Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-60025 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-60025)
vulnerability in csrf (CVE-2026-60025). Successful exploitation can lead to full system takeover.
|
| CVE-2026-51081 |
|
Cross-Site Scripting (XSS) in CVE-2026-51081 (CVE-2026-51081)
cross-site scripting in CVE-2026-51081 (CVE-2026-51081). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-23569 |
|
Vulnerability in CVE-2024-23569 (CVE-2024-23569)
vulnerability in CVE-2024-23569 (CVE-2024-23569). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-23565 |
|
Vulnerability in dos (CVE-2024-23565)
vulnerability in dos (CVE-2024-23565). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16014 |
|
Vulnerability in sqli (CVE-2026-16014)
vulnerability in sqli (CVE-2026-16014). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16009 |
|
Vulnerability in sqli (CVE-2026-16009)
vulnerability in sqli (CVE-2026-16009). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59252 |
|
Vulnerability in dos (CVE-2026-59252)
vulnerability in dos (CVE-2026-59252). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62764 |
|
Vulnerability in apache (CVE-2026-62764)
vulnerability in apache (CVE-2026-62764). Risk of unauthorized operations or information disclosure.
|
| CVE-2019-25764 |
|
Vulnerability in privilege-escalation (CVE-2019-25764)
vulnerability in privilege-escalation (CVE-2019-25764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10525 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-10525)
cross-site scripting in wordpress (CVE-2026-10525). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15094 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15094)
cross-site scripting in wordpress (CVE-2026-15094). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15982 |
|
Privilege Escalation in wordpress (CVE-2026-15982)
vulnerability in wordpress (CVE-2026-15982). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15759 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15759)
cross-site scripting in wordpress (CVE-2026-15759). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15161 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15161)
cross-site scripting in wordpress (CVE-2026-15161). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15457 |
|
Path Traversal in wordpress (CVE-2026-15457)
path traversal in wordpress (CVE-2026-15457). Confidential information can be exposed externally.
|
| CVE-2026-13352 |
|
Unrestricted File Upload in wordpress (CVE-2026-13352)
vulnerability in wordpress (CVE-2026-13352). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15395 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15395)
cross-site scripting in wordpress (CVE-2026-15395). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11324 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11324)
cross-site scripting in wordpress (CVE-2026-11324). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15160 |
|
Path Traversal in wordpress (CVE-2026-15160)
path traversal in wordpress (CVE-2026-15160). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62236 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-62236)
vulnerability in csrf (CVE-2026-62236). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62238 |
|
SQL Injection in sqli (CVE-2026-62238)
SQL injection in sqli (CVE-2026-62238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62237 |
|
Vulnerability in dos (CVE-2026-62237)
vulnerability in dos (CVE-2026-62237). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62232 |
|
Vulnerability in csrf (CVE-2026-62232)
vulnerability in csrf (CVE-2026-62232). Confidential information can be exposed externally.
|
| CVE-2026-62215 |
|
Vulnerability in openclaw (CVE-2026-62215)
vulnerability in openclaw (CVE-2026-62215). Confidential information can be exposed externally.
|
| CVE-2026-62207 |
|
Vulnerability in openclaw (CVE-2026-62207)
vulnerability in openclaw (CVE-2026-62207). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62210 |
|
Vulnerability in dos (CVE-2026-62210)
vulnerability in dos (CVE-2026-62210). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62202 |
|
Authorization Flaw in privilege-escalation (CVE-2026-62202)
vulnerability in privilege-escalation (CVE-2026-62202). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40106 |
|
Vulnerability in privilege-escalation (CVE-2026-40106)
vulnerability in privilege-escalation (CVE-2026-40106). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2594 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2594)
cross-site scripting in wordpress (CVE-2026-2594). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.0.7` or later.
|
| CVE-2026-14956 |
|
Privilege Escalation in wordpress (CVE-2026-14956)
vulnerability in wordpress (CVE-2026-14956). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33754 |
|
Vulnerability in dos (CVE-2026-33754)
vulnerability in dos (CVE-2026-33754). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39359 |
|
Path Traversal in path-traversal (CVE-2026-39359)
path traversal in path-traversal (CVE-2026-39359). Confidential information can be exposed externally.
|
| CVE-2026-44435 |
|
Vulnerability in dos (CVE-2026-44435)
vulnerability in dos (CVE-2026-44435). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44436 |
|
Vulnerability in dos (CVE-2026-44436)
vulnerability in dos (CVE-2026-44436). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44453 |
|
Vulnerability in dos (CVE-2026-44453)
vulnerability in dos (CVE-2026-44453). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44433 |
|
Vulnerability in dos (CVE-2026-44433)
vulnerability in dos (CVE-2026-44433). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62826 |
|
Cross-Site Scripting (XSS) in microsoft (CVE-2026-62826)
cross-site scripting in microsoft (CVE-2026-62826). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58643 |
|
Cross-Site Scripting (XSS) in microsoft (CVE-2026-58643)
cross-site scripting in microsoft (CVE-2026-58643). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14782 |
|
SQL Injection in wordpress (CVE-2026-14782)
SQL injection in wordpress (CVE-2026-14782). Confidential information can be exposed externally.
|
| CVE-2026-13713 |
|
Vulnerability in dos (CVE-2026-13713)
vulnerability in dos (CVE-2026-13713). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11889 |
|
Vulnerability in privilege-escalation (CVE-2026-11889)
vulnerability in privilege-escalation (CVE-2026-11889). Data can be tampered with by attackers.
|
| CVE-2024-32386 |
|
Path Traversal in path-traversal (CVE-2024-32386)
path traversal in path-traversal (CVE-2024-32386). Confidential information can be exposed externally.
|
| CVE-2026-38158 |
|
SQL Injection in sqli (CVE-2026-38158)
SQL injection in sqli (CVE-2026-38158). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61389 |
|
Out-of-Bounds Write in privilege-escalation (CVE-2026-61389)
out-of-bounds write in privilege-escalation (CVE-2026-61389). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60063 |
|
Out-of-Bounds Write in privilege-escalation (CVE-2026-60063)
out-of-bounds write in privilege-escalation (CVE-2026-60063). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15422 |
|
Vulnerability in CVE-2026-15422 (CVE-2026-15422)
vulnerability in CVE-2026-15422 (CVE-2026-15422). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55579 |
|
Vulnerability in pheditor/pheditor (CVE-2026-55579)
vulnerability in pheditor/pheditor (CVE-2026-55579). Successful exploitation can lead to full system takeover. Exploitable via ``admin``. Mitigation: upgrade to `2.0.6` or later.
|
| CVE-2026-53535 |
|
Path Traversal in dos (CVE-2026-53535)
path traversal in dos (CVE-2026-53535). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46686 |
|
Cross-Site Scripting (XSS) in CVE-2026-46686 (CVE-2026-46686)
cross-site scripting in CVE-2026-46686 (CVE-2026-46686). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46336 |
|
Path Traversal in path-traversal (CVE-2026-46336)
path traversal in path-traversal (CVE-2026-46336). Data can be tampered with by attackers.
|