Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-77758 |
|
Information Disclosure in wordpress (CVE-2026-77758)
vulnerability in wordpress (CVE-2026-77758). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77790 |
|
Vulnerability in wordpress (CVE-2026-77790)
vulnerability in wordpress (CVE-2026-77790). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77757 |
|
Path Traversal in wordpress (CVE-2026-77757)
path traversal in wordpress (CVE-2026-77757). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77695 |
|
Vulnerability in wordpress (CVE-2026-77695)
vulnerability in wordpress (CVE-2026-77695). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77754 |
|
Information Disclosure in wordpress (CVE-2026-77754)
vulnerability in wordpress (CVE-2026-77754). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75797 |
|
Path Traversal in wordpress (CVE-2026-75797)
path traversal in wordpress (CVE-2026-75797). Confidential information can be exposed externally.
|
| CVE-2026-74930 |
|
Vulnerability in wordpress (CVE-2026-74930)
vulnerability in wordpress (CVE-2026-74930). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75798 |
|
Vulnerability in wordpress (CVE-2026-75798)
vulnerability in wordpress (CVE-2026-75798). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74929 |
|
Vulnerability in wordpress (CVE-2026-74929)
vulnerability in wordpress (CVE-2026-74929). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74851 |
|
Code Injection in wordpress (CVE-2026-74851)
code injection in wordpress (CVE-2026-74851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19760 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19760)
cross-site scripting in wordpress (CVE-2026-19760). Risk of unauthorized operations or information disclosure. Exploitable via `Host header`.
|
| CVE-2026-74928 |
|
Vulnerability in wordpress (CVE-2026-74928)
vulnerability in wordpress (CVE-2026-74928). Data can be tampered with by attackers.
|
| CVE-2026-19226 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19226)
cross-site scripting in wordpress (CVE-2026-19226). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16986 |
|
Vulnerability in wordpress (CVE-2026-16986)
vulnerability in wordpress (CVE-2026-16986). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19094 |
|
SQL Injection in wordpress (CVE-2026-19094)
SQL injection in wordpress (CVE-2026-19094). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16984 |
|
Vulnerability in wordpress (CVE-2026-16984)
vulnerability in wordpress (CVE-2026-16984). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19718 |
|
Authentication Bypass in wordpress (CVE-2026-19718)
authentication bypass in wordpress (CVE-2026-19718). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14550 |
|
Vulnerability in wordpress (CVE-2026-14550)
vulnerability in wordpress (CVE-2026-14550). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19220 |
|
Privilege Escalation in wordpress (CVE-2026-19220)
vulnerability in wordpress (CVE-2026-19220). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13406 |
|
Vulnerability in wordpress (CVE-2026-13406)
vulnerability in wordpress (CVE-2026-13406). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14212 |
|
Vulnerability in wordpress (CVE-2026-14212)
vulnerability in wordpress (CVE-2026-14212). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13404 |
|
Vulnerability in wordpress (CVE-2026-13404)
vulnerability in wordpress (CVE-2026-13404). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14216 |
|
Authentication Bypass in wordpress (CVE-2026-14216)
authentication bypass in wordpress (CVE-2026-14216). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13172 |
|
Vulnerability in wordpress (CVE-2026-13172)
vulnerability in wordpress (CVE-2026-13172). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19632 |
|
Vulnerability in wordpress (CVE-2026-19632)
vulnerability in wordpress (CVE-2026-19632). Successful exploitation can lead to full system takeover.
|
| CVE-2026-74932 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-74932)
cross-site scripting in wordpress (CVE-2026-74932). Successful exploitation can lead to full system takeover. Exploitable via `Host header`.
|
| CVE-2026-78468 |
|
SQL Injection in wordpress (CVE-2026-78468)
SQL injection in wordpress (CVE-2026-78468). Confidential information can be exposed externally.
|
| CVE-2026-77824 |
|
SQL Injection in wordpress (CVE-2026-77824)
SQL injection in wordpress (CVE-2026-77824). Confidential information can be exposed externally.
|
| CVE-2026-75908 |
|
Vulnerability in wordpress (CVE-2026-75908)
vulnerability in wordpress (CVE-2026-75908). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75971 |
|
Privilege Escalation in wordpress (CVE-2026-75971)
vulnerability in wordpress (CVE-2026-75971). Successful exploitation can lead to full system takeover. Exploitable via ``import_start``.
|
| CVE-2026-18547 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18547)
cross-site scripting in wordpress (CVE-2026-18547). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19949 |
|
SQL Injection in wordpress (CVE-2026-19949)
SQL injection in wordpress (CVE-2026-19949). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17587 |
|
Vulnerability in wordpress (CVE-2026-17587)
vulnerability in wordpress (CVE-2026-17587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78570 |
|
Privilege Escalation in wordpress (CVE-2026-78570)
vulnerability in wordpress (CVE-2026-78570). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76128 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-76128)
cross-site scripting in wordpress (CVE-2026-76128). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78572 |
|
Unsafe Deserialization in wordpress (CVE-2026-78572)
vulnerability in wordpress (CVE-2026-78572). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78576 |
|
SQL Injection in wordpress (CVE-2026-78576)
SQL injection in wordpress (CVE-2026-78576). Confidential information can be exposed externally.
|
| CVE-2026-78562 |
|
Vulnerability in wordpress (CVE-2026-78562)
vulnerability in wordpress (CVE-2026-78562). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78566 |
|
Vulnerability in wordpress (CVE-2026-78566)
vulnerability in wordpress (CVE-2026-78566). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78568 |
|
SQL Injection in wordpress (CVE-2026-78568)
SQL injection in wordpress (CVE-2026-78568). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78563 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-78563)
cross-site scripting in wordpress (CVE-2026-78563). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18328 |
|
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
|
| CVE-2026-18323 |
|
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
|
| CVE-2026-16601 |
|
The CM Map Locations – Visualize and share your locations in a few clicks plugin for WordPress is...
The CM Map Locations – Visualize and share your locations in a few clicks plugin for WordPress is...
|
| CVE-2026-18100 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18100)
cross-site scripting in wordpress (CVE-2026-18100). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18512 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18512)
cross-site scripting in wordpress (CVE-2026-18512). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78478 |
|
Vulnerability in wordpress (CVE-2026-78478)
vulnerability in wordpress (CVE-2026-78478). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78466 |
|
Vulnerability in wordpress (CVE-2026-78466)
vulnerability in wordpress (CVE-2026-78466). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78477 |
|
Vulnerability in wordpress (CVE-2026-78477)
vulnerability in wordpress (CVE-2026-78477). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78467 |
|
Vulnerability in wordpress (CVE-2026-78467)
vulnerability in wordpress (CVE-2026-78467). Risk of unauthorized operations or information disclosure.
|