Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-18048 |
|
Vulnerability in wordpress (CVE-2026-18048)
vulnerability in wordpress (CVE-2026-18048). Data can be tampered with by attackers.
|
| CVE-2026-18046 |
|
Authorization Flaw in wordpress (CVE-2026-18046)
vulnerability in wordpress (CVE-2026-18046). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16977 |
|
SQL Injection in wordpress (CVE-2026-16977)
SQL injection in wordpress (CVE-2026-16977). Confidential information can be exposed externally.
|
| CVE-2026-16737 |
|
Vulnerability in wordpress (CVE-2026-16737)
vulnerability in wordpress (CVE-2026-16737). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16253 |
|
Information Disclosure in wordpress (CVE-2026-16253)
vulnerability in wordpress (CVE-2026-16253). Confidential information can be exposed externally.
|
| CVE-2026-15249 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15249)
cross-site scripting in wordpress (CVE-2026-15249). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15388 |
|
Authorization Flaw in wordpress (CVE-2026-15388)
vulnerability in wordpress (CVE-2026-15388). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16066 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16066)
cross-site scripting in wordpress (CVE-2026-16066). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18391 |
|
Unrestricted File Upload in wordpress (CVE-2026-18391)
vulnerability in wordpress (CVE-2026-18391). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14925 |
|
Information Disclosure in wordpress (CVE-2026-14925)
vulnerability in wordpress (CVE-2026-14925). Confidential information can be exposed externally.
|
| CVE-2026-14859 |
|
Vulnerability in wordpress (CVE-2026-14859)
vulnerability in wordpress (CVE-2026-14859). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14858 |
|
Vulnerability in wordpress (CVE-2026-14858)
vulnerability in wordpress (CVE-2026-14858). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14857 |
|
Vulnerability in wordpress (CVE-2026-14857)
vulnerability in wordpress (CVE-2026-14857). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13171 |
|
Vulnerability in wordpress (CVE-2026-13171)
vulnerability in wordpress (CVE-2026-13171). Data can be tampered with by attackers.
|
| CVE-2026-13177 |
|
Vulnerability in wordpress (CVE-2026-13177)
vulnerability in wordpress (CVE-2026-13177). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13613 |
|
SQL Injection in wordpress (CVE-2026-13613)
SQL injection in wordpress (CVE-2026-13613). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13612 |
|
Vulnerability in wordpress (CVE-2026-13612)
vulnerability in wordpress (CVE-2026-13612). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13168 |
|
Information Disclosure in wordpress (CVE-2026-13168)
vulnerability in wordpress (CVE-2026-13168). Confidential information can be exposed externally.
|
| CVE-2026-12976 |
|
Information Disclosure in wordpress (CVE-2026-12976)
vulnerability in wordpress (CVE-2026-12976). Confidential information can be exposed externally.
|
| CVE-2026-15039 |
|
Unrestricted File Upload in wordpress (CVE-2026-15039)
vulnerability in wordpress (CVE-2026-15039). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18961 |
|
Authentication Bypass in wordpress (CVE-2026-18961)
authentication bypass in wordpress (CVE-2026-18961). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73247 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-73247 (CVE-2026-73247)
SSRF in CVE-2026-73247 (CVE-2026-73247). Confidential information can be exposed externally.
|
| CVE-2026-73246 |
|
Information Disclosure in CVE-2026-73246 (CVE-2026-73246)
vulnerability in CVE-2026-73246 (CVE-2026-73246). Confidential information can be exposed externally. Exploitable via `GET /worker`. Mitigation: upgrade to `2.0.0-rc6` or later.
|
| CVE-2026-19560 |
|
Use-After-Free in google (CVE-2026-19560)
vulnerability in google (CVE-2026-19560). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19559 |
|
Use-After-Free in google (CVE-2026-19559)
vulnerability in google (CVE-2026-19559). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19558 |
|
Use-After-Free in google (CVE-2026-19558)
vulnerability in google (CVE-2026-19558). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19557 |
|
Use-After-Free in google (CVE-2026-19557)
vulnerability in google (CVE-2026-19557). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19556 |
|
Use-After-Free in Google chrome (CVE-2026-19556)
vulnerability in Google chrome (CVE-2026-19556). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71290 |
|
Vulnerability in apache (CVE-2026-71290)
vulnerability in apache (CVE-2026-71290). Confidential information can be exposed externally.
|
| CVE-2026-15606 |
|
Vulnerability in wordpress (CVE-2026-15606)
vulnerability in wordpress (CVE-2026-15606). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55676 |
|
Unrestricted File Upload in nginx (CVE-2026-55676)
vulnerability in nginx (CVE-2026-55676). Successful exploitation can lead to full system takeover. Exploitable via `POST /server/php/submit.php`.
|
| CVE-2026-73244 |
|
Path Traversal in spring (CVE-2026-73244)
path traversal in spring (CVE-2026-73244). Risk of unauthorized operations or information disclosure. Exploitable via `POST /listFiles`.
|
| CVE-2026-73243 |
|
SSRF (Server-Side Request Forgery) in spring (CVE-2026-73243)
SSRF in spring (CVE-2026-73243). Risk of unauthorized operations or information disclosure. Exploitable via `GET /addTask`.
|
| CVE-2026-70339 |
|
Vulnerability in microsoft (CVE-2026-70339)
vulnerability in microsoft (CVE-2026-70339). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19091 |
|
Path Traversal in wordpress (CVE-2026-19091)
path traversal in wordpress (CVE-2026-19091). Data can be tampered with by attackers.
|
| CVE-2026-16230 |
|
Vulnerability in wordpress (CVE-2026-16230)
vulnerability in wordpress (CVE-2026-16230). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13457 |
|
Unrestricted File Upload in wordpress (CVE-2026-13457)
vulnerability in wordpress (CVE-2026-13457). Confidential information can be exposed externally.
|
| CVE-2026-18692 |
|
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
|
| CVE-2026-18691 |
|
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
|
| CVE-2026-15426 |
|
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress...
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress...
|
| CVE-2026-61367 |
|
Vulnerability in microsoft (CVE-2026-61367)
vulnerability in microsoft (CVE-2026-61367). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61360 |
|
Vulnerability in microsoft (CVE-2026-61360)
vulnerability in microsoft (CVE-2026-61360). Confidential information can be exposed externally.
|
| CVE-2026-61359 |
|
Vulnerability in microsoft (CVE-2026-61359)
vulnerability in microsoft (CVE-2026-61359). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61357 |
|
Use-After-Free in microsoft (CVE-2026-61357)
vulnerability in microsoft (CVE-2026-61357). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61350 |
|
Vulnerability in microsoft (CVE-2026-61350)
vulnerability in microsoft (CVE-2026-61350). Confidential information can be exposed externally.
|
| CVE-2026-61349 |
|
Vulnerability in microsoft (CVE-2026-61349)
vulnerability in microsoft (CVE-2026-61349). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61347 |
|
Vulnerability in microsoft (CVE-2026-61347)
vulnerability in microsoft (CVE-2026-61347). Confidential information can be exposed externally.
|
| CVE-2026-61346 |
|
Use-After-Free in microsoft (CVE-2026-61346)
vulnerability in microsoft (CVE-2026-61346). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61348 |
|
Use-After-Free in microsoft (CVE-2026-61348)
vulnerability in microsoft (CVE-2026-61348). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61345 |
|
Vulnerability in microsoft (CVE-2026-61345)
vulnerability in microsoft (CVE-2026-61345). Risk of unauthorized operations or information disclosure.
|