Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-12185 |
|
Vulnerability in bouncycastle (CVE-2026-12185)
vulnerability in bouncycastle (CVE-2026-12185). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3245 |
|
Unsafe Deserialization in deserialization (CVE-2026-3245)
vulnerability in deserialization (CVE-2026-3245). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18577 KEV |
|
[KEV] Vulnerability in N-able n-central (CVE-2026-18577)
vulnerability in N-able n-central (CVE-2026-18577). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-10848 |
|
Out-of-Bounds Read in c (CVE-2026-10848)
vulnerability in c (CVE-2026-10848). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9856 |
|
Path Traversal in path-traversal (CVE-2026-9856)
path traversal in path-traversal (CVE-2026-9856). Data can be tampered with by attackers. Exploitable via ``PreTrainedTokenizerBase``.
|
| CVE-2026-68581 |
|
Authorization Flaw in CVE-2026-68581 (CVE-2026-68581)
vulnerability in CVE-2026-68581 (CVE-2026-68581). Confidential information can be exposed externally.
|
| CVE-2026-68580 |
|
Vulnerability in dos (CVE-2026-68580)
vulnerability in dos (CVE-2026-68580). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68578 |
|
Vulnerability in CVE-2026-68578 (CVE-2026-68578)
vulnerability in CVE-2026-68578 (CVE-2026-68578). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67357 |
|
Information Disclosure in CVE-2026-67357 (CVE-2026-67357)
vulnerability in CVE-2026-67357 (CVE-2026-67357). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67356 |
|
Privilege Escalation in CVE-2026-67356 (CVE-2026-67356)
vulnerability in CVE-2026-67356 (CVE-2026-67356). Successful exploitation can lead to full system takeover.
|
| CVE-2025-71400 |
|
Vulnerability in CVE-2025-71400 (CVE-2025-71400)
vulnerability in CVE-2025-71400 (CVE-2025-71400). Data can be tampered with by attackers.
|
| CVE-2025-71399 |
|
Vulnerability in CVE-2025-71399 (CVE-2025-71399)
vulnerability in CVE-2025-71399 (CVE-2025-71399). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16540 |
|
Authorization Flaw in wordpress (CVE-2026-16540)
vulnerability in wordpress (CVE-2026-16540). Confidential information can be exposed externally.
|
| CVE-2026-16285 |
|
Vulnerability in wordpress (CVE-2026-16285)
vulnerability in wordpress (CVE-2026-16285). Confidential information can be exposed externally.
|
| CVE-2026-16261 |
|
Authentication Bypass in wordpress (CVE-2026-16261)
authentication bypass in wordpress (CVE-2026-16261). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15241 |
|
Vulnerability in wordpress (CVE-2026-15241)
vulnerability in wordpress (CVE-2026-15241). Confidential information can be exposed externally.
|
| CVE-2026-15206 |
|
Authentication Bypass in wordpress (CVE-2026-15206)
authentication bypass in wordpress (CVE-2026-15206). Confidential information can be exposed externally.
|
| CVE-2026-15236 |
|
Information Disclosure in wordpress (CVE-2026-15236)
vulnerability in wordpress (CVE-2026-15236). Confidential information can be exposed externally.
|
| CVE-2026-15151 |
|
Vulnerability in wordpress (CVE-2026-15151)
vulnerability in wordpress (CVE-2026-15151). Confidential information can be exposed externally.
|
| CVE-2026-14920 |
|
## Summary
## Summary
|
| CVE-2026-12586 |
|
Authentication Bypass in wordpress (CVE-2026-12586)
authentication bypass in wordpress (CVE-2026-12586). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18352 |
|
Path Traversal in wordpress (CVE-2026-18352)
path traversal in wordpress (CVE-2026-18352). Confidential information can be exposed externally.
|
| CVE-2026-13339 |
|
Path Traversal in wordpress (CVE-2026-13339)
path traversal in wordpress (CVE-2026-13339). Confidential information can be exposed externally.
|
| CVE-2026-18556 KEV |
|
[KEV] Vulnerability in N-able n-central (CVE-2026-18556)
vulnerability in N-able n-central (CVE-2026-18556). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2026-55735 |
|
Vulnerability in dos (CVE-2026-55735)
vulnerability in dos (CVE-2026-55735). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55734 |
|
Vulnerability in dos (CVE-2026-55734)
vulnerability in dos (CVE-2026-55734). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55733 |
|
Vulnerability in dos (CVE-2026-55733)
vulnerability in dos (CVE-2026-55733). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54894 |
|
Vulnerability in dos (CVE-2026-54894)
vulnerability in dos (CVE-2026-54894). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67352 |
|
Cross-Site Scripting (XSS) in CVE-2026-67352 (CVE-2026-67352)
cross-site scripting in CVE-2026-67352 (CVE-2026-67352). Confidential information can be exposed externally.
|
| CVE-2026-67343 |
|
Information Disclosure in CVE-2026-67343 (CVE-2026-67343)
vulnerability in CVE-2026-67343 (CVE-2026-67343). Successful exploitation can lead to full system takeover. Exploitable via `GET /api/v1/server`.
|
| CVE-2026-67340 |
|
Code Injection in CVE-2026-67340 (CVE-2026-67340)
code injection in CVE-2026-67340 (CVE-2026-67340). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67336 |
|
Vulnerability in CVE-2026-67336 (CVE-2026-67336)
vulnerability in CVE-2026-67336 (CVE-2026-67336). Confidential information can be exposed externally.
|
| CVE-2026-67333 |
|
Cross-Site Scripting (XSS) in CVE-2026-67333 (CVE-2026-67333)
cross-site scripting in CVE-2026-67333 (CVE-2026-67333). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67331 |
|
Vulnerability in CVE-2026-67331 (CVE-2026-67331)
vulnerability in CVE-2026-67331 (CVE-2026-67331). Confidential information can be exposed externally.
|
| CVE-2026-67329 |
|
Vulnerability in CVE-2026-67329 (CVE-2026-67329)
vulnerability in CVE-2026-67329 (CVE-2026-67329). Data can be tampered with by attackers.
|
| CVE-2026-67328 |
|
Cross-Site Scripting (XSS) in CVE-2026-67328 (CVE-2026-67328)
cross-site scripting in CVE-2026-67328 (CVE-2026-67328). Confidential information can be exposed externally.
|
| CVE-2026-67327 |
|
Authentication Bypass in CVE-2026-67327 (CVE-2026-67327)
authentication bypass in CVE-2026-67327 (CVE-2026-67327). Confidential information can be exposed externally. Mitigation: upgrade to `1.6.22` or later.
|
| CVE-2026-67326 |
|
Vulnerability in CVE-2026-67326 (CVE-2026-67326)
vulnerability in CVE-2026-67326 (CVE-2026-67326). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67325 |
|
OS Command Injection in CVE-2026-67325 (CVE-2026-67325)
OS command injection in CVE-2026-67325 (CVE-2026-67325). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67323 |
|
Command Injection in CVE-2026-67323 (CVE-2026-67323)
command injection in CVE-2026-67323 (CVE-2026-67323). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67322 |
|
Information Disclosure in CVE-2026-67322 (CVE-2026-67322)
vulnerability in CVE-2026-67322 (CVE-2026-67322). Confidential information can be exposed externally.
|
| CVE-2026-67304 |
|
Vulnerability in CVE-2026-67304 (CVE-2026-67304)
vulnerability in CVE-2026-67304 (CVE-2026-67304). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67301 |
|
Out-of-Bounds Read in CVE-2026-67301 (CVE-2026-67301)
vulnerability in CVE-2026-67301 (CVE-2026-67301). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67300 |
|
Use-After-Free in CVE-2026-67300 (CVE-2026-67300)
vulnerability in CVE-2026-67300 (CVE-2026-67300). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67299 |
|
Use-After-Free in CVE-2026-67299 (CVE-2026-67299)
vulnerability in CVE-2026-67299 (CVE-2026-67299). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67298 |
|
Vulnerability in c (CVE-2026-67298)
vulnerability in c (CVE-2026-67298). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67297 |
|
Vulnerability in CVE-2026-67297 (CVE-2026-67297)
vulnerability in CVE-2026-67297 (CVE-2026-67297). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67296 |
|
Vulnerability in dos (CVE-2026-67296)
vulnerability in dos (CVE-2026-67296). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67291 |
|
Out-of-Bounds Read in c (CVE-2026-67291)
vulnerability in c (CVE-2026-67291). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67290 |
|
Out-of-Bounds Read in CVE-2026-67290 (CVE-2026-67290)
vulnerability in CVE-2026-67290 (CVE-2026-67290). Risk of unauthorized operations or information disclosure.
|