Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-1667 |
|
Vulnerability in wordpress (CVE-2026-1667)
vulnerability in wordpress (CVE-2026-1667). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3251 |
|
Cross-Site Scripting (XSS) in CVE-2026-3251 (CVE-2026-3251)
cross-site scripting in CVE-2026-3251 (CVE-2026-3251). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-70796 |
|
Path Traversal in path-traversal (CVE-2025-70796)
path traversal in path-traversal (CVE-2025-70796). Confidential information can be exposed externally.
|
| CVE-2026-2398 |
|
Vulnerability in privilege-escalation (CVE-2026-2398)
vulnerability in privilege-escalation (CVE-2026-2398). Successful exploitation can lead to full system takeover.
|
| CVE-2026-39244 |
|
Vulnerability in adm-zip (CVE-2026-39244)
vulnerability in adm-zip (CVE-2026-39244). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.6.0` or later.
|
| CVE-2026-58493 |
|
Vulnerability in path-traversal (CVE-2026-58493)
vulnerability in path-traversal (CVE-2026-58493). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55687 |
|
Vulnerability in c (CVE-2026-55687)
vulnerability in c (CVE-2026-55687). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8609 |
|
Vulnerability in dos (CVE-2026-8609)
vulnerability in dos (CVE-2026-8609). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8595 |
|
Cross-Site Scripting (XSS) in grafana (CVE-2026-8595)
cross-site scripting in grafana (CVE-2026-8595). Confidential information can be exposed externally.
|
| CVE-2026-54000 |
|
Vulnerability in privilege-escalation (CVE-2026-54000)
vulnerability in privilege-escalation (CVE-2026-54000). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-54001 |
|
Vulnerability in privilege-escalation (CVE-2026-54001)
vulnerability in privilege-escalation (CVE-2026-54001). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-33382 |
|
Vulnerability in dos (CVE-2026-33382)
vulnerability in dos (CVE-2026-33382). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61455 |
|
Vulnerability in dos (CVE-2026-61455)
vulnerability in dos (CVE-2026-61455). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61492 |
|
Cross-Site Scripting (XSS) in jetbrains (CVE-2026-61492)
cross-site scripting in jetbrains (CVE-2026-61492). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60091 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-60091)
SSRF in ssrf (CVE-2026-60091). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59794 |
|
Cross-Site Scripting (XSS) in jetbrains (CVE-2026-59794)
cross-site scripting in jetbrains (CVE-2026-59794). Confidential information can be exposed externally.
|
| CVE-2026-59795 |
|
Cross-Site Scripting (XSS) in jetbrains (CVE-2026-59795)
cross-site scripting in jetbrains (CVE-2026-59795). Confidential information can be exposed externally.
|
| CVE-2026-61432 |
|
Path Traversal in path-traversal (CVE-2026-61432)
path traversal in path-traversal (CVE-2026-61432). Confidential information can be exposed externally.
|
| CVE-2026-61431 |
|
Path Traversal in path-traversal (CVE-2026-61431)
path traversal in path-traversal (CVE-2026-61431). Confidential information can be exposed externally.
|
| CVE-2026-59792 |
|
Vulnerability in path-traversal (CVE-2026-59792)
vulnerability in path-traversal (CVE-2026-59792). Confidential information can be exposed externally.
|
| CVE-2026-56354 |
|
Open Redirect in n8n (CVE-2026-56354)
vulnerability in n8n (CVE-2026-56354). Risk of unauthorized operations or information disclosure. Exploitable via ``NODES_EXCLUDE``. Mitigation: upgrade to `1.123.24` or later.
|
| CVE-2026-57961 |
|
Path Traversal in path-traversal (CVE-2026-57961)
path traversal in path-traversal (CVE-2026-57961). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56366 |
|
Vulnerability in dos (CVE-2026-56366)
vulnerability in dos (CVE-2026-56366). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56305 |
|
Vulnerability in CVE-2026-56305 (CVE-2026-56305)
vulnerability in CVE-2026-56305 (CVE-2026-56305). Confidential information can be exposed externally.
|
| CVE-2026-56261 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-56261)
SSRF in ssrf (CVE-2026-56261). Confidential information can be exposed externally.
|
| CVE-2026-38057 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-38057)
vulnerability in csrf (CVE-2026-38057). Data can be tampered with by attackers.
|
| CVE-2026-29519 |
|
Cross-Site Scripting (XSS) in CVE-2026-29519 (CVE-2026-29519)
cross-site scripting in CVE-2026-29519 (CVE-2026-29519). Confidential information can be exposed externally.
|
| CVE-2026-54469 |
|
Unsafe Deserialization in deserialization (CVE-2026-54469)
vulnerability in deserialization (CVE-2026-54469). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56689 |
|
SQL Injection in sqli (CVE-2026-56689)
SQL injection in sqli (CVE-2026-56689). Confidential information can be exposed externally.
|
| CVE-2026-56690 |
|
SQL Injection in sqli (CVE-2026-56690)
SQL injection in sqli (CVE-2026-56690). Confidential information can be exposed externally.
|
| CVE-2026-54468 |
|
Path Traversal in path-traversal (CVE-2026-54468)
path traversal in path-traversal (CVE-2026-54468). Confidential information can be exposed externally.
|
| CVE-2026-56814 |
|
Vulnerability in dos (CVE-2026-56814)
vulnerability in dos (CVE-2026-56814). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58225 |
|
SQL Injection in sqli (CVE-2026-58225)
SQL injection in sqli (CVE-2026-58225). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15378 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-15378)
SSRF in ssrf (CVE-2026-15378). Confidential information can be exposed externally.
|
| CVE-2026-41877 |
|
Cross-Site Scripting (XSS) in CVE-2026-41877 (CVE-2026-41877)
cross-site scripting in CVE-2026-41877 (CVE-2026-41877). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13710 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13710)
cross-site scripting in wordpress (CVE-2026-13710). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13247 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13247)
cross-site scripting in wordpress (CVE-2026-13247). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13010 |
|
SQL Injection in wordpress (CVE-2026-13010)
SQL injection in wordpress (CVE-2026-13010). Confidential information can be exposed externally.
|
| CVE-2026-15028 |
|
Vulnerability in dos (CVE-2026-15028)
vulnerability in dos (CVE-2026-15028). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12918 |
|
SQL Injection in wordpress (CVE-2026-12918)
SQL injection in wordpress (CVE-2026-12918). Confidential information can be exposed externally.
|
| CVE-2026-6440 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-6440)
vulnerability in wordpress (CVE-2026-6440). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9838 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9838)
cross-site scripting in wordpress (CVE-2026-9838). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3907 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3907)
cross-site scripting in wordpress (CVE-2026-3907). Risk of unauthorized operations or information disclosure. Exploitable via ``value``.
|
| CVE-2026-12924 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12924)
cross-site scripting in wordpress (CVE-2026-12924). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12108 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12108)
cross-site scripting in wordpress (CVE-2026-12108). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14475 |
|
SQL Injection in wordpress (CVE-2026-14475)
SQL injection in wordpress (CVE-2026-14475). Confidential information can be exposed externally.
|
| CVE-2026-15104 |
|
SQL Injection in wordpress (CVE-2026-15104)
SQL injection in wordpress (CVE-2026-15104). Confidential information can be exposed externally.
|
| CVE-2026-13347 |
|
Path Traversal in wordpress (CVE-2026-13347)
path traversal in wordpress (CVE-2026-13347). Confidential information can be exposed externally.
|
| CVE-2026-40005 |
|
Path Traversal in apache (CVE-2026-40005)
path traversal in apache (CVE-2026-40005). Confidential information can be exposed externally.
|
| CVE-2026-28564 |
|
Vulnerability in apache (CVE-2026-28564)
vulnerability in apache (CVE-2026-28564). Successful exploitation can lead to full system takeover.
|