Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-66611 Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.
Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.
CVE-2026-66615 Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.
CVE-2026-66607 Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.
Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.
CVE-2026-66604 Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.
Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.
CVE-2026-66594 Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.
Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.
CVE-2026-66606 Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.
Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.
CVE-2026-66597 Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.
Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.
CVE-2026-66598 Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.
Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.
CVE-2026-66582 Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.
Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.
CVE-2026-66581 Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.
CVE-2026-66590 Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.
CVE-2026-28150 Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.
Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.
CVE-2025-15637 Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.
Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.
CVE-2026-73198 A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
CVE-2026-73197 A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
CVE-2026-13097 Vulnerability in privilege-escalation (CVE-2026-13097)
vulnerability in privilege-escalation (CVE-2026-13097). Confidential information can be exposed externally.
CVE-2026-18917 A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow...
A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow...
CVE-2026-14951 Cross-Site Request Forgery (CSRF) in CVE-2026-14951 (CVE-2026-14951)
vulnerability in CVE-2026-14951 (CVE-2026-14951). Successful exploitation can lead to full system takeover.
CVE-2026-14952 Vulnerability in CVE-2026-14952 (CVE-2026-14952)
vulnerability in CVE-2026-14952 (CVE-2026-14952). Confidential information can be exposed externally.
CVE-2026-14946 Unrestricted File Upload in CVE-2026-14946 (CVE-2026-14946)
vulnerability in CVE-2026-14946 (CVE-2026-14946). Successful exploitation can lead to full system takeover.
CVE-2026-14947 Vulnerability in path-traversal (CVE-2026-14947)
vulnerability in path-traversal (CVE-2026-14947). Successful exploitation can lead to full system takeover.
CVE-2026-14948 Vulnerability in CVE-2026-14948 (CVE-2026-14948)
vulnerability in CVE-2026-14948 (CVE-2026-14948). Successful exploitation can lead to full system takeover.
CVE-2026-75963 Vulnerability in wordpress (CVE-2026-75963)
vulnerability in wordpress (CVE-2026-75963). Successful exploitation can lead to full system takeover.
CVE-2026-15049 Unrestricted File Upload in wordpress (CVE-2026-15049)
vulnerability in wordpress (CVE-2026-15049). Successful exploitation can lead to full system takeover.
CVE-2026-76795 SSRF (Server-Side Request Forgery) in CVE-2026-76795 (CVE-2026-76795)
SSRF in CVE-2026-76795 (CVE-2026-76795). Risk of unauthorized operations or information disclosure.
CVE-2026-76783 Vulnerability in sqli (CVE-2026-76783)
vulnerability in sqli (CVE-2026-76783). Risk of unauthorized operations or information disclosure.
CVE-2026-76764 Vulnerability in sqli (CVE-2026-76764)
vulnerability in sqli (CVE-2026-76764). Risk of unauthorized operations or information disclosure.
CVE-2026-76762 Vulnerability in sqli (CVE-2026-76762)
vulnerability in sqli (CVE-2026-76762). Risk of unauthorized operations or information disclosure.
CVE-2026-76928 X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76886 C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76880 RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76879 C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
CVE-2026-76761 Command Injection in CVE-2026-76761 (CVE-2026-76761)
command injection in CVE-2026-76761 (CVE-2026-76761). Risk of unauthorized operations or information disclosure.
CVE-2026-76760 Vulnerability in c (CVE-2026-76760)
vulnerability in c (CVE-2026-76760). Risk of unauthorized operations or information disclosure.
CVE-2026-76832 Path Traversal in path-traversal (CVE-2026-76832)
path traversal in path-traversal (CVE-2026-76832). Successful exploitation can lead to full system takeover.
CVE-2026-76591 Vulnerability in CVE-2026-76591 (CVE-2026-76591)
vulnerability in CVE-2026-76591 (CVE-2026-76591). Risk of unauthorized operations or information disclosure.
CVE-2026-76403 Vulnerability in splunk (CVE-2026-76403)
vulnerability in splunk (CVE-2026-76403). Confidential information can be exposed externally.
CVE-2026-76402 SSRF (Server-Side Request Forgery) in splunk (CVE-2026-76402)
SSRF in splunk (CVE-2026-76402). Confidential information can be exposed externally.
CVE-2026-76399 Vulnerability in splunk (CVE-2026-76399)
vulnerability in splunk (CVE-2026-76399). Confidential information can be exposed externally.
CVE-2026-76397 Vulnerability in splunk (CVE-2026-76397)
vulnerability in splunk (CVE-2026-76397). Confidential information can be exposed externally.
CVE-2026-76396 Privilege Escalation in splunk (CVE-2026-76396)
vulnerability in splunk (CVE-2026-76396). Successful exploitation can lead to full system takeover.
CVE-2026-76395 Unsafe Deserialization in deserialization (CVE-2026-76395)
vulnerability in deserialization (CVE-2026-76395). Successful exploitation can lead to full system takeover.
CVE-2026-76394 Vulnerability in splunk (CVE-2026-76394)
vulnerability in splunk (CVE-2026-76394). Data can be tampered with by attackers.
CVE-2026-76391 Authorization Flaw in splunk (CVE-2026-76391)
vulnerability in splunk (CVE-2026-76391). Confidential information can be exposed externally.
CVE-2026-76389 SSRF (Server-Side Request Forgery) in cisco (CVE-2026-76389)
SSRF in cisco (CVE-2026-76389). Successful exploitation can lead to full system takeover.
CVE-2026-76388 Vulnerability in splunk (CVE-2026-76388)
vulnerability in splunk (CVE-2026-76388). Confidential information can be exposed externally.
CVE-2026-76387 Vulnerability in splunk (CVE-2026-76387)
vulnerability in splunk (CVE-2026-76387). Confidential information can be exposed externally.
CVE-2026-76362 Vulnerability in splunk (CVE-2026-76362)
vulnerability in splunk (CVE-2026-76362). Confidential information can be exposed externally.
CVE-2026-76357 Path Traversal in splunk (CVE-2026-76357)
path traversal in splunk (CVE-2026-76357). Risk of unauthorized operations or information disclosure.
CVE-2026-76356 Vulnerability in splunk (CVE-2026-76356)
vulnerability in splunk (CVE-2026-76356). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →