Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-gg3c-m7gp-rhx9 |
|
MINI-gg3c-m7gp-rhx9 |
| MINI-jpj3-mfqj-r7cx |
|
MINI-jpj3-mfqj-r7cx |
| MINI-9wmq-r374-5qvm |
|
MINI-9wmq-r374-5qvm |
| MINI-f6q2-xmm5-jcr8 |
|
MINI-f6q2-xmm5-jcr8 |
| MINI-qmcw-8v3x-fj88 |
|
MINI-qmcw-8v3x-fj88 |
| MINI-r89x-qfpj-vwqw |
|
MINI-r89x-qfpj-vwqw |
| MINI-gj7w-8cwc-qmfr |
|
MINI-gj7w-8cwc-qmfr |
| MINI-wc9j-wg2w-7v5h |
|
MINI-wc9j-wg2w-7v5h |
| MINI-crj7-25j4-mpr9 |
|
MINI-crj7-25j4-mpr9 |
| MINI-vgr3-3h37-c63m |
|
MINI-vgr3-3h37-c63m |
| MINI-fxcc-pgqh-hhw8 |
|
MINI-fxcc-pgqh-hhw8 |
| MINI-mq2g-49cw-5hvc |
|
MINI-mq2g-49cw-5hvc |
| MINI-prj8-p7c4-4p4c |
|
MINI-prj8-p7c4-4p4c |
| MINI-j773-jqf3-r778 |
|
MINI-j773-jqf3-r778 |
| MINI-gg9x-h68m-w253 |
|
MINI-gg9x-h68m-w253 |
| MINI-j9xm-hpfc-p8m3 |
|
MINI-j9xm-hpfc-p8m3 |
| MINI-6w29-9265-53q5 |
|
MINI-6w29-9265-53q5 |
| MINI-7wmp-j25v-hr33 |
|
MINI-7wmp-j25v-hr33 |
| MINI-x8p2-3w9j-pwr6 |
|
MINI-x8p2-3w9j-pwr6 |
| MINI-6qx2-3cf6-f8xp |
|
MINI-6qx2-3cf6-f8xp |
| MINI-2cc2-c374-rc5p |
|
MINI-2cc2-c374-rc5p |
| CVE-2026-12673 |
|
Vulnerability in privilege-escalation (CVE-2026-12673)
vulnerability in privilege-escalation (CVE-2026-12673). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-50972 |
|
Code Injection in CVE-2022-50972 (CVE-2022-50972)
code injection in CVE-2022-50972 (CVE-2022-50972). Successful exploitation can lead to full system takeover.
|
| CVE-2020-37255 |
|
Vulnerability in wordpress (CVE-2020-37255)
vulnerability in wordpress (CVE-2020-37255). Confidential information can be exposed externally.
|
| CVE-2019-25763 |
|
Vulnerability in wordpress (CVE-2019-25763)
vulnerability in wordpress (CVE-2019-25763). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48939 KEV |
|
[KEV] Unrestricted File Upload in Icagenda joomlic (CVE-2026-48939)
vulnerability in Icagenda joomlic (CVE-2026-48939). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-48909 |
|
Unsafe Deserialization in CVE-2026-48909 (CVE-2026-48909)
vulnerability in CVE-2026-48909 (CVE-2026-48909). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48908 KEV |
|
[KEV] Unrestricted File Upload in Joomshaper ollyo (CVE-2026-48908)
vulnerability in Joomshaper ollyo (CVE-2026-48908). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| MAL-2026-6239 |
|
Vulnerability in atlasora-config (MAL-2026-6239)
vulnerability in atlasora-config (MAL-2026-6239). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-6241 |
|
Vulnerability in atlasora-shared (MAL-2026-6241)
vulnerability in atlasora-shared (MAL-2026-6241). Risk of unauthorized operations or information disclosure. Exploitable via ``https``.
|
| MAL-2026-6237 |
|
Vulnerability in atlasora-api (MAL-2026-6237)
vulnerability in atlasora-api (MAL-2026-6237). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-6242 |
|
Vulnerability in atlasora-types (MAL-2026-6242)
vulnerability in atlasora-types (MAL-2026-6242). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-6243 |
|
Vulnerability in atlasora-utils (MAL-2026-6243)
vulnerability in atlasora-utils (MAL-2026-6243). Risk of unauthorized operations or information disclosure. Exploitable via ``PRIVATE``.
|
| MAL-2026-6240 |
|
Vulnerability in atlasora-sdk (MAL-2026-6240)
vulnerability in atlasora-sdk (MAL-2026-6240). Risk of unauthorized operations or information disclosure. Exploitable via ``EXFIL_SERVER``.
|
| MAL-2026-6238 |
|
Vulnerability in atlasora-client (MAL-2026-6238)
vulnerability in atlasora-client (MAL-2026-6238). Risk of unauthorized operations or information disclosure.
|
| RUSTSEC-2026-0199 |
|
Vulnerability in bcrypt (RUSTSEC-2026-0199)
vulnerability in bcrypt (RUSTSEC-2026-0199). Risk of unauthorized operations or information disclosure. Exploitable via ``bcrypt``. Mitigation: upgrade to `0.19.2` or later.
|
| RUSTSEC-2026-0186 |
|
Vulnerability in memmap2 (RUSTSEC-2026-0186)
vulnerability in memmap2 (RUSTSEC-2026-0186). Risk of unauthorized operations or information disclosure. Exploitable via ``memmap2``. Mitigation: upgrade to `0.9.11` or later.
|
| CGA-743g-gqmr-xrp8 |
|
CGA-743g-gqmr-xrp8 |
| CVE-2026-12119 |
|
Vulnerability in wordpress (CVE-2026-12119)
vulnerability in wordpress (CVE-2026-12119). Data can be tampered with by attackers.
|
| CVE-2026-11912 |
|
Vulnerability in wordpress (CVE-2026-11912)
vulnerability in wordpress (CVE-2026-11912). Data can be tampered with by attackers.
|
| CVE-2026-11911 |
|
Path Traversal in wordpress (CVE-2026-11911)
path traversal in wordpress (CVE-2026-11911). Confidential information can be exposed externally.
|
| SUSE-SU-2026:22212-1 |
|
Vulnerability in webkit2gtk3 (SUSE-SU-2026:22212-1)
vulnerability in webkit2gtk3 (SUSE-SU-2026:22212-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.52.4-160000.1.1` or later.
|
| SUSE-SU-2026:22203-1 |
|
Vulnerability in webkit2gtk3 (SUSE-SU-2026:22203-1)
vulnerability in webkit2gtk3 (SUSE-SU-2026:22203-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.52.4-160000.1.1` or later.
|
| ECHO-4013-f50e-8dfc |
|
ECHO-4013-f50e-8dfc |
| ECHO-2e12-e6da-9a4b |
|
ECHO-2e12-e6da-9a4b |
| ECHO-5509-692b-aa69 |
|
ECHO-5509-692b-aa69 |
| ECHO-c281-5876-5f69 |
|
ECHO-c281-5876-5f69 |
| openSUSE-SU-2026:21129-1 |
|
Vulnerability in webkit2gtk3 (openSUSE-SU-2026:21129-1)
vulnerability in webkit2gtk3 (openSUSE-SU-2026:21129-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.52.4-160000.1.1` or later.
|
| openSUSE-SU-2026:21114-1 |
|
Vulnerability in mozjs128 (openSUSE-SU-2026:21114-1)
vulnerability in mozjs128 (openSUSE-SU-2026:21114-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `128.14.0-160000.3.1` or later.
|
| SUSE-SU-2026:22210-1 |
|
Vulnerability in mozjs128 (SUSE-SU-2026:22210-1)
vulnerability in mozjs128 (SUSE-SU-2026:22210-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `128.14.0-160000.3.1` or later.
|