Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-19629 |
|
Authorization Flaw in privilege-escalation (CVE-2026-19629)
vulnerability in privilege-escalation (CVE-2026-19629). Confidential information can be exposed externally.
|
| CVE-2026-19635 |
|
OS Command Injection in privilege-escalation (CVE-2026-19635)
OS command injection in privilege-escalation (CVE-2026-19635). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12366 |
|
Use-After-Free in c (CVE-2026-12366)
vulnerability in c (CVE-2026-12366). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12365 |
|
Use-After-Free in c (CVE-2026-12365)
vulnerability in c (CVE-2026-12365). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63701 |
|
Privilege Escalation in privilege-escalation (CVE-2026-63701)
vulnerability in privilege-escalation (CVE-2026-63701). Confidential information can be exposed externally.
|
| CVE-2026-63700 |
|
Privilege Escalation in privilege-escalation (CVE-2026-63700)
vulnerability in privilege-escalation (CVE-2026-63700). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72833 |
|
Privilege Escalation in privilege-escalation (CVE-2026-72833)
vulnerability in privilege-escalation (CVE-2026-72833). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.0.13` or later.
|
| CVE-2026-72828 |
|
Privilege Escalation in privilege-escalation (CVE-2026-72828)
vulnerability in privilege-escalation (CVE-2026-72828). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12949 |
|
Vulnerability in wordpress (CVE-2026-12949)
vulnerability in wordpress (CVE-2026-12949). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18509 |
|
Vulnerability in privilege-escalation (CVE-2026-18509)
vulnerability in privilege-escalation (CVE-2026-18509). Confidential information can be exposed externally.
|
| CVE-2026-8715 |
|
Vulnerability in privilege-escalation (CVE-2026-8715)
vulnerability in privilege-escalation (CVE-2026-8715). Confidential information can be exposed externally.
|
| CVE-2026-72681 |
|
Vulnerability in privilege-escalation (CVE-2026-72681)
vulnerability in privilege-escalation (CVE-2026-72681). Confidential information can be exposed externally.
|
| CVE-2026-72658 |
|
Cross-Site Request Forgery (CSRF) in privilege-escalation (CVE-2026-72658)
vulnerability in privilege-escalation (CVE-2026-72658). Confidential information can be exposed externally.
|
| CVE-2026-72630 |
|
Authorization Flaw in privilege-escalation (CVE-2026-72630)
vulnerability in privilege-escalation (CVE-2026-72630). Confidential information can be exposed externally.
|
| CVE-2026-72631 |
|
Privilege Escalation in privilege-escalation (CVE-2026-72631)
vulnerability in privilege-escalation (CVE-2026-72631). Data can be tampered with by attackers.
|
| CVE-2026-16987 |
|
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to...
|
| CVE-2026-16722 |
|
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain unauthorized...
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain unauthorized...
|
| CVE-2026-53803 |
|
Vulnerability in privilege-escalation (CVE-2026-53803)
vulnerability in privilege-escalation (CVE-2026-53803). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53799 |
|
Vulnerability in privilege-escalation (CVE-2026-53799)
vulnerability in privilege-escalation (CVE-2026-53799). Confidential information can be exposed externally.
|
| CVE-2026-66661 |
|
Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions.
Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions.
|
| CVE-2026-66424 |
|
Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.7 versions.
Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.7 versions.
|
| CVE-2026-61979 |
|
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
|
| CVE-2026-61967 |
|
Unauthenticated Privilege Escalation in miniorange otp verification <= 5.5.1 versions.
Unauthenticated Privilege Escalation in miniorange otp verification <= 5.5.1 versions.
|
| CVE-2026-28161 |
|
Subscriber Privilege Escalation in Service Finder Booking <= 6.2 versions.
Subscriber Privilege Escalation in Service Finder Booking <= 6.2 versions.
|
| CVE-2026-27543 |
|
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
|
| CVE-2026-0299 |
|
Vulnerability in privilege-escalation (CVE-2026-0299)
vulnerability in privilege-escalation (CVE-2026-0299). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-0294 |
|
Vulnerability in privilege-escalation (CVE-2026-0294)
vulnerability in privilege-escalation (CVE-2026-0294). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13367 |
|
Vulnerability in privilege-escalation (CVE-2026-13367)
vulnerability in privilege-escalation (CVE-2026-13367). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10543 |
|
Vulnerability in privilege-escalation (CVE-2026-10543)
vulnerability in privilege-escalation (CVE-2026-10543). Data can be tampered with by attackers.
|
| CVE-2026-19654 |
|
Out-of-Bounds Read in privilege-escalation (CVE-2026-19654)
vulnerability in privilege-escalation (CVE-2026-19654). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73269 |
|
Privilege Escalation in privilege-escalation (CVE-2026-73269)
vulnerability in privilege-escalation (CVE-2026-73269). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73268 |
|
Code Injection in privilege-escalation (CVE-2026-73268)
code injection in privilege-escalation (CVE-2026-73268). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72508 |
|
Vulnerability in privilege-escalation (CVE-2026-72508)
vulnerability in privilege-escalation (CVE-2026-72508). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18713 |
|
Privilege Escalation in privilege-escalation (CVE-2026-18713)
vulnerability in privilege-escalation (CVE-2026-18713). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18669 |
|
Vulnerability in privilege-escalation (CVE-2026-18669)
vulnerability in privilege-escalation (CVE-2026-18669). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18499 |
|
Vulnerability in privilege-escalation (CVE-2026-18499)
vulnerability in privilege-escalation (CVE-2026-18499). Confidential information can be exposed externally.
|
| CVE-2026-18683 |
|
OS Command Injection in privilege-escalation (CVE-2026-18683)
OS command injection in privilege-escalation (CVE-2026-18683). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53996 |
|
Vulnerability in c (CVE-2026-53996)
vulnerability in c (CVE-2026-53996). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19594 |
|
Path Traversal in path-traversal (CVE-2026-19594)
path traversal in path-traversal (CVE-2026-19594). Data can be tampered with by attackers. Exploitable via ``snowflake.core``.
|
| CVE-2026-72526 |
|
Vulnerability in privilege-escalation (CVE-2026-72526)
vulnerability in privilege-escalation (CVE-2026-72526). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47922 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-47922)
SSRF in ssrf (CVE-2026-47922). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-25652 |
|
Authorization Flaw in privilege-escalation (CVE-2026-25652)
vulnerability in privilege-escalation (CVE-2026-25652). Successful exploitation can lead to full system takeover.
|
| CVE-2026-21273 |
|
Vulnerability in privilege-escalation (CVE-2026-21273)
vulnerability in privilege-escalation (CVE-2026-21273). Confidential information can be exposed externally.
|
| CVE-2026-71362 |
|
Authorization Flaw in privilege-escalation (CVE-2026-71362)
vulnerability in privilege-escalation (CVE-2026-71362). Confidential information can be exposed externally.
|
| CVE-2026-48412 |
|
Authorization Flaw in privilege-escalation (CVE-2026-48412)
vulnerability in privilege-escalation (CVE-2026-48412). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56721 |
|
Vulnerability in privilege-escalation (CVE-2026-56721)
vulnerability in privilege-escalation (CVE-2026-56721). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69108 |
|
Vulnerability in privilege-escalation (CVE-2026-69108)
vulnerability in privilege-escalation (CVE-2026-69108). Confidential information can be exposed externally.
|
| CVE-2026-72553 |
|
Cross-Site Scripting (XSS) in privilege-escalation (CVE-2026-72553)
cross-site scripting in privilege-escalation (CVE-2026-72553). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72537 |
|
Privilege Escalation in privilege-escalation (CVE-2026-72537)
vulnerability in privilege-escalation (CVE-2026-72537). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50237 |
|
SSRF (Server-Side Request Forgery) in privilege-escalation (CVE-2026-50237)
SSRF in privilege-escalation (CVE-2026-50237). Risk of unauthorized operations or information disclosure.
|