Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-82329 |
|
Authentication Bypass in CVE-2026-82329 (CVE-2026-82329)
authentication bypass in CVE-2026-82329 (CVE-2026-82329). Successful exploitation can lead to full system takeover.
|
| CVE-2026-37006 |
|
Authentication Bypass in CVE-2026-37006 (CVE-2026-37006)
authentication bypass in CVE-2026-37006 (CVE-2026-37006). Successful exploitation can lead to full system takeover.
|
| CVE-2023-49105 KEV |
|
[KEV] Authentication Bypass in owncloud (CVE-2023-49105)
authentication bypass in owncloud (CVE-2023-49105). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-75325 |
|
Authentication Bypass in CVE-2026-75325 (CVE-2026-75325)
authentication bypass in CVE-2026-75325 (CVE-2026-75325). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79787 |
|
Authentication Bypass in CVE-2026-79787 (CVE-2026-79787)
authentication bypass in CVE-2026-79787 (CVE-2026-79787). Successful exploitation can lead to full system takeover. Exploitable via `Authorization header`.
|
| CVE-2026-78168 |
|
Authentication Bypass in CVE-2026-78168 (CVE-2026-78168)
authentication bypass in CVE-2026-78168 (CVE-2026-78168). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78167 |
|
Authentication Bypass in CVE-2026-78167 (CVE-2026-78167)
authentication bypass in CVE-2026-78167 (CVE-2026-78167). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77002 |
|
Authentication Bypass in wordpress (CVE-2026-77002)
authentication bypass in wordpress (CVE-2026-77002). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77001 |
|
Authentication Bypass in wordpress (CVE-2026-77001)
authentication bypass in wordpress (CVE-2026-77001). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77000 |
|
Authentication Bypass in wordpress (CVE-2026-77000)
authentication bypass in wordpress (CVE-2026-77000). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17142 |
|
Authentication Bypass in ibm (CVE-2026-17142)
authentication bypass in ibm (CVE-2026-17142). Successful exploitation can lead to full system takeover.
|
| CVE-2026-20317 |
|
Authentication Bypass in CVE-2026-20317 (CVE-2026-20317)
authentication bypass in CVE-2026-20317 (CVE-2026-20317). Data can be tampered with by attackers.
|
| CVE-2026-16656 |
|
Authentication Bypass in ibm (CVE-2026-16656)
authentication bypass in ibm (CVE-2026-16656). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18031 |
|
Authentication Bypass in wordpress (CVE-2026-18031)
authentication bypass in wordpress (CVE-2026-18031). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70905 |
|
Authentication Bypass in c (CVE-2026-70905)
authentication bypass in c (CVE-2026-70905). Successful exploitation can lead to full system takeover.
|
| CVE-2026-74894 |
|
Authentication Bypass in CVE-2026-74894 (CVE-2026-74894)
authentication bypass in CVE-2026-74894 (CVE-2026-74894). Successful exploitation can lead to full system takeover. Exploitable via `Authorization header`.
|
| CVE-2026-19977 |
|
Authentication Bypass in CVE-2026-19977 (CVE-2026-19977)
authentication bypass in CVE-2026-19977 (CVE-2026-19977). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19714 |
|
Authentication Bypass in wordpress (CVE-2026-19714)
authentication bypass in wordpress (CVE-2026-19714). Confidential information can be exposed externally.
|
| CVE-2026-19924 |
|
Authentication Bypass in CVE-2026-19924 (CVE-2026-19924)
authentication bypass in CVE-2026-19924 (CVE-2026-19924). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15341 |
|
Authentication Bypass in wordpress (CVE-2026-15341)
authentication bypass in wordpress (CVE-2026-15341). Successful exploitation can lead to full system takeover. Exploitable via ``init``.
|
| CVE-2026-15303 |
|
Authentication Bypass in wordpress (CVE-2026-15303)
authentication bypass in wordpress (CVE-2026-15303). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17182 |
|
Authentication Bypass in ibm (CVE-2026-17182)
authentication bypass in ibm (CVE-2026-17182). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48528 |
|
SQL Injection in tomcat (CVE-2026-48528)
SQL injection in tomcat (CVE-2026-48528). Successful exploitation can lead to full system takeover. Exploitable via ``nodeId``.
|
| CVE-2026-59500 |
|
CWE-287: Improper Authentication
CWE-287: Improper Authentication
|
| CVE-2026-14182 |
|
Authentication Bypass in wordpress (CVE-2026-14182)
authentication bypass in wordpress (CVE-2026-14182). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73501 |
|
Authentication Bypass in CVE-2026-73501 (CVE-2026-73501)
authentication bypass in CVE-2026-73501 (CVE-2026-73501). Confidential information can be exposed externally.
|
| CVE-2024-27253 |
|
Authentication Bypass in CVE-2024-27253 (CVE-2024-27253)
authentication bypass in CVE-2024-27253 (CVE-2024-27253). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50561 |
|
Authentication Bypass in CVE-2026-50561 (CVE-2026-50561)
authentication bypass in CVE-2026-50561 (CVE-2026-50561). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-26035 |
|
Authentication Bypass in CVE-2026-26035 (CVE-2026-26035)
authentication bypass in CVE-2026-26035 (CVE-2026-26035). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12571 |
|
Authentication Bypass in CVE-2026-12571 (CVE-2026-12571)
authentication bypass in CVE-2026-12571 (CVE-2026-12571). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51584 |
|
Authentication Bypass in CVE-2026-51584 (CVE-2026-51584)
authentication bypass in CVE-2026-51584 (CVE-2026-51584). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40920 |
|
Vulnerability in apache (CVE-2026-40920)
vulnerability in apache (CVE-2026-40920). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16299 |
|
Authentication Bypass in wordpress (CVE-2026-16299)
authentication bypass in wordpress (CVE-2026-16299). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15038 |
|
Authentication Bypass in wordpress (CVE-2026-15038)
authentication bypass in wordpress (CVE-2026-15038). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14205 |
|
Authentication Bypass in wordpress (CVE-2026-14205)
authentication bypass in wordpress (CVE-2026-14205). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62896 |
|
Authentication Bypass in microsoft (CVE-2026-62896)
authentication bypass in microsoft (CVE-2026-62896). Confidential information can be exposed externally.
|
| CVE-2026-56162 |
|
Authentication Bypass in microsoft (CVE-2026-56162)
authentication bypass in microsoft (CVE-2026-56162). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65400 KEV |
|
[KEV] Authentication Bypass in Apple macos (CVE-2026-65400)
authentication bypass in Apple macos (CVE-2026-65400). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-48087 |
|
Authentication Bypass in CVE-2026-48087 (CVE-2026-48087)
authentication bypass in CVE-2026-48087 (CVE-2026-48087). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/auth/register/{userId}`.
|
| CVE-2026-9192 |
|
Authentication Bypass in CVE-2026-9192 (CVE-2026-9192)
authentication bypass in CVE-2026-9192 (CVE-2026-9192). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71277 |
|
Authentication Bypass in CVE-2026-71277 (CVE-2026-71277)
authentication bypass in CVE-2026-71277 (CVE-2026-71277). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-15210 |
|
Authentication Bypass in wordpress (CVE-2026-15210)
authentication bypass in wordpress (CVE-2026-15210). Confidential information can be exposed externally.
|
| CVE-2026-63456 |
|
Authentication Bypass in CVE-2026-63456 (CVE-2026-63456)
authentication bypass in CVE-2026-63456 (CVE-2026-63456). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14557 |
|
Authentication Bypass in wordpress (CVE-2026-14557)
authentication bypass in wordpress (CVE-2026-14557). Confidential information can be exposed externally.
|
| CVE-2026-14919 |
|
Authentication Bypass in wordpress (CVE-2026-14919)
authentication bypass in wordpress (CVE-2026-14919). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28323 |
|
Authentication Bypass in solarwinds (CVE-2026-28323)
authentication bypass in solarwinds (CVE-2026-28323). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58066 |
|
Authentication Bypass in rocketchat (CVE-2026-58066)
authentication bypass in rocketchat (CVE-2026-58066). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13597 |
|
Authentication Bypass in wordpress (CVE-2026-13597)
authentication bypass in wordpress (CVE-2026-13597). Confidential information can be exposed externally.
|
| CVE-2026-13332 |
|
Authentication Bypass in wordpress (CVE-2026-13332)
authentication bypass in wordpress (CVE-2026-13332). Confidential information can be exposed externally.
|
| CVE-2026-12877 |
|
Authentication Bypass in wordpress (CVE-2026-12877)
authentication bypass in wordpress (CVE-2026-12877). Confidential information can be exposed externally.
|