Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-15779 |
|
Vulnerability in privilege-escalation (CVE-2026-15779)
vulnerability in privilege-escalation (CVE-2026-15779). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57996 |
|
Privilege Escalation in privilege-escalation (CVE-2026-57996)
vulnerability in privilege-escalation (CVE-2026-57996). Successful exploitation can lead to full system takeover. Exploitable via `POST /admin/api/user/add`.
|
| CVE-2026-48321 |
|
Authorization Flaw in privilege-escalation (CVE-2026-48321)
vulnerability in privilege-escalation (CVE-2026-48321). Confidential information can be exposed externally.
|
| CVE-2026-15429 |
|
Vulnerability in privilege-escalation (CVE-2026-15429)
vulnerability in privilege-escalation (CVE-2026-15429). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10669 |
|
Out-of-Bounds Write in c (CVE-2026-10669)
out-of-bounds write in c (CVE-2026-10669). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14852 |
|
OS Command Injection in privilege-escalation (CVE-2026-14852)
OS command injection in privilege-escalation (CVE-2026-14852). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15183 |
|
SQL Injection in privilege-escalation (CVE-2026-15183)
SQL injection in privilege-escalation (CVE-2026-15183). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62194 |
|
Vulnerability in privilege-escalation (CVE-2026-62194)
vulnerability in privilege-escalation (CVE-2026-62194). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58411 |
|
Cross-Site Scripting (XSS) in privilege-escalation (CVE-2026-58411)
cross-site scripting in privilege-escalation (CVE-2026-58411). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15684 |
|
Vulnerability in privilege-escalation (CVE-2026-15684)
vulnerability in privilege-escalation (CVE-2026-15684). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61463 |
|
Privilege Escalation in privilege-escalation (CVE-2026-61463)
vulnerability in privilege-escalation (CVE-2026-61463). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59245 |
|
Privilege Escalation in apache (CVE-2026-59245)
vulnerability in apache (CVE-2026-59245). Confidential information can be exposed externally. Exploitable via ``dag_id``.
|
| CVE-2026-15584 |
|
Vulnerability in privilege-escalation (CVE-2026-15584)
vulnerability in privilege-escalation (CVE-2026-15584). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57813 |
|
Vulnerability in privilege-escalation (CVE-2026-57813)
vulnerability in privilege-escalation (CVE-2026-57813). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57768 |
|
Vulnerability in privilege-escalation (CVE-2026-57768)
vulnerability in privilege-escalation (CVE-2026-57768). Data can be tampered with by attackers.
|
| CVE-2026-57410 |
|
Vulnerability in privilege-escalation (CVE-2026-57410)
vulnerability in privilege-escalation (CVE-2026-57410). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57386 |
|
Vulnerability in privilege-escalation (CVE-2026-57386)
vulnerability in privilege-escalation (CVE-2026-57386). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10667 |
|
Use-After-Free in c (CVE-2026-10667)
vulnerability in c (CVE-2026-10667). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56241 |
|
Vulnerability in privilege-escalation (CVE-2026-56241)
vulnerability in privilege-escalation (CVE-2026-56241). Data can be tampered with by attackers.
|
| CVE-2026-1359 |
|
Authorization Flaw in wordpress (CVE-2026-1359)
vulnerability in wordpress (CVE-2026-1359). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7655 |
|
Vulnerability in wordpress (CVE-2026-7655)
vulnerability in wordpress (CVE-2026-7655). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14262 |
|
Privilege Escalation in wordpress (CVE-2026-14262)
vulnerability in wordpress (CVE-2026-14262). Successful exploitation can lead to full system takeover. Exploitable via ``payload``.
|
| CVE-2026-13756 |
|
Privilege Escalation in wordpress (CVE-2026-13756)
vulnerability in wordpress (CVE-2026-13756). Successful exploitation can lead to full system takeover. Exploitable via ``wp_capabilities``.
|
| CVE-2026-45196 |
|
Vulnerability in privilege-escalation (CVE-2026-45196)
vulnerability in privilege-escalation (CVE-2026-45196). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55789 |
|
Vulnerability in privilege-escalation (CVE-2026-55789)
vulnerability in privilege-escalation (CVE-2026-55789). Data can be tampered with by attackers.
|
| CVE-2026-2398 |
|
Vulnerability in privilege-escalation (CVE-2026-2398)
vulnerability in privilege-escalation (CVE-2026-2398). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54001 |
|
Vulnerability in privilege-escalation (CVE-2026-54001)
vulnerability in privilege-escalation (CVE-2026-54001). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54000 |
|
Vulnerability in privilege-escalation (CVE-2026-54000)
vulnerability in privilege-escalation (CVE-2026-54000). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15293 |
|
Vulnerability in wordpress (CVE-2026-15293)
vulnerability in wordpress (CVE-2026-15293). Successful exploitation can lead to full system takeover.
|
| CVE-2026-0275 |
|
Privilege Escalation in privilege-escalation (CVE-2026-0275)
vulnerability in privilege-escalation (CVE-2026-0275). Successful exploitation can lead to full system takeover.
|
| CVE-2026-0276 |
|
Privilege Escalation in privilege-escalation (CVE-2026-0276)
vulnerability in privilege-escalation (CVE-2026-0276). Successful exploitation can lead to full system takeover.
|
| CVE-2026-22927 |
|
Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
|
| CVE-2026-54652 |
|
Privilege Escalation in nginx (CVE-2026-54652)
vulnerability in nginx (CVE-2026-54652). Confidential information can be exposed externally. Exploitable via `GET /api/logs/{service}`.
|
| CVE-2026-14250 |
|
Privilege Escalation in wordpress (CVE-2026-14250)
vulnerability in wordpress (CVE-2026-14250). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9842 |
|
Privilege Escalation in wordpress (CVE-2026-9842)
vulnerability in wordpress (CVE-2026-9842). Data can be tampered with by attackers. Exploitable via ``manage_options``.
|
| CVE-2026-14482 |
|
Privilege Escalation in wordpress (CVE-2026-14482)
vulnerability in wordpress (CVE-2026-14482). Successful exploitation can lead to full system takeover. Exploitable via ``update_option``.
|
| CVE-2026-58583 |
|
Privilege Escalation in privilege-escalation (CVE-2026-58583)
vulnerability in privilege-escalation (CVE-2026-58583). Confidential information can be exposed externally.
|
| CVE-2026-57851 |
|
Vulnerability in privilege-escalation (CVE-2026-57851)
vulnerability in privilege-escalation (CVE-2026-57851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-20744 |
|
Vulnerability in cisa (CVE-2026-20744)
vulnerability in cisa (CVE-2026-20744). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53645 |
|
Privilege Escalation in privilege-escalation (CVE-2026-53645)
vulnerability in privilege-escalation (CVE-2026-53645). Risk of unauthorized operations or information disclosure. Exploitable via ``staff.create_and_edit_staff``.
|
| CVE-2026-48614 |
|
Code Injection in privilege-escalation (CVE-2026-48614)
code injection in privilege-escalation (CVE-2026-48614). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6509 |
|
Vulnerability in privilege-escalation (CVE-2026-6509)
vulnerability in privilege-escalation (CVE-2026-6509). Successful exploitation can lead to full system takeover.
|
| CVE-2022-4989 |
|
Vulnerability in privilege-escalation (CVE-2022-4989)
vulnerability in privilege-escalation (CVE-2022-4989). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-4990 |
|
Vulnerability in privilege-escalation (CVE-2022-4990)
vulnerability in privilege-escalation (CVE-2022-4990). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13079 |
|
Vulnerability in privilege-escalation (CVE-2026-13079)
vulnerability in privilege-escalation (CVE-2026-13079). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54998 |
|
Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
|
| CVE-2026-57692 |
|
Vulnerability in privilege-escalation (CVE-2026-57692)
vulnerability in privilege-escalation (CVE-2026-57692). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5136 |
|
Vulnerability in privilege-escalation (CVE-2026-5136)
vulnerability in privilege-escalation (CVE-2026-5136). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53902 |
|
Vulnerability in privilege-escalation (CVE-2026-53902)
vulnerability in privilege-escalation (CVE-2026-53902). Data can be tampered with by attackers.
|
| CVE-2026-13228 |
|
Privilege Escalation in wordpress (CVE-2026-13228)
vulnerability in wordpress (CVE-2026-13228). Successful exploitation can lead to full system takeover.
|