Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-17087 |
|
Vulnerability in wordpress (CVE-2026-17087)
vulnerability in wordpress (CVE-2026-17087). Confidential information can be exposed externally.
|
| CVE-2026-9767 |
|
SQL Injection in wordpress (CVE-2026-9767)
SQL injection in wordpress (CVE-2026-9767). Confidential information can be exposed externally.
|
| CVE-2026-19934 |
|
Vulnerability in sqli (CVE-2026-19934)
vulnerability in sqli (CVE-2026-19934). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2283 |
|
SQL Injection in wordpress (CVE-2026-2283)
SQL injection in wordpress (CVE-2026-2283). Confidential information can be exposed externally.
|
| CVE-2026-17582 |
|
SQL Injection in wordpress (CVE-2026-17582)
SQL injection in wordpress (CVE-2026-17582). Confidential information can be exposed externally.
|
| CVE-2026-18653 |
|
SQL Injection in wordpress (CVE-2026-18653)
SQL injection in wordpress (CVE-2026-18653). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19712 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19712)
cross-site scripting in wordpress (CVE-2026-19712). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18402 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18402)
cross-site scripting in wordpress (CVE-2026-18402). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15056 |
|
Path Traversal in wordpress (CVE-2026-15056)
path traversal in wordpress (CVE-2026-15056). Confidential information can be exposed externally.
|
| CVE-2026-15066 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15066)
cross-site scripting in wordpress (CVE-2026-15066). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15726 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15726)
cross-site scripting in wordpress (CVE-2026-15726). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16758 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16758)
cross-site scripting in wordpress (CVE-2026-16758). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16775 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16775)
cross-site scripting in wordpress (CVE-2026-16775). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15351 |
|
SQL Injection in wordpress (CVE-2026-15351)
SQL injection in wordpress (CVE-2026-15351). Confidential information can be exposed externally.
|
| CVE-2026-16079 |
|
SQL Injection in wordpress (CVE-2026-16079)
SQL injection in wordpress (CVE-2026-16079). Confidential information can be exposed externally.
|
| CVE-2026-15963 |
|
SQL Injection in wordpress (CVE-2026-15963)
SQL injection in wordpress (CVE-2026-15963). Confidential information can be exposed externally.
|
| CVE-2026-15602 |
|
SQL Injection in wordpress (CVE-2026-15602)
SQL injection in wordpress (CVE-2026-15602). Confidential information can be exposed externally.
|
| CVE-2026-15604 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15604)
cross-site scripting in wordpress (CVE-2026-15604). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15790 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15790)
cross-site scripting in wordpress (CVE-2026-15790). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15384 |
|
Authentication Bypass in wordpress (CVE-2026-15384)
authentication bypass in wordpress (CVE-2026-15384). Data can be tampered with by attackers.
|
| CVE-2026-17581 |
|
Code Injection in wordpress (CVE-2026-17581)
code injection in wordpress (CVE-2026-17581). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16099 |
|
Unsafe Deserialization in wordpress (CVE-2026-16099)
vulnerability in wordpress (CVE-2026-16099). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16098 |
|
Unrestricted File Upload in wordpress (CVE-2026-16098)
vulnerability in wordpress (CVE-2026-16098). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18432 |
|
Privilege Escalation in wordpress (CVE-2026-18432)
vulnerability in wordpress (CVE-2026-18432). Successful exploitation can lead to full system takeover. Exploitable via ``item_id``.
|
| CVE-2026-10035 |
|
Unsafe Deserialization in wordpress (CVE-2026-10035)
vulnerability in wordpress (CVE-2026-10035). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15009 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15009)
cross-site scripting in wordpress (CVE-2026-15009). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15002 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15002)
cross-site scripting in wordpress (CVE-2026-15002). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14524 |
|
Path Traversal in wordpress (CVE-2026-14524)
path traversal in wordpress (CVE-2026-14524). Data can be tampered with by attackers.
|
| CVE-2026-14498 |
|
Unrestricted File Upload in wordpress (CVE-2026-14498)
vulnerability in wordpress (CVE-2026-14498). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12477 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12477)
cross-site scripting in wordpress (CVE-2026-12477). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11780 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11780)
cross-site scripting in wordpress (CVE-2026-11780). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2487 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2487)
cross-site scripting in wordpress (CVE-2026-2487). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19926 |
|
Vulnerability in sqli (CVE-2026-19926)
vulnerability in sqli (CVE-2026-19926). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19925 |
|
Vulnerability in sqli (CVE-2026-19925)
vulnerability in sqli (CVE-2026-19925). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19923 |
|
Vulnerability in sqli (CVE-2026-19923)
vulnerability in sqli (CVE-2026-19923). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19922 |
|
Cross-Site Scripting (XSS) in CVE-2026-19922 (CVE-2026-19922)
cross-site scripting in CVE-2026-19922 (CVE-2026-19922). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19919 |
|
Vulnerability in sqli (CVE-2026-19919)
vulnerability in sqli (CVE-2026-19919). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19917 |
|
Vulnerability in c (CVE-2026-19917)
vulnerability in c (CVE-2026-19917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19921 |
|
Vulnerability in sqli (CVE-2026-19921)
vulnerability in sqli (CVE-2026-19921). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19920 |
|
Vulnerability in sqli (CVE-2026-19920)
vulnerability in sqli (CVE-2026-19920). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73053 |
|
Cross-Site Scripting (XSS) in CVE-2026-73053 (CVE-2026-73053)
cross-site scripting in CVE-2026-73053 (CVE-2026-73053). Successful exploitation can lead to full system takeover.
|
| CVE-2026-74764 |
|
Path Traversal in path-traversal (CVE-2026-74764)
path traversal in path-traversal (CVE-2026-74764). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73054 |
|
Authentication Bypass in CVE-2026-73054 (CVE-2026-73054)
authentication bypass in CVE-2026-73054 (CVE-2026-73054). Confidential information can be exposed externally.
|
| CVE-2026-73044 |
|
Cross-Site Scripting (XSS) in CVE-2026-73044 (CVE-2026-73044)
cross-site scripting in CVE-2026-73044 (CVE-2026-73044). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73050 |
|
Cross-Site Scripting (XSS) in CVE-2026-73050 (CVE-2026-73050)
cross-site scripting in CVE-2026-73050 (CVE-2026-73050). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73043 |
|
Cross-Site Scripting (XSS) in CVE-2026-73043 (CVE-2026-73043)
cross-site scripting in CVE-2026-73043 (CVE-2026-73043). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19916 |
|
Cross-Site Scripting (XSS) in CVE-2026-19916 (CVE-2026-19916)
cross-site scripting in CVE-2026-19916 (CVE-2026-19916). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19905 |
|
A weakness has been identified in Jinher OA 1.0. Impacted is an unknown function of the file /C6...
A weakness has been identified in Jinher OA 1.0. Impacted is an unknown function of the file /C6...
|
| CVE-2026-18855 |
|
Path Traversal in wordpress (CVE-2026-18855)
path traversal in wordpress (CVE-2026-18855). Data can be tampered with by attackers.
|
| CVE-2026-19904 |
|
Cross-Site Scripting (XSS) in CVE-2026-19904 (CVE-2026-19904)
cross-site scripting in CVE-2026-19904 (CVE-2026-19904). Risk of unauthorized operations or information disclosure.
|