Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-15602 |
|
SQL Injection in wordpress (CVE-2026-15602)
SQL injection in wordpress (CVE-2026-15602). Confidential information can be exposed externally.
|
| CVE-2026-15066 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15066)
cross-site scripting in wordpress (CVE-2026-15066). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13358 |
|
Vulnerability in wordpress (CVE-2026-13358)
vulnerability in wordpress (CVE-2026-13358). Confidential information can be exposed externally.
|
| CVE-2026-12905 |
|
Vulnerability in wordpress (CVE-2026-12905)
vulnerability in wordpress (CVE-2026-12905). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15002 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15002)
cross-site scripting in wordpress (CVE-2026-15002). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14524 |
|
Path Traversal in wordpress (CVE-2026-14524)
path traversal in wordpress (CVE-2026-14524). Data can be tampered with by attackers.
|
| CVE-2026-13167 |
|
Vulnerability in wordpress (CVE-2026-13167)
vulnerability in wordpress (CVE-2026-13167). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15009 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15009)
cross-site scripting in wordpress (CVE-2026-15009). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14498 |
|
Unrestricted File Upload in wordpress (CVE-2026-14498)
vulnerability in wordpress (CVE-2026-14498). Successful exploitation can lead to full system takeover.
|
| CVE-2025-10005 |
|
Vulnerability in wordpress (CVE-2025-10005)
vulnerability in wordpress (CVE-2025-10005). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11780 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11780)
cross-site scripting in wordpress (CVE-2026-11780). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12477 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12477)
cross-site scripting in wordpress (CVE-2026-12477). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2487 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2487)
cross-site scripting in wordpress (CVE-2026-2487). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19930 |
|
Vulnerability in CVE-2026-19930 (CVE-2026-19930)
vulnerability in CVE-2026-19930 (CVE-2026-19930). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19927 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-19927 (CVE-2026-19927)
SSRF in CVE-2026-19927 (CVE-2026-19927). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19929 |
|
Vulnerability in CVE-2026-19929 (CVE-2026-19929)
vulnerability in CVE-2026-19929 (CVE-2026-19929). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19928 |
|
Vulnerability in CVE-2026-19928 (CVE-2026-19928)
vulnerability in CVE-2026-19928 (CVE-2026-19928). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19926 |
|
Vulnerability in sqli (CVE-2026-19926)
vulnerability in sqli (CVE-2026-19926). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19925 |
|
Vulnerability in sqli (CVE-2026-19925)
vulnerability in sqli (CVE-2026-19925). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19924 |
|
Authentication Bypass in CVE-2026-19924 (CVE-2026-19924)
authentication bypass in CVE-2026-19924 (CVE-2026-19924). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19923 |
|
Vulnerability in sqli (CVE-2026-19923)
vulnerability in sqli (CVE-2026-19923). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19922 |
|
Cross-Site Scripting (XSS) in CVE-2026-19922 (CVE-2026-19922)
cross-site scripting in CVE-2026-19922 (CVE-2026-19922). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19919 |
|
Vulnerability in sqli (CVE-2026-19919)
vulnerability in sqli (CVE-2026-19919). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19917 |
|
Vulnerability in c (CVE-2026-19917)
vulnerability in c (CVE-2026-19917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19921 |
|
Vulnerability in sqli (CVE-2026-19921)
vulnerability in sqli (CVE-2026-19921). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19920 |
|
Vulnerability in sqli (CVE-2026-19920)
vulnerability in sqli (CVE-2026-19920). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19918 |
|
Vulnerability in CVE-2026-19918 (CVE-2026-19918)
vulnerability in CVE-2026-19918 (CVE-2026-19918). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74767 |
|
Unrestricted File Upload in CVE-2026-74767 (CVE-2026-74767)
vulnerability in CVE-2026-74767 (CVE-2026-74767). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74764 |
|
Path Traversal in path-traversal (CVE-2026-74764)
path traversal in path-traversal (CVE-2026-74764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73055 |
|
Vulnerability in CVE-2026-73055 (CVE-2026-73055)
vulnerability in CVE-2026-73055 (CVE-2026-73055). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73054 |
|
Authentication Bypass in CVE-2026-73054 (CVE-2026-73054)
authentication bypass in CVE-2026-73054 (CVE-2026-73054). Confidential information can be exposed externally.
|
| CVE-2026-73053 |
|
Cross-Site Scripting (XSS) in CVE-2026-73053 (CVE-2026-73053)
cross-site scripting in CVE-2026-73053 (CVE-2026-73053). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73052 |
|
Cross-Site Scripting (XSS) in CVE-2026-73052 (CVE-2026-73052)
cross-site scripting in CVE-2026-73052 (CVE-2026-73052). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73050 |
|
Cross-Site Scripting (XSS) in CVE-2026-73050 (CVE-2026-73050)
cross-site scripting in CVE-2026-73050 (CVE-2026-73050). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73047 |
|
Information Disclosure in CVE-2026-73047 (CVE-2026-73047)
vulnerability in CVE-2026-73047 (CVE-2026-73047). Confidential information can be exposed externally. Mitigation: upgrade to `3.7.4` or later.
|
| CVE-2026-73046 |
|
Vulnerability in CVE-2026-73046 (CVE-2026-73046)
vulnerability in CVE-2026-73046 (CVE-2026-73046). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73045 |
|
Vulnerability in CVE-2026-73045 (CVE-2026-73045)
vulnerability in CVE-2026-73045 (CVE-2026-73045). Confidential information can be exposed externally.
|
| CVE-2026-73044 |
|
Cross-Site Scripting (XSS) in CVE-2026-73044 (CVE-2026-73044)
cross-site scripting in CVE-2026-73044 (CVE-2026-73044). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73043 |
|
Cross-Site Scripting (XSS) in CVE-2026-73043 (CVE-2026-73043)
cross-site scripting in CVE-2026-73043 (CVE-2026-73043). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73042 |
|
Cross-Site Scripting (XSS) in CVE-2026-73042 (CVE-2026-73042)
cross-site scripting in CVE-2026-73042 (CVE-2026-73042). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73041 |
|
Cross-Site Scripting (XSS) in CVE-2026-73041 (CVE-2026-73041)
cross-site scripting in CVE-2026-73041 (CVE-2026-73041). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19916 |
|
Cross-Site Scripting (XSS) in CVE-2026-19916 (CVE-2026-19916)
cross-site scripting in CVE-2026-19916 (CVE-2026-19916). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19906 |
|
Vulnerability in CVE-2026-19906 (CVE-2026-19906)
vulnerability in CVE-2026-19906 (CVE-2026-19906). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19905 |
|
A weakness has been identified in Jinher OA 1.0. Impacted is an unknown function of the file /C6...
A weakness has been identified in Jinher OA 1.0. Impacted is an unknown function of the file /C6...
|
| CVE-2026-18855 |
|
Path Traversal in wordpress (CVE-2026-18855)
path traversal in wordpress (CVE-2026-18855). Data can be tampered with by attackers.
|
| CVE-2026-19903 |
|
Vulnerability in CVE-2026-19903 (CVE-2026-19903)
vulnerability in CVE-2026-19903 (CVE-2026-19903). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19900 |
|
Vulnerability in CVE-2026-19900 (CVE-2026-19900)
vulnerability in CVE-2026-19900 (CVE-2026-19900). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19901 |
|
Vulnerability in CVE-2026-19901 (CVE-2026-19901)
vulnerability in CVE-2026-19901 (CVE-2026-19901). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19598 |
|
Authorization Flaw in wordpress (CVE-2026-19598)
vulnerability in wordpress (CVE-2026-19598). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19904 |
|
Cross-Site Scripting (XSS) in CVE-2026-19904 (CVE-2026-19904)
cross-site scripting in CVE-2026-19904 (CVE-2026-19904). Risk of unauthorized operations or information disclosure.
|