulnerability in Google chrome (CVE-2026-13281)
vulnerability in Google chrome (CVE-2026-13281). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50742 |
|
Cross-Site Scripting (XSS) in revive-adserver (CVE-2026-50742)
cross-site scripting in revive-adserver (CVE-2026-50742). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50745 |
|
Cross-Site Scripting (XSS) in revive-adserver (CVE-2026-50745)
cross-site scripting in revive-adserver (CVE-2026-50745). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50740 |
|
Cross-Site Scripting (XSS) in revive-adserver (CVE-2026-50740)
cross-site scripting in revive-adserver (CVE-2026-50740). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50739 |
|
Vulnerability in revive-adserver (CVE-2026-50739)
vulnerability in revive-adserver (CVE-2026-50739). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13226 |
|
SQL Injection in wordpress (CVE-2026-13226)
SQL injection in wordpress (CVE-2026-13226). Confidential information can be exposed externally.
|
| CVE-2026-13283 |
|
Use-After-Free in google (CVE-2026-13283)
vulnerability in google (CVE-2026-13283). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13282 |
|
Use-After-Free in google (CVE-2026-13282)
vulnerability in google (CVE-2026-13282). Successful exploitation can lead to full system takeover.
|
| CVE-2025-71338 |
|
Vulnerability in path-traversal (CVE-2025-71338)
vulnerability in path-traversal (CVE-2025-71338). Successful exploitation can lead to full system takeover.
|
| CVE-2025-71336 |
|
OS Command Injection in flowiseai (CVE-2025-71336)
OS command injection in flowiseai (CVE-2025-71336). Successful exploitation can lead to full system takeover.
|
| CVE-2025-71334 |
|
Vulnerability in flowiseai (CVE-2025-71334)
vulnerability in flowiseai (CVE-2025-71334). Successful exploitation can lead to full system takeover.
|
| CVE-2025-71335 |
|
Vulnerability in flowiseai (CVE-2025-71335)
vulnerability in flowiseai (CVE-2025-71335). Confidential information can be exposed externally.
|
| CVE-2025-71328 |
|
Vulnerability in flowiseai (CVE-2025-71328)
vulnerability in flowiseai (CVE-2025-71328). Confidential information can be exposed externally.
|
| CVE-2025-71324 |
|
Vulnerability in path-traversal (CVE-2025-71324)
vulnerability in path-traversal (CVE-2025-71324). Confidential information can be exposed externally.
|
| CVE-2025-71327 |
|
Vulnerability in flowiseai (CVE-2025-71327)
vulnerability in flowiseai (CVE-2025-71327). Confidential information can be exposed externally.
|
| CVE-2025-71333 |
|
Vulnerability in path-traversal (CVE-2025-71333)
vulnerability in path-traversal (CVE-2025-71333). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40941 |
|
Vulnerability in cacti (CVE-2026-40941)
vulnerability in cacti (CVE-2026-40941). Data can be tampered with by attackers.
|
| CVE-2026-40084 |
|
Path Traversal in path-traversal (CVE-2026-40084)
path traversal in path-traversal (CVE-2026-40084). Confidential information can be exposed externally.
|
| CVE-2026-40080 |
|
Open Redirect in cacti (CVE-2026-40080)
vulnerability in cacti (CVE-2026-40080). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40082 |
|
Vulnerability in cacti (CVE-2026-40082)
vulnerability in cacti (CVE-2026-40082). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40083 |
|
SQL Injection in sqli (CVE-2026-40083)
SQL injection in sqli (CVE-2026-40083). Successful exploitation can lead to full system takeover.
|
| CVE-2026-37149 |
|
SQL Injection in sqli (CVE-2026-37149)
SQL injection in sqli (CVE-2026-37149). Confidential information can be exposed externally.
|
| CVE-2026-45233 |
|
Path Traversal in path-traversal (CVE-2026-45233)
path traversal in path-traversal (CVE-2026-45233). Data can be tampered with by attackers.
|
| CVE-2026-9717 |
|
OS Command Injection in schneider-electric (CVE-2026-9717)
OS command injection in schneider-electric (CVE-2026-9717). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9650 |
|
Vulnerability in schneider-electric (CVE-2026-9650)
vulnerability in schneider-electric (CVE-2026-9650). Confidential information can be exposed externally.
|
| CVE-2026-9716 |
|
Vulnerability in schneider-electric (CVE-2026-9716)
vulnerability in schneider-electric (CVE-2026-9716). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9651 |
|
Vulnerability in schneider-electric (CVE-2026-9651)
vulnerability in schneider-electric (CVE-2026-9651). Confidential information can be exposed externally.
|
| CVE-2026-9718 |
|
Vulnerability in schneider-electric (CVE-2026-9718)
vulnerability in schneider-electric (CVE-2026-9718). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48945 |
|
Unrestricted File Upload in joomlaworks (CVE-2026-48945)
vulnerability in joomlaworks (CVE-2026-48945). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48946 |
|
Unrestricted File Upload in apache (CVE-2026-48946)
vulnerability in apache (CVE-2026-48946). Risk of unauthorized operations or information disclosure. Exploitable via ``shell.php``.
|
| CVE-2026-48944 |
|
Path Traversal in joomlaworks (CVE-2026-48944)
path traversal in joomlaworks (CVE-2026-48944). Confidential information can be exposed externally. Exploitable via ``configuration.php``.
|
| CVE-2026-54448 |
|
Vulnerability in github.com/aquasecurity/trivy (CVE-2026-54448)
vulnerability in github.com/aquasecurity/trivy (CVE-2026-54448). Risk of unauthorized operations or information disclosure. Exploitable via ``archive.LoadArchiveFiles``. Mitigation: upgrade to `0.71.0` or later.
|
| CVE-2026-55092 |
|
Path Traversal in github.com/aquasecurity/trivy (CVE-2026-55092)
path traversal in github.com/aquasecurity/trivy (CVE-2026-55092). Data can be tampered with by attackers. Exploitable via ``org.opencontainers.image.title``. Mitigation: upgrade to `0.71.1` or later.
|
| CVE-2026-46735 |
|
OS Command Injection in dell (CVE-2026-46735)
OS command injection in dell (CVE-2026-46735). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56053 |
|
Subscriber PHP Object Injection in EventPrime <= 4.3.4.1 versions.
Subscriber PHP Object Injection in EventPrime <= 4.3.4.1 versions.
|
| CVE-2026-46734 |
|
Vulnerability in dell (CVE-2026-46734)
vulnerability in dell (CVE-2026-46734). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46732 |
|
Vulnerability in dell (CVE-2026-46732)
vulnerability in dell (CVE-2026-46732). Successful exploitation can lead to full system takeover.
|
| CVE-2026-46733 |
|
Vulnerability in dell (CVE-2026-46733)
vulnerability in dell (CVE-2026-46733). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41120 |
|
Vulnerability in dell (CVE-2026-41120)
vulnerability in dell (CVE-2026-41120). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49506 |
|
Path Traversal in path-traversal (CVE-2026-49506)
path traversal in path-traversal (CVE-2026-49506). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53262 |
|
Vulnerability in linux (CVE-2026-53262)
vulnerability in linux (CVE-2026-53262). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53276 |
|
Use-After-Free in linux (CVE-2026-53276)
vulnerability in linux (CVE-2026-53276). Successful exploitation can lead to full system takeover.
|