Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-27544 |
|
Unauthenticated Remote Code Execution (RCE) in QA Analytics <= 5.2.0.0 versions.
Unauthenticated Remote Code Execution (RCE) in QA Analytics <= 5.2.0.0 versions.
|
| CVE-2026-27543 |
|
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
|
| CVE-2026-19716 |
|
Cross-Site Scripting (XSS) in CVE-2026-19716 (CVE-2026-19716)
cross-site scripting in CVE-2026-19716 (CVE-2026-19716). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73583 |
|
Out-of-Bounds Read in dos (CVE-2026-73583)
vulnerability in dos (CVE-2026-73583). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73584 |
|
Vulnerability in dos (CVE-2026-73584)
vulnerability in dos (CVE-2026-73584). Data can be tampered with by attackers.
|
| CVE-2026-6470 |
|
Vulnerability in dos (CVE-2026-6470)
vulnerability in dos (CVE-2026-6470). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49827 |
|
Vulnerability in CVE-2026-49827 (CVE-2026-49827)
vulnerability in CVE-2026-49827 (CVE-2026-49827). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16241 |
|
Vulnerability in dos (CVE-2026-16241)
vulnerability in dos (CVE-2026-16241). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15741 |
|
SQL Injection in sqli (CVE-2026-15741)
SQL injection in sqli (CVE-2026-15741). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73628 |
|
Cross-Site Scripting (XSS) in CVE-2026-73628 (CVE-2026-73628)
cross-site scripting in CVE-2026-73628 (CVE-2026-73628). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.6.1` or later.
|
| CVE-2026-73625 |
|
OS Command Injection in CVE-2026-73625 (CVE-2026-73625)
OS command injection in CVE-2026-73625 (CVE-2026-73625). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73602 |
|
Vulnerability in path-traversal (CVE-2026-73602)
vulnerability in path-traversal (CVE-2026-73602). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73605 |
|
Vulnerability in path-traversal (CVE-2026-73605)
vulnerability in path-traversal (CVE-2026-73605). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73601 |
|
Vulnerability in CVE-2026-73601 (CVE-2026-73601)
vulnerability in CVE-2026-73601 (CVE-2026-73601). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73487 |
|
Code Injection in ssrf (CVE-2026-73487)
code injection in ssrf (CVE-2026-73487). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18368 |
|
Vulnerability in c (CVE-2026-18368)
vulnerability in c (CVE-2026-18368). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45819 |
|
Vulnerability in dos (CVE-2026-45819)
vulnerability in dos (CVE-2026-45819). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12263 |
|
Vulnerability in CVE-2026-12263 (CVE-2026-12263)
vulnerability in CVE-2026-12263 (CVE-2026-12263). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19696 |
|
Out-of-Bounds Write in dos (CVE-2026-19696)
out-of-bounds write in dos (CVE-2026-19696). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19695 |
|
Gammu DCT3 trace file parser crash in 4.6.0 to 4.6.7 allows denial of service
Gammu DCT3 trace file parser crash in 4.6.0 to 4.6.7 allows denial of service
|
| CVE-2026-19694 |
|
TTX Logger file parser crash in 4.6.0 to 4.6.7 allows denial of service
TTX Logger file parser crash in 4.6.0 to 4.6.7 allows denial of service
|
| CVE-2026-14298 |
|
Vulnerability in dos (CVE-2026-14298)
vulnerability in dos (CVE-2026-14298). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19481 |
|
Vulnerability in dos (CVE-2026-19481)
vulnerability in dos (CVE-2026-19481). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3639 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3639)
cross-site scripting in wordpress (CVE-2026-3639). Risk of unauthorized operations or information disclosure. Exploitable via ``ppwp``.
|
| CVE-2026-11840 |
|
Zohocorp ManageEngine Password Manager Pro versions before 13232 and ManageEngine PAM360 versions...
