Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: privilege-escalation Clear
ID Title
CVE-2026-15779 Vulnerability in privilege-escalation (CVE-2026-15779)
vulnerability in privilege-escalation (CVE-2026-15779). Risk of unauthorized operations or information disclosure.
CVE-2026-57996 Privilege Escalation in privilege-escalation (CVE-2026-57996)
vulnerability in privilege-escalation (CVE-2026-57996). Successful exploitation can lead to full system takeover. Exploitable via `POST /admin/api/user/add`.
CVE-2026-48321 Authorization Flaw in privilege-escalation (CVE-2026-48321)
vulnerability in privilege-escalation (CVE-2026-48321). Confidential information can be exposed externally.
CVE-2026-15429 Vulnerability in privilege-escalation (CVE-2026-15429)
vulnerability in privilege-escalation (CVE-2026-15429). Successful exploitation can lead to full system takeover.
CVE-2026-10669 Out-of-Bounds Write in c (CVE-2026-10669)
out-of-bounds write in c (CVE-2026-10669). Successful exploitation can lead to full system takeover.
CVE-2026-14852 OS Command Injection in privilege-escalation (CVE-2026-14852)
OS command injection in privilege-escalation (CVE-2026-14852). Risk of unauthorized operations or information disclosure.
CVE-2026-15183 SQL Injection in privilege-escalation (CVE-2026-15183)
SQL injection in privilege-escalation (CVE-2026-15183). Risk of unauthorized operations or information disclosure.
CVE-2026-62194 Vulnerability in privilege-escalation (CVE-2026-62194)
vulnerability in privilege-escalation (CVE-2026-62194). Successful exploitation can lead to full system takeover.
CVE-2026-58411 Cross-Site Scripting (XSS) in privilege-escalation (CVE-2026-58411)
cross-site scripting in privilege-escalation (CVE-2026-58411). Risk of unauthorized operations or information disclosure.
CVE-2026-15684 Vulnerability in privilege-escalation (CVE-2026-15684)
vulnerability in privilege-escalation (CVE-2026-15684). Successful exploitation can lead to full system takeover.
CVE-2026-61463 Privilege Escalation in privilege-escalation (CVE-2026-61463)
vulnerability in privilege-escalation (CVE-2026-61463). Successful exploitation can lead to full system takeover.
CVE-2026-59245 Privilege Escalation in apache (CVE-2026-59245)
vulnerability in apache (CVE-2026-59245). Confidential information can be exposed externally. Exploitable via ``dag_id``.
CVE-2026-15584 Vulnerability in privilege-escalation (CVE-2026-15584)
vulnerability in privilege-escalation (CVE-2026-15584). Successful exploitation can lead to full system takeover.
CVE-2026-57813 Vulnerability in privilege-escalation (CVE-2026-57813)
vulnerability in privilege-escalation (CVE-2026-57813). Successful exploitation can lead to full system takeover.
CVE-2026-57768 Vulnerability in privilege-escalation (CVE-2026-57768)
vulnerability in privilege-escalation (CVE-2026-57768). Data can be tampered with by attackers.
CVE-2026-57410 Vulnerability in privilege-escalation (CVE-2026-57410)
vulnerability in privilege-escalation (CVE-2026-57410). Successful exploitation can lead to full system takeover.
CVE-2026-57386 Vulnerability in privilege-escalation (CVE-2026-57386)
vulnerability in privilege-escalation (CVE-2026-57386). Successful exploitation can lead to full system takeover.
CVE-2026-10667 Use-After-Free in c (CVE-2026-10667)
vulnerability in c (CVE-2026-10667). Successful exploitation can lead to full system takeover.
CVE-2026-56241 Vulnerability in privilege-escalation (CVE-2026-56241)
vulnerability in privilege-escalation (CVE-2026-56241). Data can be tampered with by attackers.
CVE-2026-1359 Authorization Flaw in wordpress (CVE-2026-1359)
vulnerability in wordpress (CVE-2026-1359). Successful exploitation can lead to full system takeover.
CVE-2026-7655 Vulnerability in wordpress (CVE-2026-7655)
vulnerability in wordpress (CVE-2026-7655). Successful exploitation can lead to full system takeover.
CVE-2026-14262 Privilege Escalation in wordpress (CVE-2026-14262)
vulnerability in wordpress (CVE-2026-14262). Successful exploitation can lead to full system takeover. Exploitable via ``payload``.
CVE-2026-13756 Privilege Escalation in wordpress (CVE-2026-13756)
vulnerability in wordpress (CVE-2026-13756). Successful exploitation can lead to full system takeover. Exploitable via ``wp_capabilities``.
CVE-2026-45196 Vulnerability in privilege-escalation (CVE-2026-45196)
vulnerability in privilege-escalation (CVE-2026-45196). Successful exploitation can lead to full system takeover.
CVE-2026-55789 Vulnerability in privilege-escalation (CVE-2026-55789)
vulnerability in privilege-escalation (CVE-2026-55789). Data can be tampered with by attackers.
CVE-2026-2398 Vulnerability in privilege-escalation (CVE-2026-2398)
vulnerability in privilege-escalation (CVE-2026-2398). Successful exploitation can lead to full system takeover.
CVE-2026-54001 Vulnerability in privilege-escalation (CVE-2026-54001)
vulnerability in privilege-escalation (CVE-2026-54001). Risk of unauthorized operations or information disclosure.
CVE-2026-54000 Vulnerability in privilege-escalation (CVE-2026-54000)
vulnerability in privilege-escalation (CVE-2026-54000). Risk of unauthorized operations or information disclosure.
CVE-2026-15293 Vulnerability in wordpress (CVE-2026-15293)
vulnerability in wordpress (CVE-2026-15293). Successful exploitation can lead to full system takeover.
CVE-2026-0275 Privilege Escalation in privilege-escalation (CVE-2026-0275)
vulnerability in privilege-escalation (CVE-2026-0275). Successful exploitation can lead to full system takeover.
CVE-2026-0276 Privilege Escalation in privilege-escalation (CVE-2026-0276)
vulnerability in privilege-escalation (CVE-2026-0276). Successful exploitation can lead to full system takeover.
CVE-2026-22927 Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
CVE-2026-54652 Privilege Escalation in nginx (CVE-2026-54652)
vulnerability in nginx (CVE-2026-54652). Confidential information can be exposed externally. Exploitable via `GET /api/logs/{service}`.
CVE-2026-14250 Privilege Escalation in wordpress (CVE-2026-14250)
vulnerability in wordpress (CVE-2026-14250). Risk of unauthorized operations or information disclosure.
CVE-2026-9842 Privilege Escalation in wordpress (CVE-2026-9842)
vulnerability in wordpress (CVE-2026-9842). Data can be tampered with by attackers. Exploitable via ``manage_options``.
CVE-2026-14482 Privilege Escalation in wordpress (CVE-2026-14482)
vulnerability in wordpress (CVE-2026-14482). Successful exploitation can lead to full system takeover. Exploitable via ``update_option``.
CVE-2026-58583 Privilege Escalation in privilege-escalation (CVE-2026-58583)
vulnerability in privilege-escalation (CVE-2026-58583). Confidential information can be exposed externally.
CVE-2026-57851 Vulnerability in privilege-escalation (CVE-2026-57851)
vulnerability in privilege-escalation (CVE-2026-57851). Successful exploitation can lead to full system takeover.
CVE-2026-20744 Vulnerability in cisa (CVE-2026-20744)
vulnerability in cisa (CVE-2026-20744). Successful exploitation can lead to full system takeover.
CVE-2026-53645 Privilege Escalation in privilege-escalation (CVE-2026-53645)
vulnerability in privilege-escalation (CVE-2026-53645). Risk of unauthorized operations or information disclosure. Exploitable via ``staff.create_and_edit_staff``.
CVE-2026-48614 Code Injection in privilege-escalation (CVE-2026-48614)
code injection in privilege-escalation (CVE-2026-48614). Successful exploitation can lead to full system takeover.
CVE-2026-6509 Vulnerability in privilege-escalation (CVE-2026-6509)
vulnerability in privilege-escalation (CVE-2026-6509). Successful exploitation can lead to full system takeover.
CVE-2022-4989 Vulnerability in privilege-escalation (CVE-2022-4989)
vulnerability in privilege-escalation (CVE-2022-4989). Risk of unauthorized operations or information disclosure.
CVE-2022-4990 Vulnerability in privilege-escalation (CVE-2022-4990)
vulnerability in privilege-escalation (CVE-2022-4990). Risk of unauthorized operations or information disclosure.
CVE-2026-13079 Vulnerability in privilege-escalation (CVE-2026-13079)
vulnerability in privilege-escalation (CVE-2026-13079). Successful exploitation can lead to full system takeover.
CVE-2026-54998 Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
CVE-2026-57692 Vulnerability in privilege-escalation (CVE-2026-57692)
vulnerability in privilege-escalation (CVE-2026-57692). Successful exploitation can lead to full system takeover.
CVE-2026-5136 Vulnerability in privilege-escalation (CVE-2026-5136)
vulnerability in privilege-escalation (CVE-2026-5136). Successful exploitation can lead to full system takeover.
CVE-2026-53902 Vulnerability in privilege-escalation (CVE-2026-53902)
vulnerability in privilege-escalation (CVE-2026-53902). Data can be tampered with by attackers.
CVE-2026-13228 Privilege Escalation in wordpress (CVE-2026-13228)
vulnerability in wordpress (CVE-2026-13228). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →