Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-266 Clear
ID Title
CVE-2026-78271 Editor Privilege Escalation in FluentCRM Pro <= 3.1.12 versions.
Editor Privilege Escalation in FluentCRM Pro <= 3.1.12 versions.
CVE-2026-32566 Vulnerability in wordpress (CVE-2026-32566)
vulnerability in wordpress (CVE-2026-32566). Successful exploitation can lead to full system takeover.
CVE-2026-78477 Vulnerability in wordpress (CVE-2026-78477)
vulnerability in wordpress (CVE-2026-78477). Successful exploitation can lead to full system takeover.
CVE-2026-78267 Unauthenticated Privilege Escalation in TranslatePress <= 3.3.2 versions.
Unauthenticated Privilege Escalation in TranslatePress <= 3.3.2 versions.
CVE-2026-32561 Subscriber Privilege Escalation in Booking Hub <= 1.3.0 versions.
Subscriber Privilege Escalation in Booking Hub <= 1.3.0 versions.
CVE-2026-21756 Vulnerability in CVE-2026-21756 (CVE-2026-21756)
vulnerability in CVE-2026-21756 (CVE-2026-21756). Successful exploitation can lead to full system takeover.
CVE-2026-32558 Vulnerability in wordpress (CVE-2026-32558)
vulnerability in wordpress (CVE-2026-32558). Successful exploitation can lead to full system takeover.
CVE-2026-66648 Unauthenticated Privilege Escalation in Jawn <= 1.4.2 versions.
Unauthenticated Privilege Escalation in Jawn <= 1.4.2 versions.
CVE-2026-28165 Unauthenticated Privilege Escalation in Digits <= 9.2 versions.
Unauthenticated Privilege Escalation in Digits <= 9.2 versions.
CVE-2026-78158 Vulnerability in CVE-2026-78158 (CVE-2026-78158)
vulnerability in CVE-2026-78158 (CVE-2026-78158). Risk of unauthorized operations or information disclosure.
CVE-2026-78115 Vulnerability in CVE-2026-78115 (CVE-2026-78115)
vulnerability in CVE-2026-78115 (CVE-2026-78115). Risk of unauthorized operations or information disclosure.
CVE-2026-77795 Vulnerability in vue (CVE-2026-77795)
vulnerability in vue (CVE-2026-77795). Risk of unauthorized operations or information disclosure.
CVE-2026-77686 Vulnerability in CVE-2026-77686 (CVE-2026-77686)
vulnerability in CVE-2026-77686 (CVE-2026-77686). Risk of unauthorized operations or information disclosure.
CVE-2026-75910 Vulnerability in Amazon aws (CVE-2026-75910)
vulnerability in Amazon aws (CVE-2026-75910). Confidential information can be exposed externally.
CVE-2026-77036 Vulnerability in CVE-2026-77036 (CVE-2026-77036)
vulnerability in CVE-2026-77036 (CVE-2026-77036). Risk of unauthorized operations or information disclosure.
CVE-2026-76999 Vulnerability in CVE-2026-76999 (CVE-2026-76999)
vulnerability in CVE-2026-76999 (CVE-2026-76999). Risk of unauthorized operations or information disclosure.
CVE-2026-66682 Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.
Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.
CVE-2025-15689 Unauthenticated Privilege Escalation in Capella <= 2.5.5 versions.
Unauthenticated Privilege Escalation in Capella <= 2.5.5 versions.
CVE-2026-11861 Vulnerability in freeipa (CVE-2026-11861)
vulnerability in freeipa (CVE-2026-11861). Confidential information can be exposed externally.
CVE-2026-73390 Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions.
Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions.
CVE-2026-73347 Unauthenticated Privilege Escalation in TrueBooker <= 1.2.6 versions.
Unauthenticated Privilege Escalation in TrueBooker <= 1.2.6 versions.
CVE-2026-75978 Vulnerability in c (CVE-2026-75978)
vulnerability in c (CVE-2026-75978). Risk of unauthorized operations or information disclosure.
CVE-2026-67846 Vulnerability in CVE-2026-67846 (CVE-2026-67846)
vulnerability in CVE-2026-67846 (CVE-2026-67846). Successful exploitation can lead to full system takeover.
CVE-2026-73350 Unauthenticated Broken Authentication in SupportCandy <= 3.5.1 versions.
Unauthenticated Broken Authentication in SupportCandy <= 3.5.1 versions.
CVE-2026-68568 Subscriber Privilege Escalation in MasterStudy LMS <= 3.7.41 versions.
Subscriber Privilege Escalation in MasterStudy LMS <= 3.7.41 versions.
CVE-2026-28191 Subscriber Privilege Escalation in The Grid <= 2.7.9.1 versions.
Subscriber Privilege Escalation in The Grid <= 2.7.9.1 versions.
CVE-2024-14045 Vulnerability in CVE-2024-14045 (CVE-2024-14045)
vulnerability in CVE-2024-14045 (CVE-2024-14045). Risk of unauthorized operations or information disclosure.
CVE-2026-15218 Vulnerability in CVE-2026-15218 (CVE-2026-15218)
vulnerability in CVE-2026-15218 (CVE-2026-15218). Confidential information can be exposed externally.
CVE-2026-19996 Vulnerability in CVE-2026-19996 (CVE-2026-19996)
vulnerability in CVE-2026-19996 (CVE-2026-19996). Risk of unauthorized operations or information disclosure.
CVE-2026-19986 Vulnerability in CVE-2026-19986 (CVE-2026-19986)
vulnerability in CVE-2026-19986 (CVE-2026-19986). Risk of unauthorized operations or information disclosure.
CVE-2026-19928 Vulnerability in CVE-2026-19928 (CVE-2026-19928)
vulnerability in CVE-2026-19928 (CVE-2026-19928). Risk of unauthorized operations or information disclosure.
CVE-2026-19918 Vulnerability in CVE-2026-19918 (CVE-2026-19918)
vulnerability in CVE-2026-19918 (CVE-2026-19918). Risk of unauthorized operations or information disclosure.
CVE-2026-19893 Vulnerability in CVE-2026-19893 (CVE-2026-19893)
vulnerability in CVE-2026-19893 (CVE-2026-19893). Risk of unauthorized operations or information disclosure.
CVE-2026-19841 Vulnerability in CVE-2026-19841 (CVE-2026-19841)
vulnerability in CVE-2026-19841 (CVE-2026-19841). Risk of unauthorized operations or information disclosure.
CVE-2026-19835 Vulnerability in CVE-2026-19835 (CVE-2026-19835)
vulnerability in CVE-2026-19835 (CVE-2026-19835). Risk of unauthorized operations or information disclosure.
CVE-2026-72826 Vulnerability in CVE-2026-72826 (CVE-2026-72826)
vulnerability in CVE-2026-72826 (CVE-2026-72826). Successful exploitation can lead to full system takeover.
CVE-2026-72840 Vulnerability in CVE-2026-72840 (CVE-2026-72840)
vulnerability in CVE-2026-72840 (CVE-2026-72840). Successful exploitation can lead to full system takeover.
CVE-2026-72839 Vulnerability in CVE-2026-72839 (CVE-2026-72839)
vulnerability in CVE-2026-72839 (CVE-2026-72839). Successful exploitation can lead to full system takeover.
CVE-2026-66661 Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions.
Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions.
CVE-2026-66424 Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.7 versions.
Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.7 versions.
CVE-2026-61979 Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
CVE-2026-28161 Subscriber Privilege Escalation in Service Finder Booking <= 6.2 versions.
Subscriber Privilege Escalation in Service Finder Booking <= 6.2 versions.
CVE-2026-27543 Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
CVE-2025-9486 Vulnerability in gitlab (CVE-2025-9486)
vulnerability in gitlab (CVE-2025-9486). Risk of unauthorized operations or information disclosure.
CVE-2026-64639 Vulnerability in CVE-2026-64639 (CVE-2026-64639)
vulnerability in CVE-2026-64639 (CVE-2026-64639). Risk of unauthorized operations or information disclosure.
CVE-2026-71468 Vulnerability in CVE-2026-71468 (CVE-2026-71468)
vulnerability in CVE-2026-71468 (CVE-2026-71468). Confidential information can be exposed externally. Exploitable via ``getFederationConfig``.
CVE-2026-15467 Vulnerability in CVE-2026-15467 (CVE-2026-15467)
vulnerability in CVE-2026-15467 (CVE-2026-15467). Confidential information can be exposed externally.
CVE-2026-18621 Vulnerability in CVE-2026-18621 (CVE-2026-18621)
vulnerability in CVE-2026-18621 (CVE-2026-18621). Confidential information can be exposed externally.
CVE-2026-19381 Vulnerability in CVE-2026-19381 (CVE-2026-19381)
vulnerability in CVE-2026-19381 (CVE-2026-19381). Successful exploitation can lead to full system takeover.
CVE-2026-19376 Vulnerability in CVE-2026-19376 (CVE-2026-19376)
vulnerability in CVE-2026-19376 (CVE-2026-19376). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →