Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: attack-types Clear
ID Title
CVE-2026-55996 Vulnerability in dos (CVE-2026-55996)
vulnerability in dos (CVE-2026-55996). Risk of unauthorized operations or information disclosure.
CVE-2026-5108 Cross-Site Scripting (XSS) in wordpress (CVE-2026-5108)
cross-site scripting in wordpress (CVE-2026-5108). Risk of unauthorized operations or information disclosure. Exploitable via ``innerHTML``.
CVE-2026-5116 Cross-Site Scripting (XSS) in wordpress (CVE-2026-5116)
cross-site scripting in wordpress (CVE-2026-5116). Risk of unauthorized operations or information disclosure.
CVE-2026-54416 Unrestricted File Upload in CVE-2026-54416 (CVE-2026-54416)
vulnerability in CVE-2026-54416 (CVE-2026-54416). Successful exploitation can lead to full system takeover.
CVE-2026-54418 Leantime through 3.6.2 exposes the JSON-RPC methods leantime.rpc.TwoFA.TwoFA.getSetupData,...
Leantime through 3.6.2 exposes the JSON-RPC methods leantime.rpc.TwoFA.TwoFA.getSetupData,...
CVE-2026-55739 Crater isolates data per company_id, and its Invoice/Estimate/Payment/Expense policies enforce...
Crater isolates data per company_id, and its Invoice/Estimate/Payment/Expense policies enforce...
CVE-2026-18881 SQL Injection in wordpress (CVE-2026-18881)
SQL injection in wordpress (CVE-2026-18881). Confidential information can be exposed externally. Exploitable via ``tableon_get_table_data``.
CVE-2026-17532 Cross-Site Scripting (XSS) in wordpress (CVE-2026-17532)
cross-site scripting in wordpress (CVE-2026-17532). Risk of unauthorized operations or information disclosure.
CVE-2026-17505 Cross-Site Scripting (XSS) in wordpress (CVE-2026-17505)
cross-site scripting in wordpress (CVE-2026-17505). Risk of unauthorized operations or information disclosure.
CVE-2026-15281 SQL Injection in wordpress (CVE-2026-15281)
SQL injection in wordpress (CVE-2026-15281). Confidential information can be exposed externally.
CVE-2026-11977 SQL Injection in wordpress (CVE-2026-11977)
SQL injection in wordpress (CVE-2026-11977). Confidential information can be exposed externally.
CVE-2026-11969 SQL Injection in wordpress (CVE-2026-11969)
SQL injection in wordpress (CVE-2026-11969). Confidential information can be exposed externally.
CVE-2026-11920 SQL Injection in wordpress (CVE-2026-11920)
SQL injection in wordpress (CVE-2026-11920). Confidential information can be exposed externally.
CVE-2026-68075 Vulnerability in apache (CVE-2026-68075)
vulnerability in apache (CVE-2026-68075). Risk of unauthorized operations or information disclosure.
CVE-2026-68077 Vulnerability in apache (CVE-2026-68077)
vulnerability in apache (CVE-2026-68077). Risk of unauthorized operations or information disclosure.
CVE-2026-68078 Vulnerability in apache (CVE-2026-68078)
vulnerability in apache (CVE-2026-68078). Risk of unauthorized operations or information disclosure.
CVE-2026-68080 Vulnerability in apache (CVE-2026-68080)
vulnerability in apache (CVE-2026-68080). Risk of unauthorized operations or information disclosure.
CVE-2026-67552 Vulnerability in apache (CVE-2026-67552)
vulnerability in apache (CVE-2026-67552). Risk of unauthorized operations or information disclosure.
CVE-2026-67553 Vulnerability in apache (CVE-2026-67553)
vulnerability in apache (CVE-2026-67553). Risk of unauthorized operations or information disclosure.
CVE-2026-67554 Vulnerability in apache (CVE-2026-67554)
vulnerability in apache (CVE-2026-67554). Risk of unauthorized operations or information disclosure.
CVE-2026-67555 Vulnerability in apache (CVE-2026-67555)
vulnerability in apache (CVE-2026-67555). Risk of unauthorized operations or information disclosure.
CVE-2026-67590 Vulnerability in apache (CVE-2026-67590)
vulnerability in apache (CVE-2026-67590). Risk of unauthorized operations or information disclosure.
CVE-2026-67591 Vulnerability in apache (CVE-2026-67591)
vulnerability in apache (CVE-2026-67591). Risk of unauthorized operations or information disclosure.
CVE-2026-67592 Vulnerability in apache (CVE-2026-67592)
vulnerability in apache (CVE-2026-67592). Risk of unauthorized operations or information disclosure.
CVE-2026-68073 Vulnerability in apache (CVE-2026-68073)
vulnerability in apache (CVE-2026-68073). Risk of unauthorized operations or information disclosure.
CVE-2026-66274 Vulnerability in apache (CVE-2026-66274)
vulnerability in apache (CVE-2026-66274). Risk of unauthorized operations or information disclosure.
CVE-2026-66275 Vulnerability in apache (CVE-2026-66275)
vulnerability in apache (CVE-2026-66275). Risk of unauthorized operations or information disclosure.
CVE-2026-66276 Vulnerability in apache (CVE-2026-66276)
vulnerability in apache (CVE-2026-66276). Risk of unauthorized operations or information disclosure.
CVE-2026-66277 Vulnerability in apache (CVE-2026-66277)
vulnerability in apache (CVE-2026-66277). Risk of unauthorized operations or information disclosure.
CVE-2026-17515 Information Disclosure in wordpress (CVE-2026-17515)
vulnerability in wordpress (CVE-2026-17515). Risk of unauthorized operations or information disclosure.
CVE-2026-15360 SQL Injection in wordpress (CVE-2026-15360)
SQL injection in wordpress (CVE-2026-15360). Confidential information can be exposed externally.
CVE-2026-16573 Cross-Site Scripting (XSS) in wordpress (CVE-2026-16573)
cross-site scripting in wordpress (CVE-2026-16573). Successful exploitation can lead to full system takeover.
CVE-2026-16583 Cross-Site Scripting (XSS) in wordpress (CVE-2026-16583)
cross-site scripting in wordpress (CVE-2026-16583). Risk of unauthorized operations or information disclosure.
CVE-2026-14553 Unrestricted File Upload in wordpress (CVE-2026-14553)
vulnerability in wordpress (CVE-2026-14553). Confidential information can be exposed externally.
CVE-2025-15677 Cross-Site Scripting (XSS) in wordpress (CVE-2025-15677)
cross-site scripting in wordpress (CVE-2025-15677). Risk of unauthorized operations or information disclosure.
CVE-2026-8790 Cross-Site Scripting (XSS) in wordpress (CVE-2026-8790)
cross-site scripting in wordpress (CVE-2026-8790). Risk of unauthorized operations or information disclosure. Exploitable via ``shouttext``.
CVE-2026-8761 Vulnerability in wordpress (CVE-2026-8761)
vulnerability in wordpress (CVE-2026-8761). Successful exploitation can lead to full system takeover. Exploitable via ``CustomersController``.
CVE-2026-66257 Vulnerability in apache (CVE-2026-66257)
vulnerability in apache (CVE-2026-66257). Risk of unauthorized operations or information disclosure.
CVE-2026-67465 Vulnerability in apache (CVE-2026-67465)
vulnerability in apache (CVE-2026-67465). Risk of unauthorized operations or information disclosure.
CVE-2026-66273 Vulnerability in apache (CVE-2026-66273)
vulnerability in apache (CVE-2026-66273). Risk of unauthorized operations or information disclosure.
CVE-2026-68060 Vulnerability in apache (CVE-2026-68060)
vulnerability in apache (CVE-2026-68060). Risk of unauthorized operations or information disclosure.
CVE-2026-67589 Vulnerability in apache (CVE-2026-67589)
vulnerability in apache (CVE-2026-67589). Risk of unauthorized operations or information disclosure.
CVE-2026-67551 Vulnerability in apache (CVE-2026-67551)
vulnerability in apache (CVE-2026-67551). Risk of unauthorized operations or information disclosure.
CVE-2026-67588 Vulnerability in apache (CVE-2026-67588)
vulnerability in apache (CVE-2026-67588). Risk of unauthorized operations or information disclosure.
CVE-2026-68074 Vulnerability in apache (CVE-2026-68074)
vulnerability in apache (CVE-2026-68074). Risk of unauthorized operations or information disclosure.
CVE-2026-71190 Vulnerability in dos (CVE-2026-71190)
vulnerability in dos (CVE-2026-71190). Risk of unauthorized operations or information disclosure.
CVE-2026-5062 SQL Injection in wordpress (CVE-2026-5062)
SQL injection in wordpress (CVE-2026-5062). Confidential information can be exposed externally.
CVE-2026-15918 SQL Injection in wordpress (CVE-2026-15918)
SQL injection in wordpress (CVE-2026-15918). Confidential information can be exposed externally.
CVE-2026-11421 SQL Injection in wordpress (CVE-2026-11421)
SQL injection in wordpress (CVE-2026-11421). Confidential information can be exposed externally.
CVE-2026-15941 SQL Injection in wordpress (CVE-2026-15941)
SQL injection in wordpress (CVE-2026-15941). Confidential information can be exposed externally. Exploitable via ``edit_posts``.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →