Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-44106 |
|
A privilege escalation vulnerability in the init-script for user-applications allows a low...
A privilege escalation vulnerability in the init-script for user-applications allows a low...
|
| CVE-2026-44107 |
|
A reboot of the charging controller can be triggered via Modbus TCP without authentication....
A reboot of the charging controller can be triggered via Modbus TCP without authentication....
|
| CVE-2026-44099 |
|
A privilege escalation vulnerability in the system configuration allows a low-privileged local...
A privilege escalation vulnerability in the system configuration allows a low-privileged local...
|
| CVE-2026-44098 |
|
This vulnerability allows an unauthenticated remote attacker with control over the OCPP backend...
This vulnerability allows an unauthenticated remote attacker with control over the OCPP backend...
|
| CVE-2026-44094 |
|
An unauthenticated remote attacker can enforce the system to fall back to a firmware partition...
An unauthenticated remote attacker can enforce the system to fall back to a firmware partition...
|
| CVE-2026-44093 |
|
A local privilege escalation vulnerability in the init-script for user-applications allows a low...
A local privilege escalation vulnerability in the init-script for user-applications allows a low...
|
| CVE-2026-44095 |
|
A privilege escalation vulnerability in a script used for network configuration allows a low...
A privilege escalation vulnerability in a script used for network configuration allows a low...
|
| CVE-2026-44096 |
|
A privilege escalation vulnerability in udhcpc allows a local user "charx-web" to execute...
A privilege escalation vulnerability in udhcpc allows a local user "charx-web" to execute...
|
| CVE-2026-44097 |
|
A low-privileged remote attacker with "operator" access can upload arbitrary files via the REST...
A low-privileged remote attacker with "operator" access can upload arbitrary files via the REST...
|
| CVE-2026-13584 |
|
Vulnerability in dos (CVE-2026-13584)
vulnerability in dos (CVE-2026-13584). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16529 |
|
Vulnerability in dos (CVE-2026-16529)
vulnerability in dos (CVE-2026-16529). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16530 |
|
Out-of-Bounds Read in dos (CVE-2026-16530)
vulnerability in dos (CVE-2026-16530). Risk of unauthorized operations or information disclosure. Exploitable via ``pmproxy``.
|
| CVE-2026-47858 |
|
Vulnerability in spring (CVE-2026-47858)
vulnerability in spring (CVE-2026-47858). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59327 |
|
Vulnerability in spring (CVE-2026-59327)
vulnerability in spring (CVE-2026-59327). Confidential information can be exposed externally.
|
| CVE-2026-58046 |
|
SQL Injection in sqli (CVE-2026-58046)
SQL injection in sqli (CVE-2026-58046). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16531 |
|
Path Traversal in path-traversal (CVE-2026-16531)
path traversal in path-traversal (CVE-2026-16531). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14602 |
|
Code Injection in wordpress (CVE-2026-14602)
code injection in wordpress (CVE-2026-14602). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13395 |
|
SQL Injection in wordpress (CVE-2026-13395)
SQL injection in wordpress (CVE-2026-13395). Confidential information can be exposed externally.
|
| CVE-2026-15153 |
|
SQL Injection in wordpress (CVE-2026-15153)
SQL injection in wordpress (CVE-2026-15153). Confidential information can be exposed externally.
|
| CVE-2026-14239 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-14239)
cross-site scripting in wordpress (CVE-2026-14239). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13330 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13330)
cross-site scripting in wordpress (CVE-2026-13330). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11881 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11881)
cross-site scripting in wordpress (CVE-2026-11881). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13344 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13344)
cross-site scripting in wordpress (CVE-2026-13344). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67247 |
|
Path Traversal in path-traversal (CVE-2026-67247)
path traversal in path-traversal (CVE-2026-67247). Confidential information can be exposed externally.
|
| CVE-2026-12687 |
|
Privilege Escalation in wordpress (CVE-2026-12687)
vulnerability in wordpress (CVE-2026-12687). Confidential information can be exposed externally.
|
| CVE-2026-67248 |
|
Vulnerability in dos (CVE-2026-67248)
vulnerability in dos (CVE-2026-67248). Successful exploitation can lead to full system takeover.
|
| CVE-2026-1360 |
|
Unsafe Deserialization in wordpress (CVE-2026-1360)
vulnerability in wordpress (CVE-2026-1360). Successful exploitation can lead to full system takeover. Exploitable via ``allowed_classes``.
|
| CVE-2026-16610 |
|
Unrestricted File Upload in wordpress (CVE-2026-16610)
vulnerability in wordpress (CVE-2026-16610). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67246 |
|
Path Traversal in path-traversal (CVE-2026-67246)
path traversal in path-traversal (CVE-2026-67246). Confidential information can be exposed externally.
|
| CVE-2026-67245 |
|
Path Traversal in path-traversal (CVE-2026-67245)
path traversal in path-traversal (CVE-2026-67245). Data can be tampered with by attackers.
|
| CVE-2026-16092 |
|
SQL Injection in wordpress (CVE-2026-16092)
SQL injection in wordpress (CVE-2026-16092). Confidential information can be exposed externally.
|
| CVE-2026-48448 |
|
SQL Injection in sqli (CVE-2026-48448)
SQL injection in sqli (CVE-2026-48448). Confidential information can be exposed externally.
|
| CVE-2026-67244 |
|
Vulnerability in dos (CVE-2026-67244)
vulnerability in dos (CVE-2026-67244). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18188 |
|
Vulnerability in dos (CVE-2026-18188)
vulnerability in dos (CVE-2026-18188). Confidential information can be exposed externally.
|
| CVE-2026-18186 |
|
Vulnerability in dos (CVE-2026-18186)
vulnerability in dos (CVE-2026-18186). Confidential information can be exposed externally.
|
| CVE-2026-18187 |
|
Vulnerability in dos (CVE-2026-18187)
vulnerability in dos (CVE-2026-18187). Confidential information can be exposed externally.
|
| CVE-2026-15929 |
|
SQL Injection in sqli (CVE-2026-15929)
SQL injection in sqli (CVE-2026-15929). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17993 |
|
Vulnerability in privilege-escalation (CVE-2026-17993)
vulnerability in privilege-escalation (CVE-2026-17993). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17930 |
|
Vulnerability in privilege-escalation (CVE-2026-17930)
vulnerability in privilege-escalation (CVE-2026-17930). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17919 |
|
Vulnerability in privilege-escalation (CVE-2026-17919)
vulnerability in privilege-escalation (CVE-2026-17919). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17916 |
|
Vulnerability in privilege-escalation (CVE-2026-17916)
vulnerability in privilege-escalation (CVE-2026-17916). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17899 |
|
Vulnerability in privilege-escalation (CVE-2026-17899)
vulnerability in privilege-escalation (CVE-2026-17899). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17877 |
|
Privilege Escalation in privilege-escalation (CVE-2026-17877)
vulnerability in privilege-escalation (CVE-2026-17877). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17862 |
|
Use-After-Free in privilege-escalation (CVE-2026-17862)
vulnerability in privilege-escalation (CVE-2026-17862). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17863 |
|
Privilege Escalation in privilege-escalation (CVE-2026-17863)
vulnerability in privilege-escalation (CVE-2026-17863). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17864 |
|
Privilege Escalation in privilege-escalation (CVE-2026-17864)
vulnerability in privilege-escalation (CVE-2026-17864). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17868 |
|
Privilege Escalation in privilege-escalation (CVE-2026-17868)
vulnerability in privilege-escalation (CVE-2026-17868). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17861 |
|
Vulnerability in privilege-escalation (CVE-2026-17861)
vulnerability in privilege-escalation (CVE-2026-17861). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17816 |
|
Privilege Escalation in privilege-escalation (CVE-2026-17816)
vulnerability in privilege-escalation (CVE-2026-17816). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17786 |
|
Vulnerability in privilege-escalation (CVE-2026-17786)
vulnerability in privilege-escalation (CVE-2026-17786). Successful exploitation can lead to full system takeover.
|