Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-14516 |
|
SQL Injection in wordpress (CVE-2026-14516)
SQL injection in wordpress (CVE-2026-14516). Confidential information can be exposed externally.
|
| CVE-2026-15673 |
|
SQL Injection in wordpress (CVE-2026-15673)
SQL injection in wordpress (CVE-2026-15673). Confidential information can be exposed externally.
|
| CVE-2026-6251 |
|
SQL Injection in wordpress (CVE-2026-6251)
SQL injection in wordpress (CVE-2026-6251). Confidential information can be exposed externally.
|
| CVE-2026-16811 |
|
SQL Injection in wordpress (CVE-2026-16811)
SQL injection in wordpress (CVE-2026-16811). Confidential information can be exposed externally.
|
| CVE-2026-51077 |
|
SQL Injection in sqli (CVE-2026-51077)
SQL injection in sqli (CVE-2026-51077). Confidential information can be exposed externally.
|
| CVE-2025-50455 |
|
SQL Injection in sqli (CVE-2025-50455)
SQL injection in sqli (CVE-2025-50455). Confidential information can be exposed externally.
|
| CVE-2026-66427 |
|
Administrator SQL Injection in WP Google Review Slider <= 18.4 versions.
Administrator SQL Injection in WP Google Review Slider <= 18.4 versions.
|
| CVE-2026-59533 |
|
Unauthenticated SQL Injection in Relevanssi Light <= 1.2.2 versions.
Unauthenticated SQL Injection in Relevanssi Light <= 1.2.2 versions.
|
| CVE-2026-59549 |
|
Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.
Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.
|
| CVE-2026-59537 |
|
SQL Injection in sqli (CVE-2026-59537)
SQL injection in sqli (CVE-2026-59537). Confidential information can be exposed externally.
|
| CVE-2026-59551 |
|
Subscriber SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.
Subscriber SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.
|
| CVE-2026-59550 |
|
Unauthenticated SQL Injection in AWP Classifieds <= 4.4.7 versions.
Unauthenticated SQL Injection in AWP Classifieds <= 4.4.7 versions.
|
| CVE-2026-59538 |
|
Unauthenticated SQL Injection in GamiPress <= 7.9.7 versions.
Unauthenticated SQL Injection in GamiPress <= 7.9.7 versions.
|
| CVE-2026-59527 |
|
Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions.
Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions.
|
| CVE-2026-65876 |
|
SQL Injection in sqli (CVE-2026-65876)
SQL injection in sqli (CVE-2026-65876). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65877 |
|
SQL Injection in sqli (CVE-2026-65877)
SQL injection in sqli (CVE-2026-65877). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65766 |
|
SQL Injection in sqli (CVE-2026-65766)
SQL injection in sqli (CVE-2026-65766). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14189 |
|
SQL Injection in wordpress (CVE-2026-14189)
SQL injection in wordpress (CVE-2026-14189). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65707 |
|
SQL Injection in sqli (CVE-2026-65707)
SQL injection in sqli (CVE-2026-65707). Confidential information can be exposed externally.
|
| CVE-2026-15663 |
|
SQL Injection in wordpress (CVE-2026-15663)
SQL injection in wordpress (CVE-2026-15663). Confidential information can be exposed externally.
|
| CVE-2026-12877 |
|
Authentication Bypass in wordpress (CVE-2026-12877)
authentication bypass in wordpress (CVE-2026-12877). Confidential information can be exposed externally.
|
| CVE-2026-16765 |
|
Vulnerability in sqli (CVE-2026-16765)
vulnerability in sqli (CVE-2026-16765). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65761 |
|
SQL Injection in sqli (CVE-2026-65761)
SQL injection in sqli (CVE-2026-65761). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65532 |
|
Shop manager SQL Injection in Persian Woocommerce SMS <= 7.2.2 versions.
Shop manager SQL Injection in Persian Woocommerce SMS <= 7.2.2 versions.
|
| CVE-2026-65526 |
|
Contributor SQL Injection in Visualizer <= 4.0.6 versions.
Contributor SQL Injection in Visualizer <= 4.0.6 versions.
|
| CVE-2026-65494 |
|
Subscriber SQL Injection in Dokan Pro <= 5.0.2 versions.
Subscriber SQL Injection in Dokan Pro <= 5.0.2 versions.
|
| CVE-2026-65462 |
|
Administrator SQL Injection in Uncanny Automator <= 7.3.2 versions.
Administrator SQL Injection in Uncanny Automator <= 7.3.2 versions.
|
| CVE-2026-65450 |
|
Contributor SQL Injection in MapSVG <= 8.14.0 versions.
Contributor SQL Injection in MapSVG <= 8.14.0 versions.
|
| CVE-2026-65451 |
|
Contributor SQL Injection in MapSVG <= 8.14.0 versions.
Contributor SQL Injection in MapSVG <= 8.14.0 versions.
|
| CVE-2026-65454 |
|
Contributor SQL Injection in Quiz And Survey Master <= 11.2.0 versions.
Contributor SQL Injection in Quiz And Survey Master <= 11.2.0 versions.
|
| CVE-2026-61950 |
|
Unauthenticated SQL Injection in TrueBooker <= 1.2.3 versions.
Unauthenticated SQL Injection in TrueBooker <= 1.2.3 versions.
|
| CVE-2026-61948 |
|
Unauthenticated SQL Injection in WPDM – Premium Packages <= 6.2.0 versions.
Unauthenticated SQL Injection in WPDM – Premium Packages <= 6.2.0 versions.
|
| CVE-2026-61949 |
|
Unauthenticated SQL Injection in Bookly <= 27.7 versions.
Unauthenticated SQL Injection in Bookly <= 27.7 versions.
|
| CVE-2026-59525 |
|
Unauthenticated SQL Injection in Participants Database <= 2.7.8.3 versions.
Unauthenticated SQL Injection in Participants Database <= 2.7.8.3 versions.
|
| CVE-2026-59514 |
|
Unauthenticated SQL Injection in Buddyboss Platform <= 3.0.5 versions.
Unauthenticated SQL Injection in Buddyboss Platform <= 3.0.5 versions.
|
| CVE-2026-59526 |
|
Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions.
Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions.
|
| CVE-2026-25405 |
|
Contributor SQL Injection in eRoom <= 1.7.1 versions.
Contributor SQL Injection in eRoom <= 1.7.1 versions.
|
| CVE-2026-24552 |
|
Contributor SQL Injection in Create by Mediavine <= 2.5.3 versions.
Contributor SQL Injection in Create by Mediavine <= 2.5.3 versions.
|
| CVE-2026-15761 |
|
SQL Injection in wordpress (CVE-2026-15761)
SQL injection in wordpress (CVE-2026-15761). Confidential information can be exposed externally.
|
| CVE-2026-15448 |
|
SQL Injection in wordpress (CVE-2026-15448)
SQL injection in wordpress (CVE-2026-15448). Confidential information can be exposed externally.
|
| CVE-2026-15906 |
|
SQL Injection in wordpress (CVE-2026-15906)
SQL injection in wordpress (CVE-2026-15906). Confidential information can be exposed externally.
|
| CVE-2026-13119 |
|
SQL Injection in wordpress (CVE-2026-13119)
SQL injection in wordpress (CVE-2026-13119). Confidential information can be exposed externally.
|
| CVE-2026-13009 |
|
SQL Injection in wordpress (CVE-2026-13009)
SQL injection in wordpress (CVE-2026-13009). Confidential information can be exposed externally.
|
| CVE-2026-9713 |
|
SQL Injection in wordpress (CVE-2026-9713)
SQL injection in wordpress (CVE-2026-9713). Confidential information can be exposed externally.
|
| CVE-2026-2395 |
|
SQL Injection in sqli (CVE-2026-2395)
SQL injection in sqli (CVE-2026-2395). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16490 |
|
Vulnerability in sqli (CVE-2026-16490)
vulnerability in sqli (CVE-2026-16490). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16484 |
|
Vulnerability in sqli (CVE-2026-16484)
vulnerability in sqli (CVE-2026-16484). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-52472 |
|
SQL Injection in sqli (CVE-2026-52472)
SQL injection in sqli (CVE-2026-52472). Successful exploitation can lead to full system takeover.
|
| CVE-2026-52476 |
|
SQL Injection in sqli (CVE-2026-52476)
SQL injection in sqli (CVE-2026-52476). Confidential information can be exposed externally.
|
| CVE-2026-52470 |
|
SQL Injection in sqli (CVE-2026-52470)
SQL injection in sqli (CVE-2026-52470). Successful exploitation can lead to full system takeover.
|