Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2025-61309 |
|
Cross-Site Scripting (XSS) in CVE-2025-61309 (CVE-2025-61309)
cross-site scripting in CVE-2025-61309 (CVE-2025-61309). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61310 |
|
Cross-Site Scripting (XSS) in CVE-2025-61310 (CVE-2025-61310)
cross-site scripting in CVE-2025-61310 (CVE-2025-61310). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61311 |
|
Cross-Site Scripting (XSS) in CVE-2025-61311 (CVE-2025-61311)
cross-site scripting in CVE-2025-61311 (CVE-2025-61311). Confidential information can be exposed externally.
|
| CVE-2025-61312 |
|
Cross-Site Scripting (XSS) in CVE-2025-61312 (CVE-2025-61312)
cross-site scripting in CVE-2025-61312 (CVE-2025-61312). Confidential information can be exposed externally.
|
| CVE-2025-61313 |
|
Cross-Site Scripting (XSS) in CVE-2025-61313 (CVE-2025-61313)
cross-site scripting in CVE-2025-61313 (CVE-2025-61313). Confidential information can be exposed externally.
|
| CVE-2025-61314 |
|
Cross-Site Scripting (XSS) in CVE-2025-61314 (CVE-2025-61314)
cross-site scripting in CVE-2025-61314 (CVE-2025-61314). Confidential information can be exposed externally.
|
| CVE-2025-61305 |
|
Cross-Site Scripting (XSS) in CVE-2025-61305 (CVE-2025-61305)
cross-site scripting in CVE-2025-61305 (CVE-2025-61305). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61306 |
|
Cross-Site Scripting (XSS) in CVE-2025-61306 (CVE-2025-61306)
cross-site scripting in CVE-2025-61306 (CVE-2025-61306). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-61307 |
|
Cross-Site Scripting (XSS) in CVE-2025-61307 (CVE-2025-61307)
cross-site scripting in CVE-2025-61307 (CVE-2025-61307). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-10470 |
|
Vulnerability in wso2 (CVE-2025-10470)
vulnerability in wso2 (CVE-2025-10470). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-9973 |
|
Vulnerability in privilege-escalation (CVE-2025-9973)
vulnerability in privilege-escalation (CVE-2025-9973). Confidential information can be exposed externally.
|
| CVE-2026-6909 |
|
Cross-Site Scripting (XSS) in CVE-2026-6909 (CVE-2026-6909)
cross-site scripting in CVE-2026-6909 (CVE-2026-6909). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6956 |
|
Cross-Site Scripting (XSS) in CVE-2026-6956 (CVE-2026-6956)
cross-site scripting in CVE-2026-6956 (CVE-2026-6956). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-26946 |
|
Privilege Escalation in dell (CVE-2026-26946)
vulnerability in dell (CVE-2026-26946). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32658 |
|
Vulnerability in dell (CVE-2026-32658)
vulnerability in dell (CVE-2026-32658). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35157 |
|
Vulnerability in dell (CVE-2026-35157)
vulnerability in dell (CVE-2026-35157). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40636 |
|
Vulnerability in dell (CVE-2026-40636)
vulnerability in dell (CVE-2026-40636). Successful exploitation can lead to full system takeover.
|
| CVE-2025-8325 |
|
Vulnerability in wso2 (CVE-2025-8325)
vulnerability in wso2 (CVE-2025-8325). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-10908 |
|
Authorization Flaw in c (CVE-2025-10908)
vulnerability in c (CVE-2025-10908). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-8154 |
|
Vulnerability in wso2 (CVE-2025-8154)
vulnerability in wso2 (CVE-2025-8154). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-43992 |
|
Vulnerability in dell (CVE-2025-43992)
vulnerability in dell (CVE-2025-43992). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-0391 |
|
Vulnerability in wso2 (CVE-2024-0391)
vulnerability in wso2 (CVE-2024-0391). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43826 |
|
Vulnerability in apache-airflow-providers-opensearch (CVE-2026-43826)
vulnerability in apache-airflow-providers-opensearch (CVE-2026-43826). Confidential information can be exposed externally. Exploitable via ``host``. Mitigation: upgrade to `1.9.1` or later.
|
| CVE-2026-41018 |
|
Vulnerability in apache-airflow-providers-elasticsearch (CVE-2026-41018)
vulnerability in apache-airflow-providers-elasticsearch (CVE-2026-41018). Confidential information can be exposed externally. Exploitable via ``host``. Mitigation: upgrade to `6.5.3` or later.
|
| CVE-2026-43500 |
|
Out-of-Bounds Write in linux (CVE-2026-43500)
out-of-bounds write in linux (CVE-2026-43500). Successful exploitation can lead to full system takeover.
|
| CVE-2026-23918 |
|
Vulnerability in apache (CVE-2026-23918)
vulnerability in apache (CVE-2026-23918). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.4.67` or later.
|
| CVE-2026-6433 |
|
Vulnerability in wordpress (CVE-2026-6433)
vulnerability in wordpress (CVE-2026-6433). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41586 |
|
Unsafe Deserialization in hyperledger-fabric-orderer (CVE-2026-41586)
vulnerability in hyperledger-fabric-orderer (CVE-2026-41586). Successful exploitation can lead to full system takeover. Exploitable via ``Channel.java``. Mitigation: upgrade to `2.5.9` or later.
|
| CVE-2026-8265 |
|
Command Injection in tenda (CVE-2026-8265)
command injection in tenda (CVE-2026-8265). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8264 |
|
Command Injection in tenda (CVE-2026-8264)
command injection in tenda (CVE-2026-8264). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8263 |
|
Command Injection in tenda (CVE-2026-8263)
command injection in tenda (CVE-2026-8263). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8259 |
|
Command Injection in tenda (CVE-2026-8259)
command injection in tenda (CVE-2026-8259). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50970 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50970)
cross-site scripting in wordpress (CVE-2022-50970). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50955 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2022-50955)
vulnerability in wordpress (CVE-2022-50955). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50956 |
|
Path Traversal in wordpress (CVE-2022-50956)
path traversal in wordpress (CVE-2022-50956). Confidential information can be exposed externally.
|
| CVE-2022-50958 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50958)
cross-site scripting in wordpress (CVE-2022-50958). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50959 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50959)
cross-site scripting in wordpress (CVE-2022-50959). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50960 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50960)
cross-site scripting in wordpress (CVE-2022-50960). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50961 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50961)
cross-site scripting in wordpress (CVE-2022-50961). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50957 |
|
Cross-Site Scripting (XSS) in drupal (CVE-2022-50957)
cross-site scripting in drupal (CVE-2022-50957). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50944 |
|
Code Injection in CVE-2022-50944 (CVE-2022-50944)
code injection in CVE-2022-50944 (CVE-2022-50944). Successful exploitation can lead to full system takeover.
|
| CVE-2022-50954 |
|
Vulnerability in wordpress (CVE-2022-50954)
vulnerability in wordpress (CVE-2022-50954). Confidential information can be exposed externally.
|
| CVE-2022-50945 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50945)
cross-site scripting in wordpress (CVE-2022-50945). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50946 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50946)
cross-site scripting in wordpress (CVE-2022-50946). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50947 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50947)
cross-site scripting in wordpress (CVE-2022-50947). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50949 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2022-50949)
cross-site scripting in wordpress (CVE-2022-50949). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-47947 |
|
Cross-Site Scripting (XSS) in CVE-2021-47947 (CVE-2021-47947)
cross-site scripting in CVE-2021-47947 (CVE-2021-47947). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-47950 |
|
Cross-Site Scripting (XSS) in CVE-2021-47950 (CVE-2021-47950)
cross-site scripting in CVE-2021-47950 (CVE-2021-47950). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50943 |
|
Cross-Site Scripting (XSS) in moodle (CVE-2022-50943)
cross-site scripting in moodle (CVE-2022-50943). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-47948 |
|
Vulnerability in wordpress (CVE-2021-47948)
vulnerability in wordpress (CVE-2021-47948). Risk of unauthorized operations or information disclosure.
|