Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-287 Clear
ID Title
CVE-2026-82329 Authentication Bypass in CVE-2026-82329 (CVE-2026-82329)
authentication bypass in CVE-2026-82329 (CVE-2026-82329). Successful exploitation can lead to full system takeover.
CVE-2026-37006 Authentication Bypass in CVE-2026-37006 (CVE-2026-37006)
authentication bypass in CVE-2026-37006 (CVE-2026-37006). Successful exploitation can lead to full system takeover.
CVE-2023-49105 KEV [KEV] Authentication Bypass in owncloud (CVE-2023-49105)
authentication bypass in owncloud (CVE-2023-49105). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2026-75325 Authentication Bypass in CVE-2026-75325 (CVE-2026-75325)
authentication bypass in CVE-2026-75325 (CVE-2026-75325). Successful exploitation can lead to full system takeover.
CVE-2026-79787 Authentication Bypass in CVE-2026-79787 (CVE-2026-79787)
authentication bypass in CVE-2026-79787 (CVE-2026-79787). Successful exploitation can lead to full system takeover. Exploitable via `Authorization header`.
CVE-2026-78168 Authentication Bypass in CVE-2026-78168 (CVE-2026-78168)
authentication bypass in CVE-2026-78168 (CVE-2026-78168). Successful exploitation can lead to full system takeover.
CVE-2026-78167 Authentication Bypass in CVE-2026-78167 (CVE-2026-78167)
authentication bypass in CVE-2026-78167 (CVE-2026-78167). Successful exploitation can lead to full system takeover.
CVE-2026-77002 Authentication Bypass in wordpress (CVE-2026-77002)
authentication bypass in wordpress (CVE-2026-77002). Successful exploitation can lead to full system takeover.
CVE-2026-77001 Authentication Bypass in wordpress (CVE-2026-77001)
authentication bypass in wordpress (CVE-2026-77001). Successful exploitation can lead to full system takeover.
CVE-2026-77000 Authentication Bypass in wordpress (CVE-2026-77000)
authentication bypass in wordpress (CVE-2026-77000). Successful exploitation can lead to full system takeover.
CVE-2026-17142 Authentication Bypass in ibm (CVE-2026-17142)
authentication bypass in ibm (CVE-2026-17142). Successful exploitation can lead to full system takeover.
CVE-2026-20317 Authentication Bypass in CVE-2026-20317 (CVE-2026-20317)
authentication bypass in CVE-2026-20317 (CVE-2026-20317). Data can be tampered with by attackers.
CVE-2026-16656 Authentication Bypass in ibm (CVE-2026-16656)
authentication bypass in ibm (CVE-2026-16656). Successful exploitation can lead to full system takeover.
CVE-2026-18031 Authentication Bypass in wordpress (CVE-2026-18031)
authentication bypass in wordpress (CVE-2026-18031). Successful exploitation can lead to full system takeover.
CVE-2026-70905 Authentication Bypass in c (CVE-2026-70905)
authentication bypass in c (CVE-2026-70905). Successful exploitation can lead to full system takeover.
CVE-2026-74894 Authentication Bypass in CVE-2026-74894 (CVE-2026-74894)
authentication bypass in CVE-2026-74894 (CVE-2026-74894). Successful exploitation can lead to full system takeover. Exploitable via `Authorization header`.
CVE-2026-19977 Authentication Bypass in CVE-2026-19977 (CVE-2026-19977)
authentication bypass in CVE-2026-19977 (CVE-2026-19977). Successful exploitation can lead to full system takeover.
CVE-2026-19714 Authentication Bypass in wordpress (CVE-2026-19714)
authentication bypass in wordpress (CVE-2026-19714). Confidential information can be exposed externally.
CVE-2026-19924 Authentication Bypass in CVE-2026-19924 (CVE-2026-19924)
authentication bypass in CVE-2026-19924 (CVE-2026-19924). Successful exploitation can lead to full system takeover.
CVE-2026-15341 Authentication Bypass in wordpress (CVE-2026-15341)
authentication bypass in wordpress (CVE-2026-15341). Successful exploitation can lead to full system takeover. Exploitable via ``init``.
CVE-2026-15303 Authentication Bypass in wordpress (CVE-2026-15303)
authentication bypass in wordpress (CVE-2026-15303). Successful exploitation can lead to full system takeover.
CVE-2026-17182 Authentication Bypass in ibm (CVE-2026-17182)
authentication bypass in ibm (CVE-2026-17182). Successful exploitation can lead to full system takeover.
CVE-2026-48528 SQL Injection in tomcat (CVE-2026-48528)
SQL injection in tomcat (CVE-2026-48528). Successful exploitation can lead to full system takeover. Exploitable via ``nodeId``.
CVE-2026-59500 CWE-287: Improper Authentication
CWE-287: Improper Authentication
CVE-2026-14182 Authentication Bypass in wordpress (CVE-2026-14182)
authentication bypass in wordpress (CVE-2026-14182). Successful exploitation can lead to full system takeover.
CVE-2026-73501 Authentication Bypass in CVE-2026-73501 (CVE-2026-73501)
authentication bypass in CVE-2026-73501 (CVE-2026-73501). Confidential information can be exposed externally.
CVE-2024-27253 Authentication Bypass in CVE-2024-27253 (CVE-2024-27253)
authentication bypass in CVE-2024-27253 (CVE-2024-27253). Successful exploitation can lead to full system takeover.
CVE-2026-50561 Authentication Bypass in CVE-2026-50561 (CVE-2026-50561)
authentication bypass in CVE-2026-50561 (CVE-2026-50561). Confidential information can be exposed externally. Exploitable via `Authorization header`.
CVE-2026-26035 Authentication Bypass in CVE-2026-26035 (CVE-2026-26035)
authentication bypass in CVE-2026-26035 (CVE-2026-26035). Successful exploitation can lead to full system takeover.
CVE-2026-12571 Authentication Bypass in CVE-2026-12571 (CVE-2026-12571)
authentication bypass in CVE-2026-12571 (CVE-2026-12571). Successful exploitation can lead to full system takeover.
CVE-2026-51584 Authentication Bypass in CVE-2026-51584 (CVE-2026-51584)
authentication bypass in CVE-2026-51584 (CVE-2026-51584). Successful exploitation can lead to full system takeover.
CVE-2026-40920 Vulnerability in apache (CVE-2026-40920)
vulnerability in apache (CVE-2026-40920). Successful exploitation can lead to full system takeover.
CVE-2026-16299 Authentication Bypass in wordpress (CVE-2026-16299)
authentication bypass in wordpress (CVE-2026-16299). Successful exploitation can lead to full system takeover.
CVE-2026-15038 Authentication Bypass in wordpress (CVE-2026-15038)
authentication bypass in wordpress (CVE-2026-15038). Successful exploitation can lead to full system takeover.
CVE-2026-14205 Authentication Bypass in wordpress (CVE-2026-14205)
authentication bypass in wordpress (CVE-2026-14205). Successful exploitation can lead to full system takeover.
CVE-2026-62896 Authentication Bypass in microsoft (CVE-2026-62896)
authentication bypass in microsoft (CVE-2026-62896). Confidential information can be exposed externally.
CVE-2026-56162 Authentication Bypass in microsoft (CVE-2026-56162)
authentication bypass in microsoft (CVE-2026-56162). Successful exploitation can lead to full system takeover.
CVE-2026-65400 KEV [KEV] Authentication Bypass in Apple macos (CVE-2026-65400)
authentication bypass in Apple macos (CVE-2026-65400). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2026-48087 Authentication Bypass in CVE-2026-48087 (CVE-2026-48087)
authentication bypass in CVE-2026-48087 (CVE-2026-48087). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/auth/register/{userId}`.
CVE-2026-9192 Authentication Bypass in CVE-2026-9192 (CVE-2026-9192)
authentication bypass in CVE-2026-9192 (CVE-2026-9192). Successful exploitation can lead to full system takeover.
CVE-2026-71277 Authentication Bypass in CVE-2026-71277 (CVE-2026-71277)
authentication bypass in CVE-2026-71277 (CVE-2026-71277). Confidential information can be exposed externally. Exploitable via `Authorization header`.
CVE-2026-15210 Authentication Bypass in wordpress (CVE-2026-15210)
authentication bypass in wordpress (CVE-2026-15210). Confidential information can be exposed externally.
CVE-2026-63456 Authentication Bypass in CVE-2026-63456 (CVE-2026-63456)
authentication bypass in CVE-2026-63456 (CVE-2026-63456). Successful exploitation can lead to full system takeover.
CVE-2026-14557 Authentication Bypass in wordpress (CVE-2026-14557)
authentication bypass in wordpress (CVE-2026-14557). Confidential information can be exposed externally.
CVE-2026-14919 Authentication Bypass in wordpress (CVE-2026-14919)
authentication bypass in wordpress (CVE-2026-14919). Successful exploitation can lead to full system takeover.
CVE-2026-28323 Authentication Bypass in solarwinds (CVE-2026-28323)
authentication bypass in solarwinds (CVE-2026-28323). Successful exploitation can lead to full system takeover.
CVE-2026-58066 Authentication Bypass in rocketchat (CVE-2026-58066)
authentication bypass in rocketchat (CVE-2026-58066). Successful exploitation can lead to full system takeover.
CVE-2026-13597 Authentication Bypass in wordpress (CVE-2026-13597)
authentication bypass in wordpress (CVE-2026-13597). Confidential information can be exposed externally.
CVE-2026-13332 Authentication Bypass in wordpress (CVE-2026-13332)
authentication bypass in wordpress (CVE-2026-13332). Confidential information can be exposed externally.
CVE-2026-12877 Authentication Bypass in wordpress (CVE-2026-12877)
authentication bypass in wordpress (CVE-2026-12877). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →