Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-57246 |
|
Vulnerability in foxit (CVE-2026-57246)
vulnerability in foxit (CVE-2026-57246). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57245 |
|
Use-After-Free in foxit (CVE-2026-57245)
vulnerability in foxit (CVE-2026-57245). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57242 |
|
Use-After-Free in foxit (CVE-2026-57242)
vulnerability in foxit (CVE-2026-57242). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57247 |
|
Use-After-Free in foxit (CVE-2026-57247)
vulnerability in foxit (CVE-2026-57247). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57249 |
|
Use-After-Free in foxit (CVE-2026-57249)
vulnerability in foxit (CVE-2026-57249). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57244 |
|
Use-After-Free in foxit (CVE-2026-57244)
vulnerability in foxit (CVE-2026-57244). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57238 |
|
Use-After-Free in foxit (CVE-2026-57238)
vulnerability in foxit (CVE-2026-57238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57237 |
|
Use-After-Free in foxit (CVE-2026-57237)
vulnerability in foxit (CVE-2026-57237). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57239 |
|
Vulnerability in foxit (CVE-2026-57239)
vulnerability in foxit (CVE-2026-57239). Confidential information can be exposed externally.
|
| CVE-2026-57240 |
|
Use-After-Free in foxit (CVE-2026-57240)
vulnerability in foxit (CVE-2026-57240). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56001 |
|
Vulnerability in x (CVE-2026-56001)
vulnerability in x (CVE-2026-56001). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55999 |
|
Vulnerability in xorg (CVE-2026-55999)
vulnerability in xorg (CVE-2026-55999). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56000 |
|
Use-After-Free in xorg (CVE-2026-56000)
vulnerability in xorg (CVE-2026-56000). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13128 |
|
Use-After-Free in foxit (CVE-2026-13128)
vulnerability in foxit (CVE-2026-13128). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13129 |
|
Use-After-Free in foxit (CVE-2026-13129)
vulnerability in foxit (CVE-2026-13129). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13127 |
|
Use-After-Free in foxit (CVE-2026-13127)
vulnerability in foxit (CVE-2026-13127). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13126 |
|
Use-After-Free in foxit (CVE-2026-13126)
vulnerability in foxit (CVE-2026-13126). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12378 |
|
Vulnerability in wordpress (CVE-2026-12378)
vulnerability in wordpress (CVE-2026-12378). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14495 |
|
Vulnerability in wordpress (CVE-2026-14495)
vulnerability in wordpress (CVE-2026-14495). Successful exploitation can lead to full system takeover. Exploitable via ``init``.
|
| CVE-2026-57895 |
|
Vulnerability in CVE-2026-57895 (CVE-2026-57895)
vulnerability in CVE-2026-57895 (CVE-2026-57895). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56437 |
|
Vulnerability in jvn (CVE-2026-56437)
vulnerability in jvn (CVE-2026-56437). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9700 |
|
SQL Injection in wordpress (CVE-2026-9700)
SQL injection in wordpress (CVE-2026-9700). Confidential information can be exposed externally.
|
| CVE-2026-14489 |
|
Unrestricted File Upload in wordpress (CVE-2026-14489)
vulnerability in wordpress (CVE-2026-14489). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9842 |
|
Privilege Escalation in wordpress (CVE-2026-9842)
vulnerability in wordpress (CVE-2026-9842). Data can be tampered with by attackers. Exploitable via ``manage_options``.
|
| CVE-2026-14244 |
|
Path Traversal in wordpress (CVE-2026-14244)
path traversal in wordpress (CVE-2026-14244). Confidential information can be exposed externally.
|
| CVE-2026-14158 |
|
Unrestricted File Upload in wordpress (CVE-2026-14158)
vulnerability in wordpress (CVE-2026-14158). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14482 |
|
Privilege Escalation in wordpress (CVE-2026-14482)
vulnerability in wordpress (CVE-2026-14482). Successful exploitation can lead to full system takeover. Exploitable via ``update_option``.
|
| CVE-2026-60002 |
|
Use-After-Free in openbsd (CVE-2026-60002)
vulnerability in openbsd (CVE-2026-60002). Confidential information can be exposed externally.
|
| CVE-2026-59704 |
|
Vulnerability in CVE-2026-59704 (CVE-2026-59704)
vulnerability in CVE-2026-59704 (CVE-2026-59704). Confidential information can be exposed externally. Exploitable via `GET /api/video/ai`.
|
| CVE-2026-51937 |
|
Vulnerability in CVE-2026-51937 (CVE-2026-51937)
vulnerability in CVE-2026-51937 (CVE-2026-51937). Confidential information can be exposed externally.
|
| CVE-2026-14895 |
|
Vulnerability in dos (CVE-2026-14895)
vulnerability in dos (CVE-2026-14895). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14380 |
|
Vulnerability in perl (CVE-2026-14380)
vulnerability in perl (CVE-2026-14380). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55418 |
|
Vulnerability in CVE-2026-55418 (CVE-2026-55418)
vulnerability in CVE-2026-55418 (CVE-2026-55418). Confidential information can be exposed externally.
|
| CVE-2026-54607 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-54607 (CVE-2026-54607)
SSRF in CVE-2026-54607 (CVE-2026-54607). Confidential information can be exposed externally.
|
| CVE-2026-49033 |
|
Vulnerability in CVE-2026-49033 (CVE-2026-49033)
vulnerability in CVE-2026-49033 (CVE-2026-49033). Successful exploitation can lead to full system takeover.
|
| CVE-2026-42958 |
|
Use-After-Free in CVE-2026-42958 (CVE-2026-42958)
vulnerability in CVE-2026-42958 (CVE-2026-42958). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59707 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-59707 (CVE-2026-59707)
SSRF in CVE-2026-59707 (CVE-2026-59707). Confidential information can be exposed externally. Exploitable via `POST /models/apply`.
|
| CVE-2026-58583 |
|
Privilege Escalation in privilege-escalation (CVE-2026-58583)
vulnerability in privilege-escalation (CVE-2026-58583). Confidential information can be exposed externally.
|
| CVE-2026-58469 |
|
Out-of-Bounds Read in c (CVE-2026-58469)
vulnerability in c (CVE-2026-58469). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49471 |
|
Vulnerability in serena-agent (CVE-2026-49471)
vulnerability in serena-agent (CVE-2026-49471). Successful exploitation can lead to full system takeover. Exploitable via `Host header`. Mitigation: upgrade to `1.5.2` or later.
|
| CVE-2026-53518 |
|
Vulnerability in @better-auth/oauth-provider (CVE-2026-53518)
vulnerability in @better-auth/oauth-provider (CVE-2026-53518). Confidential information can be exposed externally. Exploitable via `POST /oauth2/token`. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-53517 |
|
Vulnerability in @better-auth/oauth-provider (CVE-2026-53517)
vulnerability in @better-auth/oauth-provider (CVE-2026-53517). Confidential information can be exposed externally. Exploitable via `POST /oauth2/token`. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-53516 |
|
Authentication Bypass in better-auth (CVE-2026-53516)
authentication bypass in better-auth (CVE-2026-53516). Confidential information can be exposed externally. Exploitable via ``next``. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-53514 |
|
Authentication Bypass in better-auth (CVE-2026-53514)
authentication bypass in better-auth (CVE-2026-53514). Confidential information can be exposed externally. Exploitable via ``organization``. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-7017 |
|
Vulnerability in CVE-2026-7017 (CVE-2026-7017)
vulnerability in CVE-2026-7017 (CVE-2026-7017). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-59708 |
|
Vulnerability in CVE-2026-59708 (CVE-2026-59708)
vulnerability in CVE-2026-59708 (CVE-2026-59708). Confidential information can be exposed externally. Exploitable via `GET /api/v1/public/`.
|
| CVE-2026-48957 |
|
An improper access check allows unauthorized users to access com_privacy datasets.
An improper access check allows unauthorized users to access com_privacy datasets.
|
| CVE-2026-48958 |
|
Vulnerability in joomla (CVE-2026-48958)
vulnerability in joomla (CVE-2026-48958). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48948 |
|
Vulnerability in joomla (CVE-2026-48948)
vulnerability in joomla (CVE-2026-48948). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57851 |
|
Vulnerability in privilege-escalation (CVE-2026-57851)
vulnerability in privilege-escalation (CVE-2026-57851). Successful exploitation can lead to full system takeover.
|