Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-57246 Vulnerability in foxit (CVE-2026-57246)
vulnerability in foxit (CVE-2026-57246). Successful exploitation can lead to full system takeover.
CVE-2026-57245 Use-After-Free in foxit (CVE-2026-57245)
vulnerability in foxit (CVE-2026-57245). Successful exploitation can lead to full system takeover.
CVE-2026-57242 Use-After-Free in foxit (CVE-2026-57242)
vulnerability in foxit (CVE-2026-57242). Successful exploitation can lead to full system takeover.
CVE-2026-57247 Use-After-Free in foxit (CVE-2026-57247)
vulnerability in foxit (CVE-2026-57247). Successful exploitation can lead to full system takeover.
CVE-2026-57249 Use-After-Free in foxit (CVE-2026-57249)
vulnerability in foxit (CVE-2026-57249). Successful exploitation can lead to full system takeover.
CVE-2026-57244 Use-After-Free in foxit (CVE-2026-57244)
vulnerability in foxit (CVE-2026-57244). Successful exploitation can lead to full system takeover.
CVE-2026-57238 Use-After-Free in foxit (CVE-2026-57238)
vulnerability in foxit (CVE-2026-57238). Successful exploitation can lead to full system takeover.
CVE-2026-57237 Use-After-Free in foxit (CVE-2026-57237)
vulnerability in foxit (CVE-2026-57237). Successful exploitation can lead to full system takeover.
CVE-2026-57239 Vulnerability in foxit (CVE-2026-57239)
vulnerability in foxit (CVE-2026-57239). Confidential information can be exposed externally.
CVE-2026-57240 Use-After-Free in foxit (CVE-2026-57240)
vulnerability in foxit (CVE-2026-57240). Successful exploitation can lead to full system takeover.
CVE-2026-56001 Vulnerability in x (CVE-2026-56001)
vulnerability in x (CVE-2026-56001). Successful exploitation can lead to full system takeover.
CVE-2026-55999 Vulnerability in xorg (CVE-2026-55999)
vulnerability in xorg (CVE-2026-55999). Successful exploitation can lead to full system takeover.
CVE-2026-56000 Use-After-Free in xorg (CVE-2026-56000)
vulnerability in xorg (CVE-2026-56000). Successful exploitation can lead to full system takeover.
CVE-2026-13128 Use-After-Free in foxit (CVE-2026-13128)
vulnerability in foxit (CVE-2026-13128). Successful exploitation can lead to full system takeover.
CVE-2026-13129 Use-After-Free in foxit (CVE-2026-13129)
vulnerability in foxit (CVE-2026-13129). Successful exploitation can lead to full system takeover.
CVE-2026-13127 Use-After-Free in foxit (CVE-2026-13127)
vulnerability in foxit (CVE-2026-13127). Successful exploitation can lead to full system takeover.
CVE-2026-13126 Use-After-Free in foxit (CVE-2026-13126)
vulnerability in foxit (CVE-2026-13126). Successful exploitation can lead to full system takeover.
CVE-2026-12378 Vulnerability in wordpress (CVE-2026-12378)
vulnerability in wordpress (CVE-2026-12378). Successful exploitation can lead to full system takeover.
CVE-2026-14495 Vulnerability in wordpress (CVE-2026-14495)
vulnerability in wordpress (CVE-2026-14495). Successful exploitation can lead to full system takeover. Exploitable via ``init``.
CVE-2026-57895 Vulnerability in CVE-2026-57895 (CVE-2026-57895)
vulnerability in CVE-2026-57895 (CVE-2026-57895). Successful exploitation can lead to full system takeover.
CVE-2026-56437 Vulnerability in jvn (CVE-2026-56437)
vulnerability in jvn (CVE-2026-56437). Successful exploitation can lead to full system takeover.
CVE-2026-9700 SQL Injection in wordpress (CVE-2026-9700)
SQL injection in wordpress (CVE-2026-9700). Confidential information can be exposed externally.
CVE-2026-14489 Unrestricted File Upload in wordpress (CVE-2026-14489)
vulnerability in wordpress (CVE-2026-14489). Successful exploitation can lead to full system takeover.
CVE-2026-9842 Privilege Escalation in wordpress (CVE-2026-9842)
vulnerability in wordpress (CVE-2026-9842). Data can be tampered with by attackers. Exploitable via ``manage_options``.
CVE-2026-14244 Path Traversal in wordpress (CVE-2026-14244)
path traversal in wordpress (CVE-2026-14244). Confidential information can be exposed externally.
CVE-2026-14158 Unrestricted File Upload in wordpress (CVE-2026-14158)
vulnerability in wordpress (CVE-2026-14158). Successful exploitation can lead to full system takeover.
CVE-2026-14482 Privilege Escalation in wordpress (CVE-2026-14482)
vulnerability in wordpress (CVE-2026-14482). Successful exploitation can lead to full system takeover. Exploitable via ``update_option``.
CVE-2026-60002 Use-After-Free in openbsd (CVE-2026-60002)
vulnerability in openbsd (CVE-2026-60002). Confidential information can be exposed externally.
CVE-2026-59704 Vulnerability in CVE-2026-59704 (CVE-2026-59704)
vulnerability in CVE-2026-59704 (CVE-2026-59704). Confidential information can be exposed externally. Exploitable via `GET /api/video/ai`.
CVE-2026-51937 Vulnerability in CVE-2026-51937 (CVE-2026-51937)
vulnerability in CVE-2026-51937 (CVE-2026-51937). Confidential information can be exposed externally.
CVE-2026-14895 Vulnerability in dos (CVE-2026-14895)
vulnerability in dos (CVE-2026-14895). Risk of unauthorized operations or information disclosure.
CVE-2026-14380 Vulnerability in perl (CVE-2026-14380)
vulnerability in perl (CVE-2026-14380). Successful exploitation can lead to full system takeover.
CVE-2026-55418 Vulnerability in CVE-2026-55418 (CVE-2026-55418)
vulnerability in CVE-2026-55418 (CVE-2026-55418). Confidential information can be exposed externally.
CVE-2026-54607 SSRF (Server-Side Request Forgery) in CVE-2026-54607 (CVE-2026-54607)
SSRF in CVE-2026-54607 (CVE-2026-54607). Confidential information can be exposed externally.
CVE-2026-49033 Vulnerability in CVE-2026-49033 (CVE-2026-49033)
vulnerability in CVE-2026-49033 (CVE-2026-49033). Successful exploitation can lead to full system takeover.
CVE-2026-42958 Use-After-Free in CVE-2026-42958 (CVE-2026-42958)
vulnerability in CVE-2026-42958 (CVE-2026-42958). Successful exploitation can lead to full system takeover.
CVE-2026-59707 SSRF (Server-Side Request Forgery) in CVE-2026-59707 (CVE-2026-59707)
SSRF in CVE-2026-59707 (CVE-2026-59707). Confidential information can be exposed externally. Exploitable via `POST /models/apply`.
CVE-2026-58583 Privilege Escalation in privilege-escalation (CVE-2026-58583)
vulnerability in privilege-escalation (CVE-2026-58583). Confidential information can be exposed externally.
CVE-2026-58469 Out-of-Bounds Read in c (CVE-2026-58469)
vulnerability in c (CVE-2026-58469). Risk of unauthorized operations or information disclosure.
CVE-2026-49471 Vulnerability in serena-agent (CVE-2026-49471)
vulnerability in serena-agent (CVE-2026-49471). Successful exploitation can lead to full system takeover. Exploitable via `Host header`. Mitigation: upgrade to `1.5.2` or later.
CVE-2026-53518 Vulnerability in @better-auth/oauth-provider (CVE-2026-53518)
vulnerability in @better-auth/oauth-provider (CVE-2026-53518). Confidential information can be exposed externally. Exploitable via `POST /oauth2/token`. Mitigation: upgrade to `1.6.11` or later.
CVE-2026-53517 Vulnerability in @better-auth/oauth-provider (CVE-2026-53517)
vulnerability in @better-auth/oauth-provider (CVE-2026-53517). Confidential information can be exposed externally. Exploitable via `POST /oauth2/token`. Mitigation: upgrade to `1.6.11` or later.
CVE-2026-53516 Authentication Bypass in better-auth (CVE-2026-53516)
authentication bypass in better-auth (CVE-2026-53516). Confidential information can be exposed externally. Exploitable via ``next``. Mitigation: upgrade to `1.6.11` or later.
CVE-2026-53514 Authentication Bypass in better-auth (CVE-2026-53514)
authentication bypass in better-auth (CVE-2026-53514). Confidential information can be exposed externally. Exploitable via ``organization``. Mitigation: upgrade to `1.6.11` or later.
CVE-2026-7017 Vulnerability in CVE-2026-7017 (CVE-2026-7017)
vulnerability in CVE-2026-7017 (CVE-2026-7017). Confidential information can be exposed externally. Exploitable via `Authorization header`.
CVE-2026-59708 Vulnerability in CVE-2026-59708 (CVE-2026-59708)
vulnerability in CVE-2026-59708 (CVE-2026-59708). Confidential information can be exposed externally. Exploitable via `GET /api/v1/public/`.
CVE-2026-48957 An improper access check allows unauthorized users to access com_privacy datasets.
An improper access check allows unauthorized users to access com_privacy datasets.
CVE-2026-48958 Vulnerability in joomla (CVE-2026-48958)
vulnerability in joomla (CVE-2026-48958). Successful exploitation can lead to full system takeover.
CVE-2026-48948 Vulnerability in joomla (CVE-2026-48948)
vulnerability in joomla (CVE-2026-48948). Successful exploitation can lead to full system takeover.
CVE-2026-57851 Vulnerability in privilege-escalation (CVE-2026-57851)
vulnerability in privilege-escalation (CVE-2026-57851). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →