Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-59654 |
|
Vulnerability in apache (CVE-2026-59654)
vulnerability in apache (CVE-2026-59654). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77029 |
|
Joomla Extension - yootheme.com - Missing CSRF tokens on front-end state changes in Zoo < 4.1.66
Joomla Extension - yootheme.com - Missing CSRF tokens on front-end state changes in Zoo < 4.1.66
|
| CVE-2026-59279 |
|
Vulnerability in dos (CVE-2026-59279)
vulnerability in dos (CVE-2026-59279). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59318 |
|
Authorization Flaw in privilege-escalation (CVE-2026-59318)
vulnerability in privilege-escalation (CVE-2026-59318). Confidential information can be exposed externally.
|
| CVE-2026-15046 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-15046)
vulnerability in wordpress (CVE-2026-15046). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77086 |
|
Path Traversal in path-traversal (CVE-2026-77086)
path traversal in path-traversal (CVE-2026-77086). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77751 |
|
Path Traversal in path-traversal (CVE-2026-77751)
path traversal in path-traversal (CVE-2026-77751). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47079 |
|
Vulnerability in CVE-2026-47079 (CVE-2026-47079)
vulnerability in CVE-2026-47079 (CVE-2026-47079). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59323 |
|
Vulnerability in spring (CVE-2026-59323)
vulnerability in spring (CVE-2026-59323). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61422 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-61422)
SSRF in apache (CVE-2026-61422). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59085 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-59085)
SSRF in apache (CVE-2026-59085). Confidential information can be exposed externally.
|
| CVE-2026-50112 |
|
OS Command Injection in apache (CVE-2026-50112)
OS command injection in apache (CVE-2026-50112). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73537 |
|
Cross-Site Scripting (XSS) in CVE-2026-73537 (CVE-2026-73537)
cross-site scripting in CVE-2026-73537 (CVE-2026-73537). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77264 |
|
Vulnerability in wordpress (CVE-2026-77264)
vulnerability in wordpress (CVE-2026-77264). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16323 |
|
Vulnerability in CVE-2026-16323 (CVE-2026-16323)
vulnerability in CVE-2026-16323 (CVE-2026-16323). Confidential information can be exposed externally.
|
| CVE-2026-14601 |
|
SQL Injection in wordpress (CVE-2026-14601)
SQL injection in wordpress (CVE-2026-14601). Confidential information can be exposed externally.
|
| CVE-2026-16959 |
|
SQL Injection in wordpress (CVE-2026-16959)
SQL injection in wordpress (CVE-2026-16959). Confidential information can be exposed externally.
|
| CVE-2026-18409 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18409)
cross-site scripting in wordpress (CVE-2026-18409). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73267 |
|
Vulnerability in dos (CVE-2026-73267)
vulnerability in dos (CVE-2026-73267). Risk of unauthorized operations or information disclosure. Exploitable via ``spec.namespace``.
|
| CVE-2026-77392 |
|
Vulnerability in sqli (CVE-2026-77392)
vulnerability in sqli (CVE-2026-77392). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16520 |
|
Vulnerability in sqli (CVE-2026-16520)
vulnerability in sqli (CVE-2026-16520). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77113 |
|
Vulnerability in path-traversal (CVE-2026-77113)
vulnerability in path-traversal (CVE-2026-77113). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77648 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-77648)
SSRF in ssrf (CVE-2026-77648). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77643 |
|
Cross-Site Scripting (XSS) in CVE-2026-77643 (CVE-2026-77643)
cross-site scripting in CVE-2026-77643 (CVE-2026-77643). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77645 |
|
Vulnerability in deserialization (CVE-2026-77645)
vulnerability in deserialization (CVE-2026-77645). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77646 |
|
Unsafe Deserialization in ssrf (CVE-2026-77646)
vulnerability in ssrf (CVE-2026-77646). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69855 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-69855)
SSRF in ssrf (CVE-2026-69855). Confidential information can be exposed externally.
|
| CVE-2026-69543 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-69543)
SSRF in ssrf (CVE-2026-69543). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69851 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-69851)
SSRF in ssrf (CVE-2026-69851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-69836 KEV |
|
[KEV] Unsafe Deserialization in Microsoft deserialization (CVE-2026-69836)
vulnerability in Microsoft deserialization (CVE-2026-69836). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-69400 |
|
Path Traversal in path-traversal (CVE-2026-69400)
path traversal in path-traversal (CVE-2026-69400). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68782 |
|
SQL Injection in sqli (CVE-2026-68782)
SQL injection in sqli (CVE-2026-68782). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68789 |
|
SQL Injection in sqli (CVE-2026-68789)
SQL injection in sqli (CVE-2026-68789). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66800 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-66800)
SSRF in ssrf (CVE-2026-66800). Confidential information can be exposed externally.
|
| CVE-2026-65801 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-65801)
SSRF in ssrf (CVE-2026-65801). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63509 |
|
Vulnerability in path-traversal (CVE-2026-63509)
vulnerability in path-traversal (CVE-2026-63509). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54389 |
|
Vulnerability in deserialization (CVE-2026-54389)
vulnerability in deserialization (CVE-2026-54389). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19448 |
|
Vulnerability in dos (CVE-2026-19448)
vulnerability in dos (CVE-2026-19448). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19783 |
|
Out-of-Bounds Write in privilege-escalation (CVE-2026-19783)
out-of-bounds write in privilege-escalation (CVE-2026-19783). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19442 |
|
Vulnerability in privilege-escalation (CVE-2026-19442)
vulnerability in privilege-escalation (CVE-2026-19442). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18828 |
|
Out-of-Bounds Write in dos (CVE-2026-18828)
out-of-bounds write in dos (CVE-2026-18828). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17425 |
|
Out-of-Bounds Write in dos (CVE-2026-17425)
out-of-bounds write in dos (CVE-2026-17425). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18670 |
|
Vulnerability in dos (CVE-2026-18670)
vulnerability in dos (CVE-2026-18670). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18716 |
|
Out-of-Bounds Read in dos (CVE-2026-18716)
vulnerability in dos (CVE-2026-18716). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18822 |
|
Vulnerability in dos (CVE-2026-18822)
vulnerability in dos (CVE-2026-18822). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17170 |
|
Vulnerability in dos (CVE-2026-17170)
vulnerability in dos (CVE-2026-17170). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17195 |
|
Out-of-Bounds Write in dos (CVE-2026-17195)
out-of-bounds write in dos (CVE-2026-17195). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17423 |
|
Out-of-Bounds Read in dos (CVE-2026-17423)
vulnerability in dos (CVE-2026-17423). Confidential information can be exposed externally.
|
| CVE-2026-17159 |
|
Vulnerability in dos (CVE-2026-17159)
vulnerability in dos (CVE-2026-17159). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17163 |
|
Vulnerability in dos (CVE-2026-17163)
vulnerability in dos (CVE-2026-17163). Risk of unauthorized operations or information disclosure.
|