Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-67200 |
|
Path Traversal in path-traversal (CVE-2026-67200)
path traversal in path-traversal (CVE-2026-67200). Confidential information can be exposed externally.
|
| CVE-2026-14194 |
|
Path Traversal in path-traversal (CVE-2026-14194)
path traversal in path-traversal (CVE-2026-14194). Confidential information can be exposed externally.
|
| CVE-2026-18759 |
|
Privilege Escalation in path-traversal (CVE-2026-18759)
vulnerability in path-traversal (CVE-2026-18759). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14818 |
|
Path Traversal in path-traversal (CVE-2026-14818)
path traversal in path-traversal (CVE-2026-14818). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17614 |
|
Path Traversal in path-traversal (CVE-2026-17614)
path traversal in path-traversal (CVE-2026-17614). Confidential information can be exposed externally.
|
| CVE-2026-56845 |
|
Path Traversal in path-traversal (CVE-2026-56845)
path traversal in path-traversal (CVE-2026-56845). Confidential information can be exposed externally.
|
| CVE-2026-67970 |
|
Vulnerability in path-traversal (CVE-2026-67970)
vulnerability in path-traversal (CVE-2026-67970). Confidential information can be exposed externally.
|
| CVE-2026-18646 |
|
Path Traversal in path-traversal (CVE-2026-18646)
path traversal in path-traversal (CVE-2026-18646). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18645 |
|
Path Traversal in path-traversal (CVE-2026-18645)
path traversal in path-traversal (CVE-2026-18645). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18648 |
|
Path Traversal in react (CVE-2026-18648)
path traversal in react (CVE-2026-18648). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18644 |
|
Path Traversal in path-traversal (CVE-2026-18644)
path traversal in path-traversal (CVE-2026-18644). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61372 |
|
Path Traversal in apache (CVE-2026-61372)
path traversal in apache (CVE-2026-61372). Confidential information can be exposed externally.
|
| CVE-2026-69095 |
|
Path Traversal in path-traversal (CVE-2026-69095)
path traversal in path-traversal (CVE-2026-69095). Confidential information can be exposed externally.
|
| CVE-2026-69089 |
|
Path Traversal in path-traversal (CVE-2026-69089)
path traversal in path-traversal (CVE-2026-69089). Confidential information can be exposed externally.
|
| CVE-2026-9856 |
|
Path Traversal in path-traversal (CVE-2026-9856)
path traversal in path-traversal (CVE-2026-9856). Data can be tampered with by attackers. Exploitable via ``PreTrainedTokenizerBase``.
|
| CVE-2026-18352 |
|
Path Traversal in wordpress (CVE-2026-18352)
path traversal in wordpress (CVE-2026-18352). Confidential information can be exposed externally.
|
| CVE-2026-13339 |
|
Path Traversal in wordpress (CVE-2026-13339)
path traversal in wordpress (CVE-2026-13339). Confidential information can be exposed externally.
|
| CVE-2026-67309 |
|
Path Traversal in github.com/traefik/traefik/v3 (CVE-2026-67309)
path traversal in github.com/traefik/traefik/v3 (CVE-2026-67309). Risk of unauthorized operations or information disclosure. Exploitable via ``RewriteTarget``. Mitigation: upgrade to `3.7.8` or later.
|
| CVE-2026-15601 |
|
Path Traversal in wordpress (CVE-2026-15601)
path traversal in wordpress (CVE-2026-15601). Confidential information can be exposed externally.
|
| CVE-2026-15450 |
|
Path Traversal in wordpress (CVE-2026-15450)
path traversal in wordpress (CVE-2026-15450). Data can be tampered with by attackers.
|
| CVE-2026-15932 |
|
Path Traversal in wordpress (CVE-2026-15932)
path traversal in wordpress (CVE-2026-15932). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15244 |
|
Path Traversal in c (CVE-2026-15244)
path traversal in c (CVE-2026-15244). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3141 |
|
Vulnerability in wordpress (CVE-2026-3141)
vulnerability in wordpress (CVE-2026-3141). Data can be tampered with by attackers.
|
| CVE-2026-15006 |
|
Path Traversal in wordpress (CVE-2026-15006)
path traversal in wordpress (CVE-2026-15006). Confidential information can be exposed externally.
|
| CVE-2026-55100 |
|
Vulnerability in hashi-vault-js (CVE-2026-55100)
vulnerability in hashi-vault-js (CVE-2026-55100). Risk of unauthorized operations or information disclosure. Exploitable via ``encodeURIComponent``. Mitigation: upgrade to `0.5.2` or later.
|
| CVE-2026-44615 |
|
Path Traversal in apache (CVE-2026-44615)
path traversal in apache (CVE-2026-44615). Confidential information can be exposed externally.
|
| CVE-2026-63222 |
|
Path Traversal in codeigniter4/framework (CVE-2026-63222)
path traversal in codeigniter4/framework (CVE-2026-63222). Data can be tampered with by attackers. Mitigation: upgrade to `4.7.4` or later.
|
| CVE-2026-66755 |
|
Path Traversal in apache (CVE-2026-66755)
path traversal in apache (CVE-2026-66755). Confidential information can be exposed externally.
|
| CVE-2026-66415 |
|
SSRF (Server-Side Request Forgery) in path-traversal (CVE-2026-66415)
SSRF in path-traversal (CVE-2026-66415). Confidential information can be exposed externally.
|
| CVE-2026-52680 |
|
Path Traversal in apache (CVE-2026-52680)
path traversal in apache (CVE-2026-52680). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62663 |
|
Path Traversal in path-traversal (CVE-2026-62663)
path traversal in path-traversal (CVE-2026-62663). Confidential information can be exposed externally.
|
| CVE-2026-14519 |
|
Path Traversal in path-traversal (CVE-2026-14519)
path traversal in path-traversal (CVE-2026-14519). Confidential information can be exposed externally.
|
| CVE-2026-59310 KEV |
|
[KEV] Path Traversal in Broadcom path-traversal (CVE-2026-59310)
path traversal in Broadcom path-traversal (CVE-2026-59310). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-16531 |
|
Path Traversal in path-traversal (CVE-2026-16531)
path traversal in path-traversal (CVE-2026-16531). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67247 |
|
Path Traversal in path-traversal (CVE-2026-67247)
path traversal in path-traversal (CVE-2026-67247). Confidential information can be exposed externally.
|
| CVE-2026-67246 |
|
Path Traversal in path-traversal (CVE-2026-67246)
path traversal in path-traversal (CVE-2026-67246). Confidential information can be exposed externally.
|
| CVE-2026-67245 |
|
Path Traversal in path-traversal (CVE-2026-67245)
path traversal in path-traversal (CVE-2026-67245). Data can be tampered with by attackers.
|
| CVE-2026-5491 |
|
Path Traversal in path-traversal (CVE-2026-5491)
path traversal in path-traversal (CVE-2026-5491). Confidential information can be exposed externally.
|
| CVE-2026-5492 |
|
Path Traversal in path-traversal (CVE-2026-5492)
path traversal in path-traversal (CVE-2026-5492). Confidential information can be exposed externally.
|
| CVE-2026-5489 |
|
Path Traversal in path-traversal (CVE-2026-5489)
path traversal in path-traversal (CVE-2026-5489). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5487 |
|
Path Traversal in path-traversal (CVE-2026-5487)
path traversal in path-traversal (CVE-2026-5487). Confidential information can be exposed externally.
|
| CVE-2026-44943 |
|
Path Traversal in path-traversal (CVE-2026-44943)
path traversal in path-traversal (CVE-2026-44943). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58177 |
|
Out-of-Bounds Write in apache (CVE-2026-58177)
out-of-bounds write in apache (CVE-2026-58177). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18192 |
|
Vulnerability in path-traversal (CVE-2026-18192)
vulnerability in path-traversal (CVE-2026-18192). Confidential information can be exposed externally.
|
| CVE-2026-54650 |
|
Path Traversal in github.com/bablilayoub/openhole (CVE-2026-54650)
path traversal in github.com/bablilayoub/openhole (CVE-2026-54650). Confidential information can be exposed externally. Exploitable via ``r.URL.Path``. Mitigation: upgrade to `0.1.2` or later.
|
| CVE-2026-5114 |
|
Path Traversal in wordpress (CVE-2026-5114)
path traversal in wordpress (CVE-2026-5114). Confidential information can be exposed externally.
|
| CVE-2026-48374 |
|
Path Traversal in path-traversal (CVE-2026-48374)
path traversal in path-traversal (CVE-2026-48374). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67185 |
|
Path Traversal in path-traversal (CVE-2026-67185)
path traversal in path-traversal (CVE-2026-67185). Confidential information can be exposed externally.
|
| CVE-2026-63303 |
|
Vulnerability in path-traversal (CVE-2026-63303)
vulnerability in path-traversal (CVE-2026-63303). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17524 |
|
Path Traversal in path-traversal (CVE-2026-17524)
path traversal in path-traversal (CVE-2026-17524). Confidential information can be exposed externally.
|