Zohocorp ManageEngine Password Manager Pro versions before 13232 and ManageEngine PAM360 versions...
|
| CVE-2026-18146 |
|
The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin...
The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin...
|
| CVE-2026-19088 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-19088)
vulnerability in wordpress (CVE-2026-19088). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18728 |
|
Vulnerability in dos (CVE-2026-18728)
vulnerability in dos (CVE-2026-18728). Risk of unauthorized operations or information disclosure. Exploitable via ``iscsiuio``.
|
| CVE-2026-0299 |
|
Vulnerability in privilege-escalation (CVE-2026-0299)
vulnerability in privilege-escalation (CVE-2026-0299). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-0294 |
|
Vulnerability in privilege-escalation (CVE-2026-0294)
vulnerability in privilege-escalation (CVE-2026-0294). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-0292 |
|
Vulnerability in CVE-2026-0292 (CVE-2026-0292)
vulnerability in CVE-2026-0292 (CVE-2026-0292). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71193 |
|
Authorization Flaw in dos (CVE-2026-71193)
vulnerability in dos (CVE-2026-71193). Data can be tampered with by attackers.
|
| CVE-2026-49819 |
|
OS Command Injection in c (CVE-2026-49819)
OS command injection in c (CVE-2026-49819). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/upsnap/init-superuser`.
|
| CVE-2026-49481 |
|
OS Command Injection in c (CVE-2026-49481)
OS command injection in c (CVE-2026-49481). Confidential information can be exposed externally.
|
| CVE-2026-71471 |
|
Vulnerability in CVE-2026-71471 (CVE-2026-71471)
vulnerability in CVE-2026-71471 (CVE-2026-71471). Confidential information can be exposed externally. Exploitable via ``Collector.ImageOverride``.
|
| CVE-2026-71469 |
|
Vulnerability in dos (CVE-2026-71469)
vulnerability in dos (CVE-2026-71469). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17485 |
|
Out-of-Bounds Read in dos (CVE-2026-17485)
vulnerability in dos (CVE-2026-17485). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18726 |
|
Vulnerability in dos (CVE-2026-18726)
vulnerability in dos (CVE-2026-18726). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18727 |
|
Vulnerability in dos (CVE-2026-18727)
vulnerability in dos (CVE-2026-18727). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64826 |
|
Path Traversal in path-traversal (CVE-2026-64826)
path traversal in path-traversal (CVE-2026-64826). Confidential information can be exposed externally.
|
| CVE-2026-13105 |
|
Path Traversal in path-traversal (CVE-2026-13105)
path traversal in path-traversal (CVE-2026-13105). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18096 |
|
Vulnerability in dos (CVE-2026-18096)
vulnerability in dos (CVE-2026-18096). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13367 |
|
Vulnerability in privilege-escalation (CVE-2026-13367)
vulnerability in privilege-escalation (CVE-2026-13367). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11932 |
|
Vulnerability in dos (CVE-2026-11932)
vulnerability in dos (CVE-2026-11932). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10543 |
|
Vulnerability in privilege-escalation (CVE-2026-10543)
vulnerability in privilege-escalation (CVE-2026-10543). Data can be tampered with by attackers.
|
| CVE-2026-66898 |
|
Path Traversal in path-traversal (CVE-2026-66898)
path traversal in path-traversal (CVE-2026-66898). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19654 |
|
Out-of-Bounds Read in privilege-escalation (CVE-2026-19654)
vulnerability in privilege-escalation (CVE-2026-19654). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16033 |
|
Path Traversal in path-traversal (CVE-2026-16033)
path traversal in path-traversal (CVE-2026-16033). Confidential information can be exposed externally.
|
| CVE-2026-73433 |
|
Vulnerability in dos (CVE-2026-73433)
vulnerability in dos (CVE-2026-73433). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73434 |
|
Out-of-Bounds Read in dos (CVE-2026-73434)
vulnerability in dos (CVE-2026-73434). Risk of unauthorized operations or information disclosure.
|